> Markdown version of [/jobs/ext/1317793-information-system-security-manager](https://www.wearedevelopers.com/jobs/ext/1317793-information-system-security-manager). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information System Security Manager - **Company:** Accede LLC - **Location:** Maple Grove, MN, United States - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Xacta, Active Directory, Cyber Security, Information Systems, Event Logging, Identity and Access Management, Information Security Management, Windows Servers, Software Vulnerability Management, Information Technology, Windows Security, National Industrial Security Program Operating Manual (NISPOM), Scap Compliance Checker, Vulnerability Analysis - **Published:** July 17, 2026 - **Apply:** https://www.dice.com/job-detail/1e9e932b-6567-4edb-aaa9-28d208e1179e ## About the Role * Bachelor''s degree in Information Technology, Cybersecurity, Computer Science, or a related field. * 5+ years of Information System Security experience supporting classified or government environments. * 3+ years of experience as an Information System Security Manager (ISSM) or Information System Security Officer (ISSO). * Active Secret Security Clearance. * IAM Level III certification in accordance with DoD 8570.01M (such as CISSP). * Strong experience with the Risk Management Framework (RMF) and Authorization to Operate (ATO) processes. * Strong knowledge of NIST 800 Series, CNSSI 1253, NISPOM Chapter 8, and related cybersecurity frameworks. * Experience implementing and monitoring technical, administrative, and operational security controls. * Experience performing risk assessments, maintaining RMF documentation, and supporting continuous monitoring activities. * Excellent organizational, communication, and documentation skills. * Ability to prioritize multiple tasks and work effectively in a fast-paced, secure government environment., * Experience with Xacta or DCSA eMASS. * Knowledge of Security Technical Implementation Guides (STIGs). * Experience with Information Assurance Vulnerability Alerts (IAVAs). * Familiarity with SCAP Compliance Checker (SCC). * Experience with Microsoft Windows Server, Active Directory, and Group Policy Objects (GPOs). * Experience reviewing Windows Security Event Logs. * Hands-on experience with vulnerability scanning tools and interpreting scan results. * Experience managing security incidents and remediation efforts. * Experience working with hardware and software vendors. * Strong written, verbal, and cross-functional communication skills. * Ability to work collaboratively in a team-oriented environment. ## Description We are seeking an experienced Information System Security Manager (ISSM) to lead and manage the overall information security program supporting classified information systems in a U.S. Government environment. The ideal candidate will have strong experience implementing the Risk Management Framework (RMF), maintaining compliance with NIST, CNSSI, DoD, and NISPOM security standards, and overseeing the authorization and continuous monitoring of classified systems. This role requires expertise in security documentation, risk management, security control implementation, cross-functional collaboration, and ensuring compliance throughout the system lifecycle. The ISSM will work closely with government sponsors, corporate security teams, and technical staff to maintain a strong security posture and support mission-critical programs., * Lead and manage the overall information security program for classified information systems. * Create, maintain, and manage information security documentation and RMF artifacts. * Implement, monitor, and maintain technical, administrative, and operational security controls. * Achieve and maintain Authorization to Operate (ATO) for classified information systems. * Advise engineering and development teams on integrating security requirements throughout the system lifecycle. * Coordinate with U.S. Government sponsors and corporate security organizations to ensure regulatory compliance. * Oversee the Continuous Monitoring (ConMon) program and maintain the operational security posture of information systems. * Conduct security training and provide guidance to program management and technical staff. * Perform risk assessments, manage security incidents, and ensure compliance with organizational security policies. * Support security audits, vulnerability management, and other security-related activities as required. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Is your backend a hodgepodge of queues, event stores and cron jobs? Durable Execution to the Rescue.](https://www.wearedevelopers.com/videos/744-is-your-backend-a-hodgepodge-of-queues-event-stores-and-cron-jobs-durable-execution-to-the-rescue) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [Maturity assessment for technicians or how I learned to love OWASP SAMM](https://www.wearedevelopers.com/videos/351-maturity-assessment-for-technicians-or-how-i-learned-to-love-owasp-samm) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)