Information System Security Manager

United States Air Force
United States
1 day ago
Apply on www.clearancejobs.com
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Working hours
Shift work

Tech stack

Xacta Agile Methodology Software System Penetration Testing Cloud Engineering Cyber Security Information Systems Databases Desktop Computing Network Topologies Information Security Management Security Information and Event Management Software Vulnerability Management
+4 more
Information Technology Operational Systems Cyber Warfare Devsecops

Job description

Join Space Delta 85 as an Information System Security Manager (ISSM) to safeguard mission-critical capabilities across Battle Management, Battlespace Awareness, Space Access, and Networked Services. In this vital role, you will champion the cybersecurity posture of operational systems by managing Risk Management Framework compliance, eMASS workflows, and artifact verification to achieve and maintain system authorizations. You will also evaluate technical modifications for robust security implementation, coordinate Security Control Assessments, analyze vulnerabilities to recommend targeted mitigations, and partner with defensive cyber operations and penetration testing teams. This opportunity is ideal for a proactive cybersecurity professional dedicated to combining rigorous technical expertise and risk-based decision-making to defend essential space operations.

The ideal candidate brings proven expertise in managing complex authorization boundaries, system modifications, interconnection agreements, and lifecycle authorization packages within a dynamic operational environment. An experienced professional who operates independently, the candidate excels at evaluating cybersecurity postures, identifying vulnerabilities, and executing risk-informed corrective actions to fortify mission systems. Strong interpersonal and communication skills are essential to collaborate effectively across military, civilian, and contractor stakeholders within Integrated Product Teams and to articulate technical risks and operational impacts clearly to leadership. A competitive background includes hands-on familiarity with defensive cyber operations, vulnerability mitigation, penetration testing, and modern cloud, Agile, or DevSecOps frameworks, supported by qualifying technical education credentials.

Requirements

  • Advanced IT professional who demonstrates that they can manage a cybersecurity program at the enterprise level using the DoD’s cybersecurity / RMF management system, currently eMASS, Xacta, and ITIPS. Can maintain cybersecurity documentation including: creating policies, SSPs, network topologies, POA&Ms.
  • Can identify measures or indicators of system performance and the actions needed to improve or correct performance, trends and patterns in reported compromises using enterprise Security Information and Event Management (SIEM) / Event Monitoring tools.
  • Knowledge of the missions, roles, functions, organizational structures, and operation of the Department of Defense, and entities that govern, interface with, and/or influence management control of proposed and ongoing service contracts.
  • Expert knowledge of the principles, methods, and techniques of IT assessment, planning, management, monitoring, and evaluation as well as knowledge of the principles, methods, or tools for developing, scheduling, coordinating, managing IT projects and resources, monitoring and inspecting costs, work, and contractor performance. Ability to lead and manage information systems planning, development, implementation, operation, and maintenance.
  • Knowledge of the principles, methods, and tools for the coordinated management of IT programs to include providing oversight of multiple IT projects, integrating dependent schedules and deliverables, and related activities such as life cycle management and program governance.
  • Knowledge of the principles and methods to identify, analyze, specify, design, and manage functional and infrastructure requirements; includes translating functional requirements into technical requirements used for logical design or alternative technologies or approaches. Ability to research and analyze external products to determine their potential for meeting mission requirements and business needs.
  • Knowledge of concepts, practices, and techniques used to identify, engage, influence and monitor relationships with individuals and groups connected to IT work/development efforts. Includes those who are actively involved, those who exert influence over the process and its results, and those who have a vested interest in the outcome. Ability to work effectively with customers to assess their requirements then provide information, expertise, and assistance to satisfy those needs.
  • Ability to communicate effectively, both orally and in writing, clearly, concisely, with technical accuracy and to use computers and a variety of software programs and databases, gather and analyze a variety of program information, make sound judgments concerning program progress, and effectively communicate recommendations orally and in writing to higher organizational management and contractors. Requirements Conditions of employment

  • U.S. Citizenship Required
  • Must be able to obtain and maintain a Top-Secret security clearance.
  • This is a drug testing designated position. The incumbent is subject to pre-employment drug testing as a condition of employment, and participation in random drug testing.
  • Required to handle and safeguard sensitive and/or classified information in accordance with regulations to reduce potential compromise.
  • Incumbent may be required to work non-standard duty hours (evenings/weekends), overtime, or credit hours, and remains subject to recall during exercises, contingencies, or emergency situations.
  • Must obtain the required DoW-approved cybersecurity baseline certification within six months of hire, maintain active certification standing (CEUs and maintenance fees), and release verification data to DoW via DMDC., The 2210 series has an individual occupational requirement that must be met and can be viewed . There is no Group Coverage Qualification Standard for this series.

Benefits & conditions

  • Employee must within 30-days of assuming this position and by 31 October annually thereafter, file an OGE-450, “Confidential Financial Disclosure Report.
  • This position is designated a NON-CRITICAL APDP position.
  • Eligible for situational telework only, including Emergency and OPM prescribed “Unscheduled Telework”.
  • Subject to Temporary Duty Assignment (TDY): Approximately 20 days per year.
  • Depending on the type of position (competitive/excepted) you are selected for, you will be required to serve a 1-year probationary period OR 2-year trial period.
  • Upon completion of your probationary/trial period, your employment will be terminated unless you receive certification, in writing, that your continued employment advances the public interest.
  • PCS is not authorized. Incentive is authorized.
  • This position will close after 5 business days or 75 applications, whichever comes first.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

3:04 min

Database evolution and the funding behind vector databases

Erik Bamberg · LIVE

2:07 min

Summarizing critical actions for organizational cybersecurity compliance readiness

Matthew Brady Matthew Brady · World Congress 2026 Europe

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

4:01 min

Managing application isolation via pluggable database models

Wei Hu Wei Hu · World Congress 2022

Videos

See all

Related articles

See all