Information Systems Security Manager (ISSM) at Modern Technology Solutions Inc
Bath Township, Ohio, United States -
Full Time


Start Date

Immediate

Expiry Date

19 Mar, 26

Salary

0.0

Posted On

19 Dec, 25

Experience

10 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Information Security, Risk Management, Security Policies, Vulnerability Scanning, Incident Response, Security Awareness Training, Compliance, Security Controls, Access Controls, Intrusion Detection Systems, Firewalls, Anti-Malware Software, Data Loss Prevention, Operating Systems, Networking Protocols, Cloud Computing

Industry

Space Research and Technology

Description
Create, implement, and maintain system-specific security policies, standards, and procedures, ensuring they align with organizational and regulatory requirements (e.g., NIST, ISO, HIPAA, PCI DSS) and are effectively communicated and enforced. Conduct regular risk assessments and vulnerability scans to identify security vulnerabilities and potential threats to systems, developing and implementing effective mitigation strategies and tracking remediation efforts. Implement and maintain a comprehensive suite of security controls, including access controls, intrusion detection systems, firewalls, anti-malware software, and data loss prevention (DLP) solutions, ensuring optimal configuration and adherence to best practices. Participate actively in security incident response activities, including thorough investigation, containment, eradication, and recovery, documenting incidents meticulously and extracting valuable lessons learned to improve future responses. Develop and deliver engaging security awareness training programs for users and system administrators, fostering a culture of security awareness throughout the organization. Ensure continuous compliance with relevant security regulations and standards (e.g., NIST, ISO, HIPAA, PCI DSS), preparing for and participating in security audits and assessments, and maintaining comprehensive documentation to support compliance efforts. Collaborate closely with system administrators, developers, network engineers, and other stakeholders to seamlessly integrate security into all phases of system design, development, and operation. Serve as a trusted security advisor to project teams and business units, proactively communicating security risks and providing well-informed recommendations to management. Stay abreast of the latest security threats, vulnerabilities, and cutting-edge technologies, recommending and implementing ongoing improvements to security policies, procedures, and controls, and participating in industry security forums. Maintain accurate and up-to-date documentation of security configurations, policies, procedures, and incident responses, developing and maintaining system security plans (SSPs) and other essential security-related documentation. 8+ years experience in information security, with at least 3 years of experience as an ISSM or in a similar role. Strong understanding of cybersecurity principles, risk management methodologies, and security controls. Experience with security assessment tools, such as vulnerability scanners and penetration testing tools. Experience with security technologies, such as firewalls, intrusion detection systems, anti-malware software, and data loss prevention (DLP) solutions. Knowledge of operating systems (Windows, Linux), networking protocols, and cloud computing environments. Master's degree in Computer Science, Information Systems, Cybersecurity, or a related field. 8 additional years of relevant experience may be substituted for master's degree. Relevant security certifications are highly desirable, such as: Certified Information Systems Security Professional (CISSP) Certified Information Security Manager (CISM) CompTIA Security+ GIAC certifications (e.g., GSEC, GCIH, GCIA) Ability to establish priorities, work independently, successfully execute multiple projects, and proceed with objectives with minimal supervision. Must possess an active DoD TS/SCI with in-scope SSBI and SAP eligibility. Please note: U.S. Citizenship is required.
Responsibilities
The Information Systems Security Manager (ISSM) is responsible for creating, implementing, and maintaining security policies and procedures while conducting risk assessments and vulnerability scans. They also participate in incident response activities and develop security awareness training programs.
Loading...