Information Systems Security Manager
Information Systems Security Manager

Information Systems Security Manager

Ramstein-Miesenbach Vollzeit 54000 - 84000 € / Jahr (geschätzt) Kein Home Office möglich
SOSi

Auf einen Blick

  • Aufgaben: Lead security measures to protect IT networks and systems while collaborating with various stakeholders.
  • Arbeitgeber: Join SOS International LLC, a leader in providing innovative solutions for security challenges.
  • Mitarbeitervorteile: Enjoy a dynamic work environment with opportunities for professional growth and development.
  • Warum dieser Job: Be at the forefront of cybersecurity, making a real impact on national security and technology.
  • GewĂĽnschte Qualifikationen: Must have a secret clearance and relevant cybersecurity experience; certifications preferred.
  • Andere Informationen: Fast-paced office environment with potential for non-traditional hours.

Das voraussichtliche Gehalt liegt zwischen 54000 - 84000 € pro Jahr.

SOSi is currently seeking an experienced Information Systems Security Manager for our team in Ramstein AB, Germany. The candidate will be responsible for planning, implementation, and maintenance of security measures to protect information technology networks and systems. Works with customers, partners, stakeholders, and team members to develop and implement DoD security procedures.

Essential Job Duties

  • Work directly with Security Control Assessor (SCA) / Cyber Risk Assessor (CRA) team to evaluate risk associated with ongoing operational needs.
  • Participate in the planning, design, and implementation of enterprise security architecture.
  • Serve as a Subject Matter Expert with respect to National-level Security Policies to include ICD 503, NIST SP-800 Series, and CNSS Instruction 1253.
  • Communicate and interact with all system stakeholders to include Senior Management and the Authorizing Official.
  • Ensure ISSOs and stakeholders follow all information security policies, standards, and methodologies to obtain and/or maintain security authorizations.
  • Provide support to the Government on all matters (technical and otherwise) involving the cyber security.
  • Assist in the development and execution of an enterprise level continuous monitoring program to minimize security risks and ensure compliance with that program on a routine basis.
  • Guide the development and updating of the system security plan, as well as managing and controlling changes to the system and assessing the security impact of those changes.
  • Provide support to plan, coordinate, and implement IT security programs and policies.
  • Provide configuration management guidance for security-relevant information system software, hardware, and firmware.
  • Ensure that protection and detection capabilities are acquired or developed using the information system (IS) security engineering approach and are consistent with organization-level cybersecurity architecture.
  • Establish overall enterprise information security architecture (EISA) with the organization’s overall security strategy.
  • Interpret and/or approve security requirements relative to the capabilities of new information technologies.
  • Manage threat or target analysis of cyber defense information and production of threat information within the enterprise.
  • Monitor and evaluate the effectiveness of the enterprise’s cybersecurity safeguards to ensure they provide the intended level of protection.
  • Promote awareness of security issues among management and ensure sound security principles are reflected in the organization’s vision and goals.
  • Oversee policy standards and implementation strategies to ensure procedures and guidelines comply with cybersecurity policies.
  • Ensure plans of actions and milestones or remediation plans are in place for vulnerabilities identified during risk assessments, audits, inspections, etc.
  • Assure successful implementation and functionality of security requirements and appropriate information technology (IT) policies and procedures that are consistent with the organization’s mission and goals.
  • Define, implement and maintain corporate security policies and procedures.
  • Spearhead vulnerability audits, investigations and mitigation procedures associated with threat analysis.
  • Institute organization-wide training in security awareness, protocols and procedures.

Minimum Requirements

  • A current active secret clearance.
  • High School Diploma with eleven (11) years Cybersecurity experience OR, Associate\’s degree with seven (7) years of experience, OR a Bachelor\’s degree with (5) years of experience.
  • DOD Approved 8570 certification – IAM Level III.
  • Must be able to obtain certification as a Technical Expert by the German Government under the Technical Expert Status Accreditation (TESA) process.
  • Thorough knowledge of the Risk Management Framework (RMF), security principles, concepts, policies, and regulations.
  • With limited supervision/assistance create security artifacts develop security policies / work to be accomplished individually or with 1 other security professional.
  • Assist in drafting \“Authorization to Operate\“ (ATO) packages for new and existing systems and updating or establishing artifacts to support security controls.
  • Experience utilizing the Enterprise Mission Assurance Support System (EMASS).
  • Communicating clearly, precisely to solve problem and innovate.

Preferred Qualifications

  • Recent ISSO or ISSM experience.
  • IAT Level III IAM Level III Certified (e.g., CISSP, CASP Certification).
  • Strong familiarity with Coalition and Multi-National information sharing systems, policies and environments.
  • Knowledge of the principles, methods, and techniques used in network security.
  • Knowledge of scanning, endpoint security, and firewall technologies.
  • Comprehensive knowledge of desktop operating systems and applications.
  • Knowledge of DoDI 8510 01, CNSSI 1253, NIST 800-53 rev4.
  • Experience implementing and maintaining security controls.
  • Understanding of National Institute of Standards and Technology (NIST) 800 53 security controls and control families.
  • Technically competent, solid decision making and critical thinking, strong customer focus, self-motivated, desire to learn, effective and professional interpersonal skills, pride in work, strong team player.
  • Familiarity (administrative and configuration level experience) with HBSS systems, McAfee ePO, server, ACAS and policy Administrator tasks and skills.
  • Configure, conduct, and interpret network vulnerability scans.

Work Environment

  • Working conditions are normal for an office environment.
  • Fast paced, deadline-oriented environment.
  • May require periods of non-traditional working hours including consecutive nights or weekends (if applicable).

All interested individuals will receive consideration and will not be discriminated against for any reason.

#J-18808-Ljbffr

Information Systems Security Manager Arbeitgeber: SOSi

At SOS International LLC (SOSi), we pride ourselves on being an exceptional employer, offering a dynamic work environment in Ramstein AB, Germany, where innovation and collaboration thrive. Our commitment to employee growth is evident through continuous training opportunities and a culture that values security expertise, ensuring our team members are equipped to tackle the evolving challenges in cybersecurity. Join us to be part of a mission-driven organization that not only prioritizes your professional development but also fosters a supportive community dedicated to excellence in information systems security.
SOSi

Kontaktperson:

SOSi HR Team

StudySmarter Bewerbungstipps 🤫

So bekommst du den Job: Information Systems Security Manager

✨Tip Number 1

Make sure to familiarize yourself with the specific security frameworks mentioned in the job description, such as ICD 503 and NIST SP-800 Series. Being able to discuss these frameworks in detail during your interview will demonstrate your expertise and readiness for the role.

✨Tip Number 2

Network with professionals in the cybersecurity field, especially those who have experience with DoD security procedures. Engaging with them can provide you with insights and potentially valuable referrals that could help you land the job.

✨Tip Number 3

Prepare to discuss your experience with risk management and vulnerability assessments. Be ready to share specific examples of how you've successfully implemented security measures or managed security risks in previous roles.

✨Tip Number 4

Highlight any experience you have with enterprise security architecture and continuous monitoring programs. This is a key aspect of the role, and demonstrating your knowledge in this area will set you apart from other candidates.

Diese Fähigkeiten machen dich zur top Bewerber*in für die Stelle: Information Systems Security Manager

Information Security Management
Risk Management Framework (RMF)
Cybersecurity Policies and Procedures
Security Control Assessment
Threat Analysis
Enterprise Security Architecture
DoD Security Procedures
NIST SP-800 Series
ICD 503 Compliance
Continuous Monitoring Program Development
Configuration Management for Security Systems
Vulnerability Audits and Mitigation
Technical Expert Status Accreditation (TESA)
Communication Skills
Team Collaboration
Customer Focus
Decision Making and Critical Thinking
Network Security Principles
Endpoint Security Technologies
Firewall Technologies
Desktop Operating Systems Knowledge
EMASS Utilization
Security Awareness Training

Tipps für deine Bewerbung 🫡

Understand the Job Requirements: Carefully read through the job description provided by SOS International LLC. Make sure you understand the essential duties and minimum requirements, especially regarding cybersecurity experience and certifications.

Tailor Your CV: Customize your CV to highlight relevant experience in cybersecurity, particularly focusing on your knowledge of security policies, risk management frameworks, and any specific technologies mentioned in the job description.

Craft a Strong Cover Letter: Write a cover letter that clearly articulates your passion for cybersecurity and how your background aligns with the responsibilities of the Information Systems Security Manager role. Mention specific experiences that demonstrate your expertise in managing security measures.

Highlight Certifications: Ensure that your application prominently features any relevant certifications, such as IAM Level III or CISSP. This will help demonstrate your qualifications and commitment to the field of cybersecurity.

Wie du dich auf ein Vorstellungsgespräch bei SOSi vorbereitest

✨Show Your Expertise in Cybersecurity

Be prepared to discuss your experience with cybersecurity frameworks like RMF and NIST. Highlight specific projects where you implemented security measures or developed policies, as this will demonstrate your hands-on knowledge.

✨Understand the Role of a Subject Matter Expert

Since the position requires serving as a Subject Matter Expert, familiarize yourself with National-level Security Policies such as ICD 503 and CNSS Instruction 1253. Be ready to explain how these policies influence your approach to security management.

✨Communicate Clearly with Stakeholders

Effective communication is key in this role. Practice articulating complex security concepts in simple terms, as you will need to interact with various stakeholders, including senior management and technical teams.

✨Demonstrate Your Problem-Solving Skills

Prepare examples of how you've tackled security challenges in the past. Discuss your decision-making process and how you prioritize tasks when managing vulnerabilities or implementing security controls.

Information Systems Security Manager
SOSi
SOSi
  • Information Systems Security Manager

    Ramstein-Miesenbach
    Vollzeit
    54000 - 84000 € / Jahr (geschätzt)

    Bewerbungsfrist: 2027-04-15

  • SOSi

    SOSi

    50 - 100
Ähnliche Positionen bei anderen Arbeitgebern
Europas größte Jobbörse für Gen-Z
discover-jobs-cta
Jetzt entdecken
>