Information Systems Security Manager (ISSM)
Location | Ger, Sudan |
Date Posted | March 31, 2020 |
Category |
Security
|
Job Type |
Full-time
|
Currency | SDG |
Description
disposed of in accordance with internal security policies and practices
outlined in this AF DCGS Cyber Security Standards and Policies and the AF DCGS
Security Plan (SP).
·
Ensure INFOSEC training and awareness is
implemented by the site.
·
Ensure, in conjunction with local affiliated
SSO, that all users have the requisite security clearances, authorization, and
need-to-know, and are aware of their security responsibilities before granting
access to the information system.
·
Report all security-related incidents to the
appropriate SSO, ACC-Chief Information Security Officer (ACC/CISO) and the DCGS
Processing, Exploitation and Dissemination Center.
·
Develop and maintain site specifics for
inclusion in the AF DCGS SSP and appendices.
·
Conduct monthly reviews to ensure compliance
with the AF DCGS SP and this AF DCGS Cyber Security Standards and Policies
·
Ensure configuration management for
security-relevant information system software, hardware, and firmware is
maintained and documented IAW the AF DCGS and site Configuration Management
Plan.
·
Ensure that system recovery processes are
monitored to ensure that security features and procedures are properly
restored.
·
Provide immediate notification to the ACC/CISO,
through the quickest process, when changes occur that affect accreditation, to
include system or process changes that adversely impact system security, or
when a system no longer processes intelligence information.
·
Draft, coordinate and ensure accuracy of
Information System Security Office appointment letters.
·
Conduct system-level audits and reviews at a
minimum of weekly. Report noted anomalies and maintain records of all reports
to the ISSM.
·
Conduct risk assessments of all emergency
modifications to information system assets and provide findings.
·
Conduct security certification tests on Protection
Level 1-4 systems as delegated by the AF DCGS Certifying Organization
authority. Test results shall be provided to the ACC/CISO for an accreditation
decision.
·
Ensure contractor personnel, including Local
Nationals, have the appropriate IA certification and background investigation.
·
Ensure the capability to report in detail on
individual contractor employee certification(s) and certification status.
·
Initiate, with the approval of the ISSM,
protective or corrective measures when a security incident or vulnerability is
discovered.
·
Protect the root or super-user authenticator at
the highest level of secured data.
·
Attend required organizational meetings,
teleconferences and in/out briefs to answer questions pertaining to security.
·
Ensure system security requirements are
addressed during all phases of the system life cycle. Follow procedures developed by the IAM to
ensure only authorized software, hardware, scripts, firmware, and AF-IC
Description:
security notification alerts are installed on the system.
Requirements:
Level III: Level II: Must have at least 15
years’ experience w/ a HS diploma OR
11 years with a Bachelor’s degree OR
8 years with a Master’s Degree
Required Experience
·
Must meet DoD 8570.01M IAT Level II
certification requirements.
·
Must have an active TS/SCI security clearance
·
Level I : Must have at least 10 years’
experience w/ a HS diploma OR
6 years with a Bachelor’s degree OR 3 years with a Master’s Degree
Level II: Must have at least 13 years’
experience w/ a HS diploma OR
9 years with a Bachelor’s degree OR
6 years with a Master’s Degree