A Cyber Security Manager or Administrator monitors, controls, and maintains systems that protect the security of large databases, including databases with customer information and patient files. Manages and administers the examination of client computer systems, identification of weak points in security, development and implementation of new systems, and monitoring and response to security issues.
Information System Security Manager (ISSM) MORSE Corp - 4.7 Cambridge, MA Job Details $90,000 - $150,000 a year 10 hours ago Qualifications Regulatory compliance evaluation Vulnerability scanning implementation NIST standards DoD 8570 Regulatory Frameworks (Architecture security) Information security auditing Security technology solutions implementations Vuls Full Job Description MORSE Corp is an employee owned, small business based in Cambridge, MA, Arlington, VA, and Seattle, WA with a history of fielding cutting-edge technology. MORSE boasts a specially selected team of scientists, engineers, and software developers to deliver best-in-class technical solutions that solve difficult multidisciplinary problems faced by the US National Security Ecosystem. The Information System Security Manager (ISSM) is responsible for ensuring that security considerations are taken into account in both classified and unclassified IT environments. The ISSM serves as an advisor for all matters related to the security of the information systems. The Cybersecurity Analyst uses various information security frameworks and agency-specific implementation guidance to obtain and maintain compliance for information systems Responsibilities Ensure that systems are operated, maintained, and disposed of in accordance with internal security policies and practices outlined in the security plan. Participate in the systems development life cycle to ensure that the systems are designed with proper security features and safeguards. Maintain security architecture (SIEM, Vulnerability Scanning, DS/IPS). Collaborate with ISSMs, System Administrators, and Network Administrators to ensure information systems remain compliant. Draft policies and procedures related to the security of the information system and ensure compliance with government requirements. Test required controls, record assessments, and maintain the POA&M. Perform continuous monitoring of security controls as required by NIST 800-37 and the Cybersecurity Maturity Model Certification (CMMC). Analyze vulnerability scans for Linux, Windows, and AWS machines. Research CVEs to understand remediation actions and present findings to System Administrators. Skills and Requirements 1 years of relevant cybersecurity experience. A strong understand of
NIST 800-37, NIST
800-171, or similar regulatory frameworks. Prior experience implementing and assessing compliance with ACAS (Tenable) and HBSS (Trellix ePO) requirements. Security+ CE, or other certification which meets the IAM Level I standard from DoD 8570.01-M is preferred. Current Secret security clearance with the ability to obtain a Top Secret clearance and additional accesses as necessary. Current Top Secret preferred. The team at MORSE takes pride in being the smart team that is easy to work with. We focus on steady, long-term success with an emphasis on exceptionalism and delivering mission-critical impact to our customers. For more information, please visit www.morsecorp.com.