Job Description
As a Technical Lead/Manager on the ISSO team, you will support the ISSO Team Lead and function as a primary resource to the ISSOs for guidance on ISSO duties, team processes, and overall technical and security compliance activities. The ISSO Team Technical Lead/Manager is a personnel manager with staffing and performance management responsibilities. The ISSO Team Technical Lead/Manager is expected to drive Authority to Operate (ATO) and/or Authority to Proceed (ATP) efforts and to independently make recommendations to Government Leads during the process. ISSO Team Technical Lead/Manager must understand the Risk Management Framework, and how risk management is executed, what risk means, and how to analyze it.
Duties include the following:
Manage and mentor ISSOs as they complete on-boarding and as they executive their day-to-day ISSO duties.Support the ISSO Team Lead to ensure FISMA compliance for all supported systems. Support the ISSO Team Lead in determining system assignments for the ISSO team.Assist the ISSO Team lead in the peer review process of ATO deliverables prior to final submission to the customer.Manage the completion of bi-weekly system security slides and facilitate the presentation of them to the federal customer. Document the ISSO team's contribution to IA Team weekly and quarterly reports.Establish, implement and maintain ISSO team standard operating procedures and practices in support of customer goals, security best practices and current federal customer regulations.Manage the ISSO Team response to FISMA and ad-hoc data calls. Ensure all ISSO Team supported systems are entering security control implementation statements and other relevant security documentation and artifacts accurately in the current GRC tool. Facilitate status meetings with the ISSOs.Participate in Agile Release Train discussions and ensure security is considered before features are implemented.Ensure all ISSO Team supported systems have a strong security posture and have favorable monthly FISMA scorecard metric percentages.Review, assess, and provide oversight of the risk associated with security solutions to maintain confidentiality, integrity, and the availability of information assets throughout the enterprise, and identify and develop improvements to security controls currently in place. Develop and update security assessment and authorization documentation in support of maintaining compliance and the overall security posture of IT systems.Serve as a security Subject Matter Expert (SME) providing critical thinking to ensure system security requirements are addressed during all phases of the System Development Life Cycle (SDLC).
Required Education, Experience, & Skills
Bachelor's Degree and 7 years work experience or equivalent experience
Or 10 years related work experience, to include:Experience managing personnel as well as experience leading teams and project management.Strong time management, organizational and critical thinking skills. Strong cybersecurity knowledge and experience as an ISSO supporting federal customers.Excellent communication, leadership and problem-solving abilities.Knowledge of both cloud and on-premise system environments and architecture Strong experience analyzing testing results from scans, audits, penetration tests, or other test efforts to determine risk levels.Experience executing the NIST Risk Management Framework (RMF).Expert knowledge of the security assessment and authorization (or ATO) process.Experience documenting system security plans to include security control implementation.Experience with continuous monitoring and maintaining the security posture of IT systems.Experience supporting cloud systems and knowledge of the FedRAMP process.
Preferred Education, Experience, & Skills
Certifications such as CISSP, CCSP, CISA, CAP, AWS Certified Practitioner, etc. are highly desired.
Pay Information
Full-Time Salary Range: $118129 - $200864
Please note: This range is based on our market pay structures. However, individual salaries are determined by a variety of factors including, but not limited to: business considerations, local market conditions, and internal equity, as well as candidate qualifications, such as skills, education, and experience.
Employee Benefits: At BAE Systems, we support our employees in all aspects of their life, including their health and financial well-being. Regular employees scheduled to work 20+ hours per week are offered: health, dental, and vision insurance; health savings accounts; a 401(k) savings plan; disability coverage; and life and accident insurance. We also have an employee assistance program, a legal plan, and other perks including discounts on things like home, auto, and pet insurance. Our leave programs include paid time off, paid holidays, as well as other types of leave, including paid parental, military, bereavement, and any applicable federal and state sick leave. Employees may participate in the company recognition program to receive monetary or non-monetary recognition awards. Other incentives may be available based on position level and/or job specifics.
About BAE Systems Intelligence & Security
BAE Systems, Inc. is the U.S. subsidiary of BAE Systems plc, an international defense, aerospace and security company which delivers a full range of products and services for air, land and naval forces, as well as advanced electronics, security, information technology solutions and customer support services. Improving the future and protecting lives is an ambitious mission, but it's what we do at BAE Systems. Working here means using your passion and ingenuity where it counts - defending national security with breakthrough technology, superior products, and intelligence solutions. As you develop the latest technology and defend national security, you will continually hone your skills on a team-making a big impact on a global scale. At BAE Systems, you'll find a rewarding career that truly makes a difference.
Intelligence & Security (I&S), based in McLean, Virginia, designs and delivers advanced defense, intelligence, and security solutions that support the important missions of our customers. Our pride and dedication shows in everything we do-from intelligence analysis, cyber operations and IT expertise to systems development, systems integration, and operations and maintenance services. Knowing that our work enables the U.S. military and government to recognize, manage and defeat threats inspires us to push ourselves and our technologies to new levels.
Our Commitment to Diversity, Equity, and Inclusion:
At BAE Systems, we work hard every day to nurture an inclusive culture where employees are valued and feel like they belong. We are conscious of the need for all employees to see themselves reflected at every level of the company and know that in order to unlock the full potential of our workforce, everyone must feel confident being their best, most sincere self and be equipped to thrive. We provide impactful professional development experiences to our employees and invest in social impact partnerships to uplift communities and drive purposeful change. Here you will find significant opportunities to do meaningful work in an environment intentionally designed to be one where you will learn, grow and belong.