Skip to main content

This job has expired

Senior Manager - Information Assurance, Privacy & Security Policy

Employer
Perspecta
Location
Washington, DC
Closing date
Dec 3, 2020
Business Group Highlights Civilian, State and LocalPerspecta's Civilian, State and Local segment partners with the US Federal Civilian State and Local governments to provide infrastructure services, business solutions, and digital transformation services that help them achieve policy objectives and integrate citizen-centric services. ResponsibilitiesThe Senior Manager - Information Assurance, Privacy & Security Policy oversees the NGDC Account Security Program that ensures that all data encoded and saved as computer files is guarded against unauthorized use. Ensures that security policies, procedures and directives are adhered. Manages experienced professionals in the fields of Information Assurance, Computer Security, Information Privacy and Digital Forensics in the development, preparation, implementation and maintenance of Information Assurance and Computer Security Plans, as well as, Standard Operating Procedures (SOPs), Certifications and Accreditation activities. Maintains the oversight and compliance of existing information systems through technical reviews and system auditing. Interfaces with program management and clients on security requirements implementation, required documentation, and classification management. Provides Information Systems Security Guidance Awareness and Training and participates in customer Security Inspections and reviews. Manages, develops, prepares, implements, and maintains Security Plans Standard Operating Procedures (SOPs), Security Test and Evaluation Plans. Collaborates with Internal Security and IT staff to ensure the continued compliance and secure operation of accredited information systems. Keeps abreast of industry best practices and trends, as well as new technologies, and then plans and advises for implementation.Security Manager Responsibilities:Manages the NGDC (Next Generation Virtual Data Center) Account Security Program and oversees other account Security Team personnel in Information Assurance and Security activities for the client. Performs assessment of information system threats such as network and system intrusion attempts, privilege escalation, and malware attacks. Manages vulnerability assessment equipment in support of vulnerability and compliance initiatives. Provides support for Identity and Access Management/Logical Access Control initiatives by fulfilling requests for access, troubleshooting issues with privileged access, and providing input into the creation/execution of Logical Access Control functions. Manages audit support functions in analyzing adherence to specific client related regulatory and configuration standards. Works with the FSA (Federal Student Aid) CISO (Chief Information Security Officer), SOC (Security Operations Center) Manager, and Security Team to refine current processes and procedures, and suggest and implement any new processes that will assist with fulfilling the mission of the current client contract.* Monitors security incident response tools, such as ArcSight, SPLUNK, McAfee, Tanium, etc. * Monitors security systems and analyzes potential security incidents to client systems. * Manage the analysis of network, event and security logs, and/or IDS alert logs during incident response investigations and remediation activities for client environments.* Assists in development and implementation of technical security policies related to security regulations. * Provides security analysis and consultation services for security incident monitoring products. * Manage the Compliance and audit team that coordinates numerous audits to include but not limited to A123, OSA, FISMA, and Financial audits annually. * Advanced knowledge of IP Network architectures including multi-tier defense in depth strategies.* Identifies trends and root causes for declared security incidents and provides lessons learn reporting.* Ensure security management team procedures meet FSA security requirements for security requirements defined in the SOW.* Manage the compliance to Security SLA requirements.* Performs any other Information Security duties as assigned. QualificationsResponsibilities:5+ years' experience managing an IT Security & Management Team.Experience working with Compliance & Regulatory program requirements: especially FISMA regulated environments; NIST requirements.Experience analyzing network, event and security logs, and/or IDS alert logs.Proven Project Management and organizational skills, specifically managing multiple concurrent projects.Excellent analytical, problem solving and decision-making skills, applied with a solution-focused attitude.Excellent communication skills, including the ability to write with purpose, clarity, and accuracy, and to interact with clients professionally and articulately.Strong self-directed work habits, exhibiting initiative, drive, creativity, maturity, self-assurance and professionalism.Excellent teamwork skills.Knowledge of penetration test tools; scanning tools (DbProtect, Nessus/Tenable, Nipper), access management tools, etc.BA/BS with 10 years of experience with at least 4 years of management level responsibility.Knowledge of the following:Microsoft Windows Server and Desktop Operating SystemsMicrosoft Active DirectoryMicrosoft SQL ServerLinux variants (RHEL versions, etc.)VMware ESXOracle DatabaseFirewall, HIDS/IDS, SIEMExperience with AWS (Amazon Web Services) Red Hat Enterprise Linux (RHEL)MainframeWeb server and application coding fundamentalsVulnerability Scanning Tools (DbProtect, Tenable.sc, Nipper)Industry best practice security standards related to the above (DISA STIG, NIST, etc.)**6C Public Trust (Civilian) suitability/clearance -OR- Top Secret (Defense) clearance highly desired and is a must for this role. **Must be able to obtain a high-risk Public Trust (6C or T4) suitability/clearance. About PerspectaWhat matters to our nation, is what matters to us. At Perspecta, everything we do, from conducting innovative research to cultivating strong relationships, supports one imperative: ensuring that your work succeeds. Our company was formed to bring a broad array of capabilities to all parts of the public sector-from investigative services and IT strategy to systems work and next-generation engineering. Our promise is simple: never stop solving our nation's most complex challenges. And with a workforce of approximately 14,000, more than 48 percent of which is cleared, we have been trusted to do just that, as a partner of choice across the entire sector. Perspecta is an AA/EEO Employer - All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status.As a government contractor, Perspecta abides by the following provisionPay Transparency Nondiscrimination ProvisionThe contractor will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of the other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor's legal duty to furnish information. 41 CFR 60-1.35(c).

Get job alerts

Create a job alert and receive personalized job recommendations straight to your inbox.

Create alert