Information Systems Security Manager

Leidos Inc

Concord (MA)

On-site

USD 108,000 - 195,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Leidos seeks an Information Systems Security Manager to oversee SIPRNet security across Concord, MA sites. You will manage SIPRNET services, lead security audits, and ensure DoD guidance is consistently applied while mentoring staff and coordinating with site leadership.

The role requires a long track record in cyber security leadership, expertise in RMF/NIST/CNSS frameworks, and strong communication to drive security programs and incident response readiness across multiple sites.

Qualifications

  • Active DoD Top Secret clearance is required.
  • Bachelor's degree in an IT-related field and 12+ years in IT, with 10+ years in cyber security roles, or 15+ years in IT with 10+ years in cyber security.
  • 12+ years IT leadership experience, preferably cyber security management.
  • DOE/DoD RMF, NIST, CNSS cyber security standards familiarity.

Responsibilities

  • Oversee SIPRNet services across sites and advise leadership on security policies.
  • Coordinate security audits to ensure SIPRNet compliance with standards.
  • Lead in establishing and sustaining cybersecurity of SIPRNet enclave connections.
  • Develop and deliver IA training and incident response procedures.
  • Prepare and maintain IS authorization documentation and CM processes.

Skills

Clearance management
Communication skills
ISSM/ISSO experience
SIPRNet domains

Education

Bachelor's degree in IT-related field

Tools

RMF
NIST/CNSS guidance
Tenable/vulnerability scanning
Windows/Linux security

Job description

Description

Leidos Corporate Information Security Office (CISO), reporting through the Digital Sector, is seeking an Information Systems Security Manager to work in our Concord, MA office.


The ISSM is responsible for the management and technical administration of SIPRNET (Secret Internet Protocol Router Network) secure communication infrastructure within the organization. In this role, you will serve as the Subject Matter Expert (SME) within the Information Assurance technical domain and, more specifically, for organizational SIPRNET (Secret Internet Protocol Router Network) enclaves across the enterprise. You will oversee day-to-day information system security operations, resolve complex problems, and develop innovative solutions to meet changing security requirements. To be successful, you must have the ability to work independently as well as with a team of analysts, information technology management and staff, and site management.The ideal candidate will be adaptable to diverse office situations, procedures, and demands.


Primary Responsibilities

This role may include a combination of duties to protect information and maintain security controls for an entire system, site, or program in order to reduce risk.



  • Oversee and manage SIPRNet services across multiple sites and advise senior site leadership of established security policies and guidelines.

  • Coordinate and participate in security audits and assessments to ensure that site SIPRNET infrastructure meets the required security standards and complies with regulations.

  • Lead sites in establishing and sustaining the cybersecurity of SIPRNet enclave connections.

  • Coordinate SIPRNet connections for sites per guidance outlined in the Defense Information System Network Connection Process Guide.

  • Ensure SIPRNet systems are configured and sustained per the DoD, U.S. Cyber Command, and JFHQ-DODIN guidance.

  • Provide training and awareness on security protocols, best practices, and Command Cyber Readiness Inspection preparation for organizational and site leadership.

  • Conduct site CCRI self-assessments for all SIPRNet sites within the organization.

  • Develops and leads Information Security projects from conceptualization to full deployment and user acceptance.

  • Create comprehensive training programs focused on information assurance, data security, cybersecurity best practices, and relevant policies and procedures.

  • Design training materials, including manuals, operating procedures, presentations, assign online courses, and other resources.

  • Coordinate technical training on security tools, software, and technologies used within the organization to enhance the skills of IT staff and other relevant personnel.

  • Develop and lead training on how to respond to security incidents, including reporting procedures, containment, eradication, recovery, and post-incident analysis.

  • Develop and maintain a comprehensive onboarding plan for new hires, outlining the orientation process, training schedules, and integration into the team and company culture.

  • Develop and implement a robust tracking system to monitor the progress and completion of IA staff training programs, ensuring accurate and timely recording of training milestones, assessments, and certifications.

  • Implement and manage the Risk Management Framework (RMF) Continuous Monitoring process by utilizing an automated ticketing system, ensuring accurate tracking, monitoring, and reporting of security controls, vulnerabilities, and remediation efforts within the organization's information systems.

  • Manages staff to deliver Cyber Operations, Cyber process improvements, and Cyber project execution.

  • Continuous monitoring, analysis, and response to Information System network and security events.

  • Documents compliance activities in accordance with the governing authority-approved authorization package.

  • Develop procedures and documentation to ensure compliance with Configuration Management (CM) for security-relevant Information System (IS) software, hardware, and firmware.

  • Ensures systems are operated, maintained, and disposed of in accordance with the governing authority-approved authorization package and customer directives.

  • Evaluate proposed changes or additions to the information system and advise senior site leadership of the security relevance.

  • Develop and conduct cybersecurity education and training.

  • Mentor other information assurance professionals in the art of cybersecurity and secure software development practices

  • Participate in internal/external security audits/assessments/inspections; participates in the risk management process; performs risk assessments and Continuous Monitoring

  • Lead investigations of computer security violations and incidents, reporting as necessary to both the Facility Security and Senior Program Managers.

  • Ensure proper protection and/or corrective measures have been taken when an incident or vulnerability has been discovered

  • Work with the Facility Security Officer (FSO), develop, implement, and manage a formal Information Security/Information Systems Security Program.

  • Develop, implement, and enforce Information Security Policies and Procedures.

  • Author, review, and update IS Authorization documentation (Body of Evidence) to support IS Assessment and Authorization activities


Basic Qualifications


  • An active DoD Top Secret clearance is required for consideration.

  • Bachelor's degree in an IT-related subject matter area from an accredited college or university and 12+ years of experience in an IT-related position with at least 10 years being in an operational cyber security-specific role (e.g., information system security manager, information system security officer, cyber security specialist) or have 15+ years of experience in an IT related position with at least 10 of those years in an operational cyber security specific role.

  • At least 12 years of IT Team leadership and management experience, preferably 10 years of Cyber management experience.

  • DoD 8570 IAM Level I certified.

  • Detailed understanding of the Risk Management Framework (RMF), National Institute of Standards and Technology (NIST), and Committee on National Security Systems (CNSS) cyber security requirements and guidance, cybersecurity-related risk management techniques.

  • Familiarity with network technologies (LAN & WAN) and best practices within a classified environment, including crypto and key management.

  • Working knowledge of Microsoft Windows (workstation & server) and Linux operating systems in a secure network environment.

  • Experience with compliance scanning tools and vulnerability scanning tools (e.g., Tenable).

  • Must be able to work in a constantly changing regulatory environment with short-, mid-and long-term timelines for remediating any non-compliance.

  • Must be able to work well within a team environment and adapt quickly to change.

  • Excellent verbal and written communication skills.

  • Past or current ISSM/ISSO experience.

  • Extensive experience with Secret Internet Protocol Router Network (SIPRNet) enclaves and governing policies.


Preferred Qualifications


  • Proficient in using Microsoft Windows and Linux operating systems and cloud computing.

  • Experience with developing policies, procedures, and guidance to include providing artifacts for the RMF process.


If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 - and moving faster than anyone else dares.


For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.


Pay Range $107,900.00 - $195,050.00


The Leidos pay range for this job level is a general guideline onlyand not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.


About Leidos

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit www.Leidos.com.


Pay and Benefits

Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at www.leidos.com/careers/pay-benefits.


Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Systems Security Manager
Information Systems Security Manager

Leidos • Concord (MA)

On-site
USD 108,000 - 195,000
Information Systems Security Manager
Information Systems Security Manager

Via Logic LLC • Concord (MA)

On-site
USD 108,000 - 195,000
Information System Security Manager (ISSM)
Information System Security Manager (ISSM)

Leidos Inc • Lorton (VA)

On-site
USD 108,000 - 195,000
Information System Security Manager (ISSM)
Information System Security Manager (ISSM)

Leidos Inc • Oklahoma City (OK)

On-site
USD 108,000 - 195,000
Information System Security Manager (ISSM)
Information System Security Manager (ISSM)

Leidos • United States

On-site
USD 108,000 - 195,000
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

Koitecc Solutions • Oklahoma City (OK)

On-site
USD 87,000 - 157,000
InfoSec ISSO/ISSE Engineer - RMF, TS/SCI
InfoSec ISSO/ISSE Engineer - RMF, TS/SCI

Leidos • Fort Meade (MD)

On-site
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

Koitecc Solutions • Lorton (VA), Northern (KY)

Hybrid
USD 87,000 - 157,000
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

Leidos • Oklahoma City (OK)

On-site
USD 87,000 - 157,000
Information System Security Manager (ISSM)
Information System Security Manager (ISSM)

Via Logic LLC • Oklahoma City (OK)

On-site
USD 108,000 - 195,000