Alternate Information Systems Security Manager (AISSM) - ACTIVE SECURITY CLEARANCE REQUIRED

  • Full-time
  • Organization: Computing
  • Category: Information Technology/Computing
  • Job Code 2: SES.4 Science & Engineering MTS 4
  • Employee Referral Bonus: $1500
  • Job Code 1: SES.3 Science & Engineering MTS 3
  • Pre-Employment Drug Test: Required for external applicant(s) selected for this position (includes testing for use of marijuana)
  • Pre-Placement Medical Exam: Not applicable
  • Security Clearance: Active DOE Q clearance (or active Top Secret clearance)
  • Position Type: Career Indefinite

Company Description

Join us and make YOUR mark on the World!

Lawrence Livermore National Laboratory (LLNL) has turned bold ideas into world-changing impact advancing science and technology to strengthen U.S. security and promote global stability. 

Our mission spans four critical national security areas nuclear deterrence, threat preparedness, energy security, and multi-domain defense empowering teams to take on the toughest challenges of today and tomorrow. With a culture built on innovation and operational excellence, LLNL is a place where your expertise can make a real impact.

Job Description

We have an opening for an Alternate Information Systems Security Manager (AISSM) to provide complex and dynamic security support to a variety of LLNL, DOE and customer missions. This position is in the Information Technology Solutions (ITS) Division supporting the Field Intelligence Element Operations organization within the Global Security Principal Directorate.

This position requires full-time on-site presence due to the nature of the work.

This position will be filled at either level based on knowledge and related experience as assessed by the hiring team. Additional job responsibilities (outlined below) will be assigned if hired at the higher level.

You will 

  • Work with the FIE’s Cyber Manager and internal and external stakeholders, including LLNL, DOE, and other agencies, to identify cybersecurity requirements for assigned systems and support the planning and implementation of security solutions that meet mission needs.
  • Architect and engineer enterprise-wide systems and solutions to meet cybersecurity requirements, including authoring and maintaining Risk Management Framework (RMF) documentation and Body of Evidence (BOE) artifacts.
  • Exercise judgement to assess and mitigate system security threats and risks, analyze security events, and conduct investigations to ensure the integrity of the security posture.
  • Lead the preparation, coordination, review, and maintenance of Body of Evidence artifacts, including Information System Security Plans and POA&Ms, under the Risk Management Framework to obtain and sustain system accreditation with government sponsors.
  • Coordinate cybersecurity requirements for existing and new systems with Department of Energy (DOE) IN-40, Department of Defense (DoD), and other agencies to ensure mission accomplishment and the protection of sensitive information.
  • Assess and mitigate system security threats and risks using a risk-based approach.
  • Perform and analyze security audits for nonstandard events to ensure security posture integrity and conduct continuous monitoring activities on assigned information systems.
  • Perform other duties as assigned.

Additional job responsibilities, at the SES.4 level 

  • Partner with the FIE Cyber Manager to assist with collaboration and negotiation with internal and external stakeholders, including LLNL, DOE, and other agencies, to identify, prioritize, and oversee implementation of information system security solutions that meet mission requirements.
  • Provide security architecture guidance and oversight to ensure information systems are designed and engineered in compliance with LLNL, DOE, and external customer requirements, and that they meet programmatic risk and authorization objectives.
  • Represent LLNL’s Field Intelligence Element at external customer sites as the AISSM, communicating security posture, risk decisions, and compliance status, and coordinating with customers on security requirements and accreditation activities.

Qualifications

  • This position requires an active Department of Energy (DOE) Q-level clearance or active Top Secret clearance issued by another U.S. government agency at the time of hire. 
  • Bachelor’s degree in Computer Science, Engineering, Business, Information Systems, or related field, or the equivalent combination of education and related experience.
  • Advanced experience as an ISSO or AISSM managing classified systems in DOD, DOE, or IC environments (NISPOM, DAAPM, ICD 503, NIST 800-53).
  • Advanced knowledge of federal security regulations, Intelligence Community Directives (ICDs), DOD/DOE manuals, and company security policies/procedures.
  • Strong understanding and hands-on experience with the Risk Management Framework (RMF), including authoring and maintaining Body of Evidence (BOE) artifacts.
  • Advanced analytical, problem-solving, and organizational skills with the ability to prioritize and execute tasks in a dynamic environment.
  • Experience leading and coordinating internal information system security audits and assessments, participating in Government inspections and authorization activities, and overseeing investigation and mitigation of identified security risks and noncompliance in accordance with applicable policies and RMF requirements.
  • Advanced communication skills, with the ability to develop and maintain effective relationships with internal and external stakeholders.

Additional qualifications at the SES.4 level 

  • Extensive experience obtaining Authority to Operate (ATO) for IT systems and applying advanced frameworks (NIST 800-53, CNSSI 1253, DISA STIGs, SCAP).
  • Advanced knowledge of, and significant experience with, applying DISA STIGs and SCAP Compliance Checker to information systems, and interpreting and implementing DOE, DoD, and Intelligence Community security policies and requirements in classified environments to support system authorization and ongoing security compliance.
  • Expert written and verbal communication skills for conveying technical strategies and building relationship across all organizational levels and sites.

Qualifications We Desire

  • COMSEC account management or opening new COMSEC accounts per sponsor requirements.
  • 10+ years of experience as an IT Systems Architect/Engineer and/or Cyber Security Professional.
  • DoD Approved 8570 A Assurance Manager (IAM) Level II or III Certification: CAP, CISSP, GSLC, CISM, or CASP+ CE.

Pay Range

$175,530 -  $267,060 Annually

$175,530 - $222,564 Annually for the SES.3 job level

$210,630 - $267,060 Annually for the SES.4 job level

This is the lowest to highest salary we in good faith believe we would pay for this role at the time of this posting; pay will not be below any applicable local minimum wage. An employee’s position within the salary range will be based on several factors including, but not limited to, specific competencies, relevant education, qualifications, certifications, experience, skills, seniority, geographic location, performance, and business or organizational needs. 

Additional Information

#LI-Onsite

Position Information

This is a Career Indefinite position, open to Lab employees and external candidates.

Why Lawrence Livermore National Laboratory?

Security Clearance

This position requires an active Department of Energy (DOE) Q-level clearance or active Top Secret clearance issued by another U.S. government agency at time of hire. 

Pre-Employment Drug Test

External applicant(s) selected for this position must pass a post-offer, pre-employment drug test. This includes testing for use of marijuana as Federal Law applies to us as a Federal Contractor.

Wireless and Medical Devices

Per the Department of Energy (DOE), Lawrence Livermore National Laboratory must meet certain restrictions with the use and/or possession of mobile devices in Limited Areas. Depending on your job duties, you may be required to work in a Limited Area where you are not permitted to have a personal and/or laboratory mobile device in your possession.  This includes, but not limited to cell phones, tablets, fitness devices, wireless headphones, and other Bluetooth/wireless enabled devices.  

If you use a medical device, which pairs with a mobile device, you must still follow the rules concerning the mobile device in individual sections within Limited Areas.  Sensitive Compartmented Information Facilities require separate approval. Hearing aids without wireless capabilities or wireless that has been disabled are allowed in Limited Areas, Secure Space and Transit/Buffer Space within buildings.

How to identify fake job advertisements

Please be aware of recruitment scams where people or entities are misusing the name of Lawrence Livermore National Laboratory (LLNL) to post fake job advertisements. LLNL never extends an offer without a personal interview and will never charge a fee for joining our company. All current job openings are displayed on the Career Page under “Find Your Job” of our website. If you have encountered a job posting or have been approached with a job offer that you suspect may be fraudulent, we strongly recommend you do not respond.

To learn more about recruitment scams: https://www.llnl.gov/sites/www/files/2023-05/LLNL-Job-Fraud-Statement-Updated-4.26.23.pdf

Equal Employment Opportunity

We are an equal opportunity employer that is committed to providing all with a work environment free of discrimination and harassment. All qualified applicants will receive consideration for employment without regard to race, color, religion, marital status, national origin, ancestry, sex, sexual orientation, gender identity, disability, medical condition, pregnancy, protected veteran status, age, citizenship, or any other characteristic protected by applicable laws.

Reasonable Accommodation

Our goal is to create an accessible and inclusive experience for all candidates applying and interviewing at the Laboratory.  If you need a reasonable accommodation during the application or the recruiting process, please use our online form to submit a request. 

California Privacy Notice

The California Consumer Privacy Act (CCPA) grants privacy rights to all California residents. The law also entitles job applicants, employees, and non-employee workers to be notified of what personal information LLNL collects and for what purpose. The Employee Privacy Notice can be accessed here.

Privacy Notice