Information Systems Security Manager (ISSM)
Core
Lead RMF activities and oversee security posture for cloud and network infrastructures, ensuring compliance with federal standards and regulations.
Role type
Senior IC Information Systems Security Manager (ISSM)
Builds
Secure enterprise systems throughout their lifecycle from design to continuous monitoring
Domain
US Federal Government / Information Security / Risk Management Framework
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
RMF leadership, security governance, Linux/Unix administration, containerization (Docker, Kubernetes), scripting/automation (Bash, Python, Go, Rust), security impact analysis, compliance auditing, incident response coordination
Preferred skills
DevSecOps, cloud security (AWS, Azure GovCloud), IaC, CI/CD pipeline integration, advanced Kubernetes security, infrastructure automation
Technologies
Linux, Windows, Docker, Kubernetes, AWS, Azure Government, GovCloud, Jenkins, Git, Ansible, Terraform, SIEM platforms, vulnerability scanners
Responsibilities
Lead RMF activities across the system lifecycle and maintain required security documentation; Ensure compliance with applicable security frameworks and support all ATO processes; Conduct security impact analysis for system, infrastructure, and application changes; Manage RMF packages in enterprise GRC platforms and drive timely POA&M closure; Track and report on security control performance, coordinate remediation with technical teams, and support audits through clear cybersecurity metrics
Seniority
Senior, hands-on IC