ISSM / Cybersecurity Technologist
Lockheed Martin
- Location
- Bridgeport / Middlebury
- Work model
- On-Site
- Level
- Senior
- Posted
- 3h ago
Skills
About this role
Standard Job Description The selected individual will serve as a Classified Cyber Security Technologist Staff for Sikorsky Aircraft within Lockheed Martin. In this role, the selected individual will serve as a senior technical advisor and an Information System Security Manager (ISSM) and/or alternate (alt-ISSM) for a portion of the classified information system portfolio. This will involve identifying, designing, securing, and deploying specialized tools that support the governance and risk management of classified systems, infrastructure, and tools, ensuring the confidentiality, integrity, and availability of classified assets. The selected candidate will also help lead advanced risk governance operations to implement proactive security methodologies for classified programs. This position requires a thorough understanding of development and security controls, as well as a mindset focused on automation-enabled cybersecurity for day-to-day activities. Must be a U.S. citizen Minimum Top Secret security clearance required Key Responsibilities: Planning, implementing, monitoring, and upgrading security measures for the protection of the program data, systems, and networks Troubleshooting technical security and network problems Lead system and/or network security breaches responses Ensuring that the organization's data and infrastructure are protected by enabling the appropriate security controls Participating in the change management process Testing and identifying network and system vulnerabilities Coordinate activities with the programs and IT lead to ensure systems are secure and technically ready for inspection Daily administrative tasks, reporting, and communication with the relevant departments in the organization Participate in planning and implementation of current and future security domains including those which may introduce new service areas (e.g. Cloud Computing, DevSecOps) Basic Qualifications Active DoD Top Secret security clearance; must be eligible for and willing to undergo Special Access Program access processing Compliance with DoD 8570/8140.03 through a certification or education qualification path Experience identifying requirements and requirement verification and validation Experience with creating, understanding, and updating system designs and architecture Experience implementing NIST SP 800-53 security controls Experience with developing, installing, and operating Security monitoring solutions Required Certifications (any one of the following): CompTIA Advanced Security Practitioner (CASP) - Security X Certified Info. Systems Security Prof. (CISSP) Certified Secure Software Lifecycle Pro (CSSLP) Red Hat Certified System Administrator (RHCSA) Additional Eligibility: Candidates may qualify by holding one of the following domain specific certifications: AWS SA Professional, Azure Architect Expert, GCP Professional Cloud Architect, AWS Security Specialty, GCP Security Engineer, GCAD, AWS DevOps Professional, AZ-400, GCP Professional Cloud DevOps Engineer, EC-Council ECDE, KCNA/CKA, LFCS, CKS, Ansible, GCSA / GCTD, GWEB, GWAPT, OSCP, GCIH Desired Skills Hands-on experience with ICD 503/JSIG/DAAPAM Experience with complex operating systems and networks such as data centers, and cloud environments, cross-domain solutions, and NSA Type 1/Commercial Solutions for Classified (CSfC) encryption solutions Bachelor’s degree from an accredited college in a related engineering/technical discipline, or equivalent experience/combined education, with 9 years of professional experience; or 7 years of professional experience with a related technical Master’s degree. Considered an emerging authority Experience obtaining and maintaining system ATOs Hands-on system administration and security hardening experience on Linux and Windows operating systems Demonstrated scripting and automation experience (Python, PowerShell, Bash, or equivalent) Security engineering across the system lifecycle: