> Markdown version of [/jobs/ext/2650728-nosr-siss2-specialist-information-system-security-ii-ato-rmf-manager](https://www.wearedevelopers.com/jobs/ext/2650728-nosr-siss2-specialist-information-system-security-ii-ato-rmf-manager). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # NOSR - SISS2 -Specialist, Information System Security II (ATO/RMF Manager) - **Company:** Amentum Services, Inc. - **Location:** Norfolk, VA, United States - **Experience:** Experienced - **Salary:** $90,000.0 - $115,000.0 - **Contract:** Permanent contract - **Skills:** Cyber Security, Information Security Management, Networking Hardware, Network Administration, Computer Networking Systems, SC Clearance - **Published:** August 14, 2026 - **Apply:** https://dejobs.org/x/x/13D1EC128F244D9DAD3BD04395671328/job/ ## About the Role * SPECIALIZED EXPERIENCE: Three (3) years of full-time hands-on experience in the operation and/or maintenance of Submarine Network Systems and/or major network administration systems on board US Naval Submarines; or an equivalent civilian work experience outside of the military. * GENERAL EXPERIENCE: Five (5) years full-time management experience applying knowledge of policies, procedures, and structures to develop, implement, and maintain a secure Information Systems computing environment on US NAVY Ships/Submarine. * Active SECRET clearance. Ability to obtain TS/SCI clearance.Note: US Citizenship is required to maintain a secret clearance. ## Description * Serve as NIST Risk Management Framework (RMF) subject matter expert (SME) for COMSUBLANT assessment and authorization (A&A) process. * Support Atlantic Fleet submarines by reviewing all applicable documentation relevant to the authorization to operate (ATO) process for accuracy and relevance, providing guidance and feedback as applicable based on current A&A policies. * Monitor and track the progression of the A&A process for assigned units and COMSUBLANT special projects, ensuring stakeholders are aware of and able to meet prescribed deadlines. Prepare and review documentation to include System Security Plans (SSP) and other artifacts. * Advise and guide ISIC and shipboard IT Divisional Sailors on A&A policies and references for ATO certification and maintenance. * Maintain awareness of any change to applicable guidance or practice IAW governing policies and ensure that information is formally provided to boats in clear and concise language. * Provide status and feedback of the A&A process for assigned units to Type Commanders as needed, ensuring there is awareness of identified or trending fleet deficiencies and difficulties and include recommendations for improvement. * Assist in the evaluation of security solutions to ensure they meet security requirements for processing classified information. * Maintain records on workstations, servers, routers, firewalls, and other network devices including system updates and upgrades. * Propose, coordinate, and implement information systems security policies, standards, and methodologies. * Provide support to the Information Systems Security Manager (ISSM) for maintaining the appropriate operational cybersecurity posture for a system, platform, program, or enclave. ## Related Videos - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [Building the Nervous System of AI - Michael Kagan (NVIDIA)](https://www.wearedevelopers.com/videos/2133-building-the-nervous-system-of-ai-michael-kagan-nvidia) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Optimizing Your App for Success: Tips and Techniques for managing slow devices](https://www.wearedevelopers.com/videos/655-optimizing-your-app-for-success-tips-and-techniques-for-managing-slow-devices) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology)