Information Systems Security Manager

Akumen, Inc.
Camp Springs, MD, United States
8 days ago
Apply on www.jofdav.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Starter
Experience required
7 years minimum
Compensation
$41,600.0 - $47,840.0
Working hours
Regular working hours
Job source

Tech stack

Amazon Web Services Cloud Computing Cyber Security Information Systems Systems Development Life Cycle Systems Architecture Software Vulnerability Management Information Technology RSA Archer Platform Servicenow

Job description

The Information Systems Security Manager will serve as a senior cybersecurity subject matter expert responsible for leading security authorization, governance, risk, compliance, and continuous monitoring activities across assigned systems., * Serve as the senior onsite ISSM and cybersecurity subject matter expert supporting authorization, risk management, and compliance activities across multiple federal systems.

  • Lead all phases of the Risk Management Framework (RMF) lifecycle, including system categorization, control selection, implementation, assessment, authorization, and continuous monitoring.
  • Analyze and define system security requirements, including requirements associated with multilevel security (MLS), information protection, system architecture, and mission needs.
  • Design, develop, engineer, and recommend cybersecurity solutions that address system security, MLS, risk, compliance, and mission requirements.
  • Serve as a primary subject matter expert for eMASS, ensuring accurate management of authorization packages, security controls, inheritance relationships, POA&Ms, assessments, and supporting artifacts.
  • Support configuration, optimization, and automation of governance, risk, and compliance processes and technologies.
  • Maintain cybersecurity accreditation and authorization documentation throughout the system development lifecycle.

Requirements

  • Bachelor’s degree in Cybersecurity, Information Assurance, Information Systems, Computer Science, or a related discipline with 710 years of relevant cybersecurity experience, including at least seven years supporting federal systems.
  • Minimum of seven years of experience executing RMF and Assessment & Authorization (A&A) activities within DoW, DoS, DoD, or comparable federal environments.
  • Demonstrated experience serving as an ISSM, senior ISSO, ISSE, Security Control Assessor, Validator, or equivalent senior cybersecurity professional with extensive knowledge of NIST security controls, eMASS, POA&Ms, ACAS, and DISA STIG requirements.
  • Demonstrated ability to lead cybersecurity compliance efforts, perform risk assessments, develop authorization documentation, and communicate technical and risk information to government and executive stakeholders.Preferred Qualifications
  • CISSP, CISM, CASP+, GSLC, or equivalent senior-level cybersecurity certification., * Master’s degree in Cybersecurity, Information Assurance, Information Systems, or a related discipline.
  • Extensive hands-on experience with eMASS and RegScale or comparable GRC platforms.
  • Experience with ServiceNow GRC or similar governance, risk, and compliance technologies.
  • Experience integrating GRC platforms with vulnerability management, workflow, ticketing, and reporting systems.
  • Experience supporting AWS or other cloud-based federal environments.
  • Experience with multilevel security (MLS), cross-domain security requirements, and complex federal system architectures.

Clearance

  • A minimum of an active Secret security clearance is required.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.jofdav.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:07 min

Summarizing critical actions for organizational cybersecurity compliance readiness

Matthew Brady Matthew Brady · World Congress 2026 Europe

2:27 min

Introduction to WebAssembly in a cloud computing context

Edo Edo · World Congress 2024

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

56 sec

Integrating automated approval workflows into the portal

Markus Eisele Markus Eisele · World Congress 2025

2:51 min

Alibaba Cloud developer resources and cloud computing training

Cheng Zhang · LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all