Information System Security Manager (ISSM)

Keaki Technologies
Indian Springs, NV, United States
11 days ago
Apply on www.clearancejobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$118,327.0
Working hours
Regular working hours

Tech stack

Xacta Configuration Management Cyber Security Information Systems Identity and Access Management Information Security Management Package Development Process Security Content Automation Protocol Software Vulnerability Management Information Technology Nessus Plan of Action and Milestones
+1 more
Vulnerability Analysis

Job description

The ISSM provides dedicated strategic cybersecurity leadership and oversight for designated classified information system enclaves supporting the 25th Attack Group (25 ATKW). Unlike a hybrid or tactical operations role, this position focuses exclusively on system-level cybersecurity governance, Risk Management Framework (RMF) compliance, and continuous monitoring to achieve and maintain Authorizations to Operate (ATO). The ISSM serves as the primary cybersecurity technical advisor to the Government Authorizing Official (AO), Program Manager (PM), and Information System Owner (ISO)., * Serve as the formally appointed Information Systems Security Manager (ISSM) for up to four contractor managed Information Systems (including RPA Low, ACN, Audio MLS, and RPA High), overseeing the full lifecycle of cybersecurity compliance and system accreditation in accordance with DoDI 8510.01, AFI 17 101 (RMF), and AFMAN 17-1301 (COMPUSEC).

  • Develop, maintain, and oversee authorization documentation, System Security Plans (SSPs), risk assessments, and continuous monitoring activities using both eMASS and Xacta workflow platforms.
  • Act as the primary interface with Government Authorizing Officials (AOs) and Security Control Assessors (SCAs) to present risk assessments, initiate ATO packages, manage Plan of Action and Milestones (POA&Ms), and secure timely renewals.
  • Maintain rigorous oversight of vulnerability management, incident reporting, access control governance, and configuration management functions across assigned enclaves.
  • Provide oversight and guidance to subordinate cybersecurity personnel (ISSOs) to ensure security control implementation and mitigation efforts align with established baselines and mission requirements.
  • Provide contingency continuity support for tactical enclave cybersecurity (ISSO) activities during periods of workforce shortfalls or as critical mission needs dictate.
  • Report conditions that materially affect system authorization status or cybersecurity posture directly to the Government, translating technical risk into actionable mission risk.
  • Initiate exceptions, deviations, or waivers to cybersecurity requirements when operational impacts dictate, ensuring complete documentation and coordination with the AO.
  • Ensure all assigned personnel and systems remain compliant with applicable DoW/DoD 8140 cybersecurity workforce requirements.
  • Perform all other position related duties, as assigned, or requested.

Requirements

Work Environment, Physical and Mental Demands: Typical office environment with no unusual hazards, occasional lifting of 20 pounds, kneeling, standing, and walking, routinely sitting and constant use of speech/hearing abilities for communication, constant mental alertness, and must be able to work under deadlines, * A BS degree in Information Technology, Cybersecurity, Data Science, Information Systems, Computer Science, or equivalently relative discipline, from an ABET accredited or CAE designated institution.

  • Active DoD 8140 / DoDI 8570.01-M IAM Level II or III Certification matched to ISSM responsibilities prior to hiring
  • Must possess and maintain a valid state-issued driver’s license., * Minimum three to five (3-5) years of dedicated experience in RMF package development, continuous monitoring, and acting as an ISSM or lead ISSO.
  • Demonstrated proficiency in navigating and managing ATO packages within both eMASS and Xacta. Experience with STIGs, SCAP, vulnerability scanning, and ACAS/NESSUS.
  • Knowledge of cybersecurity laws, regulations, policies, governance, and technical safeguards governing the use, processing, storage, and transmission of classified information.
  • Exceptional communication skills, with the ability to confidently brief senior government leadership (AOs, SCAs, PMs) on cyber risk posture., * Master’s degree in a Cybersecurity or related field.
  • Experience with COMSEC accounts.
  • Understanding of GSA approved security containers and locks.

REQUIRED CITIZENSHIP AND CLEARANCE:

  • U.S. Citizenship is required.
  • Active Top Secret Clearance with the ability to obtain and maintain SCI access.

Benefits & conditions

  • $118,327.00
  • The compensation range or hourly rate provided is a good faith estimate at the time of posting. Final compensation will be determined based on qualifications, experience, skills, internal equity, market conditions, and applicable laws.

Bering-Alaka`ina Holdings, LLC is a fast-growing government service provider. Employees enjoy competitive salaries. Eligible employees enjoy a 401K plan with company match; medical, dental, disability, and life insurance coverage; tuition reimbursement; paid time off; and 11 paid holidays.

About the company

As a part of BSNC, Bering- Alakaina Holdings gives hiring, promotion, training, and retention preference to BSNC shareholders, descendants and shareholder spouses who meet the minimum qualifications for the job. Qualified job candidates will generally be considered in the following order: BSNC shareholders, descendants, shareholder spouses, current employees, and outside candidates. The BSNC Shareholder Development department tracks and monitors the implementation of the Shareholder Hire Preference across its operations.

Bering-Alakaina Holdings, LLC is comprised of industry-recognized government service firms designated as Alaska Native Corporation (ACN)-owned and 8(a) certified businesses and includes Keaki Technologies, LLC; Laulima Government Solutions, LLC; Kūpono Government Services, LLC; Kapili Services, LLC; Po`okela Solutions, LLC; Kīkaha Solutions, LLC; and Pololei Solutions, LLC.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

5:21 min

Protecting infrastructure with the shared responsibility model

Mustafa Toroman · World Congress 2023

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

2:07 min

Summarizing critical actions for organizational cybersecurity compliance readiness

Matthew Brady Matthew Brady · World Congress 2026 Europe

2:59 min

Why existing security and device management tools fail

Marcus Wermuth Marcus Wermuth · World Congress 2026 Europe

4:27 min

Embracing a new perspective on mobile cyber attacks

Tom Tovar · World Congress 2023

Videos

See all

Related articles

See all