> Markdown version of [/jobs/ext/2553532-senior-information-systems-security-manager-issm](https://www.wearedevelopers.com/jobs/ext/2553532-senior-information-systems-security-manager-issm). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Information Systems Security Manager (ISSM) - **Company:** KBR Inc - **Location:** Raleigh, NC, United States (Remote available) - **Experience:** Expert - **Salary:** $159,000.0 - $200,000.0 - **Contract:** Permanent contract - **Skills:** Xacta, Agile Methodology, Amazon Web Services, Microsoft Azure, Software as a Service, Cloud Computing, Configuration Management, Cyber Security, Infrastructure as a Service (IaaS), Information Security Management, Platform as a Service (PAAS), Scrum Methodology, Security Software, Software Engineering, Gitlab, Information Technology, Devsecops, Docker, Vulnerability Analysis - **Published:** August 21, 2026 - **Apply:** https://dejobs.org/x/x/63D0ED5BDF354F7E95B83F9B863BF6A1/job/ ## About the Role * Bachelor's degree in Information Technology , Cybersecurity, Business, Engineering, or related field * Minimum 5 years of Information Assurance, Cybersecurity, or Information Security experience supporting federal or DoD environments * Technical Expertise: * Demonstrated ability to lead personnel using Agile Scrum methods * Demonstrated ability to obtain and maintain an Authority t o Operate * Experience with cloud-based IaaS, PaaS and SaaS solutions in an Air Force or DoD context (e.g., AWS GovCloud, Azure Government). * Proficiency with the tools and technologies commonly used in DEVSECOPS efforts ( e.g. GitLab, Docker, etc.) . * Communication and Collaboration: * Proven ability to lead technical staff and manage complex modernization efforts * Strong written and verbal communication skills, with the ability to articulate complex concepts to program managers, contractors, and non-technical stakeholders. * Exceptional problem-solving skills and the ability to manage multiple priorities and deadlines within the DoD acquisition environment. * Ability to navigate the complexities of military contracting processes and collaborate with defense contractors to ensure compliance with Air Force requirements. * Clearance: * Active DoD Secret clearance Desired: * Demonstrated ability to work well independently or as a team member. * Demonstrated ability to drive projects to closure and to assimilate and correlate project information in a fast-paced environment. * Demonstrated ability to communicate with technical and non-technical project teams. * Familiarity with DoD and Air Force cybersecurity -related acquisition initiatives to include authoring cybersecurity strategies. * Master's Degree * Active DoD TS/SCI clearance Certifications: * Highly Preferred: CompTIA Sec+ as well as Agile Product Owner and/or Scrum Master * Preferred: DAWIA Engineering and Technology Management Practitioner ## Description KBR i s seeking a highly skilled and experienced Information Systems Security Manager to support the Air Force 's Advanced Battle Management System (ABMS) Division . The ideal candidate brings deep technical expertise in Command, Control, Communications, and Battle Management (C3BM) in the research and development phase. Knowledge of current cybersecurity practices, software development processes , and the ability to communicate technically complex topics in an easy-to-understand way . Y ou will be responsible for providing expert-level technical advice on all cybersecurity matters for the program. You will ensure the Branch's product lines maintain compliance with federal and DoD cybersecurity requirements while supporting operational mission objectives., * Lead cybersecurity efforts supporting Assessment and Authorization (A&A) activities in accordance with the Risk Management Framework (RMF). * Develop, maintain , and manage security authorization packages using eMASS , XACTA, and related cybersecurity tools. * Prepare and update System Security Plans (SSPs), Risk Assessments, Configuration Management Plans, Contingency Plans, and POA&Ms. * Perform security control assessments and evaluate compliance with NIST SP 800-53 requirements. * Conduct vulnerability assessments utilizing scanning and auditing tools and coordinate remediation activities. * Support continuous monitoring programs and maintain cybersecurity documentation throughout the system lifecycle. * Coordinate with Program Managers, System Owners, Information System Security Officers (ISSOs), Authorizing Officials, and engineering teams. * Provide cybersecurity guidance for Air Force weapon systems, avionics systems, and mission-critical IT platforms. * Analyze security risks and recommend mitigations to ensure compliance with DoD, FISMA, OMB, and federal cybersecurity mandates. * Support security reviews, inspections, audits, and accreditation activities. * Monitor cybersecurity status and provide regular reporting to leadership and stakeholders. Work Environment: * Location: Remote * Travel Requirements: M oderate , 20 -40 % * Working Hours: Standard - Core hours 0900 - 1500 ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker Compose: Rediscovered](https://www.wearedevelopers.com/videos/1978-docker-compose-rediscovered) - [WeAreDevelopers LIVE - Modern DevOps for IoT Devices and More](https://www.wearedevelopers.com/videos/1805-wearedevelopers-live-modern-devops-for-iot-devices-and-more) - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) - [Organizational Change Through The Power Of Why - DevSecOps Enablement](https://www.wearedevelopers.com/videos/478-organizational-change-through-the-power-of-why-devsecops-enablement) - [Docker build without Docker](https://www.wearedevelopers.com/videos/100114-docker-build-without-docker) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers)