• Washington, DC
    10 days ago

    Job Description

    ECS is seeking a CISO to work in our Sierra Vista, AZ office.

    The Chief Information Security Officer will serve as the senior cybersecurity leader and principal security advisor to the Program Manager for The Army Endpoint Security Solution (AESS). This role is responsible for protecting the service delivery environment, including back-end and front-end security infrastructure, endpoints, servers, networks, customer-facing services, and supporting operational platforms.

    The CISO will lead cybersecurity governance, risk management, information assurance, security operations, compliance, documentation, and policy activities across the program. The role provides oversight of Information Assurance and Security Operations Center personnel and ensures program alignment with DoD requirements, RMF, NIST SP 800-53, DoD security baselines, DISA STIGs, ACAS scanning, continuous monitoring, vulnerability management, and Zero Trust principles.

    • Senior security advisor to the Program Manager on cybersecurity risk, compliance, security operations, incident response, and mission assurance matters.
    • Lead the cybersecurity strategy for the AESS.
    • Oversee Information Assurance and SOC personnel, including day-to-day security operations, compliance activities, documentation, reporting, and process improvement.
    • Ensure the security of service delivery infrastructure, including endpoint security platforms, backend systems, frontend services, servers, networks, administrative access paths, and customer-facing capabilities.
    • Provide oversight of SOC, including monitoring, alert triage, incident response, threat hunting, detection engineering, escalation management, SIEM/EDR operations, and security reporting.
    • Lead Information Assurance activities, (RMF support, control documentation, evidence collection, assessment readiness, POA&M management, continuous monitoring, and security authorization support).
    • Ensure compliance with NIST SP 800-53, DoD cybersecurity requirements, DoD security baselines, DISA STIGs, ACAS scanning requirements, and applicable customer security policies.
    • Oversee vulnerability management activities, (ACAS scan coordination, findings analysis, remediation tracking, risk reporting, and compliance validation).
    • Ensure STIG compliance is implemented, documented, reviewed, and maintained across applicable endpoints, servers, applications, databases, infrastructure, and network devices.
    • Develop, maintain, and enforce cybersecurity policies, standards, plans, procedures, playbooks, runbooks, and security documentation.
    • Establish/maintain program-level cybersecurity risk management process, (risk identification, tracking, mitigation recommendations, and risk reporting).
    • Advise on security impacts of architecture changes, service enhancements, onboarding/offboarding activities, integrations, and operational changes.
    • Provide regular security posture updates to the Program Manager, customer stakeholders, and internal leadership.
    • Track/report key security metrics, (incident trends, vulnerability status, POA&M progress, compliance posture, SOC performance, and remediation activities).
    • Coordinate with endpoint engineering, infrastructure, network, systems administration, identity, cloud, service desk, compliance, and operations teams.
    • Support audits, assessments, inspections, cybersecurity reviews, and contract deliverables.
    • Mentor and guide security personnel while promoting a culture of accountability, mission support, and continuous improvement.

    General Description of Benefits

    Numbers & Facts

    LocationWashington, DC
    IndustryStaffing/Employment Agencies
    Company Size50 to 99 employees
    Year Founded2000
    Websitehttp://www.ecs-federal.com/

    About Company

    ECS was founded in 2001 by experienced IT professionals with a commitment to quality processes, people and performance. Led by our Chairman, Roy Kapani, and an experienced executive leadership team, ECS provides our customers with solutions and services that support their critical needs and further mission objectives. This commitment has paved the way for expansive growth, year over year.

    ECS gained market share in 2011 in the Department of Defense and Federal spaces through both organic and acquisition growth. In May, ECS completed its first strategic acquisition with the purchase of OAK Management, Inc., a leading provider of marine environmental services, ship systems engineering, maritime consulting and platform acquisition management. The OAK acquisition kicked off ECS’ intention to add tactical acquisitions as a part of its long term strategy to supplement and expand upon organic growth and to build enterprise value. ECS closed out 2011 with the acquisition of Paradigm Technologies, Inc. The Paradigm transaction added approximately 200 employees to ECS’ existing 900+ employees. Paradigm also added new Defense clients for ECS, including the Missile Defense Agency, the Navy’s Program Executive Officer for Integrated Warfare Systems, the United States Marine Corps, and the U.S. Marshals Service.

    In 2012, ECS completed the acquisition of iLuMinA Solutions, Inc. iLuMinA brings large-scale Enterprise Resource Planning (ERP) software implementation and infrastructure design and development to ECS’ expanding capabilities.

    ECS will continue to invest in corporate infrastructure and quality processes as we grow and enhance our ability to offer professional excellence to both our customers and our employees.

    Skills

    • Access Authorizationunmatched
    • Analysis Skillsunmatched
    • Cloud Computingunmatched
    • Computer Securityunmatched
    • Continuous Improvementunmatched
    • Contract Reviewunmatched
    • Customer Relationsunmatched
    • Customer Support/Serviceunmatched
    • Defense Information Systems Agency (DISA)unmatched
    • Document Managementunmatched
    • Documentationunmatched
    • Endpoint Securityunmatched
    • Huntingunmatched
    • Incident Responseunmatched
    • Information/Data Security (InfoSec)unmatched
    • Internet Securityunmatched
    • Leadershipunmatched
    • Maintain Complianceunmatched
    • Mentoringunmatched
    • Metricsunmatched
    • Network Administration/Managementunmatched
    • Network Systemsunmatched
    • Onboardingunmatched
    • Operational Supportunmatched
    • Operations Security (OPSEC)unmatched
    • Process Improvementunmatched
    • Project/Program Managementunmatched
    • Riskunmatched
    • Risk Analysisunmatched
    • Risk Managementunmatched
    • Security Architectureunmatched
    • Security Information and Event Management (SIEM)unmatched
    • Security Infrastructureunmatched
    • Security Monitoringunmatched
    • Service Deliveryunmatched
    • Support Documentationunmatched
    • Systems Administration/Managementunmatched
    • U.S. National Institute of Standards and Technology (NIST)unmatched
    • United States Department of Defense (DoD)unmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder