Job Description
MTSI Defense Services Division is seeking an experienced Information System Security Manager (ISSM) to lead cybersecurity efforts for a Navy-centric environment focused on ensuring the security and compliance of information systems. As the ISSM, you will play a key leadership role in managing and overseeing the security posture of information systems, ensuring their compliance with DoD standards and the Risk Management Framework (RMF).
You will work across multidisciplinary teams to maintain the confidentiality, integrity, and availability of the program's critical systems and data. You will be supporting onsite operations independently with the potential to grow a small team for scaling cybersecurity capabilities.
You’ll be a great fit for this role if:
- You have 8+ years of combined experience working in defensive/offensive cybersecurity, information assurance, penetration testing, or related fields.
- You have knowledge of the Department of Navy and Naval Air Systems Command (NAVAIR), including digital infrastructure/environments, DevSecOps, Continuous Integration/Continuous Development (CI/CD), and continuous Authority to Operate (cATO).
- You have proven experience in designing, implementing, and maintaining multi-level security architectures across cloud, infrastructure, and platform applications.
- You have strong technical expertise in identifying and developing cyberspace operations requirements, processes, and security controls.
- You have experience designing and operating enterprise security controls and conducting incident response.
- You have analytical skills to assess capability development requirements, system architectures, and emerging cybersecurity technologies.
- You have excellent written and verbal communication skills, including the ability to articulate complex issues to both technical and non-technical stakeholders.
- You have the ability to work independently and in a fast-paced team environment with changing priorities.
- You have the ability and motivation to learn new skills in an evolving information security landscape.
- You are willing to travel up to 20% as required.
Qualifications Required:
- Bachelor’s degree in Information Technology, Cybersecurity, Computer Science, Information Systems, Data Science, Software Engineering, or a related technical discipline. Certificates in cybersecurity, specific systems, or tools may be accepted in lieu of a degree on a case-by-case basis.
- Active Secret clearance required, with the ability to obtain Top Secret/SCI eligibility.
- Working knowledge of Windows and Linux operating systems.
Certification Requirements:
IAM Level 2: CompTIA Security+, Certified Ethical Hacker (CEH), Certified Information Systems Security Professional (CISSP), GIAC Certified Incident Handler (GCIH), CompTIA Network+, CompTIA Cybersecurity Analyst (CySA+), Certified Authorization Professional (CAP).
Even better if you have these desired skills:
- Proficiency in using security tools such as Splunk, ArcSight, Microsoft Sentinel, FortiSIEM, SwimLane, QRadar, and LogPoint for monitoring, assessing, and reporting system security vulnerabilities.
- Hands-on experience with security monitoring, log analysis, threat intelligence, and digital forensics to identify and respond to system anomalies.
- Experience with defending against known attack vectors.