Information Technology (IT) Manager, Cyber Security Services (CSS)

Baltimore, MD
Full Time
Experienced

​Position is contingent upon contract award.

If you are seeking a position with a strong team, focused on doing great things every day, with the opportunity to sell a wide array of technological solutions from the desktop to the data center, then join our team at ATS! We are looking for talented, creative individuals to help our customers solve problems.

Applied Technology Services (ATS) is an IT systems integrator and has been a trusted partner to customers in the Mid-Atlantic region for 20 years. We have core competencies in Enterprise Modernization, Infrastructure Services, End User Computing, Workforce Optimization, Cyber Security Solutions, and IT Staffing. ATS provides a wide array of professional and managed services from the data center to the desktop. ATS holds minority certifications in Delaware, Maryland, the District of Columbia, Pennsylvania, and Virginia and is a Third-Party Certified Women Owned Small Business (WOSB).

The Manager of Cyber Security Services (CSS) will be hands-on and responsible for management of information security and compliance related activities including the following:

  • Utilizing a risk-based approach to manage information security related aspects of operations.
  • Assuring compliance with information security, privacy, and industry standards and regulations.
  • Designing, establishing, and maintaining reasonable organizational cyber security and information privacy postures.
  • Implementing the NIST Cybersecurity Framework within the organization to improve cyber resilience.
  • In coordination with key stakeholders, this position communicates, prepares for, and responds to geopolitical, international, and national cyber threats from an Agency perspective.

This role is responsible for ensuring systems are secure, are compliant as per established regulatory frameworks, and audited as per established cadence.

Essential Job Functions:

(Duties listed are not intended to be all inclusive nor to limit duties that might reasonably be assigned.)

  • Works with CIO/CTO to define, implement and maintain corporate information and operations technology security policies, procedures, and guidelines based on industry best practices that are compliant with federal and state regulations.
  • Maintaining awareness of new cyber threats, vulnerabilities, and technologies to keep the organization secure.
  • Conducting risk assessments to identify potential security threats and vulnerabilities.
  • Monitoring network activity to identify signs of intrusion or compromise.
  • Providing technical support for computer networks, including firewalls, operating systems and applications, patch management, and data security best practices.
  • Manage security tool suite in including endpoint protection, vulnerability assessment, log aggregation and analysis.
  • Training staff in information security best practices to ensure compliance with company policies.
  • Conducting audits to ensure security protocols are being followed by staff.
  • Providing training in information security best practices to employees.
  • Working knowledge with industry standards such as HIPAA, ITIL, NIST, SANS, COBIT, OWASP, and ISO.
  • Own the entire IT audit process for SOC & PCI reporting across the enterprise.
  • Responsible for leading vulnerability audits, forensic investigations, and mitigation procedures.
  • Responds immediately to security-related incidents, leads response team, and provides post-event analysis.
  • Evaluate new cybersecurity threats and IT trends and develop effective security controls.
  • Evaluate potential security breaches, coordinate response, and recommend corrective actions.
  • Monitor compliance with security policies and procedures.
  • Investigate security breaches and incidents.
  • Coordinate incident response activities.
  • Train and educate employees on security awareness.
  • Manage security vendors and service providers.
  • Take proactive role in procurement process from the cyber security perspective.
  • Manage department budget, take part in annual capital expenditures planning exercises.
  • Manage records created and received in compliance with the Hampton Roads Transit Records Management Policy and Procedures.

Required Knowledge, Abilities and Skills essential to Job Functions:

  • Bachelor’s degree in computer science, information technology, or related field.
  • 10+ years of experience in IT security, including 5+ years in a management or lead role.
  • Certified Information Security Manager (CISM), Certified Information Systems Security Professional (CISSP) Certification or similar certification.
  • Experience with a diverse body of technical cyber tools and software.
  • In-depth knowledge of cyber security principles and best practices.
  • Experience developing and implementing security policies and procedures.
  • Demonstrated Experience in Network Engineering.
  • Project management experience.
  • Certification in CompTIA Security+.
  • Ability to effectively present information and respond to questions from senior management, groups of managers, clients, and internal and external customers.
  • Ability to handle multiple tasks simultaneously and meet multiple deadlines.
  • Excellent written and verbal communication skills.

Required Software Knowledge and Skills essential to Job Functions:

Proficiency in using computer systems and the listed software applications associated with performance of assigned work is essential. Basic problem-solving skills associated with software applications used is expected. Software usage relevant to job duties will be evaluated.

Software applications:

  • Strong background in Windows security management and security architecture.
  • Background in application security analysis, design, and testing.
  • Experience in network traffic flow monitoring and analysis tools.
  • Experience in log aggregation and analysis tools.
  • Experience with vulnerability assessment tools.
  • Experience with endpoint protection tools.
  • Experience with Internet of Things / Operational Technology security.
  • Experience with a diverse suite of cyber and network tools.
  • Experience with physical security access control systems and video surveillance systems.

Safety Responsibility:

Perform all job duties and responsibilities in a safe manner to protect oneself, fellow employees, and the public from injury or harm. Promote safety awareness and follow safety procedures and policies. Take an active part in reporting unsafe conditions and any hazards within the workplace to their Supervisor, Manager and/or the Safety Department.

Full-Time Employee Benefits:

  • Competitive compensation
  • Health benefits including Medical, Dental and Vision
  • Vacation and Personal Days
  • 401K
  • Employee Assistance Plan
  • Continuous education and learning opportunities.
Share

Apply for this position

Required*
Apply with Indeed
Apply with Indeed
We've received your resume. Click here to update it.
Attach resume as .pdf, .doc, .docx, .odt, .txt, or .rtf (limit 5MB) or Paste resume

Paste your resume here or Attach resume file

To comply with government Equal Employment Opportunity and/or Affirmative Action reporting regulations, we are requesting (but NOT requiring) that you enter this personal data. This information will not be used in connection with any employment decisions, and will be used solely as permitted by state and federal law. Your voluntary cooperation would be appreciated. Learn more.
Human Check*