> Markdown version of [/jobs/ext/1907063-information-systems-security-manager](https://www.wearedevelopers.com/jobs/ext/1907063-information-systems-security-manager). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Systems Security Manager - **Company:** Inc. (spa) - **Location:** Arlington, VA, United States - **Experience:** Expert - **Salary:** $130,000.0 - **Contract:** Permanent contract - **Skills:** Cyber Security, Information Systems, Software Vulnerability Management - **Published:** August 3, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9073421/information-systems-security-manager ## About the Role * 8+ years of experience in cybersecurity, with substantial time as an ISSM or comparable lead for DoD information systems * Deep familiarity with RMF, eMASS, STIGs, and vulnerability management processes * Relevant security certification (e.g., CISSP, CAP, CISM) * Active TS/SCI clearance Desired Qualifications: * Experience securing IL4/IL5/IL6 and SIPRNet systems * Background working with large user-facing applications containing PII or other sensitive data ## Description SPA has a need for an Information Systems Security Manager to lead cybersecurity and Risk Management Framework activities for APACS and related systems. This role is responsible for maintaining authorizations to operate and protecting sensitive data., The ISSM oversees RMF compliance, eMASS packages, and all cybersecurity documentation for assigned systems. They coordinate with government security officials, system owners, and engineers to address vulnerabilities, manage plans of action and milestones, and support audits. They advise on security architecture and design decisions, ensuring controls are correctly implemented and tested. They also provide guidance and training to team members on cybersecurity policies and best practices. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [What is the real price of one successful line of code?](https://www.wearedevelopers.com/videos/1921-what-is-the-real-price-of-one-successful-line-of-code) - [Microservices? Monoliths? An Annoying Discussion!](https://www.wearedevelopers.com/videos/970-microservices-monoliths-an-annoying-discussion) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Software Security 101: Secure Coding Basics](https://www.wearedevelopers.com/videos/220-software-security-101-secure-coding-basics) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking)