Information System Security Manager (ISSM)

LinTech Global, Inc.
Fairfield, PA, United States
2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$160,000.0 - $180,000.0
Working hours
Regular working hours
Job source

Tech stack

Identity and Access Management Information Security Management Security Information and Event Management System Availability Nessus Vulnerability Analysis

Job description

  • The ISSM will serve as the senior cybersecurity authority responsible for maintaining system accreditation, ensuring compliance, and supporting mission readiness in a secure, classified environment.
  • This role leads the full Risk Management Framework (RMF) lifecycle, manages Authorization to Operate (ATO) activities, and ensures continuous monitoring of cybersecurity posture.
  • The position is fully onsite within a SCIF at RRMC and requires close coordination with stakeholders across the National Capital Region (NCR), including periodic travel to the Pentagon., * Lead and manage the full RMF lifecycle, including system categorization, control implementation, assessment, authorization, and continuous monitoring.
  • Develop, maintain, and manage all ATO documentation, including SSPs, POA&Ms, SCTMs, and related artifacts.
  • Serve as the primary cybersecurity advisor to the government for CRS and associated systems.
  • Manage and maintain system packages within eMASS, ensuring compliance with DoD and Air Force cybersecurity requirements.
  • Conduct vulnerability assessments, security control reviews, and risk analyses to identify and mitigate cybersecurity risks.
  • Track and remediate findings from CCRIs, SCA-V assessments, and other inspections.
  • Oversee ISSO activities and provide leadership and guidance to cybersecurity team members.
  • Support incident response efforts, including investigation, reporting, and remediation of security incidents.
  • Ensure compliance with DoDI 8510.01, NIST SP 800-53, CNSSI 1253, and applicable cybersecurity policies.
  • Participate in change management processes, evaluating cybersecurity impacts of system changes and upgrades.
  • Support COOP mission requirements, exercises, and real-world events to ensure system availability and security.
  • Coordinate with stakeholders across Air Force, Navy, DISA, and NCR organizations.
  • Ensure proper implementation of STIGs, patches, and cybersecurity best practices across supported systems.

Requirements

Do you have experience in Vuls?, * Active DoD Top Secret clearance (TS/SCI preferred).

  • Minimum 7+ years of experience as an ISSM or in a senior cybersecurity leadership role supporting DoD systems.
  • Minimum 7+ years of experience managing the RMF lifecycle and ATO processes.
  • Hands-on experience with eMASS, ITIPS, UII registration, and DIRPR submissions, and managing system authorization packages.
  • Minimum 5+ years of experience with vulnerability scanning tools (e.g., ACAS, Nessus) and/or SIEM platforms.
  • Minimum 5 years of experience developing and maintaining RMF documentation (SSP, POA&M, SCTM), aligned with PWS requirements.
  • Current DoD 8570/8140 IAM Level III certification (e.g., CISSP, CISM, GSLC).
  • Strong knowledge of DoD cybersecurity policies and frameworks (DoDI 8510.01, NIST SP 800-53, CNSSI guidance).
  • Experience supporting mission-critical or classified systems in a SCIF environment.
  • Ability to work onsite full-time at RRMC.
  • Strong analytical and problem-solving skills with the ability to operate independently.
  • Excellent communication skills with the ability to brief senior leadership and coordinate across organizations.
  • Familiarity with DAF COOP policy, ERG/ERS roster management, and continuity mission execution.

Benefits & conditions

Pulled from the full job description

  • Referral program
  • AD&D insurance
  • Health insurance
  • 401(k) matching
  • Paid time off
  • Paid sick time
  • Disability insurance, Our robust benefits package includes Open Paid Time Off, 11 Federal Paid Holidays & 5 Paid Sick Days, Company-paid Life/AD&D, Company-paid Short Term and Long-Term Disability, Health Insurance with Company Contribution, 401k Plan with Company Match, Employee Recognition Program, opportunity for Employee Referral Bonus, opportunity for annual Performance Bonus and much more!

About the company

Dexian Government Solutions is an award-winning, ISO 9001:2015 certified, business and GSA contract holder providing diversified Information Technology services to both Civilian and Defense agencies. Services include Software Development, Systems Integration, Data Management, Project Management, Operations & Maintenance, Cybersecurity, and Training and Audio/Visual (AV) Solutions. Dexian Government Solutions has received several recognitions, including rankings on “Top 50 Companies to Watch”, Washington Technology’s Annual “FAST 50”, and Inc. 500’s List of “Fastest Growing Private Companies”. The Dexian Government Solutions team is comprised of individuals who are dedicated to the success and sustainability of our customers and their missions. Our combination of technical expertise, big business experience, and small business agility allows us to promptly provide our customers with exceptional IT and engineering solutions.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

5:21 min

Protecting infrastructure with the shared responsibility model

Mustafa Toroman · WWC 2023

3:17 min

Embedding automated vulnerability analysis within CircleCI workflows

Milecia Mcgregor · LIVE

3:13 min

Using event notifications for simple state updates

Florian Lenz Florian Lenz · WWC 2024

2:59 min

Why existing security and device management tools fail

Marcus Wermuth Marcus Wermuth · WWC Europe 2026

3:55 min

Flaws in vague supply chain security advice

Adrian Mouat Adrian Mouat · WWC 2025

4:16 min

Reducing failure impact using advanced mathematical request sharding

Werner Vogels Werner Vogels · WWC 2025

Videos

See all

Related articles

See all