Information Systems Security Manager (ISSM)

Ridgeline International, LLC

Tysons (VA)

On-site

USD 190,000 - 232,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Flexible PTO
401k match up to 10%
Medical insurance
Dental insurance
Vision insurance
Disability & life insurance
HSA contributions
Learning & Development
Professional coaching
Tech you want for job

Job summary

Veilant seeks a senior RMF/InfoSec professional to lead end-to-end security accreditation for government and enterprise systems in the Northern Virginia area. You will be the trusted bridge between our security program and mission partners, guiding design decisions with risk and compliance in mind.

The role requires active TS/SCI clearance with polygraph, a related bachelor’s degree or equivalent experience, and 5+ years in cybersecurity, RMF, or compliance for classified programs.

Qualifications

  • Active TS/SCI clearance with polygraph is required.
  • Bachelor’s degree in CS, Cybersecurity, Computer Engineering, or related field or equivalent hands‑on experience.
  • 5+ years of cybersecurity, information assurance, risk management, or compliance for classified/unclassified programs.

Responsibilities

  • Lead RMF accreditation end-to-end including SSPs, policies, procedures, and ATO packages.
  • Coordinate with government partners and auditors, answering questions directly.
  • Identify security requirements early and integrate them into system architecture and design.
  • Drive remediation and continuous monitoring to maintain authorization status.

Skills

TS/SCI clearance
Polygraph
RMF experience
Security architecture
Cloud security

Education

Bachelor’s degree in CS/Cybersecurity/Engineering

Tools

Splunk
Nessus
Wireshark

Job description

We were early to the fight against Ubiquitous Technical Surveillance, and we’ve been pushing the edge ever since.

Our mission is to help government and enterprise organizations understand and manage commercial data risks, shape their digital signatures, and operate with confidence in an increasingly complex information landscape. We build and integrate advanced, tech-forward solutions to problems our customers often don’t know they have – until it matters most.

We move fast, think critically, and deliver where it counts.

What’s in it for you?

We work hard and do fun things.

You’ll work on high-impact, technically challenging problems alongside a team that values teamwork over competition. Veilant offers a solid work-life balance and flexible remote work options. At Veilant, you’ll work with the most talented software developers, systems engineers, and subject matter experts, building tools and systems that make a real difference.

Job Description

At most organizations, security accreditation shows up at the end of a program — a paperwork sprint to get an ATO signed before a deadline, run by someone who wasn't in the room when the architecture was decided.

That's not the job here.

Veilant is rethinking how cyber security and assurance get delivered across mission and enterprise systems, and we're looking for the person who will lead that shift. You'll be the primary security advisor and the trusted bridge between our Information Security Program and our government mission partners — the person engineering teams consult before they commit to a design, and the person our customers call when a hard question about risk or compliance lands on their desk.

If you've spent years watching RMF get treated as a compliance tax and you know it can be run as a discipline that actually makes systems better, this is the role where you get to prove it.

What you own

RMF accreditation, end to end. You are the lead for every in-scope system — authoring and maintaining System Security Plans, policies, and procedures; building ATO packages; writing the justifications; assembling evidence; walking auditors through reviews; answering the government's questions directly; and keeping continuous monitoring running long after the authorization is signed.

Compliance integrity. You'll review systems on a regular cadence for drift from documented configurations and procedures, report what you find without softening it, and drive remediation to closure.

Regulatory authority. You'll be the person in the building who knows what NIST CSF, SP 800-171, SP 800-53, CMMC, and the DoD Zero Trust Mandate actually require — and, more usefully, what they mean for the system in front of you.

Security as a design input. You'll identify security requirements early and get them built into architecture rather than bolted on. You'll advise mission teams on how their work maps to authorization processes — software, wireless, cloud approvals — so nobody discovers a blocker three weeks before delivery.

What success looks like in your first six months
  • A complete inventory of in-scope systems and their current authorization posture, with a prioritized roadmap for what needs attention and in what order
  • At least one system carried through ATO or reauthorization under your ownership
  • SSPs and supporting documentation current and defensible for every system you own
  • A continuous monitoring rhythm operating on a predictable cadence, with reporting your government partners actually rely on
  • Established as the advisor mission and engineering teams bring in early — not after the design is locked
How we'll measure your impact
  • Authorizations delivered on schedule, with no lapses in ATO coverage
  • Audit and assessment findings closed within agreed timelines, with POA&M burn-down trending down
  • Government partners raise security questions to you directly, and get answers they can act on
  • Security requirements appear in architecture reviews before they appear in findings
Qualifications

What you bring

  • Active TS/SCI with Polygraph. This is a hard requirement — we're unable to consider candidates without a current clearance at this level.
  • A bachelor's degree in Computer Science, Cybersecurity, Computer Engineering, or a related field — or equivalent hands‑on experience.
  • 5+ years of progressively increasing responsibility supporting cybersecurity, information assurance, risk management, or compliance for classified and unclassified programs, within the U.S. Government or as a cleared contractor.
  • Direct RMF experience — you've built ATO packages, not just contributed to them, and you've owned the relationship with an authorizing official.
  • Applied technical depth in one or more of: cloud and external services, system administration, configuration management, system and network architecture, operational technology, wireless, telecommunications security, supply chain risk, or security analysis tooling (Splunk, Nessus, Wireshark, and the like).
  • Communication that lands with both audiences. You can brief a room of engineers and a room of executives on the same risk, and both walk out knowing what to do next.
  • Willingness to work predominantly on‑site in cleared facilities in Northern Virginia.
What Sets You Apart
  • Experience standing up or maturing a security program rather than maintaining an established one
  • CISSP, CISM, or equivalent certification
  • Direct experience implementing DoD Zero Trust requirements or CMMC readiness
  • A track record of turning a skeptical mission team into a partner
Why Join Veilant

This is an opportunity to shape a new commercial product function from the ground up. You will not simply inherit a roadmap — you will help define where Veilant goes next.

For the right person, this is a high‑impact role with direct visibility to leadership and the opportunity to turn proven, mission‑critical technologies into scalable commercial products.

What is the Compensation Range for this role?

The salary range for this position is $190,000 to $232,000 annually for full‑time status. Actual compensation within this range at Veilant is determined by numerous factors including but not limited to the candidate's qualifications, including experience, education, certifications, technical skills, as well as contract‑specific affordability and labor categories, the scope and responsibilities of the role, market and business considerations, and geographic location.

Here are some Perks!
  • Flexible PTO + holidays
  • Generous 401k match benefit up to 10%, with an automatic 3% safe harbor contribution and additional matching based on employee contributions.
  • Medical (HSA & PPO Plans Available), dental, vision, disability, and life insurance
  • Employer Contribution to Health Savings Account (HSA)
  • Learning & Development opportunities
  • Professional coaching services
  • Get the technology you want to do your job
  • We have free daily snacks & drinks
Physical Requirements:
  • Must be able to remain in a stationary position 50% of the time. The person in this position needs to occasionally move about inside the office
  • Constantly work with computers and other information technology equipment

We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender, gender identity or expression, veteran status, or any other characteristic protected by law. We are proud to be an equal opportunity workplace.

If you require a reasonable accommodation to apply for a position with Veilant through its online applicant system, please contact Veilant's Talent Management Department at (703) 544-2424 or contact us through e-mail at contact_us@veilant.com

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Systems Security Manager ISSM
Information Systems Security Manager ISSM

Veilant • Tysons (VA)

On-site
USD 190,000 - 232,000
Flexible PTO + holidays
401k match up to 10% + 3% safe harbor
Medical (HSA & PPO) + dental + vision
+5
System Administrator/FSR – Onsite Customer Support
System Administrator/FSR – Onsite Customer Support

Veilant Company • Tysons (VA)

On-site
USD 89,000 - 140,000
Flexible PTO + holidays
Generous 401k match up to 10%
Medical, dental, vision, disability, &
+5
System Administrator/FSR – Onsite Customer Support
System Administrator/FSR – Onsite Customer Support

Ridgeline International, LLC • Tysons (VA)

On-site
USD 89,000 - 140,000
Flexible PTO + holidays
401k match up to 10%
Health/dental/vision/disability/life
+5
Application Security Engineer
Application Security Engineer

Veilant • Tysons (VA)

On-site
USD 100,000 - 130,000
Flexible PTO
401k match benefit up to 10%
Medical, dental, and vision insurance
+3
Sr. Commercial Product Manager
Sr. Commercial Product Manager

Ridgeline International, LLC • Tysons (VA)

Hybrid
USD 195,000 - 250,000
Flexible PTO + holidays
401k match up to 10%
Health insurance (HSA & PPO)
+5
Senior Human Resources Generalist
Senior Human Resources Generalist

Ridgeline International, LLC • Tysons (VA)

Hybrid
USD 95,000 - 125,000
Flexible PTO
401k match
Health insurance
+3
Senior Human Resources Generalist
Senior Human Resources Generalist

Veilant • Tysons (VA)

Hybrid
USD 95,000 - 125,000
Flexible PTO + holidays
Generous 401k match up to 10%
Health insurance (HSA & PPO) including
+3
Cyber Defense Analyst
Cyber Defense Analyst

Veilant • Tysons (VA)

On-site
USD 80,000 - 110,000
Flexible PTO + holidays
Generous 401k match benefit
Medical, dental, and vision insurance
+2
Senior Linux Systems Engineer
Senior Linux Systems Engineer

Veilant • Tysons (VA)

On-site
USD 100,000 - 130,000
Flexible PTO
401k match
Medical, dental, and vision insurance
+2
NOC Systems Administrator, Linux
NOC Systems Administrator, Linux

Ridgeline International, LLC • Tysons (VA)

On-site
USD 73,000 - 104,000
Flexible PTO + holidays
401k with match and safe harbor
employer health benefits
+4