> Markdown version of [/jobs/ext/3449567-cybersecurity-program-manager](https://www.wearedevelopers.com/jobs/ext/3449567-cybersecurity-program-manager). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Program Manager - **Company:** ORBIS INC. - **Location:** San Diego, CA, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Cyber Security, Information Security Management, Cyber Threat Analysis, Navsea, Information Technology, Plan of Action and Milestones, Vulnerability Analysis - **Published:** September 30, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9205344/cybersecurity-program-manager ## About the Role * Clearance: Must possess an active, TS/SCI and be a United States citizen. * Education: Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Engineering, or a related STEM field from an accredited institution. (A Project Management Professional (PMP) certification combined with relevant experience may substitute for the degree requirement). * Experience: A minimum of ten (10) years of progressive experience managing IT or cybersecurity teams, with at least five (5) of those years acting as an overall program manager and primary customer interface. * Specialized Experience: A minimum of five (5) years of direct experience executing or managing Information Assurance/Cybersecurity programs within the DoD or Federal Government. ## Description Position Overview ORBIS is seeking a highly experienced Cybersecurity Program Manager to lead our support for the NSWC Corona Cybersecurity Assurance and Monitoring (CCAM) contract. This key personnel leadership position serves as the primary interface between ORBIS, our government customers, and partnering organizations. The Program Manager will oversee a diverse team of cybersecurity professionals delivering comprehensive Risk Management Framework (RMF), Information Assurance, and Assessment and Authorization (A&A) services., * Serve as the primary ORBIS point of contact for the NSWC Corona Contracting Officer's Representative (COR), Technical Point of Contact (TPOC), and command leadership. * Oversee the complete lifecycle of cybersecurity service delivery, ensuring all contract deliverables are submitted on time, within budget, and to the highest quality standards. * Manage, mentor, and direct a diverse team of Information System Security Managers (ISSMs), Information System Security Officers (ISSOs), Navy Qualified Validators (NQVs), and cybersecurity analysts. * Develop and maintain the program's Master Schedule, tracking all A&A packages, continuous monitoring milestones, and operational security metrics. * Conduct weekly, monthly, and quarterly program management reviews with government stakeholders to report on package status, operational risks, and team performance. * Manage contract financials, resource allocation, and subcontractor performance to ensure seamless delivery of CCAM requirements. * Drive continuous improvement initiatives across the cybersecurity support team to optimize eMASS workflows and reduce RMF package processing times. * Act as an escalation point for complex technical or compliance issues, brokering solutions between Navy Security Control Assessors (SCAs), Authorizing Officials (AOs), and system owners. * Lead strategic workforce planning, recruiting, and retention efforts to ensure ORBIS maintains a fully staffed, fully certified, and highly qualified workforce. * Establish and enforce standard operating procedures (SOPs) for the contractor team to ensure consistency in RMF execution across all supported systems. Technical & Information Assurance Duties: * Maintain a deep understanding of Department of Defense (DoD), Department of the Navy (DON), and Naval Sea Systems Command (NAVSEA) cybersecurity policies. * Provide strategic guidance on the transition from legacy security frameworks to the DoD RMF and continuous authorization models. * Review executive-level risk assessments, Plan of Action and Milestones (POA&M) summaries, and compliance reports before submission to government leadership. * Advise government Program Managers on the integration of cybersecurity requirements into system acquisition, engineering, and deployment lifecycles. * Support the development of overarching command-level cybersecurity policies, strategic plans, and incident response frameworks. * Monitor emerging cyber threats and direct the team to conduct proactive vulnerability assessments across supported Platform Information Technology (PIT) and ashore networks. ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Forecasting Cyber Attacks with Glassdoor Reviews - Lianne Potter](https://www.wearedevelopers.com/videos/2143-forecasting-cyber-attacks-with-glassdoor-reviews-lianne-potter) - [Reporting Active Exploits in 24 Hours: Are You Ready for the CRA?](https://www.wearedevelopers.com/videos/100248-reporting-active-exploits-in-24-hours-are-you-ready-for-the-cra) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology)