DoW - ISSM - Information Systems Security Manager/RMF

Tetrad Digital Integrity LLC

$120K — $145K *
Aerospace & Defense
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Active Secret or Top-secret security clearance is mandatory.
  • Bachelor's degree in Cybersecurity, Computer Science, or IT, with 8+ years of cybersecurity experience, specializing in DoW RMF activities.
  • Possession of industry-standard certifications like CISSP and CISM is essential.
  • Proficient in cloud platforms such as AWS, Azure, or GCP, with a focus on IAM, VPC, and Kubernetes.
  • In-depth knowledge of containerized environments and security best practices is required.
  • Familiarity with Generative AI technologies and associated security considerations is a plus.
  • Comprehensive understanding of NIST SP 800-53, DoD RMF, and FedRAMP frameworks is vital.

Responsibilities

  • Lead RMF execution and coordinate with customers for security processes.
  • Provide expert advice on DoW cloud security policies and NIST controls.
  • Conduct security architecture reviews for cloud-native and containerized systems.
  • Evaluate security controls associated with Docker and Kubernetes in cloud settings.
  • Assess risks related to generative AI and ensure compliant use of AI/ML workloads.
  • Develop and maintain required RMF documentation including SSPs and SARs.
  • Perform threat modeling, vulnerability assessments, and risk analysis tailored for cloud and AI.
  • Integrate security within the Software Development Lifecycle by collaborating with system architects and DevSecOps teams.
  • Perform security control assessments and manage third-party evaluator engagements.
  • Track and report on security compliance through Continuous Monitoring processes.

Benefits

  • Full-time onsite support in the Northern Virginia area required.
  • Opportunity to work on advanced systems with cutting-edge technology.
  • Engage with artificial intelligence models and cloud-native applications.
  • Minimal travel requirements enhance work-life balance.
  • Contribution to significant mission systems that impact national security.
Full Job Description
Tetrad Digital Integrity is seeking Department of War (DoW) Risk Management Framework (RMF) subject matter experts as Information Systems Security Managers to support cloud-based and Artificial Intelligence (AI) integrated systems. We are looking for candidates who have demonstrated experience building and maintaining RMF packages from development and through sustainment, are technically sharp, and ready to work in a fast-paced environment on some of the nations most advanced systems. We need experts who can support ATO efforts and turn DoW Component RMF, NIST 800-53, and Cloud SRG guidance into clear, defensible deliverables. These roles require in-depth knowledge of DoW requirements and the ability to independently lead and support complex systems integrating cloud IaaS/SaaS, custom applications and AI. if you're eager to build credibility fast, experience cutting edge technology, leading artificial intelligence models, and make a visible impact on mission systems-including cloud-native, containerized workloads-you'll fit right in.

This role requires full-time onsite support in the Northern Virginia area. An active Secret OR Top-secret security clearance is required.

RESPONSIBILITIES:
  • Lead and support RMF execution and customer coordination.
  • Provide expert guidance on DoW cloud security policies, NIST SP 800-53 controls, CNSS policies, and DoW-specific frameworks such as Cloud Computing SRG and AI-specific guidance.
  • Conduct security architecture reviews and security engineering analysis for cloud-native and containerized workloads.
  • Evaluate security controls associated with Kubernetes, Docker, and container orchestration platforms within cloud infrastructure.
  • Assess security risks related to generative AI components, including large language models (LLMs) and AI/ML workloads, ensuring responsible and compliant use.
  • Develop and maintain System Security Plans (SSPs), Security Assessment Reports (SARs), Plan of Action and Milestones (POA&Ms), and related RMF documentation.
  • Perform threat modeling, vulnerability assessments, and risk analysis tailored to cloud environments and AI technologies.
  • Interface with system architects, developers, and DevSecOps teams to integrate security throughout the Software Development Lifecycle (SDLC).
  • Support security control assessments (SCAs) and coordinate with third-party assessors.
  • Monitor, track, and report on security compliance posture through Continuous Monitoring (ConMon) processes.
  • Minimal travel will be required.
QUALIFICATIONS:
  • Active Secret or Top-secret security clearance.
  • Bachelor's degree in Cybersecurity, Computer Science, or Information Technology, and 8+ years of cybersecurity experience, including demonstrated experience supporting Risk Management Framework (RMF) activities for Department of War (DoW) systems.
  • Security certifications such as Certified Information System Security Professional (CISSP) and Certified Information System Manager (CISM).
  • Practical knowledge and application of concepts with cloud platforms. Experience with AWS, Azure and/or Google Cloud Platform (GCP), including IAM, VPC, Kubernetes, and security-related services are preferable.
  • Strong knowledge of containerized environments (e.g., Docker, Kubernetes) and container security best practices.
  • Familiarity with Generative AI technologies, including LLMs and AI/ML security considerations.
  • Deep understanding of NIST SP 800-53, DoD RMF, FedRAMP, and other relevant cybersecurity frameworks.
  • Experience with security risk assessments in DoW environments.


TDI does business with the federal government, which restricts employment to individuals who are either US citizens or lawful permanent residents of the United States.

Similar Jobs

More Jobs at Tetrad Digital Integrity LLC

More Aerospace & Defense Jobs

Find similar DoW - ISSM - Information Systems Security Manager/RMF jobs: