Information Systems Security Manager (ISSM)

Mission Essential

Fairfax (VA)

On-site

USD 120,000 - 160,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical, dental, vision insurance
Life and disability insurance
Paid time off
Retirement benefits
Competitive salary

Job summary

Mission Essential Group, LLC (MEG) in Fairfax, VA, seeks an experienced Information Systems Security Manager (ISSM) to lead RMF lifecycle activities, ensure ATO readiness, and coordinate with government security authorities. The role emphasizes risk management, security control assessments, and continuous monitoring across programs.

Requirements include an active Top-Secret clearance with SCI eligibility, bachelor’s in a cybersecurity/IS field, and 10+ years of information security experience,

Qualifications

  • Active Top-Secret Clearance with SCI Eligibility is required.
  • Bachelor’s degree in a cybersecurity/information security-related field is required; Master’s degree preferred.
  • Minimum of 10 years in Information Assurance/Information Security, including 2–3 years in ISSO/ISSM roles.

Responsibilities

  • Oversee the full RMF lifecycle: categorization, control selection, implementation, assessment, authorization, and continuous monitoring.
  • Develop and manage RMF documentation: SSPs, SARs, POA&Ms.
  • Ensure compliance with NIST SP 800-53 Rev. 5 and DoDM 5200.01; manage accreditation activities with eMASS.
  • Conduct security control assessments, vulnerability management, and mitigation tracking.
  • Coordinate with client and oversight agency security authorities; provide leadership on IT architectures.

Skills

Top-Secret Clearance
SCI Eligibility
RMF / Information Assurance
NIST SP 800-53 Rev.5
DoD 5200.01
SIPRNet experience
IAM / Privileged Access Management
CISSP / CISM (certifications)

Education

Bachelor’s degree in Cybersecurity/Information Security/IS/CS
Master’s degree preferred
IAM Level III certification (CISSP, CISM, GSLC CCISO, CAP)

Tools

eMASS

Job description

The Mission Essential Group, LLC (MEG), is a premier service provider of information management solutions for complex, mission-critical needs. MEG has earned a reputation as an innovator and pioneer. Headquartered in Fairfax, VA, MEG employs professionals in offices located throughout the United States and around the world. MEG offers a competitive benefits package including a competitive salary; medical, dental, vision, life and disability insurance; paid time off; and retirement benefits.

MEG is a leading provider of Information Management system engineering, software development, information assurance, system sustainment. MEG supports the Integrated Broadcast Service (IBS) enterprise, the worldwide Department of Defense (DoD) joint program for delivering intelligence, surveillance & reconnaissance (ISR) and targeting data to all levels of tactical and strategic operational users.

IBS provides global, 24/7, dissemination of time sensitive Indications & Warning and Force Protection data to Joint Warfighters and Collaborating Nation partners conducting military operations around the world. MEG serves a vital role in supporting the IBS Enterprise, providing continuity in skills crucial to support military operations. MEG integrates the talents and skills of team members to form an IBS Enterprise Support Services Team to provide world-class IBS customer support.

MEG provides innovative software tools, technical services, and rapid development of solutions to support end user requirements. As such our systems and products require are high level of quality and configuration management to ensure they meet and/or exceed customer expectations.

The Information Systems Security Manager (ISSM) is a hands-on position that requires an advanced knowledge of information assurance principles and regulatory guidance to develop, certify, accredit, and maintain information systems (IS) that are integral to our customers, our business, and the success of our security program. The ISSM will lead the preparations and interactions with the government for system security assessments and ensure the IS maintains their Authority to Operate (ATO). The ISSM will manage the implementation of security policies, conduct risk assessments, manage security controls, and Plan of Actions and Milestones (POAM). The ISSM is expected to advise senior management on cybersecurity issues, communicate security risks, and collaborate with technical teams and other stakeholders. The ISSM is required to have the ability to multitask; assume ownership and accountability of risks, issues, and tasks; and successfully manage and resolve those risks, issues, and tasks to completion. The ISSM must have the ability to work well in a team-oriented environment; self-manage his/her own tasks; and provide hands-on guidance, direction, and mentoring to the technical team. Finally, the ISSM must be extremely well-organized, well written, has a keen eye for detail, and can clearly articulate information (both orally and in writing) to customers, stakeholders, peers, and leadership within and external to the Program and Organization.

Duties and Responsibilities:
  • Oversee the full RMF lifecycle: categorization, control selection, implementation, assessment, authorization, and continuous monitoring
  • Develop, maintain, and manage RMF documentation including:
  • System Security Plans (SSPs)
  • Security Assessment Reports (SARs)
  • Plan of Action & Milestones (POA&Ms)
  • Ensure compliance with:
  • NIST SP 800-53 Rev. 5 security controls
  • DoD Cybersecurity Manual (DoDM 5200.01)
  • Manage system accreditation activities with eMASS and ensure data accuracy and completeness
  • Conduct and support security control assessments, vulnerability management, and mitigation tracking.
  • Ensure compliance with STIGs (Security Technical Implementation Guides)
  • Support audits, inspections, and cybersecurity readiness reviews
  • Acts in concert with the Facility Security Officer as required.
  • Renew ATOs and implement new ATOs as required
  • Provide leadership in developing and maintaining company and customer IT architectures.
  • Prepare, review, and oversee all Information Systems Security Plans (SSP’s)
  • Ensure proper Protection and/or Corrective Measures have been taken when an Incident or Vulnerability has been discovered.
  • Liaisons with client and oversight agency security authorities
Minimum Qualifications:
  • Must possess an Active Top-Secret Clearance with SCI Eligibility
  • Must be eligible to maintain a US Government security clearance
  • Bachelor’s degree in Cybersecurity, Information Security, Information Systems, Computer Science, or related field required; Master’s degree preferred
  • Minimum of 10 years of Information Assurance, Information Security experience, including at least 2-3 years in an ISSO or ISSM capacity.
  • Working knowledge of Information Security governing regulations (NISPOM Chapter 8, applicable NIST 800-53 Rev. 5 controls, NIST SP 800-37 Rev. 2.
  • Experience managing a SIPRNet connection.
  • Practical knowledge of security technologies such as encryption, data protection, zero trust architecture, privileged access management.
  • IAM Level III certification preferred (CISSP, CISM, GSLC CCISO, CAP, or equivalent)
Desired Experience:
  • CISSP or CISM Certified
  • COMSEC knowledge
  • Experience administering and maintaining security packages within eMASS.
  • 5-10 years SIEM experience
  • Experience supporting DCSA assessments and audits.
  • Extensive experience implementing and managing the Risk Management Framework (RMF) and maintaining ATO packages.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Systems Security Manager
Information Systems Security Manager

Mission Essential • Virginia (MN)

On-site
USD 120,000 - 180,000
Information Systems Security Manager (ISSM)
Information Systems Security Manager (ISSM)

The Mission Essential Group, LLC • Fairfax (VA)

On-site
USD 170,000 - 195,000
Medical Insurance
Dental Insurance
Vision Insurance
+4
Senior Cyber Security Engineer/Information Systems Security Manager (ISSM)
Senior Cyber Security Engineer/Information Systems Security Manager (ISSM)

Modern Technology Solutions, Inc. (MTSI) • Bedford (MA)

On-site
USD 120,000 - 150,000
Information System Security Officer (ISSM)
Information System Security Officer (ISSM)

Chenega MIOS SBU • Patterson (OH)

Hybrid
USD 100,000 - 130,000
Information System Security Manager
Information System Security Manager

Peraton • Maryland

On-site
USD 130,000 - 170,000
Information System Security Officer (ISSM)
Information System Security Officer (ISSM)

Chenega Corporation • New Germany (OH)

Hybrid
USD 90,000 - 130,000
Information System Security Manager (Skill Level 2-3)
Information System Security Manager (Skill Level 2-3)

Strategic Analytix • Fort Meade (MD)

On-site
USD 100,000 - 140,000
Information System Security Engineer
Information System Security Engineer

CACI International Inc • Leesburg (VA)

On-site
USD 120,000 - 180,000
Information Systems Security Manager
Information Systems Security Manager

Modern Technology Solutions, Inc. (MTSI) • Dayton (OH)

On-site
USD 90,000 - 130,000
Flexible schedules
401k match
Tuition reimbursement
Information Systems Security Manager (ISSM)
Information Systems Security Manager (ISSM)

Astrion • Columbia (MD)

On-site
USD 137,000 - 205,000