The Information Assurance Manager (IAM) oversees the strategic process for protecting information and systems from misuse, unauthorized access, and data breaches within the Office of Export and Secure Research Compliance (OESRC) Industrial Security Program. The individual manages risks, ensures compliance with regulations, such as controlled unclassified information, export-controlled information, the National Industrial Security Program Operating Manual (NISPOM), and the Director of National Intelligence (DNI) Intelligence Community Directives (ICDs) as appropriate. This position serves as the university-appointed Information System Security Manager (ISSM) required for these secure information systems and networks and lead teams of security professionals to implement security controls and policies to maintain the integrity, confidentiality, and availability of these assets. OESRC serves as the primary unit at the university responsible for risk management for these types of high-risk data categories, and the Industrial Security Program is necessary to provide subject matter expertise to fulfill this responsibility.
The primary duties of this position include:
• Create and maintain policies and procedures to ensure all supported users remain in compliance with applicable safeguarding requirements.
• Coordinate with government agencies as appropriate to ensure accreditations are obtained and maintained as required.
• Initiate and manage new projects from inception to completion, exercising discretion and best judgment, and then maintaining these initiatives. These projects range from moderately complex and varied to working on multiple, complex projects simultaneously and independently.
• Provide direct services to users with all aspects of information systems and/or network operations including setup, continuous monitoring, enhanced security safeguarding, instructional training, disaster recovery, cyber incident investigation/reporting and disposition of materials/data at the completion of a project.
• Support to multiple sites and provide comprehensive services, training, system maintenance, inventory control and analysis of existing and future security technology needs.
• Function as emergency personnel for alarm response and must be able to respond timely to emergencies within 60 minutes during evenings and weekends as needed.
The IAM provides essential services to university senior management, department management, faculty, staff, and students who are involved in the classified research portfolio and works closely with OESRC team members to support the needs of the controlled unclassified portfolio. The Information Assurance Manager will coordinate with government agencies as appropriate to ensure accreditations are obtained and maintained as required. This individual must be knowledgeable of current security standards and regulations, such as National Institute of Standards and Technology (NIST) Special Publication 800 series, Federal Information Processing Standard (FIPS) 199 and 200, applicable Department of Defense publications, National Industrial Security Program Operating Manual (NISPOM), DCSA Assessment and Authorization Guide (DAAG), Intelligence Community Directives (ICDs), and industry best practices. The IAM must remain knowledgeable in secure server and desktop techniques and encryption technologies.
Due to responsibilities, position is fully onsite in the Blacksburg, VA facility.