Cyber and Data Security Manager Remote / Telecommute Jobs
- Develop, maintain, and update comprehensive compliance documentation including System Security Plan (SSPs), Plans of Action and Milestones (POA&M), implement policies and procedures and other supporting artifacts to ensure adherence to security standards - Collaborate with both internal resources as well as external consultants and auditors, to facilitate compliance reviews, assessments and gap analyses Prepare for and facilitate CMMC assessments, including self-assessments and third-party audits by - Certified Third-Party assessor Organizations (C3PAO) - Ensure that our information security assets, policies, and processes are reliable, available, provide confidentiality, and are generally safe from unauthorized use and intrusion - Provide day-to-day security support around the infrastructure and procedures used to protect and secure - Controlled Unclassified Information (CUI), including ERG’s related computer systems, data, and network - Perform risk analysis on threats, security alerts, and other suspicious systems or network activity - Lead incident response efforts, including investigation, containment, and recovery - Identify and analyze existing processes and procedures to meet new IT Security goals and objectives - Evaluate security incidents to determine impact & escalate appropriately Monitor, aggregate, label, and manage artifacts related to the Security Program assessment and external audits - Develop, document, and assist with implementing ISO 270001 and NIST/CMMC framework standards, procedures, processes, and guidelines - Plan and monitor security measures for the protection of computer systems, networks, and information, including the use of Security Information and Event Management (SIEM) products - Develop and deliver cyber-related training programs for employees and stakeholders Provide security awareness training on recognizing and reporting potential indicators of external insider threats - Ensure integrity and security of company data - Support ERG’s Change & Configuration Control Board (CCB) through actions such as documenting change requests and participating in regular CCB meetings Apply tot his job