Information Systems Security Manager (ISSM)

ITCON Services

Washington, DC

JOB DETAILS
SKILLS
Access Authorization, Administrative Skills, Antivirus, Auditing, Computer Security, Data Quality, Document Management, Documentation, Engineering, Federal Information Processing Standards (FIPS), Government, Government Intelligence, Government Regulations, Incident Response, Industry Standards, Information Technology & Information Systems, Information/Data Security (InfoSec), Integrated Circuits (ICs), Intelligence Community, Internet Security, Leadership, Maintain Compliance, Management of Information Systems/Technology (MIS), Policy Implementation, Regulatory Compliance, Risk Analysis, Risk Management, Risk Management Framework (RMF), Security Auditing, Security Monitoring, Security Patches, Staff Training, System Lifecycle, System Operations, Systems Administration/Management, Systems Maintenance, Team Lead/Manager, U.S. National Institute of Standards and Technology (NIST), United States Department of Defense (DoD)
LOCATION
Washington, DC
POSTED
30+ days ago
ITCON Services is looking for a bright, motivated Information Systems Security Manager (ISSM) with FMCSA (Federal Motor Carrier Safety Administration) experience to join our team.

An Information Systems Security Manager (ISSM) is responsible for the overall cybersecurity posture of information systems and programs, ensuring the confidentiality, integrity, and availability of data and protecting against threats. This role involves developing and implementing security policies, managing risk, conducting audits, overseeing security documentation like System Security Plans (SSPs), and ensuring compliance with relevant regulations and frameworks such as the Risk Management Framework (RMF).

Key Responsibilities of an ISSM:
  • Policy and Documentation Management:
    • Develop, implement, and maintain information systems security policies and procedures, including creating and updating SSPs, Risk Assessment Reports, and other security documentation for various systems, often under government and Intelligence Community (IC) frameworks.
  • Risk Management and Compliance:
    • Identify and assess risks, conduct vulnerability audits, and ensure compliance with government regulations, industry standards (e.g., NIST, DoD, FIPS), and customer requirements. This includes managing the RMF lifecycle for systems.
  • System Security Operations:
    • Oversee the day-to-day security operations of information systems, including managing security patching, antivirus updates, and media control, and ensuring proper security controls are implemented and followed.
  • Accreditation and Authorization:
    • Manage and maintain security authorizations, including the acquisition and renewal of Authorization to Operate (ATO).
  • Incident Response and Training:
    • Lead crisis units during security incidents and conduct security briefings, education, and training for employees to raise awareness of cybersecurity challenges and prevention measures.
  • Technical Oversight:
    • Provide technical and procedural advice on security matters, review security tool reports, and support security engineering projects.
  • Leadership and Coordination:
    • Lead and manage teams of Information System Security Officers (ISSOs), coordinate with various government agencies and stakeholders, and act as the primary cybersecurity authority for their assigned systems or programs.

About the Company

I

ITCON Services

Our core philosophy is to listen to our customers, understand their requirements and develop a world-class solution that exceeds their expectations.  We routinely go beyond what is considered exceptional work, redefining the standard for what quality service delivery should be.

As a young, small, aggressive company, we attract some of the best minds in the consulting industry who possess an extraordinary ability to quickly adapt to and address our customers’ dynamic needs.  We value and respect our employees, and work hard to foster an environment in which all team members are unconditionally committed to the highest standards of ethical behavior and professional integrity.

At ITCON Services, we strive to establish and maintain long-term relationships with customers and employees.

COMPANY SIZE
20 to 49 employees
INDUSTRY
Computer/IT Services
FOUNDED
2008
WEBSITE
https://itcon-inc.com/