Information System Security Manager (ISSM)

Zachary Piper Solutions

Orlando (FL)

On-site

USD 140,000 - 185,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Zachary Piper Solutions seeks an experienced Cybersecurity Information System Security Manager (ISSM) to support a U.S. Army customer in Orlando, FL—onsite.

You will manage RMF processes, ATO activities, andConMon artifacts across classified and unclassified environments, partnering with government leaders and assessors to keep systems secure and compliant. The role requires strong RMF/A&A expertise, hands-on experience with eMASS/Xacta, and an active Top Secret clearance.

Qualifications

  • 8+ years in DOD cybersecurity programs.
  • 5+ years RMF & A&A in DOD environments.
  • Experience as ISSM/ISSO for Army/DOD systems.
  • Experience managing multiple RMF packages.
  • Knowledge of DOD RMF, AR 25-2, NETCOM RMF.

Responsibilities

  • Lead RMF lifecycle across three to seven Army information systems.
  • Coordinate ATO, IATT, and reauthorization activities.
  • Develop and maintain SSPs, POA&Ms, and ConMon artifacts.
  • Provide cybersecurity guidance to system owners and leadership.
  • Prepare executive briefs and risk assessments for stakeholders.

Skills

RMF lifecycle
A&A activities
Vulnerability management
eMASS
Xacta
GRC tools

Education

Bachelor's degree in Cybersecurity/IT/CS

Tools

eMASS
Xacta

Job description

Zachary Piper Solutions is seeking an experienced Cybersecurity Information System Security Manager (ISSM) to support a U.S. Army customer in Orlando, FL (100% onsite). The Cybersecurity Information System Security Manager (ISSM) will serve as the primary lead responsible for managing the RMF lifecycle, ATO activities, & overall cybersecurity posture for multiple Army information systems supporting both CUI & classified environments. This role will partner closely with Government leadership, engineers, system owners, Authorizing Officials, & security assessors to ensure secure, compliant, & mission-ready systems throughout their lifecycle.

Responsibilities of the Cybersecurity Information System Security Manager (ISSM) include:
  • Serve as the ISSM supporting 3–7 U.S. Army information systems across classified & unclassified environments
  • Lead all phases of the DOD RMF lifecycle, including system authorization, continuous monitoring, & reauthorization activities
  • Develop, maintain, & manage RMF authorization packages including SSPs, POA&Ms, security categorization documentation, Body of Evidence artifacts, and ConMon documentation
  • Coordinate ATO, IATT, ATO-C, & system reauthorization efforts
  • Manage ConMon, vulnerability management, STIG compliance, ACAS scan reviews, cybersecurity reporting, & corrective action tracking
  • Conduct cybersecurity risk assessments and provide recommendations supporting AO risk decisions
  • Coordinate SCAs & oversee remediation of assessment findings to maintain RMF compliance
  • Review system architectures, authorization boundaries, network diagrams, data flows, and engineering changes to ensure continued cybersecurity compliance
  • Provide cybersecurity guidance and compliance support to system owners, engineers, administrators, and Government leadership
  • Prepare executive briefings, cybersecurity status reports, risk assessments, & authorization recommendations for senior Government stakeholders
  • Support implementation of ZTA, cloud security initiatives, & secure system engineering best practices where applicable
Qualifications of the Cybersecurity Information System Security Manager (ISSM) include:
  • 8+ years of experience supporting DOD cybersecurity programs
  • 5+ years of experience managing RMF & A&A activities within DOD environments
  • Experience serving as an ISSM/ISSO supporting U.S. Army or DOD information systems
  • Demonstrated experience managing multiple RMF authorization packages simultaneously through the full system lifecycle
  • Strong knowledge of DOD RMF, AR 25-2, NETCOM RMF Business Rules, & cybersecurity compliance requirements
  • Experience developing and maintaining SSPs, POA&Ms, Body of Evidence documentation, ConMon artifacts, and authorization packages
  • Hands-on experience with vulnerability management, STIG implementation, ACAS, SCAs, and cybersecurity compliance reporting
  • Experience using eMASS, Xacta, or similar GRC tools
  • Working knowledge of Microsoft Windows, Linux, virtualization technologies, enterprise networking, and cloud security principles
  • Experience supporting ZTA, FedRAMP, or DoD Cloud SRG environments preferred
  • Certifications preferred: CISSP, CISM, CASP+, or CCSP
  • Active Top Secret security clearance required (SCI eligibility preferred)
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Engineering, or related field
Keywords:

Information System Security Manager, ISSM, Information System Security Officer, ISSO, Cybersecurity, Risk Management Framework, RMF, Assessment and Authorization, A&A, Authorization to Operate, ATO, IATT, ATO-C, Continuous Monitoring, ConMon, System Security Plan, SSP, Plans of Action and Milestones, POA&M, eMASS, Xacta, Governance Risk and Compliance, GRC, Security Control Assessment, SCA, Vulnerability Management, STIG, ACAS, Security Technical Implementation Guide, DoD, Department of Defense, U.S. Army, Army Regulation 25-2, AR 25-2, NETCOM, Cybersecurity Compliance, Security Controls, Authorizing Official, AO, Body of Evidence, CUI, Classified Systems, Zero Trust, Zero Trust Architecture, ZTA, Cloud Security, FedRAMP, DoD Cloud SRG, Windows, Linux, Virtualization, Enterprise Networking, CISSP, CISM, CASP+, CCSP, DoD 8140, Orlando, Florida, Top Secret, TS, TS/SCI, Defense, Federal Government

#LI-SW1 #LI-ONSITE

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior RMF ISSM for DoD Systems onsite Orlando
Senior RMF ISSM for DoD Systems onsite Orlando

Zachary Piper Solutions • Orlando (FL)

On-site
USD 140,000 - 185,000
(704) Cybersecurity Information System Security Manager (ISSM)
(704) Cybersecurity Information System Security Manager (ISSM)

Arlosolutionsllc • Orlando (FL)

On-site
USD 120,000 - 160,000
(704) Cybersecurity Information System Security Manager (ISSM)
(704) Cybersecurity Information System Security Manager (ISSM)

Arlo Solutions • Orlando (FL)

On-site
USD 110,000 - 160,000
Advisory Information Security Manager (ISSM)
Advisory Information Security Manager (ISSM)

Frontier Technology Inc. • Huntsville (AL)

On-site
USD 120,000 - 180,000
Information Systems Security Manager
Information Systems Security Manager

Modern Technology Solutions, Inc. (MTSI) • Dayton (OH)

On-site
USD 90,000 - 130,000
Flexible schedules
401k match
Tuition reimbursement
Information System Security Manager (ISSM)
Information System Security Manager (ISSM)

Koitecc Solutions • Oklahoma City (OK)

On-site
USD 120,000 - 150,000
Advisory Information Security Manager (ISSM)
Advisory Information Security Manager (ISSM)

FTI Defense - Frontier Technology Inc. • Huntsville (AL)

On-site
USD 120,000 - 180,000
Information Systems Security Manager (ISSM)
Information Systems Security Manager (ISSM)

The Mission Essential Group, LLC • Fairfax (VA)

On-site
USD 170,000 - 195,000
Medical Insurance
Dental Insurance
Vision Insurance
+4
Information System Security Manager
Information System Security Manager

Amentum • Northern (KY)

Hybrid
USD 100,000 - 110,000
Health insurance
Paid time off
401(k) matching
+6
Security Manager - ISSM
Security Manager - ISSM

Qualis LLC • United States

On-site
USD 100,000 - 130,000
Flexible scheduling
Family-friendly work environment
Community involvement opportunities