Information Systems Security Manager

Pueo Business Solutions LLC

McLean (VA)

On-site

USD 120,000 - 170,000

Full time

6 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Pueo Business Solutions LLC in McLean, VA seeks an ISSM to ensure the security and maintenance of information systems across RMF lifecycles in line with ICD and DIA policies. You will manage changes, assess cybersecurity impact, and guide continuous monitoring.

Ideal candidates bring senior RMF expertise, strong collaboration with ISSOs and PMs, and hands-on use of risk management platforms to drive remediation and compliance across DoD programs.

Qualifications

  • Experience managing RMF and DoD security controls across full lifecycle.
  • Proven ability to document vulnerabilities and drive remediation.
  • Strong familiarity with DoD IC directives and DIA policies.

Responsibilities

  • Document misconfigurations, issues, and vulnerabilities from analyzed systems.
  • Use XACTA to manage risk assessments, POA&M tracking, and compliance status.
  • Monitor POA&M items and ensure vulnerabilities are mitigated and closed.
  • Collaborate with ISSOs, SCAs, PMs, and stakeholders for guidance.
  • Act as a cyber security representative of the DoD.
  • Lead security projects and initiatives across mixed teams.

Skills

RMF & NIST 800-series
Vulnerability management
POA&M tracking
Cyber risk assessment
Stakeholder collaboration
Continuous monitoring
Security governance

Education

IAT-III Certification
CASP+ CE
CCNP Security
CISA
CISSP (or Associate)
GCED
GCIH
CCSP
Bachelor’s Degree + 12 yrs exp

Tools

XACTA
EMASS
STIGS
ACAS
PRISMA
Splunk
Trellix HBSS

Job description

Description

Pueo is known for bringing the best talent and unique tools to every opportunity. Pueo's Parliament (aka workforce) is composed of professionals who are seeking the opportunity to work in a business organization that thrives on career development and independence. In support of mission and professional growth, our Parliament has supported the development of multiple patents, proprietary tools, and applications as well as trademarked processes.

Our organization emphasizes career development across multiple career environments (at the members own pace) and ensures those who contribute broadly are properly rewarded. Pueo has four career environments where every member of the parliament can participate. Each environment has opportunities available for all levels. Opportunities are framed by an employee's desires and capabilities, and we ensure challenges, growth, and unique experiences are available for employees at all levels.

Our Career Environments (Program, Functional, Service, and Leadership) provide numerous opportunities for employees to invest in their personal growth and those things that offer fulfillment. We invest in helping our members create and execute their career development plans. Our Pods (small teams of 5 or less) are comprised of personnel with similar skillsets to ensure mentorship, understanding, and peer support.

OVERVIEW:

We are seeking an ISSM that will be responsible for ensuring the security and maintenance of information systems in their assigned programs throughout the Risk Management Framework (RMF) lifecycle, from preparing through decommission, in accordance with Intelligence Community Directives (ICD) and Defense Intelligence Agency (DIA) policies. The ISSM manages and controls changes to the system or application, assesses the potential cybersecurity impact of those changes, provides technical expertise and continuous monitoring.

GENERAL DUTIES:
  • Thoroughly document misconfigurations, issues, and vulnerabilities from analyzed systems.
  • Properly uses XACTA to manage and store all relevant program information including documentation of risk assessments, security control implementations, POA&M tracking, and compliance status.
  • Monitor and track all POA&M items, ensuring that vulnerabilities identified in scans or audits are documented, mitigated, and closed appropriately.
  • Collaborate with ISSOs, SCAs, PMs, and other stakeholders by providing necessary guidance and clarifications.
  • Act as a cyber security representative of the DoD.
  • Senior knowledge and hands-on experience with RMF, NIST 800-series guidelines, FIPS, Security Assessment &Authorization (SA&A) requirements and processes, Continuous Monitoring Framework experience and its tools, Plan of Action & Milestones (POA&M) policies, and vulnerability/patch management.
  • Experience using a Cyber Risk Management Platform (e.g., XACTA/EMASS) for Workflow Automation, Compliance Standards, RMF, and Continuous Monitoring.
  • Solid interpersonal and communication skills to interact with various stakeholders and team members effectively.
  • Expert hands-on experience interrupting compliance and vulnerability scanning tool reports from (XACTA, STIGS, ACAS, PRISMA, Splunk, Trellix (HBSS), and/or other vulnerability scanners)
  • Exhibit problem-solving skills and the ability to think analytically.
  • Experience leading security projects and initiatives.
  • Team-player with collaboration qualities and experience working in mixed technical teams.
REQUIRED QUALIFICATIONS:
  • Obtain an IAT-III or Maintain IAT Level III Certification in compliance with DoD 8570.01-M and DoD Directive 8140 Cyberspace Workforce Management.
  • CASP+ CE
  • CCNP Security
  • CISA
  • CISSP (or Associate)
  • GCED
  • GCIH
  • CCSP
  • Bachelor’s Degree and 12 years of experience in Cybersecurity, Information Assurance and Information Technology
  • Bachelors degree may be substituted with 6+ years of additional experience/equivalent certifications
CLEARANCE:
  • Active Top Secret Security clearance with SCI eligibility

Pueo is an equal employment opportunity employer and affirmative action employer. All interested individuals will receive consideration and will not be discriminated against on the basis of race, color, religion, sex, national origin, disability, age, sexual orientation, gender identity, genetic information, or protected veteran status. Pueo takes affirmative action in support of its policy to advance diversity and inclusion of individuals who are minorities, women, protected veterans, and individuals with disabilities.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cybersecurity Analyst Expert
Cybersecurity Analyst Expert

Pueo Business Solutions LLC • Virginia (IL), Northern (KY)

On-site
USD 110,000 - 150,000
RMF Project Manager
RMF Project Manager

Pueo Business Solutions LLC • McLean (VA)

On-site
USD 120,000 - 160,000
Information System Security Manager
Information System Security Manager

IPTA • Bath Township (OH)

On-site
USD 120,000 - 170,000
Security Control Assessor
Security Control Assessor

Pueo Business Solutions LLC • Virginia (MN)

On-site
USD 120,000 - 190,000
Information System Security Manager
Information System Security Manager

Interactive Process Technology LLC • Bath Township (OH)

On-site
USD 120,000 - 170,000
Information System Security Manager
Information System Security Manager

Prana Comunicación • Dayton (OH)

On-site
USD 120,000 - 180,000
Information Systems Security Engineer
Information Systems Security Engineer

Systems Planning & Analysis • Huntsville (AL)

On-site
USD 90,000 - 130,000
Information System Security Manager (ISSM)
Information System Security Manager (ISSM)

JFL Consulting LLC • Springfield (VA)

On-site
USD 155,000 - 175,000
Salary 155k-175k
Medical/dental/vision premiums
FSA accounts
+4
Senior IT Program Manager
Senior IT Program Manager

Pueo Business Solutions LLC • McLean (VA)

On-site
USD 140,000 - 180,000
Information System Security Manager (Skill Level 2-3)
Information System Security Manager (Skill Level 2-3)

Rippling, Inc. • Fort Meade (MD)

On-site
USD 120,000 - 180,000