> Markdown version of [/jobs/ext/3055108-information-system-security-manager](https://www.wearedevelopers.com/jobs/ext/3055108-information-system-security-manager). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information System Security Manager - **Company:** Booz Allen Hamilton Inc. - **Location:** Rome, NY, United States - **Experience:** Experienced - **Salary:** $99,000.0 - $225,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Access, Microsoft Windows, Cyber Security, Information Systems, Computer Networks, Identity and Access Management, Information Security Management, Red Hat Enterprise Linux, Software Vulnerability Management, Information Technology, National Industrial Security Program Operating Manual (NISPOM) - **Published:** September 24, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9189528/information-system-security-manager ## About the Role * Experience with System Administration functions in a networked environment * Experience with eMASS, Security Technical Implementation Guides (STIGs), computer networking, and operating systems * Ability to work in a team environment, be highly motivated, learn and acquire new skills, and adapt to an ever-changing security environment * Ability to be briefed into Special Access Programs (SAPs) * Top Secret clearance * HS diploma or GED and 6+ years of experience as an ISSM or ISSO, or Bachelor's degree and 4+ years of experience as an ISSM or ISSO * Ability to complete required ISSM training within 90 days of hire * DoD 8140 required CISSP or IAM Level III Certification Nice If You Have: * Knowledge of National Industrial Security Program Operating Manual (NISPOM), Joint Special Access Program Implementation Guide (JSIG), Intelligence Community Directives (ICD) 503 and 703, STIGs, the RMF process, or associated National Institute of Standards and Technology (NIST) publications * Knowledge of government classified contracts and DD 254 requirements from an information security perspective * Possession of excellent organizational skills * Possession of excellent oral and written communication skills * Bachelor's degree in Computer Science, Cybersecurity, Information Assurance or a technology or engineering degree * Technology or security-specific industry Certification, including CCNA, Red Hat or Windows Certification Clearance: Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; Top Secret clearance is required. ## Description Serve as an Information Systems Security Manager (ISSM) responsible for the Risk Management Framework (RMF) authorization of assigned Information Systems (IS). Ensure systems are operated, maintained, and disposed of in accordance with security policies and procedures as outlined in the security plan. Conduct periodic assessments of authorized systems and ensure corrective actions for all identified findings and vulnerabilities are addressed in a timely manner. Maintain responsibility for all RMF continuous monitoring activities for authorized systems, including periodic analysis of collected audit records and system vulnerability management cycle. Monitor system incident recovery processes to ensure security features and procedures are properly restored and functioning correctly. Ensure user activity monitoring data is analyzed, stored, and protected in accordance with our programs policies and procedures and execute a strong continuous monitoring strategy. ## Related Videos - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Blazing Accessibility Basics](https://www.wearedevelopers.com/videos/568-blazing-accessibility-basics) - [Fake or News: Translating Dog Barks, Notepad Gets an Upgrade and Michelin-Star Robots - Paul Tregoing](https://www.wearedevelopers.com/videos/1802-fake-or-news-translating-dog-barks-notepad-gets-an-upgrade-and-michelin-star-robots-paul-tregoing) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) ## Related Articles - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)