A logo

Senior Manager Information Security

ASRC Federal Holding CompanyAberdeen Proving Ground, MD

Automate your job search with Sonara.

Submit 10x as many applications with less effort than one manual application.1

Reclaim your time by letting our AI handle the grunt work of job searching.

We continuously scan millions of openings to find your top matches.

pay-wall

Overview

Schedule
Full-time
Career level
Director
Remote
On-site

Job Description

ASRC Federal Technology Solutions LLC is looking for an experienced Information System Security Officer with a minimum of an active Secret security clearance to support their work with DEVCOM-CBC and the Transformation Decision Analysis Center (TDAC) organization, and who will serve as the Team's direct manager. This position supports the development, implementation, and maintenance of cybersecurity policies, standards, and procedures, ensuring compliance with applicable Department of Defense (DoD), Army, and DEVCOM CBC regulations.In this role, you will provide cybersecurity support to the DEVCOM-CBC G-6 Cybersecurity Branch, focusing on all aspects of Risk Management Framework (RMF) activities, cybersecurity assessments, and incident response. This role requires a deep understanding of cybersecurity principles, a strong analytical ability, and excellent communication skills to effectively convey complex information to both technical and non-technical audiences, while maintaining a broad portfolio of compliance and accounts management responsibilities across unclassified, classified, and standalone systems.KEY RESPONSIBILITIES

Maintain current Authority to Operate (ATO) status for DEVCOM systems and provide RMF guidance and support to other DEVCOM/TDAC locations with similar systems.Develop, update, and/or modify the system-level artifacts (e.g., TTPs, plans, policies, procedures, hardware/software lists, data flow, system architecture diagrams, PIAs, Ports/Protocols/Services, MOA/MOU, etc...) and ensure they are associated with corresponding controls in eMASS.Obtain, run, analyze, and import all applicable vulnerability scanners and compliance checkers as required, including STIGs, Nessus/ACAS Scans, etc...Track and report IAVAs related to DEVCOM systems.Create, modify, and/or maintain all aspects of the implementation plan and test results, as defined by DOD, Army, NETCOM, and DEVCOM requirements.Manage Plans of Action and Milestones (POA&M), including development, status updates, milestone tracking, and closure.Manage assigned network packages within eMASS and maintain accurate, current authorization documentation.Create, modify, and/or maintain all aspects of CONMON.Utilize existing or develop custom solutions to facilitate RMF requirements, reduce timelines and provide up-to-date status reporting of complianceUpdate and track cybersecurity test results, implementation plans, and risk assessments.Evaluate STIG checklists and document compliance status, deficiencies, and required remediation actions.Perform first-response coordination for Negligent Disclosure of Classified Information incidents in accordance with organization SOPs for incident responseConduct vulnerability management activities, including identifying, tracking, and coordinating corrective actions.Oversee and manage small team with administrative and personnel dutiesServe as liaison between government and contractor organizations

REQUIRED QUALIFICATIONS

Active DoD Secret clearance or higher. Candidates without a minimum of a Secret clearance will not be considered.Bachelor's degree (BA/BS) in Computer Science, Information Technology, Engineering, or a related field and 8 additional years of experienceOR Master's degree in Computer Science, Information Technology, Engineering, or a related field or 6 additional years of experienceOR a total of 12 years of work experience in the field in lieu of degree5 or more years of hands-on RMF EMASS Authorization dutiesWorking knowledge of DoD and Army cybersecurity regulations including Army Regulation 25-2, DoD 8140, and DoD RMF policyExperience with Active Directory account management and STIG/SRG audit processesFamiliarity with the Army Account Validation System (AVS) or equivalent DoD workforce compliance tracking platforms

PREFERRED QUALIFICATIONS

Direct experience with eMASS, POA&M and RMF processes and responsibilitiesCISSP or CISM certificationExperience supporting DEVCOM or Army G-6 cybersecurity programsPersonnel management experienceExperience serving as an Enhanced Trusted Agent for PKI hardware token issuanceExperience performing Software Assurance or Hardware Assurance reviews for DoD networksFamiliarity with NSA and Army data sanitization and destruction policy

CLEARANCE LEVEL

This position requires an active Secret clearance.

EDUCATION REQUIREMENTS

Bachelor's degree in Information Technology, Computer Science, or a related field or 10 years of experience in lieu of the degreeMaster's degree in Information Technology, Computer Science, or a related field

CERTIFICATION

DoDI 8140.03 qualification for DCWF Work Role Information Systems Security Manager (722 Advance). Accepted foundational qualifications include certifications mapped to Work Role 722 Advance in the current DoD 8140 Qualification Matrix, such as CISM, CISSP, CISSP-ISSMP, FITSP-M, GCIA, GCIH, GICSP, and GSLC.

Preferred

CISMCISSPCISSP-ISSMP

WORK ENVIRONMENT AND PHYSICAL DEMANDS:

This position primarily operates in a professional office environment at Aberdeen Proving Ground, MD, working within or alongside the DEVCOM-CBC G-6 Cybersecurity Branch. The role involves extended use of computer equipment and may require the candidate to move between buildings on the installation to support users and coordinate with government staff. Some work may involve access to classified facilities and systems. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions of this position.

Automate your job search with Sonara.

Submit 10x as many applications with less effort than one manual application.

pay-wall

FAQs About Senior Manager Information Security Jobs at ASRC Federal Holding Company

What is the work location for this position at ASRC Federal Holding Company?
This job at ASRC Federal Holding Company is located in Aberdeen Proving Ground, MD, according to the details provided by the employer. Some roles may also include multiple work locations depending on the requirement.
What pay range can candidates expect for this role at ASRC Federal Holding Company?
Employer has not shared pay details for this role.
What employment applies to this position at ASRC Federal Holding Company?
ASRC Federal Holding Company lists this role as a Full-time position.
What experience level is required for this role at ASRC Federal Holding Company?
ASRC Federal Holding Company is looking for a candidate with "Director" experience level.
What is the process to apply for this position at ASRC Federal Holding Company?
You can apply for this role at ASRC Federal Holding Company either through Sonara's automated application system, which helps you submit applications 10X faster with minimal effort, or by applying manually using the direct link on the job page.