> Markdown version of [/jobs/ext/2181757-information-systems-security-manager](https://www.wearedevelopers.com/jobs/ext/2181757-information-systems-security-manager). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Systems Security Manager - **Company:** SOSi View all jobs - **Location:** Honolulu, HI, United States - **Experience:** Expert - **Salary:** $110,290.0 - $148,891.0 - **Contract:** Permanent contract - **Skills:** Systems Engineering, Confluence, JIRA, Configuration Management, Cyber Security, Information Systems, Computer Networks, Information Security Management, Information Technology Security Auditing, Security Content Automation Protocol, Software Engineering, Software Vulnerability Management, Information Technology, Tenable Nessus - **Published:** August 22, 2026 - **Apply:** https://www.careerjet.com/job/us6e5ddbc078321d88143cfdb59d8ad133/eaa ## About the Role * An Active in-scope SECRET clearance. * Compliant with DoD 8140 DCWF 722 Advanced, Information Systems Security Manager. Masters or PH.D in Computer Science, Cybersecurity, Data Science, Information Systems, Information Technology, or Software Engineering // OR // CISM, CISSP, CISSP-ISSMP, FITSP-M, GCIA, GCIH, GICSP, or GSLC. * Ten (10) years of experience supporting cybersecurity, information assurance, systems engineering, or RMF-related activities. * Knowledge of NSA's Commercial Solution for Classified (CSfC) solution and Cross Domain Solutions (CDS). * Thorough understanding of NIST Publication 800-53r5, Risk Management Framework, Executive Order 14028, and OMB Mandate M-22-09. * Prior experience with eMASS. * Strong communication skills and ability to coordinate tasks across functional groups., * An Active in-scope TOP SECRET clearance with SCI Eligibility. * Recent experience in the assessment and authorization of systems. * Practical knowledge of JIRA and Confluence. * Experience with compliance tools such as Tenable Nessus and SCAP. * Experience in program policy and process creation and oversight. ## Description * Assist the Cyber Security Compliance Team Lead in formulating and upholding an organized information system security program and policies that are applicable to their assigned area of responsibility. * Establish and maintain secure computer systems and networks for classified processing, and take responsibility for the administration, maintenance, and security auditing of such systems. * Develop and supervise the implementation of guidelines and policies for operational information systems security. * Manage assigned eMASS (Enterprise Mission Assurance Support Service) packages containing all security authorizations for information systems under their supervision. * Coordinate inspections, tests, and reviews of information system security. * As a key member of the team, you will be responsible for contributing your expertise and skills to help ensure the team's success in responding to security incidents and protecting organizational assets. * Practical understanding of the Assured Compliance Assessment Solution (ACAS) to support the execution of the information system patch and vulnerability management program. * Thorough understanding of Security Technical Implementation Guidelines (STIG) and ensure they are reviewed, maintained, and updated on a quarterly basis. * Ensure compliance with Configuration Management policies and procedures for authorizing the use of hardware and software on an information system. * Engage with external stakeholders to facilitate the coordination of interconnection requests and ensure that such requests are processed and approved in an efficient manner. * Maintain current knowledge of system functions, security policies, technical security safeguards, and operational security measures. * Manage, maintain, and execute the information security continuous monitoring plan. * Keep records of all security-related vulnerabilities POA&Ms and ensure that serious or unresolved violations are reported to the AO/DAO. * Evaluate any changes to the system, its environment, and operational requirements that could impact security authorization., * May require periods of non-traditional working hours including consecutive nights or weekends. Working at SOSi: All interested individuals will receive consideration and will not be discriminated against for any reason. By clicking the link above or any third-party link within this posting, you are leaving this site and going to a third-party website where the third-party website's terms and privacy policy apply ## Related Videos - [Improving quality with Agentic AI with Rovo Dev and Xray](https://www.wearedevelopers.com/videos/2005-improving-quality-with-agentic-ai-with-rovo-dev-and-xray) - [42 x 2 Canvases Later: Two Years, Two Minds, Many Lessons](https://www.wearedevelopers.com/videos/1458-42-x-2-canvases-later-two-years-two-minds-many-lessons) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [A Founder's Journey : From Startup Chaos to Purposeful Growth](https://www.wearedevelopers.com/videos/1926-a-founder-s-journey-from-startup-chaos-to-purposeful-growth) - [Collaboration Quantified: Lessons from Open Source Developer Networks](https://www.wearedevelopers.com/videos/1422-collaboration-quantified-lessons-from-open-source-developer-networks) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)