Information System Security Manager (ISSM)

KBR Inc
El Segundo, CA, United States
13 days ago
Apply on dejobs.org
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Xacta Cyber Security Information Systems Information Security Management Information Technology Scap Compliance Checker Vulnerability Analysis

Job description

KBR is seeking an Information System Security Manager (ISSM) to support Assessment & Authorization (A&A) activities and cybersecurity policy and procedure development under the Information Assurance organization. This position is responsible for helping obtain and maintain Authorizations to Operate (ATOs) for assigned systems, applications, networks, and devices. Based in El Segundo, California, the ISSM reports directly to the West Regional ISSM and supports the development, implementation, and enforcement of cybersecurity practices across assigned systems and locations., * Serve as the onsite representative of the Information Assurance Operations organization and provide subject matter expertise on cybersecurity and information assurance activities.

  • Conduct risk and vulnerability assessments to identify security risks, vulnerabilities, and protection requirements.
  • Lead and participate in Assessment & Authorization (A&A) and Risk Management Framework (RMF) meetings with government and contractor personnel.
  • Support the development and implementation of cybersecurity policies, procedures, and process improvements.
  • Develop, review, and maintain RMF documentation, including Security Plans, Risk Assessment Reports, and Plans of Action & Milestones (POA&Ms).
  • Assess system compliance with applicable NIST, DoD, and Intelligence Community security requirements, including NIST SP 800-53, NIST SP 800-171, and DISA STIGs and SRGs.
  • Coordinate with system administrators, engineers, developers, and other stakeholders to support authorization efforts and maintain required security documentation.
  • Analyze vulnerability scan results and assist with remediation activities to maintain compliance and reduce cybersecurity risk.
  • Provide regular status updates, brief stakeholders on authorization activities, and prepare reports for leadership.
  • Maintain awareness of evolving cybersecurity standards, RMF guidance, and security requirements and apply updates to assigned systems and processes.

Requirements

  • Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, or a related field; or equivalent combination of education and experience.
  • Active DoD Top Secret security clearance with SCI eligibility.
  • Current DoD 8570-compliant certification.
  • 5+ years of experience performing ISSM and/or ISSO responsibilities in classified environments.
  • Experience supporting Risk Management Framework (RMF) authorization and compliance activities.

Technical & Leadership Skills

  • Knowledge of Assessment & Authorization (A&A) processes and RMF requirements.
  • Experience developing RMF artifacts, including Security Plans, Risk Assessments, and POA&Ms.
  • Familiarity with cybersecurity compliance tools such as eMASS, ACAS, Xacta, and SCAP Compliance Checker.
  • Working knowledge of NIST security standards and DISA STIGs.
  • Strong organizational, analytical, and problem-solving skills.
  • Excellent written and verbal communication skills with the ability to collaborate across technical and non-technical teams.

Preferred Qualifications

  • Experience supporting Department of Defense or Intelligence Community programs.
  • Experience working within multi-enclave or classified network environments.

About the company

At KBR, we partner with clients to provide purposeful and comprehensive science, technology and engineering solutions to governments as well as the top tier commercial clients in green hydrogen and green ammonia. With a full portfolio of services, proprietary technologies and expertise, our approximately 37,000 employees are ready to handle projects and missions throughout their entire lifecycle, from planning and design to sustainability and maintenance.

Whether at the bottom of the ocean or in outer space, our clients trust us to deliver the impossible on a daily basis.

As the needs of the world change, we’re ready to respond and guide the way forward with strategic, sustainable, and technological advancements grounded in more than a century of practical application and execution., Belong, Connect and Grow at KBRAt KBR, we are passionate about our people and our Zero Harm culture. These inform all that we do and are at the heart of our commitment to, and ongoing journey toward being a People First company. That commitment is central to our team of team’s philosophy and fosters an environment where everyone can Belong, Connect and Grow. We Deliver - Together.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

59 sec

Proving regulatory compliance to auditors and chief officers

Mike Bursell Mike Bursell · World Congress 2026 Europe

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:13 min

Structuring a comprehensive corporate security organization

Eileen Uchitelle Eileen Uchitelle +1 · Coffee With Developers

2:28 min

Preventing sensitive information disclosure in RAG systems

Deepu Deepu · World Congress 2025

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

1:44 min

Coordinating security mitigations with the CISA clearinghouse

Adrian Mouat Adrian Mouat · World Congress 2026 Europe

Videos

See all

Related articles

See all