Cyber Security Information System Security Manager (ISSM) - Onsite

BAE Systems
Merrimack, NH, United States
5 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Microsoft Windows Cyber Security Information Systems Linux Identity and Access Management Information Security Management Networking Hardware Security Content Automation Protocol Nessus Vulnerability Analysis

Job description

Experteer Overview In this Cybersecurity ISSM role, you will support a rigorous RMF-based program to protect critical information systems. You’ll work within a cross-functional IA team to drive compliance, risk assessment, and continuous monitoring for classified environments. The position offers on-site collaboration and opportunities to advance national-security-focused cyber capabilities. You will contribute to shaping security documentation, audits, and incident analysis in a fast-paced, mission-driven setting. Compensation / Benefits * Support RMF compliance across assigned programs, aiming for Authority to Operate (ATO) approvals * Develop and manage System Security documentation, Plans of Actions and Milestones (POA&Ms) * Assess and audit security controls and perform continuous monitoring * Oversee compliance for all classified systems and maintain self-inspection program * Ensure up-to-date security certification and accreditation documents for classified systems * Coordinate security activities with security architects, program personnel, and government reps * Conduct regular system assessments and vulnerability reviews to ensure compliance * Lead development and delivery of IA briefings and training material Tasks * Active Top Secret Clearance and IAM Level II per DoD 8570.1M * ISSM or relevant cybersecurity experience * Strong motivation, initiative, and adaptability to evolving security environments * Customer-focused, excellent communicator, and able to work with limited supervision * Strong organizational skills and collaboration with IA and other security disciplines * Experience with creating core documentation (SSP, SOPs, POA&Ms, Remediation Plans, CM plans) * Experience with vulnerability scanning tools (Nessus, SCAP, ACAS, SCC) and remediation reporting * Experience auditing and certifying compliance of Windows, Linux, network devices * Experience delivering IA-related briefings and training Key requirements * health, dental, and vision insurance * health savings accounts * 401(k) savings plan * disability coverage * life and accident insurance * paid time off

Requirements

and security activities with security architects, program personnel, and government reps * Conduct regular system assessments and vulnerability reviews to ensure compliance * Lead development and delivery of IA briefings and training material Tasks * Active Top Secret Clearance and IAM Level II per DoD 8570.1M * ISSM or relevant cybersecurity experience * Strong motivation, initiative, and adaptability to evolving security environments * Customer-focused, excellent communicator, and able to work with limited supervision * Strong organizational skills and collaboration with IA and other security disciplines * Experience with creating core documentation (SSP, SOPs, POA&Ms, Remediation Plans, CM plans) * Experience with vulnerability scanning tools (Nessus, SCAP, ACAS, SCC) and remediation reporting * Experience auditing and certifying compliance of Windows, Linux, network devices * Experience delivering IA-related briefings and training Key requirements * health, dental, and vision aaaaaaa

Benefits & conditions

  • health savings accounts * 401(k) savings plan * disability coverage * life and accident insurance * paid time off

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on us.experteer.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · WWC 2025

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

Videos

See all

Related articles

See all