Information System Security Manager (ISSM) - Contingent Upon Contract Award

Jmares

Philadelphia (Philadelphia County)

On-site

USD 120,000 - 180,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

JMA Resources is seeking an Information System Security Manager (ISSM) to oversee information security activities for our client’s systems and programs. You will support RMF, risk management, compliance, and security improvements across the lifecycle.

The role requires DoD clearance eligibility and strong collaboration with technical and program stakeholders to protect critical systems.

Qualifications

  • Must have a Master’s degree in a STEM field related to information technology or computer science.

Responsibilities

  • Support cybersecurity program and risk management activities across the organization.
  • Coordinate cybersecurity activities and communicate security priorities to stakeholders.
  • Support RMF package submissions and doD-compliant reviews.
  • Track and remediate audit findings and deficiencies.
  • Coordinate resolution of findings from internal and external reviews.
  • Monitor System Level Continuous Monitoring (SLCM) activities.

Skills

RMF
A&A
Cybersecurity risk
Information security
Stakeholder coordination
Analytical skills
Technical communication
Multi-priority management

Education

Master’s degree in computer science / information technology
CAP
CASP+ CE
CISM
CISSP or Associate of ISC2
GSLC
CCISO
HCISPP

Tools

DADMS
DITPR-DON
VRAM

Job description

Contingent Posting Notice:

JMA Resources is recruiting for this position in anticipation of a potential contract award. This position is contingent upon JMA Resources receiving the associated contract award and confirmation of final staffing requirements and funding.

Position Overview:

The Information System Security Manager (ISSM) supports the implementation and oversight of information security activities for our client’s systems and programs. This role helps manage cybersecurity risk, RMF activities, compliance, security improvements, and coordination across technical and program stakeholders.

Responsibilities:
  • Cybersecurity Program & Risk Management
    • Support information security goals and initiatives that reduce organizational cybersecurity risk.
    • Coordinate cybersecurity activities and communicate security priorities across organizational levels and stakeholders.
    • Support the evaluation, validation, and implementation of security improvements.
    • Identify security requirements throughout the system lifecycle and support effective implementation of related policies and procedures.
    • Evaluate patterns of noncompliance and assess their impact on risk and overall cybersecurity program effectiveness.
    • Identify and recommend information security strategies to address organizational security objectives.
  • RMF, Assessment & Compliance
    • Support information security risk assessments throughout the Assessment and Authorization (A&A) process.
    • Perform quality assurance reviews of RMF package submissions in accordance with applicable NSWCPD and NAVSEA requirements.
    • Support cybersecurity inspections, testing, and reviews of network environments.
    • Track audit findings, deficiencies, and recommendations through appropriate mitigation or corrective action.
    • Develop findings reports and recommend corrective actions for identified deficiencies.
    • Coordinate resolution of findings identified through internal and external reviews.
    • Monitor authorization conditions, POA&M items, and System Level Continuous Monitoring (SLCM) activities.
  • Reporting & Stakeholder Coordination
    • Collect and analyze data needed to support cybersecurity reporting and management decisions.
    • Report and maintain system compliance information in applicable Navy and DoD systems, including DADMS, DITPR-DON, and VRAM.
    • Facilitate communication and coordination among RMF stakeholders throughout the authorization process.
    • Support cybersecurity strategy, policy enforcement, security awareness, emergency planning, and other information security program activities.
    • Carry out other related duties assigned to support evolving client, project, and company needs.
Clearance Level:
  • Current or ability to obtain a Department of Defense (DoD) Secret Clearance is required. Note: To obtain a security clearance, you must be a U.S. citizen and meet the 13 adjudicative guidelines.
Required Qualifications:
  • Experience:
    • At least 8 years of professional experience overseeing or managing information security program implementation, including experience with:
      • Coordinating cybersecurity activities across multiple levels of an organization.
      • Managing cybersecurity strategy, personnel, infrastructure, policy enforcement, emergency planning, security awareness, and/or related resources.
      • Supporting information security risk management, compliance, and security program activities.
  • Education/Certification:
    • Master’s degree in computer science, information technology, or an equivalent STEM field.
    • One of the following certifications:
      • Certified Authorization Professional (CAP)
      • CompTIA Advanced Security Practitioner Continuing Education (CASP+ CE)
      • Certified Information Security Manager (CISM)
      • Certified Information Systems Security Professional (CISSP) or Associate of ISC2
      • GIAC Security Leadership Certification (GSLC)
      • Certified Chief Information Security Officer (CCISO)
      • HealthCare Information Security and Privacy Practitioner (HCISPP)
  • Skills:
    • Strong knowledge of RMF, A&A, cybersecurity risk management, and information security compliance.
    • Ability to evaluate cybersecurity findings, risks, and corrective actions.
    • Experience coordinating across technical, program, and leadership stakeholders.
    • Strong analytical, organizational, and technical communication skills.
    • Ability to manage multiple cybersecurity priorities, findings, and compliance activities.
Preferred Qualifications:
  • Experience supporting Navy or Department of Defense cybersecurity and RMF programs.
  • Experience with Navy and DoD compliance and vulnerability management systems such as DADMS, DITPR-DON, or VRAM.
Location & Commitments:
  • Position: Full Time
  • Work Arrangement: Hybrid – On-site at our client site in Philadelphia, Pennsylvania. The number of days on-site will be determined by client needs after hire.
  • Travel Requirements: May be required
  • Location Preference: Prefer candidates within a 50-mile radius of Philadelphia, Pennsylvania.
  • Work Hours: A typical workday consists of eighthours, totaling a forty-hour workweek. We understand that there may be times when employees will need to adjust their work hours due to client needs or personal reasons. To help balance these demands, we offer some flexibility in work schedules.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information System Security Officer (ISSO) – Contingent Upon Contract Award
Information System Security Officer (ISSO) – Contingent Upon Contract Award

Jmares • Philadelphia

Hybrid
USD 110,000 - 150,000
Information System Security Manager (ISSM)
Information System Security Manager (ISSM)

Castellum Inc • Lakehurst (NJ)

On-site
USD 150,000 - 190,000
Information System Security Manager (ISSM)
Information System Security Manager (ISSM)

Corvus Consulting, LLC • New Jersey

Hybrid
USD 120,000 - 175,000
Information System Security Manager
Information System Security Manager

Amentum • Northern (KY)

Hybrid
USD 100,000 - 110,000
Health insurance
Paid time off
401(k) matching
+6
Information System Security Manager
Information System Security Manager

Amentum • Sumter (SC)

On-site
USD 100,000 - 110,000
Health insurance
401(k) matching
Paid time off
+5
Information Systems Security Manager (ISSM)
Information Systems Security Manager (ISSM)

LMI • Mechanicsburg

On-site
USD 115,000 - 175,000
Information System Security Manager
Information System Security Manager

Istari Digital • Arlington (VA)

Hybrid
USD 140,000 - 200,000
Information Systems Security Manager ISSM
Information Systems Security Manager ISSM

KMS Solutions, LLC • Alexandria (VA)

Hybrid
USD 130,000 - 160,000
Medical insurance
Dental insurance
Vision insurance
+8
Information Systems Security Manager ISSM
Information Systems Security Manager ISSM

Kms-Solutions,-LL • Alexandria (VA)

On-site
USD 130,000 - 160,000
Medical insurance
401k / retirement savings plan
Paid time off (PTO)
+3
Information System Security Manager (ISSM)
Information System Security Manager (ISSM)

Socket.dev • Crystal (MN)

On-site
USD 120,000 - 150,000
401K
PTO
Remote work
+3