55 Information Security Manager jobs in Huntsville
Information System Security Manager (ISSM)
Posted today
Job Viewed
Job Description
Are you passionate about cybersecurity, automation, and risk governance? Lockheed Martin recognizes the challenges we face today and the need to embrace the convergence of these disciplines to transform ourselves for tomorrow. This transformation will enable Lockheed Martin to provide more autonomous and continuous cyber support for our classified environments. The Rotary and Mission Systems (RMS) Classified Cyber Security organization is seeking a Classified Cyber Security professional to deliver automated, sustainable, and consistent cyber products and services for the RMS Line of Business, which will enable the delivery of 21st-century security services to our classified programs.
The selected individual will serve as a Classified Cyber Security Technologist Manager. In this role, the selected individual will lead a team of 10 cybersecurity professionals and work closely with internal and external stakeholders to develop and implement comprehensive cybersecurity solutions. This will involve identifying, designing, securing, and deploying specialized tools that support the governance and risk management of classified systems, infrastructure, and tools, ensuring the confidentiality, integrity, and availability of classified assets. The selected candidate will also help lead advanced risk governance operations to implement proactive security methodologies for classified programs. This position requires a thorough understanding of development and security controls, as well as a mindset focused on automation-enabled cybersecurity for day-to-day activities.
Must be a U.S. citizen
Minimum Secret security clearance required
Key Responsibilities
- Minimum of 8+ years of leadership experience in cybersecurity
- Coordinate cybersecurity activities with internal/external customers as the site Information System Security Manager (ISSM) to ensure classified information systems are secure and compliant
- Understand and demonstrate Lockheed Martin Full Spectrum Leadership (FSL) behaviors in your day-to-day activities. FSL is the Lockheed Martin model for describing expectations for successful leadership performance in the business and with our employees
- Attract, develop, and retain top cyber talent to drive team excellence
- Overseeing and directing day-to-day information system security operations, providing guidance on all technical security matters
- Assess and mitigate classified system security threats and risks throughout the program life cycle
- Oversee the validation of classified system security requirements, leading teams to ensure accurate and comprehensive assessments
- Direct the development and maintenance of technical system security documentation, leading teams to produce high-quality and compliant documents
- Execute security hardening on Windows and RHEL operating systems, based on approved DISA STIGs and SRGs
- Implement NIST SP 800-53 security controls to ensure compliance with industry standards (Windows, Linux, Network, etc).
- Lead cross-functional team projects, building consensus and collaboration
Technical Requirements
- Be well-versed in information system security architectural documentation standards.
- Understand and implement information assurance and cybersecurity standards, directives, and policies (e.g., NIST) to classified risk-based frameworks.
- Develop and implement a comprehensive information system security strategy, ensuring that all components and processes are properly secured, compliant with regulatory requirements, and aligned with organizational objectives.
Compliance and Regulatory Requirements
- Ensure compliance with governing documents and security policies.
- Assist in regulatory periodic assessments to ensure adherence to government regulations and cybersecurity guidelines.
- Provide recommendations for secure implementation and compliance.
**Basic Qualifications:**
- Demonstrable experience with standard cybersecurity and network environment tools and applications, including: SIEM (e.g., Splunk), End-Point Security (e.g., Trellix ePO), Vulnerability Scanning (e.g., Tenable), information system compliance (e.g., DISA STIGs), etc.
- Proven ability to manage multiple projects and people simultaneously in a dynamic and demanding environment.
- Excellent written and verbal communication skills, with the ability to effectively interface with numerous cognizant security agencies, customers, and senior leadership.
- Proven knowledge of the DCSA Assessment and Authorization Process Manual (DAAPM), Joint Special Access Program Implementation Guide (JSIG), or Risk Management Framework (RMF).
- DoD 8140/8570 IASAE Level-III Certification, such as: CCSP, CISSP-ISSAP, CISSP-ISSEP.
**Desired Skills:**
- Proven expertise in Dev/Sec/Ops concepts and processes, with the ability to apply them in real-world scenarios, including:
o Expertise in Splunk, including: Writing queries, Creating dashboards, Implementing third-party apps (e.g., Qmulos Products)
o Experience with network design processes, including: Understanding security objectives, Operational objectives, Risk mitigation strategies for information systems
- Demonstrable experience working with complex operating systems and networks, including:
o Data centers
o Cloud environments
o Cross-domain solutions
o NSA Type 1/Commercial Solutions for Classified (CSfC) encryption solutions
- Demonstrable experience conducting internal and external customer assessments, including:
o Identifying areas for improvement
o Providing recommendations for remediation
o Developing and implementing corrective action plans
- Proven ability to evaluate proposed changes or additions to the information system, including:
o Assessing their security relevance
o Ensuring compliance with relevant regulations and standards
- Proven experience implementing new and complex technologies at an enterprise level, including:
o Ensuring seamless integration with existing systems
o Minimizing disruption to operations
o Providing training and support to users
**Security Clearance Statement:** This position requires a government security clearance, you must be a US Citizen for consideration.
**Clearance Level:** Secret
**Other Important Information You Should Know**
**Expression of Interest:** By applying to this job, you are expressing interest in this position and could be considered for other career opportunities where similar skills and requirements have been identified as a match. Should this match be identified you may be contacted for this and future openings.
**Ability to Work Remotely:** Onsite Full-time: The work associated with this position will be performed onsite at a designated Lockheed Martin facility.
**Work Schedules:** Lockheed Martin supports a variety of alternate work schedules that provide additional flexibility to our employees. Schedules range from standard 40 hours over a five day work week while others may be condensed. These condensed schedules provide employees with additional time away from the office and are in addition to our Paid Time off benefits.
**Schedule for this Position:** 4x10 hour day, 3 days off per week
**Lockheed Martin is an equal opportunity employer. Qualified candidates will be considered without regard to legally protected characteristics.**
**The application window will close in 90 days; applicants are encouraged to apply within 5 - 30 days of the requisition posting date in order to receive optimal consideration.**
At Lockheed Martin, we use our passion for purposeful innovation to help keep people safe and solve the world's most complex challenges. Our people are some of the greatest minds in the industry and truly make Lockheed Martin a great place to work.
With our employees as our priority, we provide diverse career opportunities designed to propel, develop, and boost agility. Our flexible schedules, competitive pay, and comprehensive benefits enable our employees to live a healthy, fulfilling life at and outside of work. We place an emphasis on empowering our employees by fostering an inclusive environment built upon integrity and corporate responsibility.
If this sounds like a culture you connect with, you're invited to apply for this role. Or, if you are unsure whether your experience aligns with the requirements of this position, we encourage you to search on Lockheed Martin Jobs , and apply for roles that align with your qualifications.
**Experience Level:** Experienced Professional
**Business Unit:** RMS
**Relocation Available:** Possible
**Career Area:** Cyber Security
**Type:** Full-Time
**Shift:** First
Senior Information Security Analyst
Posted 4 days ago
Job Viewed
Job Description
Key Responsibilities:
- Monitor security systems and analyze security alerts for potential threats and vulnerabilities.
- Investigate and respond to security incidents, including data breaches and unauthorized access attempts.
- Develop and implement incident response plans and playbooks.
- Conduct regular vulnerability assessments and penetration testing.
- Manage and maintain security infrastructure, including firewalls, IDS/IPS, and SIEM systems.
- Develop, implement, and enforce information security policies and procedures.
- Perform risk assessments and develop mitigation strategies.
- Stay current with emerging threats, vulnerabilities, and security technologies.
- Provide security awareness training to employees.
- Collaborate with IT and development teams to ensure security is integrated into system design and operations.
- Contribute to the development and maintenance of the organization's security architecture.
- Prepare regular security reports for management, detailing risks and mitigation efforts.
- Ensure compliance with relevant data protection regulations and industry standards.
- Participate in security audits and assessments.
- Research and recommend new security technologies and solutions.
Qualifications:
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- Minimum of 5-7 years of experience in information security, cybersecurity operations, or a related discipline.
- Strong understanding of cybersecurity principles, protocols, and best practices.
- Proficiency with security tools such as SIEM, IDS/IPS, firewalls, endpoint detection and response (EDR), and vulnerability scanners.
- Experience with incident response, threat hunting, and forensic analysis.
- Knowledge of common attack vectors and mitigation techniques.
- Familiarity with relevant security frameworks (e.g., NIST Cybersecurity Framework, ISO 27001).
- Excellent analytical, problem-solving, and critical-thinking skills.
- Strong written and verbal communication skills.
- Ability to work independently and manage multiple priorities effectively in a remote environment.
- Relevant certifications such as CISSP, CompTIA Security+, CEH are highly desirable.
- Experience with cloud security (AWS, Azure, GCP) is a plus.
Senior Information Security Analyst
Posted 4 days ago
Job Viewed
Job Description
Key responsibilities include:
- Leading the investigation and response to security incidents, ensuring timely and effective resolution.
- Monitoring security alerts and system logs for suspicious activities and breaches.
- Developing and delivering security awareness training to employees across all levels.
- Staying abreast of the latest security threats, trends, and technologies to proactively enhance our security posture.
- Collaborating with IT and other departments to ensure security is integrated into all aspects of operations.
- Performing regular security audits and compliance checks against industry standards and regulations.
- Managing and maintaining security documentation, policies, and procedures.
The ideal candidate will possess a Bachelor's degree in Computer Science, Information Security, or a related field, coupled with a minimum of 5-7 years of progressive experience in information security. Professional certifications such as CISSP, CISM, or GIAC are highly desirable. You should have a deep understanding of network security, endpoint security, cloud security principles (AWS, Azure, GCP), and vulnerability management. Excellent analytical, problem-solving, and communication skills are essential for success in this role. You will be working in a collaborative environment within **Huntsville, Alabama, US**, with a hybrid work model allowing for flexibility. Experience with SIEM tools, incident response frameworks, and threat intelligence platforms is a significant plus. If you are passionate about cybersecurity and committed to protecting an organization's valuable data, we encourage you to apply.
Lead Information Security Analyst
Posted 4 days ago
Job Viewed
Job Description
Key Responsibilities:
- Lead the information security team in daily operations, incident response, and threat hunting activities.
- Develop, implement, and maintain security policies, standards, and procedures.
- Conduct regular vulnerability assessments and penetration tests to identify and address security weaknesses.
- Oversee the management of security technologies, including firewalls, intrusion detection/prevention systems, SIEM, and endpoint protection.
- Develop and execute incident response plans, acting as a key point of contact during security breaches.
- Monitor security alerts and investigate potential security incidents.
- Provide security awareness training to employees and stakeholders.
- Collaborate with IT and other departments to ensure security is integrated into all systems and processes.
- Stay current with evolving threats, vulnerabilities, and security technologies.
- Contribute to the development of the overall information security strategy and roadmap.
Qualifications:
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field. Master's degree preferred.
- Minimum of 7 years of progressive experience in information security, with at least 3 years in a leadership or senior analyst role.
- Proven experience in vulnerability management, threat analysis, and incident response.
- In-depth knowledge of network security, host-based security, and application security principles.
- Experience with security frameworks such as NIST, ISO 27001, or CIS Controls.
- Proficiency with SIEM tools and security analytics platforms.
- Relevant security certifications such as CISSP, CISM, or GSEC are highly desirable.
- Strong analytical, problem-solving, and decision-making skills.
- Excellent communication, interpersonal, and leadership abilities.
- Ability to work effectively in a hybrid work environment, managing both remote analysis and on-site oversight.
- Experience in cloud security is a plus.
Senior Information Security Analyst
Posted 5 days ago
Job Viewed
Job Description
Responsibilities:
- Develop, implement, and maintain security policies, standards, and procedures.
- Conduct regular security risk assessments and vulnerability analyses to identify potential threats and weaknesses.
- Manage and monitor security infrastructure, including firewalls, intrusion detection/prevention systems, and SIEM solutions.
- Investigate security incidents, perform forensic analysis, and develop remediation plans.
- Collaborate with IT teams to ensure security is integrated into all aspects of system design and development.
- Stay abreast of the latest cybersecurity threats, trends, and technologies, and recommend proactive measures.
- Develop and deliver security awareness training programs to employees.
- Ensure compliance with relevant regulations and industry standards (e.g., NIST, ISO 27001).
- Participate in incident response planning and execution.
- Manage third-party vendor security assessments.
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field. Master's degree preferred.
- 5+ years of experience in information security, with a focus on security analysis and operations.
- Proven experience with security tools and technologies (SIEM, IDS/IPS, firewalls, endpoint protection).
- Strong knowledge of networking protocols, operating systems, and application security.
- Experience with incident response, digital forensics, and malware analysis.
- Excellent analytical and problem-solving skills.
- Strong communication and interpersonal skills, with the ability to explain complex security concepts to both technical and non-technical audiences.
- Relevant certifications such as CISSP, CISM, or GIAC are highly desirable.
Senior Information Security Analyst
Posted 6 days ago
Job Viewed
Job Description
- Develop, implement, and maintain comprehensive security policies, procedures, and standards.
- Conduct regular vulnerability assessments and penetration testing to identify and mitigate security risks.
- Monitor security alerts and events, investigating and responding to incidents in a timely and effective manner.
- Manage and configure security technologies such as firewalls, intrusion detection/prevention systems, SIEM, and endpoint protection solutions.
- Provide security awareness training to employees and promote a culture of security consciousness throughout the organization.
- Collaborate with IT teams to ensure security is integrated into all aspects of system development and deployment.
- Stay abreast of the latest security threats, vulnerabilities, and mitigation techniques.
- Prepare detailed reports on security posture, incident trends, and recommendations for improvement.
- Participate in security audits and ensure compliance with relevant regulatory frameworks (e.g., NIST, ISO 27001).
- Assist in the development and execution of disaster recovery and business continuity plans.
- Bachelor's degree in Computer Science, Information Security, or a related field. Master's degree preferred.
- 5+ years of experience in information security, with a proven track record in threat analysis, incident response, and security architecture.
- In-depth knowledge of cybersecurity principles, protocols, and best practices.
- Experience with SIEM tools, vulnerability scanners, and penetration testing methodologies.
- Strong understanding of networking concepts, operating systems (Windows, Linux), and cloud security.
- Excellent analytical, problem-solving, and communication skills.
- Relevant certifications such as CISSP, CISM, or CEH are highly desirable.
- Ability to work independently and as part of a collaborative team.
Senior Information Security Analyst
Posted 6 days ago
Job Viewed
Job Description
Key Responsibilities:
- Develop and implement security policies, procedures, and best practices.
- Conduct regular security audits and vulnerability assessments to identify and mitigate risks.
- Manage and monitor security systems, including firewalls, intrusion detection/prevention systems, and SIEM platforms.
- Lead incident response efforts, including investigation, containment, eradication, and recovery.
- Stay abreast of the latest cybersecurity threats, trends, and technologies, and recommend appropriate countermeasures.
- Provide security awareness training to employees.
- Collaborate with IT teams to ensure secure system configurations and network infrastructure.
- Develop and maintain disaster recovery and business continuity plans.
- Analyze security logs and data to detect suspicious activities.
- Ensure compliance with relevant regulations and industry standards.
- Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent practical experience.
- 5+ years of experience in information security.
- Proven experience with security frameworks such as NIST, ISO 27001, or CIS.
- Strong knowledge of network security, cryptography, and secure coding practices.
- Experience with SIEM tools, vulnerability scanners, and penetration testing tools.
- Excellent analytical and problem-solving skills.
- Strong communication and interpersonal skills, with the ability to explain complex security concepts to technical and non-technical audiences.
- Relevant security certifications (e.g., CISSP, CISM, Security+) are highly desirable.
Be The First To Know
About the latest Information security manager Jobs in Huntsville !
Principal Information Security Engineer
Posted 7 days ago
Job Viewed
Job Description
Key responsibilities:
- Design, develop, and implement enterprise-wide security solutions, including firewalls, intrusion detection/prevention systems, SIEM, and endpoint security.
- Conduct regular vulnerability assessments and penetration testing to identify and remediate security weaknesses.
- Lead incident response activities, including investigation, containment, eradication, and recovery.
- Develop and maintain security policies, standards, and procedures.
- Provide expert guidance on security best practices and compliance requirements (e.g., NIST, ISO 27001).
- Architect and implement security controls for cloud environments (AWS, Azure, GCP).
- Evaluate and recommend new security technologies and solutions.
- Collaborate with IT teams to ensure security is integrated into system design and development lifecycles.
- Mentor junior security engineers and share knowledge across the team.
- Stay current with emerging threats, vulnerabilities, and security trends.
- Develop and deliver security awareness training programs.
- Respond to security audits and provide necessary documentation.
Senior Information Security Analyst
Posted 7 days ago
Job Viewed
Job Description
Responsibilities:
- Monitor security alerts and events from various security tools (SIEM, IDS/IPS, etc.) to detect and respond to threats.
- Investigate and analyze security incidents, determine root causes, and implement remediation plans.
- Perform regular vulnerability assessments and penetration testing to identify weaknesses.
- Develop, implement, and maintain security policies, procedures, and standards.
- Conduct security risk assessments and recommend appropriate controls.
- Manage and configure security tools and technologies.
- Assist in the development and delivery of security awareness training.
- Stay current with emerging threats, vulnerabilities, and security technologies.
- Collaborate with IT teams to ensure security best practices are integrated into system design and operations.
- Participate in incident response planning and execution.
Qualifications:
- Bachelor's degree in Computer Science, Information Security, or a related field; relevant certifications (CISSP, CISM, CEH) are highly desirable.
- Minimum of 5 years of experience in information security, with a focus on security operations and incident response.
- Proven experience with SIEM, IDS/IPS, firewalls, endpoint security solutions, and other security technologies.
- Strong understanding of cybersecurity principles, frameworks, and best practices.
- Experience with vulnerability management and risk assessment methodologies.
- Excellent analytical and problem-solving skills.
- Strong communication and interpersonal skills, with the ability to explain technical concepts clearly.
- Ability to work independently and manage time effectively in a remote setting.
- Familiarity with regulatory compliance (e.g., GDPR, HIPAA) is a plus.
This is an excellent opportunity to advance your career in cybersecurity with a forward-thinking organization. Contribute to robust security measures from your home base, leveraging your expertise for the benefit of our client, located near Huntsville, Alabama, US .
Senior Information Security Architect
Posted 7 days ago
Job Viewed
Job Description
Responsibilities:
- Design, implement, and manage comprehensive information security architectures.
- Develop and enforce security policies, standards, and procedures across the organization.
- Conduct security risk assessments and vulnerability analyses.
- Architect solutions for network security, data security, cloud security, and identity management.
- Evaluate and recommend security technologies and tools.
- Collaborate with IT and development teams to ensure security is integrated into the system lifecycle.
- Develop and maintain security documentation, including architecture diagrams and runbooks.
- Lead the security aspects of incident response planning and execution.
- Provide security guidance and training to technical staff and end-users.
- Stay current with emerging cybersecurity threats, vulnerabilities, and technologies.
- Bachelor's or Master's degree in Computer Science, Information Security, or a related field.
- 7+ years of experience in information security, with at least 3 years in an architectural role.
- Deep understanding of security principles, frameworks (NIST, ISO 27001), and best practices.
- Expertise in network security, cloud security (AWS, Azure, GCP), endpoint security, and data protection.
- Experience with identity and access management (IAM) solutions.
- Proficiency in security tools such as SIEM, IDS/IPS, firewalls, and vulnerability scanners.
- Strong analytical, problem-solving, and critical-thinking skills.
- Excellent communication and presentation skills, with the ability to communicate complex security concepts to various audiences.
- Relevant security certifications (e.g., CISSP, CISM, CCSP) are highly desirable.