Manager, Cyber Security & Risk Management - Andover, MA
RTXAbout the role
Date Posted:
2024-07-09Country:
United States of AmericaLocation:
MA101: Andover MA 350 Lowell St Essex 350 Lowell Street Essex, Andover, MA, 01810 USAPosition Role Type:
OnsiteAt Raytheon, the foundation of everything we do is rooted in our values and a higher calling – to help our nation and allies defend freedoms and deter aggression. We bring the strength of more than 100 years of experience and renowned engineering expertise to meet the needs of today’s mission and stay ahead of tomorrow’s threat. Our team solves tough, meaningful problems that create a safer, more secure world.
Our Cybersecurity team is presently seeking a Manager, Cyber Security & Risk Management to maintain the Information Systems in Andover, MA.
The Cybersecurity Manager, Cyber Security & Risk Management is responsible for compliance oversight, assessment, and operations of systems under their purview. They may be assigned to a single large-scale program or oversee multiple programs.
Manager, Cyber Security & Risk Management also has cognizance of all collateral Classified Information System (CIS) in the Andover, MA Site per Commercial and Government Entity (CAGE) code as stipulated by various US Government requirements including (but not limited to):
National Industrial Security Operating Manual (NISPOM) and related documentation such as:
Risk Management Framework (RMF),
Baseline Technical Security Configuration Standards,
Defense Counter-Intelligence Security Agency (DCSA)
Assessment and Authorization Process Manual (DAAPM)
Customer/contract specific Cybersecurity regulations.
Components of the cybersecurity (CS) program include Assessment and Authorization (A&A) activities (documentation preparation, system configuration/validation, certification testing, etc.), security sustainment activities (hardware change management, software change management, account management, media protection, user interface, file transfers, etc.), conducting self-inspections, and delivering information systems security education and awareness.
You will conduct recurring Cybersecurity reviews on information systems in accordance with DoD Manuals, NIST Special Publications, customer directives, and company policies as applicable (see list below for further details**).
You are responsible for the execution of the Raytheon Continuous Monitoring Plan as required by CA-2 Security Assessments. You’ll serve as subject matter experts (SME) on a broad range of Cybersecurity topics. You may represent the Cybersecurity organization and business unit to external Cybersecurity counterparts.
Important note(s):
Within six months of hire date, you must obtain and maintain a Security professional certification commensurate with IAM Level III certification commensurate with your role as a Site ISSM as required by DoDD 8140 (8570) if you do not already have this certification.
Cybersecurity Manager, Cyber Security & Risk Management are required to maintain IAM Level III certification commensurate with their role as required by DoDD 8140 (8570).
What You Will Do
Complete all DCSA and Raytheon GSS required training within 6 months of appointment (annual requirements thereafter).
Accountability for all systems under site CAGE: metrics, eMASS, Raytheon business process (RCAST), Continuous Monitoring (ConMon) as described by Sr. ISSM
Maintaining a working knowledge of all CIS functions, security policies, technical security safeguards, and operational security measures.
Interactions with DCSA SCA/ISSP to track items including, but not limited to, upcoming authorizations (ATO), new technologies solutions (i.e., new SIEM, OS, etc.), policy interpretations (in conjunction with Sr. ISSM), and onsite A&A.
Developing, maintaining, and updating, in coordination with all system stakeholders (CS Manager, ISO, DT, etc.), applicable site POAM(s) to identify system weaknesses, mitigating actions, resources, and timelines for corrective actions.
Coordinating DCSA SVA preparation activities for assigned CAGE in conjunction with site FSO/CS Manager.
Qualifications You Must Have:
Typically require a Bachelor’s degree with eight (8) years of relevant cybersecurity, network security, and/or information technology experience or an advanced with five (5) years of relevant experience as described below.
Experience supporting cybersecurity compliance as stipulated by DCSA Assessment and Authorization Process Manual (DAAPM), Joint SAP Implementation Guide (JSIG), and/or National Industr
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s