Information Systems Security Manager (ISSM)
Job Description
This Opportunity WSP USA Solutions has an immediate opportunity for a full-time Information Systems Security Manager (ISSM) to work out of our Arlington, VA office.
The successful candidate will possess a strong interest in engaging, intellectually stimulating and rewarding assignments. The role also includes system administration responsibilities, providing technical support to the office, as needed. WSP USA Solutions offers an environment that supports work/life balance and advancement opportunities and is seeking professionals who have an intellectual curiosity and who are dedicated to personal and professional growth.
The Information Systems Security Manager will oversee all information system security requirements in accordance with NIST 800-53 standards, ensuring compliance through continuous monitoring. The individual in this role must be willing and able to develop the necessary knowledge and expertise to manage every aspect of information systems security, including overseeing day-to-day security operations for systems and associated media. The ISSM will also assist with maintaining compliance to the Cybersecurity Maturity Model Certification (CMMC) NIST 800-171 controls for the organization's Azure GCC-H cloud environment. Staying current on evolving threats that may impact the system is a critical aspect of this role.
Your Impact The ISSM serves as the on-site lead for monitoring information systems and maintaining the operational environment. Responsibilities include: • Developing, implementing, and maintaining System Security Plans (SSP) in alignment with Risk Management Framework (RMF) requirements.
• Ensuring all newly acquired hardware is hardened based on Security Technical Implementation Guides (STIGs).
• Managing Configuration Management (CM) for all related hardware, software, and security-related functions.
• Identifying security deficiencies or discrepancies and proposing appropriate solutions.
• Tracking findings within the Plan of Action and Milestones (POA&M) through mitigation and risk acceptance processes.
• Conducting regular audits and continuous monitoring to detect vulnerabilities, maintaining compliance with NIST 800-171 and 800-53 frameworks.
• Leading the incident response process, including reporting security incidents and preparing incident reports.
Interested in this role?
Take the next step in your career with WSP.
Similar Opportunities
More jobs you might be interested in