Information Security Manager - KMJJ Enterprise LLC
Arlington, VA
About the Job
Information Security Manager II
Description:
Supporting a U.S. Government customer on a large mission critical development and sustainment program to provide support for onsite incident response to civilian Government agencies and critical asset owners who experience cyber-attacks, providing immediate investigation and resolution.
Seeking an experienced and technically proficient Information Security Manager II to support this critical customer mission by performing investigations to characterize the severity of breaches, developing mitigation plans, and assisting with the restoration of services.
This position requires support during assigned shifts, including nights/weekends
Eligibility:
- Must be a US Citizen
- Must have an activeTS/SCI clearance
- Must be able to obtain DHS Suitability prior to starting employment
- 2+ years of directly relevant experience in information security
Responsibilities Include:
- Providing 24 x 7 watch supporting continuous monitoring and incident response for hybrid cloud/ on-prem customer networks
- Providing support in the detection, response, mitigation, and reporting of cyber threats affecting customer networks
- Producing reports and briefs to provide an accurate depiction of the current threat landscape and associated risk based on customer, community, and open-source reporting
- Facilitating the customer's posturing to aggressively investigate cyber activity targeting customer information and its information infrastructure
- Analyzing and reporting cyber threats as well as assist in deterring, identifying, monitoring, investigating, and analyzing computer network intrusions
- Providing support during assigned shifts, including nights/weekends, with hybrid work on-site
- Developing and implementing training standards and procedures, to include Work Instructions, Joint Qualification Requirements, and Standard Operating Procedures
- Oversee the training of newly assigned analysts
Required Skills:
- Knowledge of Computer Network Defense (CND) policies, procedures, and regulations
- Knowledge of defense-in-depth principles and network security architecture
- Knowledge of boundary protection and enclaving
- Knowledge of authentication and access management technologies
- Knowledge of several of the following areas is required: Understanding of business security practices and procedures; current security tools available; hardware/software security implementation; different communication protocols; encryption techniques/tools; familiarity with commercial products, and current lab infrastructure technology
- Ability to serve as an Information System Security Officer (ISSO)
- Must be able to work collaboratively across physical locations
Desired Skills:
- DHS experience
- Cybersecurity skills including threat hunting
- Advanced knowledge of RMF framework
- Experience working ATO’s
Desired Certifications: CISSO, CISM, CISSP
Required Education: BS Information Management, Cybersecurity, Computer Science, or related degree; or HS Diploma and 4+ years information security experience