ISSM -South Dakota

P3S CORPORATION

Box Elder (SD)

On-site

USD 100,000 - 160,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

DAF Financial Management (FM) Enterprise Cybersecurity and Systems/FMWorkFlow Engineering Support seeks a senior cybersecurity leader to guide RMF lifecycle activities and prepare authorization packages for FM systems. You will advise the FM AO/AODR and program offices, develop risk-informed decisions, and ensure compliance across the enterprise.

Responsibilities include coordinating vulnerability management, maintaining SSPs/RARs/POA&Ms in eMASS and ITIPS, and delivering leadership briefings

Qualifications

  • Demonstrated experience advising AOs and senior government stakeholders.
  • Experience supporting enterprise RMF lifecycle across multiple systems.
  • Strong leadership, briefing, and risk-communication skills.

Responsibilities

  • Lead RMF lifecycle support including security control selection and assessment.
  • Develop and sustain SSPs, RARs, and POA&Ms with evidence in eMASS/ITIPS.
  • Coordinate vulnerability remediation and track risk trends for FM leadership.
  • Prepare AO decision support briefs and mission impact assessments.
  • Communicate with system owners and program offices on cybersecurity issues.
  • Ensure timely completion of A&A packages and related documentation.

Skills

RMF advisory
Cybersecurity leadership
Vulnerability assessments
eMASS / ITIPS
Risk management
DoD policy translation

Tools

eMASS
ITIPS
SSP
POA&Ms
RMF processes

Job description

Job Details: Job Location: Ellsworth, SD 57703, Position Type: Full Time, Education Level: 4 Year Degree, Salary Range: $100,000.00 - $160,000.00 Salary, Job Category: Information Technology,

DAF Financial Management (FM) Enterprise Cybersecurity and Systems/FMWorkFlow Engineering Support
Position Overview

The ISSM provides senior cybersecurity leadership and comprehensive RMF lifecycle support for systems within the DAF FM Authorizing Official boundary. The position serves as a senior advisor to the FM AO, AODR, and Program Offices; leads authorization and compliance engineering; oversees enterprise vulnerability and risk-management activities; maintains authorization artifacts in eMASS and ITIPS; and develops risk-informed decision packages, reports, policies, and leadership briefings

Qualifications:
Essential Duties & Responsibilities
  • Provide expert cybersecurity and RMF advisory support to the FM Authorizing Official (AO), Authorizing Official Designated Representative (AODR), and Program Offices across the DAF FM AO boundary.
  • Analyze Federal, DoD, and Air Force cybersecurity policy and translate requirements into actionable implementation guidance for FM systems.
  • Lead and oversee full RMF lifecycle support, including security control selection, implementation, validation, assessment support, authorization, and continuous monitoring.
  • Develop, manage, review, and sustain required authorization artifacts, including System Security Plans (SSPs), Risk Assessment Reports (RARs), Plans of Action & Milestones (POA&Ms), and supporting evidence in eMASS and ITIPS for multiple systems.
  • Conduct or oversee vulnerability assessments, risk analysis, and development of mitigation strategies across the FM portfolio.
  • Coordinate vulnerability remediation with system owners and Program Management Offices and track enterprise-wide vulnerability trends and remediation status for FM leadership.
  • Generate, review, and quality-control comprehensive A&A Decision Staff Packages containing risk analysis, control summaries, mission impact, and formal recommendations for ATO, ATO with Conditions, or Denial.
  • Ensure A&A Decision Staff Packages are completed no later than 10 business days after receipt of a complete package from the PMO.
  • Facilitate communication among system owners, security personnel, Program Offices, and the FM AO to resolve cybersecurity and information-assurance issues.
  • Prepare and/or oversee AO Decision Support Briefings and Mission Impact Assessments for authorization decisions.
  • Prepare and support leadership briefings, working groups, governance forums, and cybersecurity status updates.
  • Review security-control assessment findings, identify gaps and weaknesses, assess associated risk, and recommend remediation strategies.
  • Oversee monthly POA&M status reporting, including open items, closure rates, overdue actions, and risk trends across the FM AO boundary.
  • Develop or oversee POA&M escalation reports for high-risk or significantly overdue items, including risk, mission impact, and recommended leadership action.
  • Maintain or oversee the quarterly FM Systems Inventory & Boundary Document, including systems within the FM AO boundary, key contacts, authorization status, and ATO expiration dates.
  • Develop, review, or update FM-level cybersecurity policies, SOPs, templates, checklists, and implementation guidance for Government review.
  • Prepare or oversee the Annual Program Review briefing summarizing cybersecurity performance, major accomplishments, systemic risks, and strategic recommendations.
  • Coordinate cybersecurity activities with infrastructure, database, systems administration, configuration management, and software engineering personnel when technical changes affect security posture or authorization status.
  • Support Government QASP surveillance by ensuring cybersecurity compliance artifacts, status reports, findings, and performance information are complete, current, traceable, and suitable for Government review.
Security, Access & Compliance Responsibilities
  • Comply with applicable Air Force Instructions, Air Force System Security Instructions, Air Force System Security Memorandums, and other Government cybersecurity requirements.
  • Complete Air Force-mandated Information Assurance Awareness Training before access to Government computing resources.
  • Complete and maintain required DD Form 2875 System Authorization Access Request documentation for applicable EAFB/WPAFB network access.
  • Obtain and properly display required CAC, Restricted Area Badge, contractor identification, or other installation credentials as applicable.
  • Protect Personally Identifiable Information (PII) in accordance with NIST SP 800-122 and comply with Privacy Act requirements.
  • Complete the required Contractor Employee Non-Disclosure Agreement.
  • Immediately report known or suspected security violations or incidents to the FMWF PMO and assist Government security-related inquiries or investigations as directed.
  • Use Government systems, networks, connectivity, email, servers, Internet access, and GFE only for authorized Government official business and acknowledge applicable monitoring requirements.
  • Support COOP activities requested by the PMO when cybersecurity/RMF participation is required.
Recommended Senior-Level
  • Demonstrated experience advising AOs, AODRs, system owners, PMOs, ISSMs/ISSOs, and senior Government stakeholders.
  • Experience supporting multiple systems within an enterprise authorization boundary.
  • Strong leadership, technical writing, briefing, audit-readiness, risk-communication, and cross-functional coordination skills.
  • Experience mentoring or overseeing cybersecurity/RMF personnel is preferred; this is an employer preference and is not expressly assigned by the PWS.
  • Experience with NIST SP 800-53, DoDI 8510.01, DoDI 8500.01, CNSSI 1253, FIPS 199, DISA STIG/SRG processes, vulnerability scanning, and continuous monitoring is strongly preferred where applicable to the Government environment.
Equal Employment Opportunity

We are an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, veteran status, or any other status protected by applicable law.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

ISSM -South Dakota
ISSM -South Dakota

P3S Corporation • Ellsworth Air Force Base (SD)

On-site
USD 120,000 - 160,000
ISSO - South Dakota
ISSO - South Dakota

P3S CORPORATION • Box Elder (SD)

On-site
USD 90,000 - 130,000
SR. Cyber Security Analyst - South Dakota
SR. Cyber Security Analyst - South Dakota

P3S CORPORATION • Box Elder (SD)

On-site
USD 120,000 - 180,000
ISSO - South Dakota
ISSO - South Dakota

P3S Corporation • Ellsworth Air Force Base (SD)

On-site
USD 90,000 - 120,000
SR. Cyber Security Analyst - South Dakota
SR. Cyber Security Analyst - South Dakota

P3S Corporation • Ellsworth Air Force Base (SD)

On-site
USD 140,000 - 190,000
Jr. Cyber Security Analyst - South Dakota
Jr. Cyber Security Analyst - South Dakota

P3S Corporation • Ellsworth Air Force Base (SD)

On-site
USD 60,000 - 90,000
Sr. Cyber Security Analyst
Sr. Cyber Security Analyst

P3S CORPORATION • Dayton (OH)

On-site
USD 95,000 - 120,000
Information System Security Manager
Information System Security Manager

Potawatomi Federal Solutions • Hill Air Force Base (UT)

On-site
USD 165,000 - 180,000
Medical and prescription plans
Dental coverage
Group life insurance
+2
Sr. System Administrator - South Dakota
Sr. System Administrator - South Dakota

P3S CORPORATION • Box Elder (SD)

On-site
USD 72,000 - 110,000
Information System Security Manager
Information System Security Manager

Command Cyber Solutions, LLC • Ogden (UT), Northern (KY)

Hybrid
USD 165,000 - 180,000