> Markdown version of [/jobs/ext/2847257-cyber-anst-sr-prin](https://www.wearedevelopers.com/jobs/ext/2847257-cyber-anst-sr-prin). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Anst Sr Prin - **Company:** BAE Systems - **Location:** Lehi, UT, United States (Remote available) - **Experience:** Expert - **Salary:** $76,170.0 - $95,202.0 - **Contract:** Temporary contract - **Skills:** Xacta, Cyber Security, Information Security Management, Security Content Automation Protocol, Software Vulnerability Management, Information Technology, Tenable Nessus, Nessus, Scap Compliance Checker, Vulnerability Analysis - **Published:** September 11, 2026 - **Apply:** https://www.careerjet.com/job/us09701e8a38903a89a7be2115fa341271/eaa ## About the Role 10+ years' experience ISSM duties performing specific tasks for ISSM, security assessments, vulnerability management, or cybersecurity. -Bachelor's degree in information technology related fields. -Leadership role managing ISSM projects. -Demonstrated ability to lead cross-functional teams and manage complex projects in a multi-stakeholder environment. -Experience supporting Authorization to Operate (ATO) efforts and Authority to Connect (ATC) for weapons or mission-critical platforms. -Experience with DoD requirements development. -Experience working in a collaborative, multi-discipline team environment. -Knowledge of STIGs and SCAP compliance scanning tools. (eg. ACAS, Nessus, SCAP Compliance Checker). -Familiarity with NIST 800-53, CNSSI1253, and DoD-specific security control overlays. -Possess excellent written and verbal communication skills. -Ability to obtain a TS/SCI security clearance. ## Description BAE Systems is seeking a motivated Information System Security Manager to support Air Force Global Strike Command (AFGSC) Task Force Detachment leaders as part of the Intercontinental Ballistic Missile (ICBM) Integration Support Contract (ISC). Detailed Job Description: The Sentinel ICBM weapon system (formerly GBSD) is an enormous and complex "Mega-Project" modernizing the entire ICBM weapon system deployed across tens of thousands of square miles in five states. The new weapon system includes replacement of hundreds of aging Minuteman III ICBM facilities to secure and support a newly designed, technologically advanced ballistic missile. The complete replacement also provides an entirely new command & control system as well as vast array of required support equipment specifically engineered to operate and sustain the new weapon system over the decades ahead. This position will directly support the AFGSC Task Force Detachment Commander / Director and associated personnel, as they support key internal and external shareholders' vision, direction, and implementation during the transition from the Minuteman III to the Sentinel weapon system. Duties will include performing risk management framework (RMF) activities and authorization efforts; conducting self-assessments of authorization packages, assessing levels of risk, and verifying IT policy compliance; and overseeing and maintaining regulatory requirements and completing periodic reviews for security implications and security applications. Specifically, RMF efforts include executing RMF lifecycle activities, including categorization, control selection, implementation, assessment, authorization, and continuous monitoring. Proficiency with DoD authorization tools eMASS (Air Force Specific), XACTA, or equivalent platforms for managing security authorization packages is required, as well as experience developing and maintaining System Security Plans (SSPs), Plans of Actions and Milestones (POA&Ms), and other RMF artifacts. Additionally, the ISSM will identify systemic security issues based on the analysis of vulnerability and configuration data; apply cybersecurity and privacy principles to organizational requirements; and conduct vulnerability scans and recognize (and react to) vulnerabilities in security systems. The successful candidate will have familiarization and insight into military communications requirements, processes, and procedures. Minimum travel is anticipated within the communication lead's duties. Pursuant to Government contract, this position requires US Citizenship status. This position is a full-time 5/40 role located at Minot Air Force Base, North Dakota, due to special-access, classified working environment and is not conducive to regular "telework" schedules. #ASFS Salary Max Point 205486 Clearance Level - Must be able to obtain for position Top Secret/SCI Shift 1st Shift Union Job None Business Area Air and Space Force Solutions ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Maturity assessment for technicians or how I learned to love OWASP SAMM](https://www.wearedevelopers.com/videos/351-maturity-assessment-for-technicians-or-how-i-learned-to-love-owasp-samm) - [Less Is More: How Lagom and Agile Can Create Harmonious Workflows](https://www.wearedevelopers.com/videos/1993-less-is-more-how-lagom-and-agile-can-create-harmonious-workflows) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)