KBR Careers · 1 day ago
Senior Information System Security Manager
KBR Careers is a company that delivers full life cycle professional and technical solutions for various federal agencies. The Senior Information System Security Manager will oversee security architecture for classified and unclassified environments, manage ISSO efforts, and ensure compliance with security requirements.
Information Technology & Services
Responsibilities
Manage ISSO efforts with respect to established duties
Serve as Derivative Classifier as required by location
Read and implement IA regulations and requirements per the customer’s CISO’s direction; develop and maintain managerial, operational, and technical IA skillset
Comment on new NIST standards / regulations as applies to client environment
Review A&A documentation (BOE) to assure accuracy and professionalism as well as compliance with customer requirements. Support development of Contingency Plan, Incident Response Plan, and Configuration Management Plan
Employ best practices when implementing security requirements within an information system including
Manages extensive evaluations of major information security networks, prepares evaluation reports, and presents recommendations. Conducts trade off analyses of products for clients to determine optimal informant security solutions
Prepares remedial options and supervise correction of information security shortfalls
Manage, maintain, and ensure successful implementation of Certification and Accreditation program
Ensure products and services comply with all appropriate (ITSEC) certification & accreditation requirements and best practices as prescribed by the customer, local authorities
Analyze scan results, and document findings for products as required to successfully complete Collateral and SCI-level security certification testing and evaluation (ST&E) as appropriate for the product
Prepare Security documentation in support of project tasks and as tasked for approved project requirements, which support successful completion of Collateral and/or SCI-level security testing and evaluation (ST&E) appropriate for the product, including but not limited to Authority of Operated (ATO), Authority to Test (ATT), Memorandum of Understanding (MOU), and Interconnection Security Agreements (ISA)
Develop/Update training material includes refreshing training, role specific training, task specific training
Qualification
Required
Active TS/SCI or Q Clearance
Bachelor's Degree in a Technical Field
CISSP, CISA or CISM, and be familiar/proficient in all security domains
15 years experience in Information Assurance
5 years technical experience providing network and/or system administration, information assurance security testing or evaluation duties
Preferred
5 Years of C&A (certification & accreditation) experience with, DCID 6/3, ICD-503, and/or NIST Framework
Knowledge of the IC, national level system security initiatives, and secure Information/Local Area Network (LAN)/Wide Area Network (WAN) technologies
Experience reporting IT Security events/incidents in the time prescribed based on policies and procedures
Knowledge of cloud architecture
Preferred technical experience providing network and/or system administration, and/ or computer operations
Knowledge of virtualization
Effective interpersonal and presentation skills with the ability to communicate in written and oral form; publication or presentation experiences are preferred
Benefits
401K plan with company match
Medical
Dental
Vision
Life insurance
AD&D
Flexible spending account
Disability
Paid time off
Flexible work schedule
Professional training and development
Company
KBR Careers
At KBR, we deliver science, technology and engineering solutions that are helping governments and companies around the world take on the great challenges of our time.