> Markdown version of [/jobs/ext/3015756-information-systems-security-manager](https://www.wearedevelopers.com/jobs/ext/3015756-information-systems-security-manager). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Systems Security Manager - **Company:** MIT Lincoln Laboratory - **Location:** Lexington, KY, United States (Remote available) - **Experience:** Expert - **Salary:** $114,600.0 - $151,900.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Macintosh Computers, Ubuntu (Operating System), Cloud Computing, Configuration Management, Cyber Security, Information Systems, Identity and Access Management, Windows Servers, Red Hat Enterprise Linux, Virtualization Technology, SC Clearance, Information Technology, National Industrial Security Program Operating Manual (NISPOM), Plan of Action and Milestones, Vulnerability Analysis - **Published:** September 20, 2026 - **Apply:** https://www.dice.com/job-detail/c072f761-4818-4991-b059-5550ea15a49a ## About the Role * The ability to obtain and maintain a Top-Secret clearance. * Successfully pass a background check. * BS degree in Computer Science, Information Technology, Computer Information Systems, or related discipline is required. * Technical experience and skills, course work completed toward a degree, and industry IT certifications may be considered substitutes for education and DoW security experience. * Active knowledge of NISPOM, DAAPM, DISA Policy STIGs, and NIST RMF is required. * Demonstrated experience with vulnerability scanning and auditing tools and associated administrative processes. * Excellent written and verbal communication skills., * A minimum of 8 years of IT security experience in DoW Industrial Security is required, leadership skills relevant to this experience preferred. * Possess a DoD 8570.01-M IAM Level II or III baseline certification, ISC2 CISSP preferred. * Technical experience securing multiple traditional and virtual systems including Windows Server 2016 and 2019, Windows 10, Red Hat Enterprise Linux, Ubuntu, Mac, etc. utilizing DISA STIGs and/or SRGs. * Experience with eMASS * Experience and skills with virtualization, container, and cloud technologies. * Prior experience working in a collaborative team environment. Prior experience working with classified government networks ## Description The Security Services Department's overall mission is to identify and counter security threats to the MIT Lincoln Laboratory's mission of development of game-changing technology in support of National Security, including guarding against compromise by foreign intelligence agencies and insider threats. To accomplish this mission, this department formulates and implements policies, plans, and actions designed to protect facilities against threats of vandalism, accidental destruction, and sabotage; and safeguards personnel, classified and unclassified information systems, personal identifiable information, property, and other assets from exploitation and recruitment by foreign intelligence agencies. We foster a culture where security professionals are empowered to solve complex security problems in close collaboration with Laboratory research teams and Government counterparts. Our people are our most important resource, and we encourage a casual and flexible opportunity-filled working environment that is technology-focused. Where mission needs can be met, the Security Services Department encourages flexible schedules and hybrid remote work arrangements. Who are we? MIT Lincoln Laboratory is a Federally Funded Research and Development Center (FFRDC) whose mission is research in support of National Security. * Mission - The Security Services Department's (SSD) overall mission is to identify and counter security threats to the MIT Lincoln Laboratory's mission of development of game-changing technology in support of national security, including guarding against compromise by foreign intelligence agencies and insider threats. * Culture - We foster an inclusive, opportunity-filled environment of empowered team members from diverse backgrounds. What will you do? Be responsible for maintaining the overall system security posture of several MIT Lincoln Laboratory programs, as well as the implementation of the DoW Risk Management Framework (RMF) within assigned areas of responsibility. * Lead and provide direct supervision to assigned Information Systems Security Officers (ISSO). * Ensures work is prioritized consistently with work group and organization goals and objectives. * Oversee the cybersecurity program, to include policies and procedures for assigned areas of responsibility. * Develop and maintain System Security Plans (SSP) and associated artifacts such as the Plan of Action & Milestones (POA&M), Risk Assessment Report, and Continuous Monitoring Strategy. * Conduct security-focused configuration management activities for classified systems and networks in a variety of traditional, virtual, and cloud-based environments. * Ensure system information is protected while operated, maintained, and disposed of in accordance with organization security policies and procedures. * Ensure measures are taken to report, respond, and remediate security incidents and spillages. * Advise system owners of current cybersecurity policies and concepts when designing, procuring, adopting, and developing systems throughout the system life cycle. What will you do (con't) * Ensure audit records are collected and analyzed in accordance with the SSP. * Lead efforts to conduct network, system, and application vulnerability scanning, configuration assessment, risk assessment, continuous monitoring, and remediation. * Maintain a working knowledge of system functions, security policies, technical security safeguards, and operational security measures. * Implement an effective IS security education, training, and awareness program, to include providing training. * Lead efforts to prepare for and participate in periodic organization compliance assessments. * Provide account management oversight, and ensure related documentation is complete and updated. * Serve as a voting member of the Configuration Control Board (CCB). * Manage the daily workload and operations of ISSOs in area of responsibility. How will you grow? You will find significant opportunities to do meaningful work in an environment intentionally designed to be one where you will learn, thrive and belong. * Leadership: Room to advance on your team or to lead cross-functional projects. * Growth Opportunities: Potential for lateral and vertical movement. * Education/Training: Management training, mentorship, in-house and external courses. * Exposure: Engagement with sponsors, stakeholders, Laboratory leadership and other Departments and Divisions. Community: Participation is encouraged for Laboratory social events, Employee Resource Groups (ERGs), clubs and study groups, volunteering and community service projects. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Green Cloud Computing](https://www.wearedevelopers.com/videos/592-green-cloud-computing) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [WebAssembly: The Next Frontier of Cloud Computing](https://www.wearedevelopers.com/videos/972-webassembly-the-next-frontier-of-cloud-computing) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents)