Manager, Information Security * Job in Columbia 21046, Maryland US
This is a senior technical leadership position with supervisory responsibilities for cyber security staff and technical oversight of information security operations for multiple networks. The information systems include Windows, Linux, Solaris, and Mac servers and workstations. The systems include corporate and customer. Must be able to independently follow vision/mission guidance and provide clear and concise solutions to accomplish vision/mission. Must be able to actively coordinate with wide variety of people and organizations to ensure satisfaction of requirements and optimal solutions. The primary tasks include:
- Establish processes and procedures to implement corporate information security policy
- Direct the activities of the Cyber Security Operations Center, including security monitoring, incident response, forensics, and vulnerability assessment
- Maintain situational awareness of the network security posture and provide regular reports to senior management
- Review and approve configuration of security controls
- Review network, server, and workstation configuration changes for security impact
- Recommend security policy changes and enhancements
- Support configuration and change management processes
- Identify opportunities for process improvement; develop and execute project plans to enhance operational effectiveness, including deployment of new controls or configuration changes
- Coordinate information security activities with the IT Operations manager
- Work with external organizations for situation awareness and incident response
- Support business development activities by providing technical expertise on information security related efforts and refined development of the CSOC and related technologies and organizations.
- Evaluate proof-of-concept information security technology for applicability to the enterprise
- Support red/blue team exercises
- Oversight of contractor-operated classified information systems
- Provide direct supervision and management of technical staff
- Ensure that staff are adequately trained
EXPERIENCE REQUIREMENTS:
- 10 or more years in the information security field
- 3 or more years in a management position
- Expertise in security engineering for NIST 800-53, DoD 8500.2, or ISO 27000 standards
- Broad knowledge of all facets of information security operations, including: vulnerability assessment, risk management, host and network intrusion detection, anti-virus technologies, firewalls, SIEM, host forensics, and malware analysis
- Solid understanding of network, workstation, and server security configuration
- Expertise in best commercial practices for information security
- Knowledge and understanding of the Cyber Security market place
- Experience with commercial product development or RD is a plus
- Experience with SCADA Cyber Security a plus.
- BS in Computer Science (MS preferred)
- Top Secret clearance