Cyber Security, Information Systems Security Manager (ISSM) - Onsite
BAE Systems, Inc. · Merrimack, NH · Yesterday
On-siteInformation Technology$118k–$201k/yrFull-time
About the role
This is a full-time, onsite role performed 100% at a BAE Systems facility. You will collaborate in-person with teams across multiple disciplines and facilities to develop, secure, and maintain advanced C4ISR systems that sense, control, exploit, and disseminate actionable information to warfighters. You will grow your cybersecurity expertise through hands-on application, mentorship from seasoned professionals, and a structured training and development plan in a fast-paced, team-based environment.
Responsibilities
- Adhere to all aspects of a rigorous Risk Management Framework (RMF) compliance program as stipulated by NISPOM/DAAG, JSIG, ICD 503, STIGs, and associated NIST publications.
- Advance standardization, automation, and resilience capabilities across the organization while aligning with business priorities and risk tolerance.
- Multitask and oversee programs spanning multiple disciplines, facilities, and government authorities.
- Manage multiple cybersecurity teams and collaborate with Business Area leads, other product line cybersecurity teams, security disciplines (industrial security/physical security, special programs security, etc.), IT product line leads, program personnel, and government security representatives.
- Work with leadership at various levels and participate in the evaluation and recommendation of new security tools, techniques, and technologies to ensure alignment with SecureIT strategy and modernization initiatives.
- Prepare for and support government inspections/assessments.
- Provide leadership, guidance, and training to a team of cybersecurity professionals.
- Serve as a cybersecurity Subject Matter Expert (SME) supporting a specific Business Product Line.
Requirements
- Active U.S. Secret clearance and ability to obtain Top Secret clearance.
- IAM Level III certification commensurate with DoD 8570.1M / 8140.03 requirements or ability to obtain within 6 months of hire.
- High level of personal motivation and initiative to learn, acquire new skills, and adapt to an ever-changing security environment.
- Customer-focused mindset with excellent communication skills and ability to work with limited supervision.
- Strong organizational skills.
- Strong background in information technology with a clear understanding of cybersecurity challenges.
- Experience building and mentoring high-performing cybersecurity teams.
- Experience developing, implementing, updating, and enforcing companywide information assurance policies and procedures.
- Ability to run and maintain the entire information assurance program for complex efforts or areas.
- Implementation of Contingency and Incident Response Plans with experience addressing cyber-related investigations/incidents.
- Ability to serve as the primary Cybersecurity Business Area focal point for a large number of complex efforts and/or areas.
Preferred Qualifications
- Working knowledge of system functions, security policies, technical security safeguards, and operational security measures.
- In-depth knowledge/expertise with the majority of the following tools: Splunk, Nessus, SCAP, ACAS, E-Stig, other Security Information and Event Management (SIEM) tools; antivirus such as Trellix; SIPR, eMASS, and Xacta databases.
- Ability to translate operational requirements into technical requirements and architectures needed to meet program objectives.
- Experience auditing (preferably Splunk) and certifying/hardening compliance of various systems: Windows, Linux, network devices, and peripherals.
- Experience reviewing, creating, and remediating mitigation reports from compliance and vulnerability scanning tools.
- Experience overseeing accuracy and completion of Continuous Monitoring activities, self-inspections, corrective action plans, and Plan of Action and Milestones (POA&M).
- Experience with Contingency and Incident Response Plan development and implementation.
- Experience conducting all aspects of a self-inspection, Staff Assist Visits, etc.
Pay
Full-Time Salary Range: $118,095 – $200,762. Individual salaries are determined by business considerations, local market conditions, internal equity, and candidate qualifications such as skills, education, and experience.
Benefits
- Health, dental, and vision insurance.
- Health Savings Accounts.
- 401(k) savings plan with company match.
- Disability coverage and life and accident insurance.
- Employee Assistance Program and legal plan.
- Discounts on home, auto, and pet insurance.
- Paid time off, paid holidays, and other leave programs including paid parental, military, and bereavement leave, plus applicable federal and state sick leave.
- Company recognition program with monetary and non-monetary awards.
- Other incentives may be available based on position level and/or job specifics.