> Markdown version of [/jobs/ext/505298-information-system-security-manager-issm](https://www.wearedevelopers.com/jobs/ext/505298-information-system-security-manager-issm). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information System Security Manager (ISSM) - **Company:** LinTech Global, Inc. - **Location:** Fairfield, PA, United States - **Experience:** Expert - **Salary:** $160,000.0 - $180,000.0 - **Contract:** Permanent contract - **Skills:** Identity and Access Management, Information Security Management, Security Information and Event Management, System Availability, Nessus, Vulnerability Analysis - **Published:** June 6, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=41816b1afca1bbd5 ## About the Role Do you have experience in Vuls?, * Active DoD Top Secret clearance (TS/SCI preferred). * Minimum 7+ years of experience as an ISSM or in a senior cybersecurity leadership role supporting DoD systems. * Minimum 7+ years of experience managing the RMF lifecycle and ATO processes. * Hands-on experience with eMASS, ITIPS, UII registration, and DIRPR submissions, and managing system authorization packages. * Minimum 5+ years of experience with vulnerability scanning tools (e.g., ACAS, Nessus) and/or SIEM platforms. * Minimum 5 years of experience developing and maintaining RMF documentation (SSP, POA&M, SCTM), aligned with PWS requirements. * Current DoD 8570/8140 IAM Level III certification (e.g., CISSP, CISM, GSLC). * Strong knowledge of DoD cybersecurity policies and frameworks (DoDI 8510.01, NIST SP 800-53, CNSSI guidance). * Experience supporting mission-critical or classified systems in a SCIF environment. * Ability to work onsite full-time at RRMC. * Strong analytical and problem-solving skills with the ability to operate independently. * Excellent communication skills with the ability to brief senior leadership and coordinate across organizations. * Familiarity with DAF COOP policy, ERG/ERS roster management, and continuity mission execution. ## Description * The ISSM will serve as the senior cybersecurity authority responsible for maintaining system accreditation, ensuring compliance, and supporting mission readiness in a secure, classified environment. * This role leads the full Risk Management Framework (RMF) lifecycle, manages Authorization to Operate (ATO) activities, and ensures continuous monitoring of cybersecurity posture. * The position is fully onsite within a SCIF at RRMC and requires close coordination with stakeholders across the National Capital Region (NCR), including periodic travel to the Pentagon., * Lead and manage the full RMF lifecycle, including system categorization, control implementation, assessment, authorization, and continuous monitoring. * Develop, maintain, and manage all ATO documentation, including SSPs, POA&Ms, SCTMs, and related artifacts. * Serve as the primary cybersecurity advisor to the government for CRS and associated systems. * Manage and maintain system packages within eMASS, ensuring compliance with DoD and Air Force cybersecurity requirements. * Conduct vulnerability assessments, security control reviews, and risk analyses to identify and mitigate cybersecurity risks. * Track and remediate findings from CCRIs, SCA-V assessments, and other inspections. * Oversee ISSO activities and provide leadership and guidance to cybersecurity team members. * Support incident response efforts, including investigation, reporting, and remediation of security incidents. * Ensure compliance with DoDI 8510.01, NIST SP 800-53, CNSSI 1253, and applicable cybersecurity policies. * Participate in change management processes, evaluating cybersecurity impacts of system changes and upgrades. * Support COOP mission requirements, exercises, and real-world events to ensure system availability and security. * Coordinate with stakeholders across Air Force, Navy, DISA, and NCR organizations. * Ensure proper implementation of STIGs, patches, and cybersecurity best practices across supported systems. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [How to Cause (or Prevent) a Massive Data Breach- Secure Coding and IDOR](https://www.wearedevelopers.com/videos/39-how-to-cause-or-prevent-a-massive-data-breach-secure-coding-and-idor) - [Autonomous microservices with event-driven architecture](https://www.wearedevelopers.com/videos/1052-autonomous-microservices-with-event-driven-architecture) - [Maturity assessment for technicians or how I learned to love OWASP SAMM](https://www.wearedevelopers.com/videos/351-maturity-assessment-for-technicians-or-how-i-learned-to-love-owasp-samm) - [Lessons learned from observing a billion API requests](https://www.wearedevelopers.com/videos/1574-lessons-learned-from-observing-a-billion-api-requests) - [Azure-Well Architected Framework - designing mission critical workloads in practice](https://www.wearedevelopers.com/videos/1529-azure-well-architected-framework-designing-mission-critical-workloads-in-practice) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [From developer to manager – what does it take to become an engineering manager?](https://www.wearedevelopers.com/magazine/42-from-developer-to-manager-what-does-it-take-to-become-an-engineering-manager)