Jobs · Information Technology · Massachusetts

Information System Security Manager (ISSM)

MORSE Corp · Cambridge, MA · 2 days ago
On-siteInformation Technology$90k/yrFull-time

About the Company

MORSE Corp is an employee-owned, small business based in Cambridge, MA, Arlington, VA, and Seattle, WA with a history of fielding cutting-edge technology. MORSE boasts a specially selected team of scientists, engineers, and software developers to deliver best-in-class technical solutions that solve difficult multidisciplinary problems faced by the US National Security Ecosystem.

About the Role

The Information System Security Manager (ISSM) is responsible for ensuring that security considerations are taken into account in both classified and unclassified IT environments. The ISSM serves as an advisor for all matters related to the security of the information systems. The Cybersecurity Analyst uses various information security frameworks and agency-specific implementation guidance to obtain and maintain compliance for information systems.

Responsibilities

  • Ensure that systems are operated, maintained, and disposed of in accordance with internal security policies and practices outlined in the security plan.
  • Participate in the systems development life cycle to ensure that the systems are designed with proper security features and safeguards.
  • Maintain security architecture (SIEM, Vulnerability Scanning, DS/IPS).
  • Collaborate with ISSMs, System Administrators, and Network Administrators to ensure information systems remain compliant.
  • Draft policies and procedures related to the security of the information system and ensure compliance with government requirements.
  • Test required controls, record assessments, and maintain the POA&M.
  • Perform continuous monitoring of security controls as required by NIST 800-37 and the Cybersecurity Maturity Model Certification (CMMC).
  • Analyze vulnerability scans for Linux, Windows, and AWS machines.
  • Research CVEs to understand remediation actions and present findings to System Administrators.

Requirements

  • 1 year of relevant cybersecurity experience.
  • A strong understanding of NIST 800-37, NIST 800-171, or similar regulatory frameworks.
  • Prior experience implementing and assessing compliance with ACAS (Tenable) and HBSS (Trellix ePO) requirements.
  • Security+ CE, or other certification which meets the IAM Level I standard from DoD 8570.01-M is preferred.
  • Current Secret security clearance with the ability to obtain a Top Secret clearance and additional accesses as necessary. Current Top Secret preferred.

Benefits

  • Bonus, stock, 401(k) match.
  • Paid time off, medical, dental, vision, and life insurance.
  • 10 paid holidays per year.
  • Open leave policy that does not restrict exempt, regular full-time employees to a specific number of paid sick or vacation days.

Pay

Compensation: $90,000 USD - $150,000 USD

Similar jobs