Cybersecurity – Information System Security Manager (issm)

Boeing Boeing · Aerospace · Seal Beach, CA

Cybersecurity Manager (ISSM) responsible for ensuring Information System Security policies and standards are enforced to support assessment, authorization, and continued operation of information systems processing classified information within Boeing's classified computing domains. Requires RMF experience and specific cybersecurity certifications.

What you'd actually do

  1. Performs security analysis of operational and development environments, threats, vulnerabilities and internal interfaces to define and assess compliance with accepted industry and government standards
  2. Leads and implements the Assessment and Authorization (A&A) processes under the Risk Management Framework (RMF) for new and existing information systems
  3. Facilitates development of Memorandums of Understanding (MOU), Interconnection Security Agreements (ISA), Risk Acknowledgement Letters (RAL) and support Continuous Monitoring (CONMON)
  4. Oversees configuration management of assigned systems; auditing systems to ensure security posture integrity
  5. Leads staff with assessments and test/analysis data to document state of compliance with security requirements

Skills

Required

  • Cybersecurity policies
  • Information Assurance (IA)
  • Risk Management Framework (RMF)
  • Assessment and Authorization (A&A)
  • Continuous Monitoring (CONMON)
  • Configuration Management
  • Incident Response
  • CISSP, GSLC, or CISM certification (IAM Level III)
  • Tier 5 Investigation (T5) / SSBI / Continuous Vetting
  • NIST SP 800 series
  • DAAPM
  • CNSSI 1253
  • ICD-503
  • JSIG

Nice to have

  • Information System Security Officer (ISSO)
  • NESSUS
  • ACAS
  • DISA STIGs
  • SCAP
  • Audit Reduction
  • HBSS

What the JD emphasized

  • Successfully completed Tier 5 Investigation (T5), formerly known as a Single Scope Background Investigation (SSBI) by the federal government within the last 5 years, or requires candidate to have been enrolled in a Continuous Vetting program within the last 5 years
  • Currently hold certification in good standing to satisfy IAM Level III (CISSP, GSLC, or CISM)
  • 5+ years of experience with cyber security policies and implementation of Risk Management Framework (RMF): e.g. DAAPM, CNSSI 1253, ICD-503, JSIG, or NIST SP 800 series
  • Requires an active U.S. Top Secret/SCI Security Clearance (U.S. Citizenship Required)