> Markdown version of [/jobs/ext/1320075-information-system-security-manager-issm-iii](https://www.wearedevelopers.com/jobs/ext/1320075-information-system-security-manager-issm-iii). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information System Security Manager (ISSM) III - **Company:** Arlo Solutions Llc - **Location:** Philadelphia, PA, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Cyber Security, Databases, Information Security Management, Software Vulnerability Management, Navsea, Information Technology, Plan of Action and Milestones - **Published:** July 17, 2026 - **Apply:** https://www.dice.com/job-detail/bcd66b60-16e9-4663-8b60-b1f760a88eca ## About the Role * Active Secret security clearance * Master's degree in computer science, information technology, or an equivalent science, technology, engineering & mathematics (STEM) degree from an accredited college or university * Eight (8) years of experience coordinating with various levels of an organization to oversee and manage information security program implementation * Experience managing cyber strategy, personnel, infrastructure, policy enforcement, emergency planning, security awareness, and/or other resources * Must possess one of the following certifications: CAP, CASP+ CE, CISM, CISSP (or Associate), GSLC, CCISO, or HCISPP * IAM-II certification level * Experience with DoD Information Assessment and Authorization (A&A) process and Risk Management Framework (RMF), * Experience with enterprise security technologies and tools including eMASS and VRAM * Knowledge of NIST Special Publications and DoD cybersecurity instructions * Experience with Navy and DoD organizational structures and policies * Familiarity with NAVSEA cybersecurity requirements and procedures * Experience with vulnerability management and continuous monitoring * Demonstrated leadership abilities and strong communication skills ## Description Position Description:The Information System Security Manager (ISSM) III will support Naval Surface Warfare Center Philadelphia Division (NSWCPD) as a contractor through Arlo Solutions, serving as a key cybersecurity leader for NSWCPD Code 104. This key personnel position is responsible for overseeing and managing information security program implementation within the organization, supporting DoD Information Assessment and Authorization (A&A) process and Risk Management Framework (RMF) services, and ensuring compliance with all NAVSEA, DON, and DoD cybersecurity policies., Cybersecurity Program Management * Support IT security goals and objectives to reduce overall organizational risk * Communicate the value of IT security throughout all levels of organization stakeholders * Coordinate with various levels of the organization to oversee information security program implementation * Manage cyber strategy, personnel, infrastructure, policy enforcement, emergency planning, security awareness, and other resources * Assist with facilitating communication between all RMF stakeholders throughout the RMF process Security Assessment and Authorization * Assist with the collection of data needed to meet system cybersecurity reporting requirements * Assist with security improvement actions as they are evaluated, validated, and implemented * Participate in information security risk assessments during the Security A&A process * Assist with identifying security requirements specific to IT systems in all phases of the system life cycle * Coordinate with programs to resolve findings identified during internal and external review processes Compliance and Risk Management * Assist with cybersecurity inspections, tests, and reviews for the network environment * Assist with identifying alternative information security strategies to address organizational security objectives * Interpret patterns of noncompliance to determine their impact on risk levels and overall effectiveness of the enterprise's cybersecurity program * Track audit findings and recommendations to ensure appropriate mitigation actions are taken * Monitor systems for upcoming authorization conditions/stipulations, upcoming or past due POA&M items, and SLCM activities Documentation and Reporting * Develop findings reports and recommended corrective actions for identified deficiencies * Report system compliance in DON Application and Database Management System (DADMS), Department of Defense Information Technology Portfolio Repository - Department of the Navy (DITPR-DON), and Vulnerability Remediation Asset Manager (VRAM) * Assist with Quality Assurance (QA) reviews for RMF package submissions in accordance with NSWCPD and NAVSEA 03 SOP * Ensure successful implementation and functionality of security requirements and appropriate IT policies and procedures consistent with the organization's mission and goals * Track and respond to Cybersecurity data calls per Government guidance ## Related Videos - [Kubernetes and Microservices with Multi-Model Databases](https://www.wearedevelopers.com/videos/382-kubernetes-and-microservices-with-multi-model-databases) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Fault Tolerance and Consistency at Scale: Harnessing the Power of Distributed SQL Databases](https://www.wearedevelopers.com/videos/1146-fault-tolerance-and-consistency-at-scale-harnessing-the-power-of-distributed-sql-databases) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)