Cybersecurity – Information System Security Manager (ISSM) at Boeing
Hazelwood, Missouri, USA -
Full Time


Start Date

Immediate

Expiry Date

24 Oct, 25

Salary

156400.0

Posted On

24 Jul, 25

Experience

5 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Risk Management Framework, Cissp, Gslc, Special Access Programs, Level Iii, Scap, Rmf, Security Compliance, Federal Government, Ssbi, Hbss, Nist, Access, Nessus

Industry

Information Technology/IT

Description

At Boeing, we innovate and collaborate to make the world a better place. We’re committed to fostering an environment for every teammate that’s welcoming, respectful and inclusive, with great opportunity for professional growth. Find your future with us.
Boeing Classified Cybersecurity is currently seeking a highly motivated Cybersecurity – Information System Security Manager (ISSM) to join the team in either Hazelwood, MO or Berkeley, MO.
The selected candidate will rely on cybersecurity and Information Assurance (IA) background to be a technical leader and support Enterprise activities and Boeing customers throughout multiple classified computing domains. The ISSM is responsible for ensuring all Information System Security policies, standards, and directives are enforced to support assessment, authorization and continued operation of information systems processing classified information.

BASIC QUALIFICATIONS (REQUIRED SKILLS/EXPERIENCE):

  • Successfully completed Tier 5 Investigation (T5), formerly known as a Single Scope Background Investigation (SSBI) by the federal government within the last 5 years, or requires candidate to have been enrolled in a Continuous Vetting program within the last 5 years
  • Ability to obtain access to Special Access Programs (SAP)
  • Currently hold certification in good standing to satisfy IAM Level III (CISSP, GSLC, or CISM)
  • 5+ years of experience with cyber security policies and implementation of Risk Management Framework (RMF): e.g. DAAPM, CNSSI 1253, ICD-503, JSIG, or NIST SP 800 series
  • 5+ years of experience working within Special Access Programs

PREFERRED QUALIFICATIONS (DESIRED SKILLS/EXPERIENCE):

  • 5+ years of experience as an information system security officer (ISSO) or information system security manager (ISSM) supporting classified programs
  • 5+ years of experience utilizing security relevant tools, systems, and applications in support of Risk Management Framework (RMF) to include NESSUS, ACAS, DISA STIGs, SCAP, Audit Reduction, and HBSS
  • 5+ years of experience assessing and documenting test or analysis data to show cyber security compliance
Responsibilities

POSITION RESPONSIBILITIES:

  • Perform security analysis of operational and development environments, threats, vulnerabilities and internal interfaces to define and assess compliance with accepted industry and government standards
  • Lead and implement the Assessment and Authorization (A&A) processes under the Risk Management Framework (RMF) for new and existing information systems
  • Facilitate development of Memorandums of Understanding (MOU), Interconnection Security Agreements (ISA), Risk Acknowledgement Letters (RAL) and support Continuous Monitoring (CONMON)
  • Supervise configuration management of assigned systems; auditing systems to ensure security posture integrity
  • Lead staff with assessments and test/analysis data to document state of compliance with security requirements
  • Conduct risk assessments and investigations, implement appropriate risk mitigations, and coordinate incident response activities
  • Conduct periodic hardware/software inventory assessments
  • Serve as organization spokesperson on sophisticated projects and programs
  • Act as advisor to management and customers on sophisticated technical research studies
  • Collaborate with the appropriate government customers, suppliers, and company personnel to implement protective mechanisms and to ensure understanding of and compliance with cybersecurity requirements

ADDITIONAL RESPONSIBILITIES:

  • Supervise the development and deployment of program information security for all program systems to meet the program and enterprise requirements, policies, standards, guidelines and procedures
  • Handle assigned team to facilitate effective execution of Risk Management Framework (RMF)
  • Provide guidance and mentor to support team within Information Security
  • Lead and perform security compliance continuous monitoring
  • Coordinate and participate in security assessments and audits
  • Prepare, review, and present technical reports and briefings
  • Identify root causes, prioritize threats and recommend and/or implement corrective action
  • Explore the enterprise and industry for evolving state of industry knowledge and methods regarding information security best practices
  • Lead development of enterprise-wide information security policies, standards, guidelines and procedures that may reach across multiple partner organizations
Loading...