Senior Information System Security Manager (ISSM)

ISYS Technologies
Annapolis Junction, MD, United States
about 1 month ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
6 years minimum
Compensation
$103,180.0 - $109,629.0
Working hours
Regular working hours
Job source

Tech stack

Software System Penetration Testing Configuration Management Cyber Security Information Systems Information Security Management Intrusion Detection Systems Information Systems Security Architecture Professional Network Security Information Technology Security Auditing Security Software Security Information and Event Management Systems Architecture
+4 more
Computer Networking Systems Test Scripts Firewalls (Computer Science) Vulnerability Analysis

Job description

  • Manage the Risk Management Framework (RMF) lifecycle for supported systems enabling the achievement and continued maintenance of Authority to Operate (ATO) accreditation.
  • Provide ISSM, FISMA, and certification and accreditation support for systems and associated components.
  • Conduct recurring assessments of security controls and documentation in eMASS and PPSM to verify continued accuracy, compliance, and readiness.
  • Manage whitelist records, address vulnerabilities identified through recurring IAVMS scans, and develop Plans of Action and Milestones (POA&Ms) when required.
  • Maintain eMASS control records and POA&Ms in accordance with ATO conditions, approval requirements, and remediation timelines.
  • Coordinate cybersecurity activities supporting interim and final authorization to test and operate, including assessments, mitigation planning, patch validation, implementation tracking, and status reporting.
  • Create and deliver cybersecurity test plans, test reports, implementation plans, security technical configuration documentation, vulnerability assessment reports, and authorization package materials.
  • Lead cybersecurity governance and reporting activities, including the development and maintenance of system architectures, requirements, security plans, protection plans, IAVA actions, and IA-related objectives.
  • Prepare program documentation, evidence, and briefings for DISA OAB reviews and support the team throughout the review process.

Requirements

  • Bachelor’s Degree with 8+ years of experience or Master’s degree with 6+ years of experience. Additional experience may be considered in lieu of a degree.
  • CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), or similar cybersecurity certification.
  • In-depth knowledge of DoD cybersecurity policies, frameworks, and compliance standards (e.g., NIST 800-53, RMF, FISMA, ICD 503, JSIG).
  • In-depth experience with network systems and building/maintaining an ATO for enterprise computing information systems.
  • Experience with system security engineering, risk management, and vulnerability assessments.
  • Strong understanding of network security, security controls, and common cybersecurity tools (e.g., firewalls, IDS/IPS, SIEM, endpoint protection).
  • Ability to work independently and collaborate effectively with cross-functional teams.
  • Strong communication skills, including the ability to create and present detailed security reports to stakeholders.
  • Clearance: US Secret clearance required, * Experience in managing security for complex DoD programs or mission-critical systems.
  • Experience with security tools for vulnerability scanning, penetration testing, and security auditing.
  • Advanced security certifications (e.g., CISA, CEH, CSSP, etc.).
  • Experience with configuration management and change management processes in a secure environment.
  • Experience with automation and the continuous ATO (cATO) process.

Additional Information: In compliance with Colorado’s Equal Pay for Equal Work Act, the annual base salary range for this position is listed. Please note that the salary information is a general guideline only. I2X Technologies considers factors such as (but not limited to) scope and responsibilities of the position, candidate’s work experience, education/training, key skills, internal peer equity, as well as, market and business considerations when extending an offer.

Physical Demands:

The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job with or without reasonable accommodation.

While performing the duties of this job, the employee will regularly sit, walk, stand and climb stairs and steps. May require walking long distance from parking to work station. Occasionally, movement that requires twisting at the neck and/or trunk more than the average person, squatting/ stooping/kneeling, reaching above the head, and forward motion will be required. The employee will continuously be required to repeat the same hand, arm, or finger motion many times. Manual and finger dexterity are essential to this position. Specific vision abilities required by this job include close, distance, depth perception and telling differences among colors. The employee must be able to communicate through speech with clients and public. Hearing requirements include conversation in both quiet and noisy environments. Lifting may require floor to waist, waist to shoulder, or shoulder to overhead movement of up to 20 pounds. This position demands tolerance for various levels of mental stress.

About the company

I2X Technologies is a reputable technology services company to the Federal Government. Whether the focus is on space exploration, national security, cyber security, or cutting-edge engineering applications, I2X is ready to offer you the chance to make a real-world impact in your field and for your country. We provide long-term growth and development. Headquartered in Colorado, I2X is engaged in programs across the country and in more than 20 states. Our programs support multiple Federal agencies, the Department of Defense and often focused on the space initiatives of our government customers., I2X Technologies does not discriminate, and the company provides equal employment opportunity for all employees and applicants without regard to race, religion, color, sex, gender, sexual orientation, national origin, citizenship status, age, marital status, pregnancy or parenthood, handicap or disability, genetics, veteran status or any other legally protected characteristic. I2X Technologies adheres to all federal, state and local laws regarding equal employment opportunity and will not discriminate against you in violation of these laws. I2X Technologies reserves the right to apply CIRI Shareholder preference to qualified Shareholders in employment and advancement opportunities. I2X Technologies participates in E-Verify. We will provide the Social Security Administration (SSA) and, if necessary, the Department of Homeland Security (DHS), with information from each new employee’s Form I-9 to confirm work authorization.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:31 min

Managing self-healed test scripts safely within continuous integration

Andrei Nutas Andrei Nutas · World Congress 2026 Europe

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:16 min

Securing internal pod communication with network security policies

Marc Nimmerrichter · World Congress 2022

2:52 min

Addressing junior hiring bottlenecks and mitigating widespread employee burnout

Hung Lee Hung Lee +3 · World Congress 2026 Europe

1:11 min

Adapting existing test automation scripts for AI agents

Luise Freese Luise Freese +1 · Coffee With Developers

Videos

See all

Related articles

See all