Information Systems Manager Job at Charles River Analytics
Charles River Analytics creates solutions and technology to tackle the world's most challenging problems. Our team of technological entrepreneurs works together to push at the forefront of enhanced AI, robotics, smart sensing, and human-centered computing. The resulting research and development help to continuously advance government programs and discover new possibilities in the commercial marketplace. We are a 100% employee-owned company, encouraging participation, innovation, and responsibility from our entire staff. At Charles River, we take great pride in our success in attracting and retaining the most talented and creative problem-solvers in our field.
CRA is in search of an IT and Department of Defense enthusiast to help lead the next chapter of our classified information technology and security program. This position will perform the tasks of an Information Systems Security Manager (ISSM) for multiple cutting-edge Department of Defense (DoD) R&D programs. Are you living in the DoD world with deep knowledge & skills in classified IT and security principles? Do you have a good method to stay organized despite multiple priorities, and enjoy the opportunity to collaborate and meet the demands of several key customers? Are you interested in being an Employee Owner at one of Boston's Best Places to Work? If this sounds like you, then we'd love to hear from you!
How you will help us grow:
- Perform oversight of the development, implementation, and evaluation of information systems security program for assigned programs in compliance with the National Industrial Security Program Operating Manual (NISPOM) and the NIST Risk Management Framework (RMF).
- Design, develop, and recommend integrated security solutions for multiple classified information systems (IS) running on a variety of operating systems.
- Prepare and maintain security Assessment and Authorization documentation, including participation in system categorization. Examples include Information Assurance System Security Operating Procedures (IA SOP), System Security Plans (SSP), NIST 800-30 Risk Assessment Report (RAR), NIST 800-53/800-171 Security Control Tractability Matrix (SCTM).
- Develop, document, and present at IS-related security education, awareness programs, and training activities for users and others, as appropriate.
- Apply cybersecurity standards, directives, guidance, and policies to special programs classified computing environments, as well as sensitive but unclassified computing environments.
- Ensure system security measures comply with applicable government policies. Develop a configuration baseline, perform configuration management against that baseline, and accurately assess each system's impact of modifications and vulnerabilities.
- Conduct reviews and technical inspections to identify and mitigate potential security weaknesses and ensure that all security features applied to a system are implemented and functional.
- Provide support to other cybersecurity personnel for maintaining appropriate operation information assurance (IA) posture for programs.
- Investigate security incidents including data spills, data integrity incidents, and malicious code incidents.
What we are looking for:
- 4+ Years of experience as an ISSO or ISSM
- U.S. Citizenship
- Active Secret/Top Secret clearance
- Bachelor's degree or equivalent work experience
- Complete understanding of the NIST Risk Management Framework (RMF), including the NIST SP 800-53, NIST SP 800-60, NIST SP 800-34, NIST SP 800-30, and FIPS 199
- Ability to implement Certification and Accreditation (C&A) under Risk Management Framework (RMF)
- Extensive knowledge of NISPOM with an emphasis on NISPOM Chapter 8
- Comprehensive understanding of NIST SP 800-171
- Experience as an ISSO or ISSM implementing NISPOM Chapter 8, DIACAP/NIST RMF
- Experience administering the system functions, including security policies and account management, of Microsoft Windows and Server as well as Linux/Unix-based systems.
- DFARS and FISMA experience
- Great communicator with the ability to work in a team environment as well as independently, demonstrate excellent problem-solving skills, be well organized, flexible, and self-motivated
- Familiarity with conducting vulnerability scans
- Experience performing security analysis to include security categorizations and risk assessments
Why Charles River?
Charles River Analytics is a 100% employee-owned company that thrives on collaboration and values each employee-owner. We offer competitive compensation plus bonuses, profit-sharing, and an attractive benefits package. Our benefits include 100% employer-paid medical and dental insurance as well as vision, life, and disability insurance; paid maternity/paternity leave; tuition reimbursement; monthly gym allowance; free parking; generous paid time off; and a casual environment. We are also accessible by public transportation. We offer a hybrid onsite/remote (60/40) schedule with tremendous flexibility. At Charles River, we truly value work-life balance.
Please Note :
bankofmontserrat.ms is the go-to platform for job seekers looking for the best job postings from around the web. With a focus on quality, the platform guarantees that all job postings are from reliable sources and are up-to-date. It also offers a variety of tools to help users find the perfect job for them, such as searching by location and filtering by industry. Furthermore, bankofmontserrat.ms provides helpful resources like resume tips and career advice to give job seekers an edge in their search. With its commitment to quality and user-friendliness, Site.com is the ideal place to find your next job.