Information System Security Manager

🔥 20 minutes ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Koniag Government Services

Koniag Government Services

1001 - 5000 employees

Founded 1975

🏛️ Government

🎖️ Defense

💼 Consulting

Government • Defense • Consulting

Koniag Government Services is an Alaska Native Corporation (ANC) that provides technical, professional, and operational expertise to the U. S. public sector. KGS supports Defense & Intelligence, Federal Civilian, and Health customers with enterprise solutions, professional services, and operations management, and emphasizes mission-focused outcomes, contracting speed (ANC direct awards), and strategic/technology partnerships. The company positions itself as a mission partner delivering people, technology, and program management to government customers.

📋 Description

• Serve as the primary ISSM for Okta-based ICAM systems, maintaining responsibility for the overall security posture, compliance, and risk management of assigned information systems. • Lead and manage the Authority to Operate (ATO) process for Okta-based ICAM systems, including the development, maintenance, and submission of all required security documentation such as System Security Plans (SSPs), Security Assessment Reports (SARs), Risk Assessment Reports (RARs), and Plans of Action and Milestones (POA&Ms). • Implement and manage the NIST Risk Management Framework (RMF) across all phases of the system lifecycle for assigned Okta-based ICAM systems, including categorization, security control selection, implementation, assessment, authorization, and continuous monitoring. • Develop, maintain, and enforce information security policies, procedures, and standards for Okta-based ICAM systems in alignment with federal requirements and organizational directives. • Conduct and oversee continuous monitoring activities, including regular security control assessments, vulnerability scans, log reviews, and security audits of Okta environments. • Review and assess Okta platform configurations, authentication policies, access controls, and integration settings to ensure alignment with security baselines and federal security standards. • Collaborate with Okta administrators and ICAM engineers to identify and remediate security vulnerabilities, misconfigurations, and compliance gaps within the Okta environment. • Manage and track POA&Ms to ensure timely and effective remediation of security findings and vulnerabilities identified through assessments, audits, and continuous monitoring activities. • Review, assess, and approve or deny change requests affecting the security posture of Okta-based ICAM systems, participating in change management processes and change control boards (CCBs) as required. • Coordinate with the Authorizing Official (AO), Information System Security Officers (ISSOs), and other security stakeholders to communicate system security status, risks, and recommendations. • Support incident response activities related to Okta-based ICAM systems, including security event investigation, containment, remediation, and after-action reporting. • Develop and deliver security awareness and training materials related to Okta ICAM security requirements and best practices for system users and administrators. • Ensure compliance with applicable federal laws, regulations, and policies, including FISMA, FedRAMP, OMB Circulars, and agency-specific security directives. • Maintain accurate and up-to-date system security documentation and artifacts within designated governance, risk, and compliance (GRC) tools. • Provide security guidance and recommendations to program managers, system owners, and technical teams on matters related to Okta ICAM security architecture and design.

🎯 Requirements

• Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field from an accredited college or university; equivalent work experience may be considered in lieu of a degree. • 5+ years of experience in information system security management, cybersecurity, or a related field within a federal government IT environment. • 3+ years of experience working with the NIST Risk Management Framework (RMF) and supporting ATO processes for federal information systems. • Demonstrated familiarity with Okta or comparable identity and access management platforms.

🏖️ Benefits

• health, dental and vision insurance • 401K with company matching • flexible spending accounts • paid holidays • three weeks paid time off • more

Apply Now

Similar Jobs

🔥 44 minutes ago

Dropzone AI

51 - 200

🤖 Artificial Intelligence

Senior Security Engineer ensuring AI SOC Analyst generates accurate, timely reports for cybersecurity transformation at Dropzone AI. Collaborating across teams for continuous investigation quality improvement

Python

🔥 49 minutes ago

rater8

51 - 200

🏥 Healthcare

☁️ SaaS

🤝 B2B

Senior Security and Compliance Lead at rater8, overseeing information security and compliance programs. Managing governance, risk, and compliance efforts in the healthcare industry while ensuring alignment with regulatory standards.

AWS

Azure

Cloud

Cyber Security

Google Cloud Platform

SDLC

🔥 1 hour ago

TerraPower

501 - 1000

⚡ Energy

💊 Pharmaceuticals

Nuclear Physical Security Engineer supporting project initiatives at TerraPower in nuclear energy and medical isotopes. Collaborating on regulatory compliance and license requirements focused on nuclear security.

🔥 2 hours ago

Doppel

201 - 500

🔒 Cybersecurity

🤖 Artificial Intelligence

☁️ SaaS

Product Security Engineer supporting security architecture and penetration testing at Doppel's AI-native platform. Collaborating with engineering teams to enhance cybersecurity and implement security best practices.

Cloud

Google Cloud Platform

Python

Terraform

🔥 2 hours ago

Bridgeway Benefit Technologies

201 - 500

☁️ SaaS

👥 HR Tech

Associate Security Engineer at Bridgeway Benefit Technologies assisting with scalable security solutions and collaborating with teams to enhance security posture. Focused on compliance and efficient security operations in a remote role.

Cloud

Docker

Kubernetes

SDLC