Principal Information Systems Security Manager (ISSM) – Nuclear Weapon Systems

Valor 3 Services, LLC

Albuquerque (NM)

Hybrid

USD 110,000 - 170,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Valor 3 Services, LLC is seeking a Principal Information Systems Security Manager (ISSM) to provide cybersecurity SME support to the NNSA and its weapon programs. The role covers RMF, SSE, and risk management across NW-IT, OT, and weapon-enabling systems.

The candidate will develop security documentation, advise Federal leaders, and coordinate with DoD and national labs. A DOE Q or DoD Top Secret level clearance is required.

Qualifications

  • Bachelor’s degree or higher in a related STEM discipline.
  • 8–10 years in cybersecurity, systems engineering, or information assurance.
  • ≥4 years as ISSM/ISSO or equivalent role.
  • Experience in national security environments (NNSA/DoD/DOE).
  • DoD 8140/8570 IAM Level III certs required (e.g., CISSP, CISM).

Responsibilities

  • Lead RMF implementation and security authorization activities.
  • Develop and review security requirements for WPM/SOW/ICDs and acquisition docs.
  • Support risk management, supply chain risk, and cyber-physical security across lifecycle.
  • Coordinate with DoD and federal leadership, engineering teams, and contractors.
  • Prepare briefings and reports for Federal leadership.

Skills

Cybersecurity
Systems engineering
Information assurance
RMF knowledge
Technical writing

Education

Bachelor’s degree in Computer Science, Cybersecurity, Systems Engineering, Information Technology, or related STEM

Job description

Company: Valor 3 Services, LLC
Client: National Nuclear Security Administration (NNSA)
Location: Albuquerque, New Mexico
Work Arrangement: Hybrid/On-site, based on contract and client requirements
Position Type: Full-Time
Clearance: Active DOE Q or DoD Top Secret with eligibility and access to Critical Nuclear Weapon Design Information (CNWDI) and Sigma 15

Position Overview

Valor 3 Services, LLC is seeking an experienced Principal Information Systems Security Manager (ISSM) to provide cybersecurity subject matter expertise in support of the National Nuclear Security Administration (NNSA) and its nuclear weapon programs.

The successful candidate will provide high-level technical advisory, systems security engineering, and risk management support for Nuclear Weapon Information Technology (NW-IT), operational technology (OT), and weapon-enabling systems throughout their acquisition lifecycles.

This position requires extensive experience with the Risk Management Framework (RMF), system security architecture, supply chain risk management, and cybersecurity requirements associated with highly sensitive and classified systems.

As a contractor supporting NNSA, the selected candidate will provide technical analysis, recommendations, documentation, and coordination in support of Federal decision-makers. The position will not perform inherently governmental functions, including official risk acceptance or execution of Authorizations to Operate (ATOs).

Key Responsibilities

Cybersecurity & Risk Management Framework (RMF)

  • Facilitate implementation of the NIST Risk Management Framework in accordance with NIST SP 800-37, CNSSI 1253, DOE cybersecurity requirements, and other applicable guidance for classified, specialized, and non-standard weapon-related systems.
  • Develop, update, and maintain authorization and assessment documentation, including System Security Plans (SSPs), Security Assessment Reports (SARs), Plans of Action and Milestones (POA&Ms), and Continuous Monitoring (ConMon) plans.
  • Develop tailored security control profiles and identify compensating controls for embedded IT, telemetry systems, flight-test configurations, operational technology, and other systems supporting nuclear weapon programs.
  • Conduct technical vulnerability analyses, risk assessments, and impact analyses and develop recommended mitigation strategies for Federal review.

Systems Security Engineering & Acquisition Support

  • Work with weapon product teams to integrate Systems Security Engineering (SSE) and cybersecurity requirements throughout the Joint DOE/DoD Nuclear Weapons Life Cycle.
  • Develop and review cybersecurity requirements for technical specifications, Statements of Work (SOWs), Interface Control Documents (ICDs), and other acquisition documentation.
  • Support Nuclear Enterprise Assurance (NEA) activities through Supply Chain Risk Management (SCRM) and Software Assurance (SwA) evaluations.
  • Evaluate risks associated with hardware and software subversion, counterfeit components, tampering, and other supply chain vulnerabilities.
  • Review security aspects of weapon-enabling systems, Joint Test Assemblies (JTAs), ground support test equipment, and related systems for compliance with applicable anti-subversion and anti-tamper requirements.

Stakeholder & Program Coordination

  • Provide technical cybersecurity and information security risk advice to Federal program and cybersecurity leadership.
  • Support coordination with Department of Defense and military service counterparts to align cybersecurity requirements, system boundaries, and security approaches for joint nuclear weapon programs.
  • Participate in technical working groups, Nuclear Weapon System Safety Groups (NWSSGs), safety studies, and other activities involving cyber-physical systems and delivery-platform interfaces.
  • Coordinate cybersecurity activities across multiple National Nuclear Security Enterprise sites, including national laboratories and production facilities.
  • Communicate complex cybersecurity risks, requirements, and mitigation strategies to Federal leadership, engineers, security professionals, and other technical stakeholders.

Continuous Monitoring & Program Support

  • Monitor and report on cybersecurity compliance and security posture for systems within the assigned portfolio.
  • Track POA&M items and coordinate with system administrators, engineers, and other stakeholders to support timely remediation.
  • Support the analysis, containment, coordination, and reporting of potential cybersecurity incidents and vulnerability disclosures involving sensitive weapon-related information, systems, or architectures.
  • Prepare technical briefings, reports, assessments, and recommendations for Federal leadership.
Required Qualifications
  • Bachelor’s degree in Computer Science, Cybersecurity, Systems Engineering, Information Technology, or a related STEM discipline.
  • Minimum of 8–10 years of progressive experience in cybersecurity, systems engineering, information assurance, or a closely related field.
  • At least 4 years of experience serving as an ISSM, ISSO, or in an equivalent cybersecurity engineering or information assurance role.
  • Demonstrated familiarity with the NNSA National Security Enterprise, Department of Energy, Department of Defense, or comparable national security environments involving nuclear modernization, acquisition, or weapon systems.
  • Expert knowledge of the NIST Risk Management Framework (RMF), CNSSI 1253, and NIST SP 800-53 security controls.
  • Experience applying cybersecurity frameworks to non-traditional IT environments, including embedded systems, Operational Technology (OT), Industrial Control Systems (ICS), or SCADA systems.
  • Working knowledge of Supply Chain Risk Management, hardware/software assurance methodologies, and secure architecture concepts.
  • Demonstrated experience developing professional RMF authorization packages, cybersecurity assessments, technical reports, and executive-level briefings.
  • Strong technical writing, communication, and interpersonal skills.
  • Ability to coordinate and negotiate complex technical security requirements among Federal leadership, military personnel, engineers, cybersecurity professionals, and contractor organizations.
Required Certification

Candidates must meet DoD 8140/8570 IAM Level III certification requirements at the time of hire. Acceptable certifications include:

  • Certified Information Systems Security Professional (CISSP)
  • Certified Information Security Manager (CISM)
  • Certified in Risk and Information Systems Control (CRISC)
  • GIAC Security Leadership Certification (GSLC)
  • Certified Chief Information Security Officer (CCISO)
Preferred Qualifications
  • Master’s degree in Computer Science, Cybersecurity, Systems Engineering, Information Technology, or a related STEM field.
  • Experience with the Joint DOE/DoD Nuclear Weapons Life Cycle (Phase 6.x process) or the DoD Defense Acquisition System.
  • Specialized training or certification in Systems Security Engineering, including ISSEP or CSSLP.
  • Experience with hardware reverse engineering or hardware/software assurance.
  • Previous experience working within a Limited Area, Sensitive Compartmented Information Facility (SCIF), Special Access Program (SAP), or similarly controlled national security environment.
Security Requirements

This position requires an active DOE Q clearance or DoD Top Secret clearance with the eligibility necessary to obtain and maintain required accesses.

The successful candidate must be eligible for access to Critical Nuclear Weapon Design Information (CNWDI) and Sigma 15 and must be willing to consent to random counterintelligence-scope polygraph examinations as required.

Continued employment is contingent upon maintaining all security clearance, access, and eligibility requirements associated with the position.

————————————————-

Valor 3 Services, LLC is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law. Valor 3 Services, LLC is an E-Verify employer.

Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities

The contractor will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor’s legal duty to furnish information. 41 CFR 60-1.35(c)

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Information Systems Security Engineer (NC3)
Senior Information Systems Security Engineer (NC3)

Applied Research Solutions • Bedford (MA)

On-site
USD 181,000 - 193,000
Senior ISSM - RMF Cybersecurity Lead for Nuclear Programs
Senior ISSM - RMF Cybersecurity Lead for Nuclear Programs

Valor 3 Services, LLC • Albuquerque (NM)

Hybrid
USD 110,000 - 170,000
Principal Information Systems Security Engineer
Principal Information Systems Security Engineer

Koitecc Solutions • Linthicum (MD)

On-site
USD 154,000 - 278,000
Health and Wellness programs
Income Protection
Paid Leave and Retirement
Principal Information Systems Security Engineer
Principal Information Systems Security Engineer

Fairygodboss • Linthicum (MD)

On-site
USD 100,000 - 140,000
Intermediate Systems Engineer - IT Infrastructure & Applications
Intermediate Systems Engineer - IT Infrastructure & Applications

nou Systems, Inc. • Colorado Springs (CO)

On-site
USD 110,000 - 160,000
Competitive Wages
Medical, Rx, Dental & Vision Insurance
401(k) Retirement Plan
+2
Information Systems Security Engineer ISSE
Information Systems Security Engineer ISSE

Precise Systems • Town of Texas (WI)

On-site
USD 80,000 - 100,000
Comprehensive employee benefits
Equal Opportunity Employer
Information System Security Manager (ISSM)
Information System Security Manager (ISSM)

Corvus Consulting, LLC • New Jersey

On-site
USD 120,000 - 175,000
Cyber ISSM Analyst
Cyber ISSM Analyst

Cintel Inc • Huntsville (AL)

On-site
USD 90,000 - 120,000
Information Systems Security Officer
Information Systems Security Officer

Kids for the Future • Foster (VA)

On-site
USD 120,000 - 185,000
Intermediate Systems Engineer - IT Infrastructure & Applications
Intermediate Systems Engineer - IT Infrastructure & Applications

nou Systems, Inc. • Huntsville (AL)

On-site
USD 110,000 - 140,000
Medical Insurance
ESOP
401(k) Retirement
+3