Information Systems Security Manager (Government) at AT&T

Reston, Virginia, United States

AT&T Logo
Not SpecifiedCompensation
Senior (5 to 8 years), Expert & Leadership (9+ years)Experience Level
Full TimeJob Type
UnknownVisa
Government, Defense, IntelligenceIndustries

Requirements

  • Active TS/SCI clearance with Polygraph
  • Detailed knowledge and expertise required to manage the security aspects of an information system
  • Strong experience with IC/DoD customer's Assessment and Authorization (A&A) process (e.g., RMF, NIST 800-53, ICD 503)
  • Experience in developing and implementing DoD/DIA approved information security controls, procedures, and documentation for the operation of standalone classified systems
  • Willingness to work full time onsite at customer's site (minimum 5 days per week)

Responsibilities

  • Provides technical expertise to ensure network systems meet DIA C&A and IA requirements
  • Supervises an Information Assurance (IA) team consisting of ISSE’s and ISSO’s
  • Serves as the primary interface to the customer technical point of contact for IA subjects relating to the IT systems managed under the contract
  • Acts as principal advisor on all matters, technical and otherwise, involving the security of information systems under purview
  • Responsible for the cybersecurity posture of the environment, including security testing, certification & accreditation, security documentation, and RMF PLUS processes
  • Responsible for integrity, accreditations, media control, POAMs, STIGs and system hardening, auditing, COMSEC, and continuous monitoring
  • Oversees the development, preparation, and submission of accreditation packages and documentation as part of the RMF lifecycle
  • Assists in Authorization and Accreditation (A&A) process using RMF across the design lifecycle for classified systems, obtaining and maintaining Interim Authority to Operate (ATO), ATO, and Authority to Connect (ATC)
  • Interprets and adheres to Intelligence Community Directive (ICD) 503, JSIG, and DAAPM
  • Oversees and manages vulnerability assessments and security tests and evaluations
  • Provides subject matter expertise and consulting on security-related matters for enterprise information system and network architectures, access problems, and implementation of security policies and procedures
  • Optimizes system operation and resource utilization and performs system capacity planning/analysis while maintaining the security posture

Skills

Key technologies and capabilities for this role

Information SecurityISSMIAC&AISSEISSONetwork SecurityDIA ComplianceSAP-ITIT Management

Questions & Answers

Common questions about this position

Is this position remote or does it require office presence?

This position requires office presence of a minimum of 5 days per week and is only located at the customer's site.

What are the main responsibilities of the Information Systems Security Manager?

The role involves supervising an IA team, serving as the primary interface for IA subjects, advising on security matters, managing cybersecurity posture including RMF processes, and overseeing accreditation packages, vulnerability assessments, and compliance with standards like ICD 503 and JSIG.

What security frameworks and processes does the role involve?

The position requires expertise in RMF lifecycle, RMF PLUS processes, ICD 503, JSIG, DAAPM, A&A processes for classified systems, STIGs, system hardening, POAMs, and continuous monitoring.

What is the team structure for this role?

The ISSM supervises an Information Assurance (IA) team consisting of ISSE’s and ISSO’s.

What kind of experience makes a strong candidate for this ISSM position?

A strong candidate is a senior information security professional with experience in managing cybersecurity for classified SAP-IT systems, RMF processes, DIA C&A and IA requirements, team supervision, and customer interfacing in defense intelligence environments.

AT&T

Telecommunications services including wireless and broadband

About AT&T

AT&T provides telecommunications services, including wireless communications, broadband internet, and digital television, primarily in the United States. Its 5G network offers faster data speeds and more reliable connections, although availability can vary. The company caters to both individual consumers and businesses, offering various subscription plans that include options for unlimited data and bundled services that combine internet, TV, and phone. AT&T generates revenue mainly through subscription fees, device sales, and its streaming service, DIRECTV STREAM, which adds to its diverse offerings. In a competitive market, AT&T distinguishes itself with its extensive service range and strong brand presence.

Dallas, TexasHeadquarters
1876Year Founded
$43.3MTotal Funding
IPOCompany Stage
Consumer Software, EntertainmentIndustries
10,001+Employees

Benefits

Health Insurance
Dental Insurance
Vision Insurance
401(k) Retirement Plan
401(k) Company Match
Paid Vacation
Paid Sick Leave
Paid Holidays
Paid Parental Leave
Adoption Assistance
Disability Insurance
Life Insurance
Employee Assistance Programs
Wellness Program
Employee Discounts

Risks

The customer service guarantee may increase financial liabilities due to compensation for outages.
A recent data breach could damage AT&T's reputation and lead to customer churn.
Resistance to replacing landlines may impact customer retention and satisfaction.

Differentiation

AT&T offers a unique customer service guarantee, setting it apart from competitors.
The company is expanding its fiber network, enhancing broadband offerings in underserved areas.
AT&T's 'Phone-Advanced' device aligns with the trend of replacing traditional landlines.

Upsides

AT&T's fiber network expansion could provide a competitive edge in broadband services.
The new customer service guarantee may attract customers from competitors lacking similar assurances.
Collaboration with The Arc enhances AT&T's brand image through corporate social responsibility.

Land your dream remote job 3x faster with AI