user avatar

Information Systems Security Manager / Security Specialist

Top Aces Corp

Posted today

Job Requirements

Mesa, AZ
Secret Polygraph Unspecified
Career Level not specified
Salary not specified
Join Premium to unlock estimated salaries

Job Description

The Information Systems Security Manager (ISSM) / Industrial Security Specialist supports the secure operation of the Company's classified information systems and broader Industrial Security program, with classified systems security serving as the primary focus of the role. The position supports the administration, authorization, monitoring, and protection of classified systems while developing toward formal appointment as ISSM through required training, qualification, and hands-on experience. The role also provides support to personnel security, classified visits, security education, self-inspections, records management, and other Industrial Security activities under the direction of the Facility Security Officer (FSO). The information below is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required for this position.

PRIMARY RESPONSIBILITIES - CLASSIFIED INFORMATION SYSTEMS SECURITY

  • Learn, apply, and maintain security requirements governing classified information systems, including Multi-User Stand-Alone (MUSA) systems used to process classified information.
  • Support the authorization, operation, maintenance, relocation, and decommissioning of classified information systems and once formally appointed, perform assigned ISSM responsibilities within authorized scope.
  • Maintain accurate and inspection-ready system authorization documentation in NISP eMASS, including System Security Plans, hardware and software inventories, security-control documentation, continuous-monitoring records, and corrective actions.
  • Implement and maintain approved system-security configurations, Security Technical Implementation Guides (STIGs), software restrictions, patching, malware protection, and other documented authorization requirements.
  • Administer user accounts, permissions, privileged access, audit logs, user agreements, and required system-security training in accordance with approved procedures.
  • Control and document the introduction, use, modification, and removal of hardware, software, peripherals, and removable media; elevate proposed changes that may impact the system authorization boundary.
  • Maintain procedures and records for classified-system media handling, data transfer, backup and recovery, sanitization, maintenance, relocation, and disposal.
  • Conduct system reviews, continuous-monitoring activities, and self-inspections; identify deficiencies and track corrective actions through completion.
  • Report and support the response to classified data spills, malware, suspected compromise, unauthorized activity, configuration deviations, and other cybersecurity or security incidents.
  • Support DCSA assessments, system authorization activities, documentation requests, inspections, and coordination with government security representatives.
  • Coordinate with the FSO, Information Technology, program teams, and system users to communicate system status, identified risks, limitations, and required actions.
  • Perform other duties as assigned.


SECONDARY RESPONSIBILITIES - INDUSTRIAL SECURITY SUPPORT

  • Assist the FSO with implementation of 32 CFR Part 117/NISPOM requirements, company security procedures, and maintenance of inspection-ready Industrial Security records.
  • Support personnel-security activities, including clearance verification, briefings and debriefings, nondisclosure agreements, training records, access changes, and assigned DISS or NISS actions.
  • Support incoming and outgoing classified visits, need-to-know validation, visitor controls, escort requirements, and customer security coordination.
  • Assist with safeguarding, accountability, marking, storage, transmission, destruction, and incident reporting requirements for classified information, as applicable.
  • Support review and tracking of DD Form 254 requirements and program-specific security guidance under FSO oversight.
  • Assist with security education, counterintelligence awareness, foreign travel and suspicious-contact reporting, Insider Threat Program activities, and documentation of reportable matters.
  • Support annual self-inspections, corrective actions, DCSA or customer reviews, and continuous improvement of the Industrial Security program.
  • Coordinate with Human Resources, Information Technology, Facilities, Contracts, Operations, Program Management, and Trade Compliance to integrate security requirements into daily business activities.
  • Provide practical security guidance within assigned authority and promptly elevate potential violations, unclear requirements, or matters requiring additional authorization to the FSO.
  • Perform other duties as assigned.


SKILLS AND/OR QUALIFICATIONS

  • Excellent verbal and written communication skills, including the ability to effectively communicate technical and security requirements with internal and external customers.
  • Foundational knowledge of Microsoft Windows administration, user-account management, security settings, audit logging, patching, malware protection, and basic system troubleshooting.
  • Knowledge of, or ability to learn and apply, Risk Management Framework (RMF) concepts, NISP eMASS, applicable STIGs, 32 CFR Part 117/NISPOM requirements, and DCSA classified-system guidance.
  • Strong documentation, organizational, and records-management skills with demonstrated attention to detail and the ability to manage assigned priorities and meet deadlines.
  • Ability to follow approved procedures, recognize potential security or compliance concerns, and exercise appropriate judgment regarding escalation.
  • Demonstrated sound judgment, discretion, reliability, and ability to appropriately handle classified, controlled, and sensitive information.
  • Ability to maintain a professional, service-oriented approach while effectively applying and enforcing security requirements.
  • Ability to complete required DCSA/CDSE role-based training and company-specific classified-system qualification requirements.
  • Must possess a working knowledge of SMS Principles and ICAO, FAA, and DoD frameworks.
  • Must be proficient with safety management platforms, experience with SMS Pro is preferred.
  • Must be able to work under pressure and meet deadlines, while maintaining a positive attitude.
  • Ability to analyze data, identify trends, and prepare high-quality reports.
  • Excellent verbal and written communication skills, including ability to effectively communicate with internal and external customers.
  • Must be proficient in MS Office Suite.
  • Must demonstrate safe and healthy workplace practices.
  • Must be able to work nights, weekends, and holidays as needed.
  • Must be able to travel within the US and internationally.
  • Must demonstrate the knowledge, skills, and abilities of the ISSM/Industrial Security Specialist in daily work performance.
  • Must be eligible to obtain and maintain required level of US Security Clearance; Active Secret Security Clearance at time of hire is preferred.
  • Must be able to obtain a CAC (Common Access Card) and not be barred from any installation.


EDUCATION AND/OR WORK EXPERIENCE

  • An associate or bachelor's degree in Cybersecurity, Information Technology, Information Systems, Computer Science, Security Management, or a related field, required. Equivalent military, government, technical training, certifications, or relevant experience may be considered.
  • Minimum 2 years' experience in cybersecurity, information technology, information assurance, classified information systems, military or government security, Industrial Security, or a related field.
  • Previous experience supporting Windows-based systems, compliance documentation, stand-alone information systems, cleared defense contractors, or government security activities is preferred.
  • CompTIA Security+, ISC2 Certified in Cybersecurity (CC), Microsoft Fundamentals, Certified in Governance, Risk and Compliance (CGRC), Security Professional Education Development (SPeD), Industrial Security Professional (ISP), or similar certification is preferred.


PHYSICAL REQUIREMENTS

  • Ability to sit for extended periods of time while working at a computer.
  • Ability to work in an office environment with standard lighting, noise levels, and climate conditions.
  • Ability to inspect, connect, inventory, and relocate laptops, peripherals, media, and related equipment.
  • Must be able to lift and carry up to 30 lbs.
  • Reasonable accommodation may be made to enable individuals with disabilities to perform essential functions of the role.


SPECIAL WORK CONDITIONS

  • Must be a U.S. Citizen to be eligible for security designation, clearance, and to access training required of the role.
  • Formal appointment as ISSM is contingent upon completion of required training, demonstrated competence, company approval, required clearance and access, and applicable government authorization requirements.
  • Prior to formal appointment, the employee may perform ISSM-support activities under designated oversight while completing required qualifications and training.
  • A flexible work arrangement, including limited remote work, may be available based on business needs and supervisor approval; duties involving classified information, classified systems, or secure-site activities must be performed onsite.
group id: 91103690

Similar Jobs


Job Category
IT - Security
Clearance Level
Secret