> Markdown version of [/jobs/ext/2421449-information-systems-security-manager-issm](https://www.wearedevelopers.com/jobs/ext/2421449-information-systems-security-manager-issm). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Systems Security Manager (ISSM) - **Company:** KBR Inc - **Location:** Orange Park, FL, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Configuration Management, Cyber Security, Information Security Management, Security Software, Software Vulnerability Management, Information Technology, Plan of Action and Milestones, Vulnerability Analysis - **Published:** August 18, 2026 - **Apply:** https://kbr.wd5.myworkdayjobs.com/KBR_Careers/job/Orange-Park-Florida/Information-Systems-Security-Manager--ISSM-_R2128271 ## About the Role * Bachelor's degree in Information Technology, Cybersecurity, Business, Engineering, or related field. * Minimum 8 years of Information Assurance, Cybersecurity, or Information Security experience supporting federal or DoD environments. * Ablke to obtain Secret Security Clearance within six months. Demonstrated experience with: * Risk Management Framework (RMF) * eMASS * NIST 800-53 Security Controls * Security Control Assessment and Validation * FISMA Compliance * Vulnerability Management * Plan of Action & Milestones (POA&M) Management * Assessment and Authorization (A&A) Processes * Experience developing and maintaining accreditation documentation. * Strong written and verbal communication skills. Preferred Qualifications * Certified Information Security Manager (CISM) or equivalent * Experience supporting U.S. Air Force acquisition or weapon system programs. * Familiarity with ST&E and Continuous Monitoring programs. * Master's Degree in a related discipline. Desired Skills * Cybersecurity strategy development * Security risk analysis * Compliance management * Configuration management * Vulnerability assessment * Stakeholder engagement * Technical documentation development ## Description We are seeking an experienced Information Systems Security Manager (ISSM) to support critical Air Force and DoD weapon system and information technology programs. The successful candidate will serve as the cybersecurity lead responsible for ensuring systems maintain compliance with federal and DoD cybersecurity requirements while supporting operational mission objectives., * Lead cybersecurity efforts supporting Assessment and Authorization (A&A) activities in accordance with the Risk Management Framework (RMF). * Develop, maintain, and manage security authorization packages using eMASS and related cybersecurity tools. * Prepare and update System Security Plans (SSPs), Risk Assessments, Configuration Management Plans, Contingency Plans, and POA&Ms. * Perform security control assessments and evaluate compliance with NIST SP 800-53 requirements. * Conduct vulnerability assessments utilizing scanning and auditing tools and coordinate remediation activities. * Support continuous monitoring programs and maintain cybersecurity documentation throughout the system lifecycle. * Coordinate with Program Managers, System Owners, Information System Security Officers (ISSOs), Authorizing Officials, and engineering teams. * Provide cybersecurity guidance for Air Force weapon systems, avionics systems, and mission-critical IT platforms. * Analyze security risks and recommend mitigations to ensure compliance with DoD, FISMA, OMB, and federal cybersecurity mandates. * Support security reviews, inspections, audits, and accreditation activities. * Monitor cybersecurity status and provide regular reporting to leadership and stakeholders. ## Related Videos - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [Software Security 101: Secure Coding Basics](https://www.wearedevelopers.com/videos/220-software-security-101-secure-coding-basics) - [Enabling intelligent logistics automation: home-grown Industrial IoT platform at Austrian Post](https://www.wearedevelopers.com/videos/2018-enabling-intelligent-logistics-automation-home-grown-industrial-iot-platform-at-austrian-post) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Reporting Active Exploits in 24 Hours: Are You Ready for the CRA?](https://www.wearedevelopers.com/videos/100248-reporting-active-exploits-in-24-hours-are-you-ready-for-the-cra) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [How should you format your IT resume?](https://www.wearedevelopers.com/magazine/68-how-should-you-format-your-it-resume) - [Now is the time for industrialized software development](https://www.wearedevelopers.com/magazine/601-now-is-the-time-for-industrialized-software-development) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)