Information System Security Manager (ISSM)

Leidos LLC

Lorton (VA)

On-site

USD 108,000 - 195,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Health and Wellness programs
Income Protection
Paid Leave
Retirement plan

Job summary

Leidos is seeking an Information System Security Manager (ISSM) in Virginia to oversee the cybersecurity posture of DoD information systems. You will develop and implement security policies, conduct risk assessments, and drive RMF/ATOs with DoD standards.

This role requires 100% on-site work with cross-functional collaboration to ensure confidentiality, integrity, and availability of classified and unclassified data. Strong certifications and DoD experience are essential.

Qualifications

  • Bachelor's degree with 8+ years of experience or Master's degree with 6+ years of experience.
  • CISSP or CISM (or similar) certification.
  • Deep knowledge of DoD cybersecurity policies, RMF/NIST guidelines.

Responsibilities

  • Act as SME on cybersecurity compliance and information assurance.
  • Coordinate continuous monitoring and RMF activities with teams.
  • Lead risk assessments, vulnerability assessments, and audits.
  • Maintain SSPs, POA&Ms, and security documentation.
  • Collaborate with cross-functional teams to implement security controls.

Skills

Security governance
Risk assessment
Cross-functional collaboration
Security documentation
Communication skills

Education

Bachelor's degree in a related field
Master's degree in a related field

Tools

SIEM
Vulnerability scanners

Job description

The Defense Sector at Leidos is looking for an Information System Security Manager (ISSM) to support a fast-paced program with the Air Force Life Cycle Management Center.

This role involves supporting the delivery of comprehensive IT and support services to ensure mission success while adhering to DoD standards and regulations.

The ISSM will oversee the cybersecurity posture of DoD information systems, ensuring compliance with DoD security standards and protecting sensitive data.

The ISSM will develop and implement security policies, conduct risk assessments, manage system accreditations (RMF), and lead continuous monitoring efforts.

This role requires collaboration with cross-functional teams and program stakeholders to enforce security controls and manage continuous monitoring.

The ISSM will also maintain security documentation and ensure ongoing compliance with applicable regulations.

This position will require 100% on-site work with no remote work supported.

Primary Responsibilities:
  • Act as the Subject Matter Expert (SME) on cybersecurity compliance / information assurance.
  • Collaborate daily with assigned ISSOs and Cyber Security Engineers to execute the continuous monitoring process with full system observability.
  • Manage the operational cybersecurity posture of assigned networks through coordination with NOC/SOC and Cloud Teams.
  • Facilitate approval process for Authorization to Operate (ATO), Authority to Extend (ATE), Authorization to Connect (ATC), and Interconnection Security Agreements (ISA), working with the customer and stakeholders to submit body of evidence artifacts and receive SCA/AO endorsement.
  • Develop, implement, and maintain security policies, procedures, and documentation to ensure compliance with DoD security standards and regulations (e.g., NIST, RMF, FISMA).
  • Oversee the security posture of DoD information systems, ensuring they meet cybersecurity requirements for confidentiality, integrity, and availability.
  • Perform risk assessments, vulnerability assessments, and security audits to identify system vulnerabilities and provide remediation strategies.
  • Manage and conduct continuous monitoring of security controls, ensuring the protection of classified and unclassified data.
  • Coordinate with cross-functional teams (engineering, IT, operations) to implement and enforce security protocols and best practices.
  • Ensure the accreditation process for DoD systems (e.g., RMF accreditation) is completed and maintained in compliance with all applicable requirements.
  • Act as the primary point of contact for security-related issues, coordinating incident response and reporting to senior management and government customers.
  • Provide security training and awareness programs for personnel involved in the operation of DoD systems.
  • Maintain and track security documentation, including system security plans (SSPs), risk assessments, and Plan of Actions & Milestones (POA&Ms).
  • Stay current with emerging cybersecurity threats, vulnerabilities, and trends to ensure the program adapts to evolving security challenges.
Basic Qualifications:
  • US Citizen with an active Top Secret clearance and the ability to obtain a SCI prior to your start date.
  • Bachelor’s Degree with 8+ years of experience or Master’s degree with 6+ years of experience.
  • Additional experience may be considered in lieu of a degree.
  • CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), or similar cybersecurity certification.
  • In-depth knowledge of DoD cybersecurity policies, frameworks, and compliance standards (e.g., NIST 800-53, RMF, FISMA, ICD 503, JSIG).
  • In-depth experience with cloud computing and building/maintaining an ATO for cloud-based information systems.
  • Experience with system security engineering, risk management, and vulnerability assessments.
  • Strong understanding of cloud security, network security, security controls, and common cybersecurity tools (e.g., firewalls, IDS/IPS, SIEM, endpoint protection).
  • Ability to work independently and collaborate effectively with cross-functional teams.
  • Strong communication skills, including the ability to create and present detailed security reports to stakeholders.
Preferred Qualifications:
  • US Citizen with an active TS/SCI security clearance.
  • Experience in managing security for complex DoD programs or mission-critical systems.
  • Experience with security tools for vulnerability scanning, penetration testing, and security auditing.
  • Advanced security certifications (e.g., CISA, CEH, CSSP, etc.).
  • Experience with configuration management and change management processes in a secure environment.
  • Experience with automation and the continuous ATO (cATO) process.
  • Cloud security certifications (e.g. Azure Security Technologies or AWS Certified Security Specialty).
Pay Range

Pay Range: Pay Range $107,900.00 - $195,050.00 The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary.

Pay and Benefits

Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers.

Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement.

More details are available here.

Securing Your Data

Leidos will never ask you to provide payment-related information at any part of the employment application process. And Leidos will communicate with you only through emails that are sent from a Leidos.com email address. If you receive an email purporting to be from Leidos that asks for payment-related information or any other personal information, please report the email to spam.leidos@leidos.com.

Commitment and Diversity

All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations.

Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $17.2 billion for the fiscal year ended January 2, 2026. For more information, visit www.Leidos.com.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information System Security Manager (ISSM)
Information System Security Manager (ISSM)

Leidos Inc • Oklahoma City (OK)

On-site
USD 108,000 - 195,000
Information System Security Manager (ISSM)
Information System Security Manager (ISSM)

Leidos Inc • Lorton (VA)

On-site
USD 108,000 - 195,000
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

Leidos LLC • Lorton (VA)

On-site
USD 87,000 - 157,000
Information System Security Manager (ISSM)
Information System Security Manager (ISSM)

Via Logic LLC • Oklahoma City (OK)

On-site
USD 108,000 - 195,000
Information System Security Manager (ISSM)
Information System Security Manager (ISSM)

Koitecc Solutions • Lorton (VA), Northern (KY)

On-site
USD 108,000 - 195,000
Information System Security Manager (ISSM)
Information System Security Manager (ISSM)

Via Logic LLC • Lorton (VA)

On-site
USD 108,000 - 195,000
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

Leidos • Oklahoma City (OK)

On-site
USD 87,000 - 157,000
Information System Security Manager (ISSM)
Information System Security Manager (ISSM)

Leidos • Oklahoma City (OK)

On-site
USD 108,000 - 195,000
Health and Wellness programs
Paid Leave
Retirement
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

Koitecc Solutions • Lorton (VA), Northern (KY)

On-site
USD 87,000 - 157,000
Information System Security Manager (ISSM)
Information System Security Manager (ISSM)

Leidos • Lorton (VA)

On-site
USD 108,000 - 195,000
Competitive compensation
Health and Wellness programs
Income Protection
+2