Information Systems Security Manager (ISSM) II
$119,680–$161,920 year
On-site · Newport News, Virginia, United States
Job Summary
ISSM II role responsible for directing information systems security program policy and RMF/JSIG implementation within SAP environments for DoD agencies. Provides day-to-day support for Collateral, SCI, and SAP activities; advises on RMF assessment/authorization issues; conducts risk assessments; recommends actions to government PMs; develops and maintains security documentation; ensures security training for personnel; develops security plans and incident response procedures; and participates in configuring and maintaining security controls. Requires TS/SCI clearance, polygraph willingness, DoD SAP experience, 7+ years of related experience, and travel up to 40%. Salary range cited: $119,680–$161,920; onsite in Newport News, VA.
Required Qualifications
- Bachelor’s degree in related discipline OR Associate’s degree in a related area + 2 years’ experience OR equivalent experience (4 years)
- 7+ years related experience
- US Citizenship Required: Yes
- TS/SCI clearance
- Willingness to submit to a Counterintelligence (CI) polygraph
- IAT Level II or IAM Level II - within 6 months of hire (Security+ CE, CCNA Security, etc.)
- Special Access Program (SAP) experience
- Experience with RMF and JSIG authorization processes
- DoD security policy knowledge
- Ability to travel 25-40%
Desired Qualifications
- Bachelor's degree in related discipline OR Associate's degree in a related area + 2 years’ experience OR equivalent experience (4 years)
- 7+ years related experience
- Special Access Program (SAP) experience
- DoD agency experience (HQ Air Force, OSD, Military Compartment)
- TS/SCI clearance
- Polygraph willingness/ability to submit to
- RMF (Risk Management Framework) knowledge
- JSIG (Joint SIP/JSIG authorization) knowledge
- Information Security, Information Security Management
- IAT Level II or IAM Level II certifications (Security+ CE, CCNA Security, etc.)
- Ability to travel 25-40%
- Experience in risk assessments and authorization processes
- Endpoint and network security policy development
- Security testing methodologies
- System assessment documentation maintenance
- Configuration management for security-relevant changes
- Security incident response planning and execution
- IAOs and security personnel training and development
- AFT development per JSIG
- Authorization boundary accountability and ownership
- CM and documentation management for RMF-based systems
- Ability to work within DoD, National security policy standards
Apply with one swipe on Sorce. We auto-fill applications and apply on your behalf — no cover letters, no 40-minute forms.
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.