Information Systems Security Manager

12 ore fa


Italia MIT Lincoln Laboratory A tempo pieno

The Security Services Department's overall mission is to identify and counter security threats to the MIT Lincoln Laboratory's mission of development of game-changing technology in support of National Security, including guarding against compromise by foreign intelligence agencies and insider threats. To accomplish this mission, this department formulates and implements policies, plans, and actions designed to protect facilities against threats of vandalism, accidental destruction, and sabotage; and safeguards personnel, classified and unclassified information systems, personal identifiable information, property, and other assets from exploitation and recruitment by foreign intelligence agencies.

We foster a culture where security professionals are empowered to solve complex security problems in close collaboration with Laboratory research teams and Government counterparts. Our people are our most important resource, and we encourage a casual and flexible opportunity-filled working environment that is technology-focused. Where mission needs can be met, the Security Services Department encourages flexible schedules and hybrid remote work arrangements.

Who are we?

MIT Lincoln Laboratory is a Federally Funded Research and Development Center (FFRDC) whose mission is research in support of National Security.

  • Mission - The Security Services Department's (SSD) overall mission is to identify and counter cybersecurity security threats to the MIT Lincoln Laboratory's mission of development of game-changing technology in support of national security, including guarding against compromise by foreign intelligence agencies and insider threats.
    * Culture – We foster an inclusive, opportunity-filled environment of empowered team members from diverse backgrounds.
  •  
What will you do?

As a SP Cybersecurity ISSM, you will provide expert management of all information security support to several independent Laboratory programs.  You will serve as the primary focal point for all cybersecurity matters and have an in-depth knowledge of computer security principles, practices, and procedures in order to execute a comprehensive Information Security program to meet both internal and external requirements. Core responsibilities include:

  • Lead and provide direct supervision to assigned Information Systems Security Officers (ISSO) 
    * Ensures work is prioritized consistently with work group and organization goals and objectives
    * Develop and maintain multiple System Security Plans (SSP) based on the Joint SAP implementation Guide (JSIG); ensuring systems are operated, maintained, and disposed of according to the approved SSP
    * Conduct security compliance audits and perform security vulnerability assessments on Laboratory information systems
    * Establish and maintain configuration management policies and procedures
    * Ensure users and ISSOs are subject to an effective information security education, training, and awareness program
    * Implement and test IT security policies/procedures as part of a fully integrated IT security program
    * Coordinate and participate in the investigation and mitigation of information system incidents
    * Assume ISSO responsibilities in the absence of the ISSO and respond to off-hour emergencies as needed
    * Recommend and manage budget and other resource allocations required to securely operate and maintain an organization's cybersecurity requirements
    * Provide technical documents, incident reports, findings from computer examinations, summaries, and other situational awareness information to key stake holders
    * Recognize a possible security violation and take appropriate action to report the incident, as required
    * Assist the Program Managers in the development and maintenance of System Security Plans (SSP) and associated artifacts such as the Plan of Action & Milestones (POA&M), Risk Assessment Report, and Continuous Monitoring Strategy
    * Lead and align information technology (IT) security priorities with the security strategy
    * Prepare for and participate in periodic organization compliance assessments
    * Interpret patterns of noncompliance to determine their impact on levels of risk and/or overall effectiveness of the enterprise's cybersecurity program
    * Achieve a passing score on all government inspections
  •  
How will you grow?

You will find significant opportunities to do meaningful work in an environment intentionally designed to be one where you will learn, thrive and belong.
* Leadership: Room to advance on your team or to lead cross-functional projects.
* Growth Opportunities: Potential for lateral and vertical movement.
* Education/Training: Management training, mentorship, in-house and external courses.
* Exposure: Engagement with sponsors, stakeholders, Laboratory leadership and other Departments and Divisions.
* Community: Participation is encouraged for Laboratory social events, Employee Resource Groups (ERGs), clubs and study groups, volunteering and community service projects.

What you need/Requirements:

To work with MITLL, all employees must meet certain basic requirements.

* Active Top-Secret clearance with SCI eligibility 

* Must be a U.S. Citizen

* Education: BS degree in Computer Science, Information Technology, Computer Information Systems, or related field

* Experience: Minimum of six (6) years' experience within DoD cybersecurity, Special Access Programs (SAP), and Sensitive Compartmented Information (SCI) Programs

* Leadership: Demonstrated capability in leading cross-functional teams and presenting ideas both in writing and orally within a collaborative team environment

* Certification: Possess a DoD M IAM III baseline certification (e.g., CompTIA Security+) or ability to obtain within 6 months of hire

* Security Frameworks: Demonstrated understanding of:

  • NIST 800-53
  • Risk Management Framework (RMF)
  • Joint SAP Implementation Guide (JSIG)
  • Intelligence Community Directive (ICD) 503
  • National Industrial Security Program Operating Manual (NISPOM) Chapter 8
  • DoD Manual Volumes 1–4

*Technical Knowledge: Experienced in auditing, configuration, and vulnerability management

*Operating Systems: Experience with multiple OS environments such as Windows Server (2012, 2016, 2019, 2022), Windows 10/11, Red Hat Enterprise Linux, Ubuntu, and MacOS

*Vulnerability Tools: Demonstrated experience with vulnerability scanning and auditing tools and processes

*Communication: Excellent written and verbal communication skills

Ideally, you will have:

The Laboratory values experiences from diverse backgrounds and occupations. The most successful candidates will have the following skills and qualifications.

  • Technical experience, coursework toward an undergraduate degree, or industry IT certifications may be considered in lieu of formal education or DoD security experience requirements

  • Experience with virtualization and cloud technologies

  • Ability to integrate information security requirements into the acquisition process, including baseline security controls, robust software quality processes, and multiple delivery routes for critical system elements

  • Technical experience securing networks and systems utilizing DISA STIGs and/or SRGs (highly desired)


Hiring Range: $111,400-$147,500

Disclaimer: MIT Lincoln Laboratory provides a typical hiring range as a good faith estimate of what we reasonably expect to offer for this position at the time of posting. The final salary offered to a selected candidate will depend on various factors, including—but not limited to—the scope and responsibilities of the role, the candidate's experience, skills and education/training, internal equity considerations and applicable legal requirements. This range reflects base salary only and does not include additional forms of compensation or benefits.

At MIT Lincoln Laboratory, our exceptional career opportunities include many outstanding benefits to help you stay healthy, feel supported, and enjoy a fulfilling work-life balance. Benefits offered to employees include: 

  • Comprehensive health, dental, and vision plans
  • MIT-funded pension
  • Matching 401K
  • Paid leave (including vacation, sick, parental, military, etc.)
  • Tuition reimbursement and continuing education programs
  • Mentorship programs
  • A range of work-life balance options
  • ... and much more  

Please visit our Benefits page for more information. As an employee of MIT, you can also take advantage of other voluntary benefits, discounts and perks.

Selected candidate will be subject to a pre-employment background investigation and must be able to obtain and maintain a Secret level DoD security clearance.

MIT Lincoln Laboratory is an Equal Employment Opportunity (EEO) employer. All qualified applicants will receive consideration for employment and will not be discriminated against on the basis of race, color, religion, sex, sexual orientation, gender identity, national origin, age, veteran status, disability status, or genetic information; U.S. citizenship is required.

Requisition ID: 42281 

#LI-JL1



  • Italia Allianz A tempo pieno

    About the jobInformation Security & Resilience is the core team and central driver for Information Security at Allianz Technology. The division is tasked to continue evolving a strong security organization, establishing global security solutions and countermeasures and to oversee the effectiveness and guide the implementation of security controls.The...


  • Italia Allianz A tempo pieno

    About the Job Corporate Information Security (CIS) is the core department and central driver for Information Security Governance in Allianz Technology SE. The division is tasked to continue evolving a strong security organization, establishing global security solutions and countermeasures, and overseeing the effectiveness and guiding the implementation of...


  • Italia IMD business school for management and leadership courses A tempo pieno

    About IMDThe International Institute for Management Development (IMD) has been pioneering leadership development for nearly 80 years. Founded by business for business, we are an independent university institute with Swiss roots and global reach. Operating from Lausanne with strategic hubs in Singapore, Shenzhen, and Cape Town, IMD works with 19,000+...


  • Italia LyondellBasell A tempo pieno

    LyondellBasell is a leader in the global chemical industry creating solutions for everyday sustainable living. With a nearly 70-year legacy that includes a Nobel Prize in Chemistry and our proprietary MoReTec recycling technology, LYB is enabling a more sustainable future for generations to come.  LYB develops high-quality and innovative products for...


  • Italia Allianz Technology A tempo pieno

    The ISO has overall responsibility for the effective implementation and maintenance of the Information Security Management System (ISMS) within Allianz Technology. Furthermore, the ISO oversees the fulfilment of Information Security requirements in all services provided by Allianz Technology as shared service provider to its customers.  What you doEach...


  • Italia Allianz A tempo pieno

    Allianz is the home for those who dare – a supportive place where you can take the initiative to grow and to actively strengthen our global leadership position. By truly caring about people – both its 83 million private and corporate customers and its 142,000 employees – Allianz fosters a culture where its employees are empowered to collaborate,...


  • Italia Allianz Global Investors A tempo pieno

    Following the ever-evolving cyber threat landscape, Allianz Global Investors (AllianzGI) is continuing to invest in our Information Security capabilities. As part of this, we are looking for you to support our Security capability in this complex but exciting environment.You will be part of our global Information Security team and reporting to the Head of...


  • Italia Pirelli A tempo pieno

    DISCOVER PIRELLI We are a global leader in the tire industry, specialized in designing, developing, manufacturing, and marketing high-performance tires for cars, motorcycles, and bicycles. With a presence in over 160 countries and around 18 production facilities, we pride ourselves on our cutting-edge technology and commitment to sustainability. Innovation...


  • Italia Sustainable stainless steel producer A tempo pieno

    We are looking for Manager, Cyber Architecture and Infrastructure based in one of our main locations to lead Cyber Security Architecture and Infrastructure team.As a Manager, you will be a Member of Cyber Security Leadership team and a part of the Outokumpu Cyber Security team, which is a lean and mean global function supporting the organization in cyber...


  • Italia Whirlpool Corporation A tempo pieno

    Requisition ID: 64132 ABOUT WHIRLPOOL CORPORATION Whirlpool Corporation (NYSE: WHR) is a leading kitchen and laundry appliance company, in constant pursuit of improving life at home and inspiring generations with our brands. The company is driving meaningful innovation to meet the evolving needs of consumers through its iconic brand portfolio, including...