Information System Security Manager

Insight Global
Bedford, MA, United States
1 day ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Working hours
Regular working hours

Tech stack

Software System Penetration Testing Information Systems Information Security Management Security Software SARS Software Products

Job description

The Information System Security Manager (ISSM) is responsible for ensuring systems and applications comply with National, DoD, and Department of the Air Force cybersecurity requirements. This role leads Risk Management Framework (RMF) activities, assesses security risks and vulnerabilities, evaluates the security impact of system changes, and ensures the confidentiality, integrity, and availability of information systems throughout the system lifecycle. The ISSM works closely with technical teams and leadership to maintain authorization, support continuous monitoring, and uphold system cybersecurity posture.

Requirements

10 years of experience performing ISSM or senior ISSO functions supporting DoD or Air Force systems Bachelor’s degree or equivalent experience Strong hands-on experience with Risk Management Framework (RMF) and A&A activities Experience conducting security risk, vulnerability, and security impact assessments Experience maintaining RMF artifacts (SSP, POA&Ms, SARs, control documentation) Ability to assess and document security impacts of system changes and configuration updates Experience supporting continuous monitoring, audits, and compliance reviews Strong written and verbal communication skills for technical documentation and leadership briefings Knowledge of cybersecurity policies, NIST publications, and cryptographic fundamentals Certification: CISSP, CISM, or CGRC (DoDI 8140-approved, Basic or Intermediate)

Nice to Have Skills & Experience: Experience supporting cyber inspections, penetration tests, or external assessments Experience with Air Force cybersecurity tools and systems (e.g., eMASS, ACAS, STIGs) Experience participating in CCBs, working groups, and system design reviews Experience supporting mission-critical or classified environments (e.g., NC3 or weapons systems) Prior experience serving as a cybersecurity subject-matter expert to program leadership

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

59 sec

Proving regulatory compliance to auditors and chief officers

Mike Bursell Mike Bursell · WWC Europe 2026

1:30 min

The universal and shared team responsibility of software security

Julia Wilson Julia Wilson +1 · WWC 2025

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:28 min

Preventing sensitive information disclosure in RAG systems

Deepu Deepu · WWC 2025

3:55 min

Establishing blameless dialogue surrounding critical software security vulnerabilities

Chris Heilmann +2 · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

Videos

See all

Related articles

See all