> Markdown version of [/jobs/ext/2711834-information-system-security-manager](https://www.wearedevelopers.com/jobs/ext/2711834-information-system-security-manager). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information System Security Manager - **Company:** CareerCircle - **Location:** Adelphi, MD, United States - **Experience:** Expert - **Salary:** $107,900.0 - $195,050.0 - **Contract:** Contract - **Skills:** Agile Methodology, Software System Penetration Testing, Configuration Management, Cyber Security, Information Systems, Computer Networks, Web Development, Information Security Management, Intrusion Detection and Prevention, Intrusion Detection Systems, Information Systems Security Architecture Professional, Network Security, SAP (Applications), Information Technology Security Auditing, Security Software, Security Information and Event Management, Software Deployment, Software Engineering, Systems Architecture, Software Vulnerability Management, Computer Networking Systems, Cloud Platform System, Test Scripts, Malware, Cyber Threat Analysis, Firewalls (Computer Science), Information Technology, Performance Monitor, Cloud Migration, Cyber Warfare, Plan of Action and Milestones, Vulnerability Analysis - **Published:** September 4, 2026 - **Apply:** https://www.careercircle.com/jobs/all/all/usa/md/odenton/a7bf8008-df83-4b8e-a9c9-84166535001f ## About the Role Planning Firewall Equities Automation Mitigation Market Data NIST 800-53 Communication Test Planning Risk Analysis Cyber Security Security Tools Risk Management Ancient History Network Security Secret Clearance Cyber Governance Support Services Security Controls Security Policies Endpoint Security Penetration Testing Information Systems Security Engineering Continuous Monitoring Vulnerability Scanning Cyber Security Policies Configuration Management Certified Ethical Hacker Vulnerability Assessments Risk Management Framework Authorization (Computing) IT Security Documentation Change Management Processes Configuration Documentation Information Systems Security Plan Of Action And Milestones (POA&M) Certified Information Security Manager Certified Information System Auditor (CISA), * Bachelor's Degree with 8+ years of experience or Master's degree with 6+ years of experience. Additional experience may be considered in lieu of a degree. * CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), or similar cybersecurity certification. * In-depth knowledge of DoD cybersecurity policies, frameworks, and compliance standards (e.g., NIST 800-53, RMF, FISMA, ICD 503, JSIG). * In-depth experience with network systems and building/maintaining an ATO for enterprise computing information systems. * Experience with system security engineering, risk management, and vulnerability assessments. * Strong understanding of network security, security controls, and common cybersecurity tools (e.g., firewalls, IDS/IPS, SIEM, endpoint protection). * Ability to work independently and collaborate effectively with cross-functional teams. * Strong communication skills, including the ability to create and present detailed security reports to stakeholders. * Clearance: US Secret clearance required, * Experience in managing security for complex DoD programs or mission-critical systems. * Experience with security tools for vulnerability scanning, penetration testing, and security auditing. * Advanced security certifications (e.g., CISA, CEH, CSSP, etc.). * Experience with configuration management and change management processes in a secure environment. * Experience with automation and the continuous ATO (cATO) process. If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 - and moving faster than anyone else dares., Management Market Data Coordinating Communication Virtual Teams Cyber Security Problem Solving Decision Making Project Scoping Cloud Migration Ancient History Computer Science SAP Applications Threat Detection Cyber Operations Agile Methodology Resource Planning Incident Response Cyber Engineering Project Management GIAC Certifications Top Secret Clearance Performance Reporting Continuous Monitoring Information Technology Application Deployment Effective Communication Project Risk Management Application Development Vulnerability Management Certified Ethical Hacker Verbal Communication Skills Web Application Development Milestones (Project Management) GIAC Certified Incident Handler Multi-Tenant Cloud Environments GIAC Information Security Fundamentals Certified Associate In Project Management Certified Information Systems Security Professional Top Secret-Sensitive Compartmented Information (TS/SCI Clearance) +0, Odenton, MD*On-Site ICD 503 Planning Firewall Equities Automation Mitigation Market Data NIST 800-53 Communication Test Planning Risk Analysis Cyber Security Security Tools Risk Management Ancient History Network Security Secret Clearance Cyber Governance Support Services Security Controls Security Policies Endpoint Security Penetration Testing Information Systems Security Engineering Continuous Monitoring Vulnerability Scanning Cyber Security Policies Configuration Management Certified Ethical Hacker Vulnerability Assessments Risk Management Framework Authorization (Computing) IT Security Documentation Change Management Processes Configuration Documentation Information Systems Security Plan Of Action And Milestones (POA&M) Certified Information Security Manager Certified Information System Auditor (CISA) ## Description The Digital Sector at Leidos has an IMMEDIATE NEED for a Senior Information System Security Manager (ISSM) to support a fast-paced program with the Defense Information Systems Agency (DISA). This role involves supporting the delivery of specialized network and support services to ensure mission success while adhering to DoD standards and regulations. The ISSM will oversee the cybersecurity posture of DoD information systems, ensuring compliance with DoD security standards and protecting sensitive data. The ISSM will develop and implement security policies, conduct risk assessments, manage system accreditations (RMF), and lead continuous monitoring efforts. This role requires collaboration with cross-functional teams and program stakeholders to enforce security controls and manage continuous monitoring. The ISSM will also maintain security documentation and ensure ongoing compliance with applicable regulations., * Manage the Risk Management Framework (RMF) lifecycle for supported systems enabling the achievement and continued maintenance of Authority to Operate (ATO) accreditation. * Provide ISSM, FISMA, and certification and accreditation support for systems and associated components. * Conduct recurring assessments of security controls and documentation in eMASS and PPSM to verify continued accuracy, compliance, and readiness. * Manage whitelist records, address vulnerabilities identified through recurring IAVMS scans, and develop Plans of Action and Milestones (POA&Ms) when required. * Maintain eMASS control records and POA&Ms in accordance with ATO conditions, approval requirements, and remediation timelines. * Coordinate cybersecurity activities supporting interim and final authorization to test and operate, including assessments, mitigation planning, patch validation, implementation tracking, and status reporting. * Create and deliver cybersecurity test plans, test reports, implementation plans, security technical configuration documentation, vulnerability assessment reports, and authorization package materials. * Lead cybersecurity governance and reporting activities, including the development and maintenance of system architectures, requirements, security plans, protection plans, IAVA actions, and IA-related objectives. * Prepare program documentation, evidence, and briefings for DISA OAB reviews and support the team throughout the review process., Equities Operations Automation Market Data Presentations Cyber Security Ancient History Malware Analysis Agile Methodology Program Standards Computer Networks Threat Management Program Management Information Systems Financial Statements Portfolio Management ISO/IEC 27000 Series IT Security Architecture Cybersecurity Compliance Cyber Threat Intelligence Cyber Security Assessment System-on-Chip Development Ethical Standards And Conduct Information Security Management Certified Information Systems Security Professional +0 ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Are Classical Automation Frameworks Dead? How AI Agents Are Transforming QA](https://www.wearedevelopers.com/videos/100243-are-classical-automation-frameworks-dead-how-ai-agents-are-transforming-qa) - [Enhancing Workload Security in Kubernetes](https://www.wearedevelopers.com/videos/356-enhancing-workload-security-in-kubernetes) - [Securing Your Web Application Pipeline From Intruders](https://www.wearedevelopers.com/videos/53-securing-your-web-application-pipeline-from-intruders) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Fighting test flakiness with time machines](https://www.wearedevelopers.com/videos/834-fighting-test-flakiness-with-time-machines) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Best Coding Boot Camps in Germany](https://www.wearedevelopers.com/magazine/237-best-coding-boot-camps-in-germany) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)