Corporate Security Manager (CSM)

Corporate Fairfax, VA


Description

Corporate Security Manager (CSM)

 

Concept Plus is hiring a Corporate Security Manager (CSM).  The role includes security responsibilities as both an Information System Manager (ISM) to manage the corporate CP cybersecurity program and as a Facility Security Officer (FSO). The CSM is responsible for maintaining and continuously maturing CP’s Information Security program, ensuring information is managed in a compliant and secure manner throughout its lifecycle. The CSM is responsible for developing policies, procedures, and guidelines that align with the CP’s strategic objectives.  As part of the FSO duties, the CSM is responsible for maintaining all security-related files, security training efforts, and clearance activities.

 

Primary Responsibilities:

Information Security Management Responsibilities:

 

  • Serve as a corporate lead for all corporate cybersecurity compliance goals and initiatives.
  • Maintain corporate compliance and adherence to all cybersecurity-related policies, procedures and compliance standards aligned with applicable NIST 800-171, ISO 27001, CMMC standards and FAR/DFAR clauses.
  • Consistently perform security and compliance assessments on new and existing systems, processes, and technology.
  • Advise senior management on risk levels, security posture and any changes affecting either.
  • Maintain and continuously improve all cybersecurity-related policies, procedures, and controls.
  • Respond, investigate, and resolve cybersecurity alerts/incidents in a timely manner, ensuring compliance with all corporate and government reporting requirements.
  • Collect and maintain data needed to meet cybersecurity compliance reporting requirements.
  • Maintain and mature the information security training and awareness program for all CP employees and in scope suppliers/vendors.
  • Document technical procedures, creating detailed work instructions and/or diagrams.
  • Work with internal groups to conduct audits, assessment and vulnerability management. Leveraging third party partners to assist with these activities as needed.

 

FSO Responsibilities Include:

 

  • Manage day-to-day operations of the facility’s security program, oversees the physical security program and document control accountability, and maintains the facility clearance status.
  • Verifies security clearance status for new employees, subcontractors, consultants,

             and visitors.

  • Oversees the personnel Security program and security clearance process for employees.
  • Develops and provides security-related briefings and training required by NISPOM.
  • Prepare and submit reports required by NISPOM and/or CP clients.
  • Conducts government required Self-Assessments of the facility, records, systems, personnel records, etc., developing corrective actions when necessary.
  • Support scheduled and unscheduled internal audits.

 

Required Qualifications:

 

  • BS/BA degree in Computer Science, Cybersecurity, MIS, IT related degree, or equivalent work experience.
  • 10+ year of overall experience. 8+ years of IT/Information Security experience. 
  • Current cybersecurity certification. (e.g., CISSP, CISM, CISA, etc.)
  • Demonstrated experience with security frameworks and regulations. Must have experience with NIST SP 800-171 & ISO 27001.
  • Experience with the review and creation of mitigation reports from compliance and vulnerability scanning tools. 
  • Experience with conducting security assessments and reviews for new software, partners, and contracts.
  • Prior experience as a Facility Security Officer and Certified as a Facility Security Officer.
  • Extensive knowledge of NISPOM rule and application.
  • DCSA annual inspection lead POC.
  • Demonstrated experience with employee onboarding/off-boarding: security briefings, clearance processing and credentialing.
  • Excellent communication skills, both written and verbal, with the ability to present complex technical information to non-technical stakeholders.

 

Preferred Qualifications

 

  • Experience with NIST SP 800-53, NIST SP 800-218, NIST SP 800-161 
  • Experience with secure coding and/or testing

 

Concept Plus is a growing consulting firm headquartered in Fairfax, VA. We are an Oracle Gold Partner, offering deep technical expertise, combined with business insights and an experienced team focused on providing technical solutions for our clients. We are proud to have been recognized as one of the "25 Most Powerful Oracle Solution Providers" in the area! We offer great benefits including competitive pay, comprehensive health insurance, dental and vision insurance, paid life insurance, paid time off, 11 paid holidays, bonuses, tuition reimbursement, unlimited training, and the opportunity to work in a collaborative, flexible, innovative environment! For additional information about our dynamic organization, please visit our website at www.conceptplusllc.com.

Concept Plus is an Affirmative Action/Equal Opportunity Employer. As such, we will give your application full consideration without regard to your race, color, religion, sex, age, national origin, disability, veteran status, sexual orientation, gender identity, or any other classification protected by federal, state, or local law.