Job Requirements
Lorton, VA
Top Secret/SCI Polygraph Unspecified
Career Level not specified
Salary not specified
Join Premium to unlock estimated salaries
Job Description
ABOUT PRISM
PRISM is devoted to modernization and innovation within the world of technology, security, and IT enterprise solutions. We are recognized for meeting performance requirements and exceeding customer expectations since 1994. Our culture is founded on relationships, opportunity, and success. Offering comprehensive benefit plans including medical, dental, vision, and 401K along with our people - first approach sustains our reputation as a premier employer.
PRISM is seeking an Information System Security Manager (ISSM) in Lorton, VA to lead cybersecurity oversight, compliance, and risk management for classified DoD programs. In this role, you will manage system security policies, direct ISSO teams, oversee Risk Management Framework (RMF) lifecycles, and maintain the operational security posture of classified systems in close partnership with Authorizing Officials and program leadership.
KEY RESPONISBILITIES:
Develop and maintain a formal IS security program and policies for operational environments.
Develop and oversee operational information systems security implementation policy and guidelines.
Coordinate with the PSO or cognizant security official on approval of external information systems.
Ensure ISSOs under their purview are appointed in writing and follow established IS policies and procedures; assume ISSO responsibilities in their absence when needed.
Ensure System Administrators monitor resources for system vulnerabilities or ongoing attacks, and that periodic security testing is conducted.
Ensure approved procedures are used for sanitizing and releasing system components and media.
Maintain a repository of cybersecurity-related documentation, including ATOs, for all systems under their purview.
Coordinate IS security inspections, tests, and reviews, and ensure proper response when an incident or vulnerability is discovered.
Ensure configuration management (CM) policies are followed for any hardware/software changes, coordinating with the AO prior to implementation.
Serve as a voting member of the Configuration Control Board (CCB) and/or Risk Executive Board, with authority to flag proposed changes deemed a security risk.
Manage, maintain, and execute the information security continuous monitoring plan.
Maintain working relationships with the ISO, AO, SCA, and other ISSMs, and provide guidance to the broader cybersecurity team.
REQUIRED QUALIFICATIONS:(SKILLS/EDUCATION):
5-7+ years of experience in information security management.
5+ years of experience in SCI/SAP environments.
Bachelor's degree in Computer Science, Information Technology, or a related field.
Strong knowledge of security standards and regulations (NIST, ISO 27001, HIPAA).
Experience with security tools and technologies such as firewalls, IDS/IPS, and SIEM.
Excellent communication and leadership skills.
Must be within driving distance of Lorton, VA, or willing to relocate (Relocation Assistance Package Available).
Must be willing to work onsite 5 days per week (may include some travel).
Active TS/SCI Clearance
Strong written and verbal communication skills with excellent attention to detail.
Ability to work independently and collaboratively in a mission-focused environment.
DESIRED QUALIFICATIONS:
AZ-500 (Azure Security Engineer Associate), SC-100 (Cybersecurity Architect Expert), or AZ-305 (Azure Solutions Architect Expert), or similar certification.
5+ years of leadership experience in a relevant business area.
Technical certifications in Azure.
REQUIRED SECURITY CLEARANCE:
Active Top Secret SCI
PRISM is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status, or any other protected class.
PRISM is devoted to modernization and innovation within the world of technology, security, and IT enterprise solutions. We are recognized for meeting performance requirements and exceeding customer expectations since 1994. Our culture is founded on relationships, opportunity, and success. Offering comprehensive benefit plans including medical, dental, vision, and 401K along with our people - first approach sustains our reputation as a premier employer.
PRISM is seeking an Information System Security Manager (ISSM) in Lorton, VA to lead cybersecurity oversight, compliance, and risk management for classified DoD programs. In this role, you will manage system security policies, direct ISSO teams, oversee Risk Management Framework (RMF) lifecycles, and maintain the operational security posture of classified systems in close partnership with Authorizing Officials and program leadership.
KEY RESPONISBILITIES:
Develop and maintain a formal IS security program and policies for operational environments.
Develop and oversee operational information systems security implementation policy and guidelines.
Coordinate with the PSO or cognizant security official on approval of external information systems.
Ensure ISSOs under their purview are appointed in writing and follow established IS policies and procedures; assume ISSO responsibilities in their absence when needed.
Ensure System Administrators monitor resources for system vulnerabilities or ongoing attacks, and that periodic security testing is conducted.
Ensure approved procedures are used for sanitizing and releasing system components and media.
Maintain a repository of cybersecurity-related documentation, including ATOs, for all systems under their purview.
Coordinate IS security inspections, tests, and reviews, and ensure proper response when an incident or vulnerability is discovered.
Ensure configuration management (CM) policies are followed for any hardware/software changes, coordinating with the AO prior to implementation.
Serve as a voting member of the Configuration Control Board (CCB) and/or Risk Executive Board, with authority to flag proposed changes deemed a security risk.
Manage, maintain, and execute the information security continuous monitoring plan.
Maintain working relationships with the ISO, AO, SCA, and other ISSMs, and provide guidance to the broader cybersecurity team.
REQUIRED QUALIFICATIONS:(SKILLS/EDUCATION):
5-7+ years of experience in information security management.
5+ years of experience in SCI/SAP environments.
Bachelor's degree in Computer Science, Information Technology, or a related field.
Strong knowledge of security standards and regulations (NIST, ISO 27001, HIPAA).
Experience with security tools and technologies such as firewalls, IDS/IPS, and SIEM.
Excellent communication and leadership skills.
Must be within driving distance of Lorton, VA, or willing to relocate (Relocation Assistance Package Available).
Must be willing to work onsite 5 days per week (may include some travel).
Active TS/SCI Clearance
Strong written and verbal communication skills with excellent attention to detail.
Ability to work independently and collaboratively in a mission-focused environment.
DESIRED QUALIFICATIONS:
AZ-500 (Azure Security Engineer Associate), SC-100 (Cybersecurity Architect Expert), or AZ-305 (Azure Solutions Architect Expert), or similar certification.
5+ years of leadership experience in a relevant business area.
Technical certifications in Azure.
REQUIRED SECURITY CLEARANCE:
Active Top Secret SCI
PRISM is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status, or any other protected class.
group id: PRISMVA