ClearFocus Technologies is seeking an experienced cybersecurity professional to serve as a Directorate Level Information System Security Manager (ISSM). This senior position will provide technical leadership and oversight for all Information Assurance (IA) activities within the Defense Information Systems Network (DISN) environment, ensuring compliance with DISA's Cybersecurity Program requirements and federal regulations.
Primary Responsibilities Strategic Leadership and Advisory
Serve as senior technical advisor to Mission Support Division Leadership on all cybersecurity and information assurance matters
Provide comprehensive oversight of IA activities across the directorate
Guide, assess, plan, coordinate, implement, document, respond to, and report on all cybersecurity activities
Ensure implementation and compliance with DISA's Cybersecurity Program requirements
Policy Development and Implementation
Support development, review, and updates to DISN cybersecurity Standard Operating Procedures (SOP)
Contribute to the creation and maintenance of Tactics, Techniques, and Procedures (TTP) documentation
Interpret and implement DoD, DISA, and federal cybersecurity policies, directives, and regulations
Establish and maintain cybersecurity processes that meet organizational requirements
Compliance and Risk Management
Conduct directorate-level auditing to identify non-compliant services, applications, programs, systems, personnel, and networks
Verify adherence to appropriate laws, policies, and guidance across all systems
Manage the Authorization to Operate (ATO) process for information systems
Develop and implement risk assessment methodologies and mitigation strategies
Ensure compliance with FISMA, NIST, DoD, and DISA security requirements
Technology Research and Integration
Research new cybersecurity technologies and solutions with potential application to DISN environments
Document research findings, including comprehensive risk and benefit analyses
Support integration of approved technologies into existing security frameworks
Ensure all new technologies meet applicable cybersecurity requirements and regulations
Documentation and Communications
Prepare cybersecurity technical white papers identifying shortfalls in cybersecurity policy, technology, activities, and management
Create and deliver executive-level briefings on security posture and improvement initiatives
Document security controls, system security plans, and risk assessment results
Develop reports on cybersecurity program effectiveness and compliance status
Incident Response and Management
Establish and maintain security incident response procedures
Coordinate response activities for cybersecurity incidents
Conduct post-incident analyses and implement corrective actions
Report security incidents to appropriate authorities according to established timelines
Required Qualifications
Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field (Master's preferred)
Current CISSP certification; additional certifications such as CISM, CISA, CAP, or CRISC highly desirable
Active Top Secret security clearance with SCI eligibility
Minimum 10 years of experience in cybersecurity/information assurance, with at least 5 years in a leadership role
Thorough understanding of NIST SP 800-53, Risk Management Framework (RMF), and DoD security requirements
Experience with DISA Security Technical Implementation Guides (STIGs) and security assessment tools
Demonstrated expertise in security control implementation and assessment
Strong knowledge of federal and DoD cybersecurity regulations, directives, and policies
Experience with continuous monitoring programs and security authorization processes
Excellent written and verbal communication skills, including technical writing capability
Proven ability to communicate complex security concepts to technical and non-technical audiences
Preferred Qualifications
Master's degree in Cybersecurity or related field
Experience working directly with DISA cybersecurity programs
Knowledge of DISN architecture and security requirements
Experience with cloud security and authorization processes
Background in security automation and continuous monitoring tools
Prior experience in DoD or federal government security management
Working Conditions
May require occasional travel to government facilities
May require occasional after-hours work to respond to security incidents
Primary work location will be at government facility