Job Title: Information System Security Manager Job Location: Columbus, MS Overview: Abacus Technology is seeking an Information System Security Manager (ISSM) to provide cyber security, compliance, and information assurance support for the 14th Flying Training Wing at Columbus AFB. This is a full-time position. Major Duties & Responsibilities: • Enforce and develop policies to ensure cybersecurity requirements for unclassified and classified networks are met in accordance with all regulations including DISA, DoD, and Air Force.
• Work with 14 Communications Squadron commander and advise all leadership on risk acceptance. • Conduct briefings to leadership on cyber posture and submit reports as needed.
• Utilize eMASS to update and maintain the installations Risk Management Framework (RMF) package. • Provide guidance and approvals for RMF packages. • Assess security controls regularly. • Maintain Authority-to-Operate (ATO) and Authority-to-Connect (ATC) for both unclassified and classified networks.
• Review and reference guidance from multiple agencies including NIST, DISA, DoD, AF, sister services, and commercial agencies to provide recommendations on network approved solutions for customers.
• Oversee Command Cyber Readiness Inspection (CCRI)/Cyber Operations Readiness Assessment (CORA) preparedness and compliance.
• Use designated tools such as ACAS, ARAD, and Forescout to conduct vulnerability scans of network devices.
• Review and complete DISA STIGs on Windows/Linux systems.
Monitor and submit Plan of Actions and Milestones (POA&Ms) as needed for all systems to extend/mitigate vulnerability compliance issues.
• Manage DoD 8140 cyberspace workforce program including validating system administrator access.
• Lead Wing cybersecurity office; provide direction and guidance to cyber personnel as well as other system administrators across the installation.
• Enforce network violations and remediation. Qualifications: 5+ years experience in cyber security or information assurance. Bachelor’s degree in a related field desired. Must hold one of the following certifications: CAP, CASP, CISM, GSLC, or CISSP. Experience with the certification and accreditation process. Significant experience in vulnerability scanning and analysis, including the use of automated tools and vulnerability management systems. Knowledge of intrusion prevention and network access control tools/systems. Experience working in/on/around classified systems including both network and physical security procedures. Understanding of system audit principles and security risk assessment. Strong understanding of security policy, process, and flow of network security as operated by the DoD. Must have a solid understanding of network infrastructure, mission assurance, and Windows/Linux operating systems. Must have strong communications skills, be capable of working with all levels of an organization, and provide presentations/briefings to government managers and stakeholders as needed. Able to multi-task, meet suspense timelines, be self-motivated, and work with a mixture of contractors, government civilians, and military personnel. Must be a US Citizen and hold a current Secret clearance. Applicants selected will be subject to a U.S. government security investigation and must meet eligibility requirements for access to classified information.