Core
Lead Information System Security Manager (ISSM) ensuring compliance, monitoring cybersecurity posture, driving RMF accreditation, and guiding ISSOs for classified systems.
Role type
Senior IC Information System Security Manager (ISSM)
Builds
Secure cloud systems and programs for US federal government clients
Domain
US Federal Government / Cybersecurity / Risk Management
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
RMF accreditation, ATO/IATT management, risk analysis, vulnerability assessment, security audits, technical writing, team leadership, Zero Trust Architecture, cloud-native security, network diagramming, STIG/CIS compliance, incident response, change control coordination
Preferred skills
Certificate to Field (CtF) packages, cybersecurity training/tabletop exercises, AWS/Azure certifications, XDR/EDR tools, container security (Docker/Kubernetes)
Technologies
RMF, ATO, IATT, IRP, BoE, Zero Trust Architecture, SCAP Compliance Checker, Evaluate-STIG, Microsoft Defender, Docker, Kubernetes, ECS, EKS, AKS
Responsibilities
Lead high-performing team of 5-10 individuals; Develop and sustain Rev 5 RMF documentation packages; Lead development of ATO, IATT, IRP, and Body of Evidence; Maintain operational security posture consistent with authorization packages; Collaborate with Security Engineers and DevOps on system design and integration; Implement cloud-native security solutions; Develop and maintain network diagrams using MBSE; Engage with Change Control Board; Lead and train ISSO workflows including continuous monitoring and vulnerability assessment; Verify user clearance and need-to-know; Conduct regular system security reviews; Coordinate hardware/software/firmware changes; Participate in incident handling and reporting; Ensure compliance with STIGs using DoD cyber assessment tools
Seniority
Senior, hands-on IC with team leadership