Information System Security Manager - L4

Prism, Inc.
Lorton, VA, United States
10 days ago
Apply on www.clearancejobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

Microsoft Azure Configuration Management Cyber Security Information Systems Information Security Management Intrusion Detection Systems Prism (Software) Security Information and Event Management Firewalls (Computer Science) SAPBasis Information Technology

Job description

PRISM is seeking an Information System Security Manager (ISSM) in Lorton, VA to lead cybersecurity oversight, compliance, and risk management for classified DoD programs. In this role, you will manage system security policies, direct ISSO teams, oversee Risk Management Framework (RMF) lifecycles, and maintain the operational security posture of classified systems in close partnership with Authorizing Officials and program leadership., Develop and maintain a formal IS security program and policies for operational environments. Develop and oversee operational information systems security implementation policy and guidelines. Coordinate with the PSO or cognizant security official on approval of external information systems. Ensure ISSOs under their purview are appointed in writing and follow established IS policies and procedures; assume ISSO responsibilities in their absence when needed. Ensure System Administrators monitor resources for system vulnerabilities or ongoing attacks, and that periodic security testing is conducted. Ensure approved procedures are used for sanitizing and releasing system components and media. Maintain a repository of cybersecurity-related documentation, including ATOs, for all systems under their purview. Coordinate IS security inspections, tests, and reviews, and ensure proper response when an incident or vulnerability is discovered. Ensure configuration management (CM) policies are followed for any hardware/software changes, coordinating with the AO prior to implementation. Serve as a voting member of the Configuration Control Board (CCB) and/or Risk Executive Board, with authority to flag proposed changes deemed a security risk. Manage, maintain, and execute the information security continuous monitoring plan. Maintain working relationships with the ISO, AO, SCA, and other ISSMs, and provide guidance to the broader cybersecurity team.

Requirements

5-7+ years of experience in information security management. 5+ years of experience in SCI/SAP environments. Bachelor’s degree in Computer Science, Information Technology, or a related field. Strong knowledge of security standards and regulations (NIST, ISO 27001, HIPAA). Experience with security tools and technologies such as firewalls, IDS/IPS, and SIEM. Excellent communication and leadership skills. Must be within driving distance of Lorton, VA, or willing to relocate (Relocation Assistance Package Available). Must be willing to work onsite 5 days per week (may include some travel). Active TS/SCI Clearance Strong written and verbal communication skills with excellent attention to detail. Ability to work independently and collaboratively in a mission-focused environment., AZ-500 (Azure Security Engineer Associate), SC-100 (Cybersecurity Architect Expert), or AZ-305 (Azure Solutions Architect Expert), or similar certification. 5+ years of leadership experience in a relevant business area. Technical certifications in Azure.

About the company

PRISM is devoted to modernization and innovation within the world of technology, security, and IT enterprise solutions. We are recognized for meeting performance requirements and exceeding customer expectations since 1994. Our culture is founded on relationships, opportunity, and success. Offering comprehensive benefit plans including medical, dental, vision, and 401K along with our people - first approach sustains our reputation as a premier employer.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:06 min

Outline of free tools for Microsoft Azure

Radu Vunvulea Radu Vunvulea · World Congress 2022

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

5:01 min

Container hosting options available on Microsoft Azure

Federico Fregosi · World Congress 2022

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

1:33 min

Recapping vital capability shifts across security and enterprise infrastructure

Sergej Reznik Sergej Reznik · Europe 2026 Virtual

Videos

See all

Related articles

See all