Information System Security Manager SME

Leidos, Inc.
United States
3 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$131,300.0 - $237,350.0
Working hours
Regular working hours
Job source

Tech stack

Business Analytics Applications Backup Devices Configuration Management Cyber Security Information Systems Computer Engineering Disaster Recovery Dynamic Random-Access Memory Federal Information Processing Standards (FIPS) Information Security Management Software Engineering Software Requirements Analysis
+4 more
Enterprise Data Management Automated Information System (AIS) IT Architecture Information Technology

Job description

This Department of War enterprise data and analytics program delivers mission-critical capabilities that enable leaders across the Department to make faster, better-informed decisions using trusted data at scale. Leidos Digital Modernization sector is seeking an experienced ISSM SME to support the delivery, enhancement, and adoption of enterprise data and analytics products used across multiple DoD organizations.

In this role, you will work alongside government partners, ART Product Teams, and other industry teammates to translate operational and strategic requirements into scalable, production-ready solutions. You will contribute directly to product planning, execution, and continuous improvement-helping ensure capabilities are delivered efficiently, aligned to mission priorities, and positioned for sustained success.

This position offers the opportunity to work on a high-visibility, enterprise program at the intersection of data, analytics, and emerging AI technologies. Ideal candidates are motivated by mission impact, comfortable operating in complex stakeholder environments, and interested in building deep domain expertise while delivering capabilities with real-world national security outcomes.

Primary Responsibilities : Serves as the primary liaison between stakeholders and technical teams to ensure a unified understanding of security requirements and address questions or concerns proactively. Interprets mission, warfighter, and user needs to ensure security solutions align with program objectives and system requirements.

Analyzes security-related Service Level Agreements (SLAs), Technical Performance Measures (TPMs), and Key Performance Indicators (KPIs) to support reporting, risk assessment, and service delivery.

Oversees and prioritizes remediation activities involving NIST Risk Management Framework (RMF) requirements and other security issues to ensure timely resolution.

  • Manages and executes security controls and compliance activities across development and operations, strengthening the organization’s overall security posture.

  • Lead the team responsible for the ISSMs.

Establish a centralized ISSM pool to coordinate, review, validate, and approve all activities, which contribute to the assessment and authorization of automated information systems. Expected to be able to address anything from physical security matters to information assessments, security tests and evaluations, preparation of Contingency Plans, and administration of Life Cycle Management and Configuration Management documentation.

Assess the vulnerability of AISs.

  • Recommend and implement changes to IT systems in accordance with the DoD directives.

Function as a technical specialist and assess the risk management security and contingency planning programs. Implement measures to protect data from physical destruction or theft. The contractor ISSM shall ensure that back-up procedures are in place for recovery from loss, destruction of data and program files, or from physical damage.

Implement SOPs and periodically tests recovery procedures to make sure recovery procedures are operational.

  • Develop policy and guidance and establish implementation and oversight plans to ensure compliance with Risk Management requirements.

Coordinate the review and evaluation of cyber security programs and effectiveness of implementation; identify problem areas; updates and establishes new requirements in response to new technologies and threats; and make recommendations to achieve a fully compliant IT architecture.

  • Develop Systems Security Contingency Plans and Disaster Recovery Procedures.

  • Develop and implement training and awareness programs to ensure that Advana systems, network, and data users are aware of, understand, and adhere to systems security policies and procedure.

Requirements

  • TS/SCI with ability to obtain and keep a CI Poly security clearance
  • Bachelor degree (Computer Science, Cyber Security, Information Technology, Software Engineering, Information Systems, Computer Engineering, Mathematics or Engineering) or higher from an accredited college or university OR Offerings listed in DoD 8140 Training Repository OR CISSP-ISSMP or GSLC Demonstrated experience with: 12+ years’ experience in the Cybersecurity area 10+ years’ experience with technology.
  • 8+ years’ experience with IA technology.
  • 5+ years’ experience with Risk Management Framework experience.
  • 5+ years’ of project management work experience.
  • Expert knowledge of NIST SP 800-37, CNSSI 1253, FIPS 199 and NIST SP 800-53
  • Knowledge of the DoD Risk Assessment Methodology (DRAM) and POAM tracking.
  • Expert in RMF and A&A accreditation processes, Certifications in Cybersecurity like DOD IA/IAT Level III certification

Benefits & conditions

Pay and benefits are fundamental to any career decision. That’s why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at www.leidos.com/careers/pay-benefits.

About the company

If you’re looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We’re not hiring followers. We’re recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We’re already at step 30 - and moving faster than anyone else dares., Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit www.Leidos.com.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:28 min

Documenting microservice architectures with the architecture canvas

Benjamin Wolf Benjamin Wolf +1 · WWC 2025

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

1:11 min

Establishing secure recovery factors without password fallbacks

Clemens Hübner Clemens Hübner · WWC 2023

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

1:50 min

Aligning information architecture with software system architecture

Marcel Bagemihl Marcel Bagemihl +1 · WWC 2024

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all