Information Systems Security Manager (ISSM)

Istari Digital, Inc.
Washington, DC, United States
6 days ago
Apply on www.juju.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Working hours
Regular working hours
Job source

Tech stack

Cyber Security Information Systems Information Security Management Information Technology

Job description

We are seeking a highly experienced and knowledgeable Information System Security Manager (ISSM) to join our Cybersecurity team. This role will be hybrid 3 days per week in our Arlington, VA office. The ISSM will serve as a principal advisor on all matters, technical and otherwise, involving the cybersecurity of information systems under their purview. This role requires a deep understanding of cybersecurity principles, practices, and frameworks, as well as the ability to develop, implement, and evaluate information system security program policy consistent with Federal and Commercial regulatory requirements. The ISSM will work closely with various stakeholders across the organization to ensure the confidentiality, integrity, and availability of our information systems. Core Responsibilities

  • Serve as the principal advisor on all matters involving the cybersecurity of assigned information systems.
  • Develop, implement, and evaluate information system security program policy consistent with Federal and Commercial regulatory requirements, including JSIG, NIST 800-171, NIST 800-53, CMMC, and ITAR.
  • Conduct risk assessments and identify vulnerabilities in information systems.
  • Develop and implement security controls to mitigate identified risks.
  • Monitor and evaluate the effectiveness of security controls.
  • Develop and deliver cybersecurity awareness training to employees.
  • Investigate security incidents and breaches.
  • Maintain security documentation, including system security plans (SSPs), risk assessments, and incident reports.
  • Stay up-to-date with the latest cybersecurity threats and vulnerabilities.
  • Collaborate with the engineering and customer success teams to ensure secure implementation and configuration of systems.

Requirements

  • Minimum of 10 years of experience in a relevant field.
  • Deep understanding of cybersecurity principles, practices, and frameworks, including JSIG, NIST 800-171, NIST 800-53, ITAR, and CMMC.
  • Experience with risk assessments, vulnerability identification, and security control implementation.
  • Experience with security incident investigation and response.
  • Excellent communication and collaboration skills, with the ability to effectively communicate with both technical and non-technical audiences.
  • Strong analytical and problem-solving skills.

Preferred Qualifications

  • Bachelor’s degree in computer science, information systems, or a related field.
  • Relevant certifications (e.g., CISSP, CISM).Experience with SOC compliance and audits.
  • Active TS Security Clearance.

About the company

Istari is a digital engineering software company building open, scalable infrastructure for engineering data. Our platform lets customers simply and securely integrate engineering models across disciplines, organizations, and security levels - whether they’re designing prototypes, performing virtual testing, or training AI and autonomy for complex systems.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.juju.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

59 sec

Proving regulatory compliance to auditors and chief officers

Mike Bursell Mike Bursell · World Congress 2026 Europe

5:03 min

Navigating new cybersecurity compliance frameworks and laws

Kurt Eder · LIVE

42 sec

Energy forecasts and resource demands of information technology

Marjolein Pordon · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:14 min

Establishing legal admissibility through immutable blockchain attestations

Frederik Gregaard Frederik Gregaard +1 · World Congress 2026 Europe

Videos

See all

Related articles

See all