Information Systems Security Manager (ISSM)

Astrion$137K — $205K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree with 10-12 years of experience in information security.
  • At least 5 years of leadership experience in a managerial role.
  • Experience working with U.S. Government clients on cybersecurity matters.
  • Strong knowledge of Information Assurance (IA) policies and procedures.
  • Mandatory CAP, CISM or CISSP certification.
  • U.S. citizenship with active TS/SCI clearance eligibility.

Responsibilities

  • Develop and implement an Information System Security Program (ISSP) for classified systems.
  • Ensure compliance with security regulations such as NISPOM and RMF.
  • Establish security policies and standards for information systems.
  • Coordinate preparation of key security documentation like SSPs and SARs.
  • Manage continuous monitoring and security control compliance activities.
  • Conduct self-inspections and incident reporting for security breaches.
  • Partner with IT teams for security configuration changes and remediation efforts.

Benefits

  • Less than 5% travel required.
  • Access to professional development opportunities.
  • Potential for advancement in a growing organization.
  • Work in a critical and impactful field of cybersecurity.
Full Job Description
Overview

Information Systems Security Manager (ISSM)

LOCATION: Columbia, MD

JOB STATUS: Full-time

CLEARANCE: Ability to obtain TS/SCI

CERTIFICATION: CAP, CISSM, or CISSP

TRAVEL: Less than 5%

SALARY RANGE: $137K - $205K

 

Astrion has an exciting opportunity for an experiencedInformation Systems Security Manager (ISSM) to assist in establishing, implementing, and maintaining the security program for classified information systems. The ISSM serves as the primary advisor to management on classified information system security and is the principal interface with DCSA on cybersecurity matters. The role is defined in 32 CFR Part 117 (NISPOM Rule) and further expanded in the DCSA Assessment and Authorization Guide (DAAG). Further, the ISSM will establish security instructions, manuals and policies based on guidance from the DoW, Navy, and MDA; this position is located in Columbia Maryland.

 

REQUIRED QUALIFICATIONS / SKILLS

  • Bachelors degree with 10-12 years of experience.
  • Minimum of 5 years of experience in leading a team or managerial role.
  • Experience in supporting U.S. Government clients.
  • Be able to apply knowledge of IA policy, procedures, and workforce structure to develop, implement and maintain a secure network environment.
  • A CAP, CISM, or CISSP certification is required.
  • U.S. citizenship with active TS/SCI eligibility and the ability to maintain such eligibility.

PREFERRED QUALIFICATIONS / SKILLS

  • Proficiency with Secure Internet Protocol Network establishment and maintenance.
  • Proficiency with various compute applications and testing tools (Word, Excel, PowerPoint, WASSP, MBSA).
  • Strong background in certification and accreditation process of information systems and ability to write, review and coordinate systems security plans.

RESPONSIBILITES:

  • Information System Security Program Management - Develop, implement, and oversee the organization's classified Information System Security Program (ISSP).
  • Ensure compliance with the NISPOM, DAAG, RMF, and CSA guidance.
  • Establish policies, procedures, and technical standards for classified information systems.
  • Coordinate preparation of: System Security Plans (SSPs); Security Assessment Reports (SARs); Plan of Action & Milestones (POA&Ms); Continuous Monitoring Strategy.
  • Support Authorization to Operate (ATO) and reauthorization activities.
  • Maintain authorization packages in eMASS (where applicable).
  • Security Control Implementation: Verify management, operational, and technical controls remain effective; Monitor security control compliance throughout the system lifecycle.
  • Continuous Monitoring: Establish and manage a Continuous Monitoring (ConMon) program.
  • Review: Vulnerability scans; audit logs; security alerts; patch compliance; configuration management
  • Ensure deficiencies are documented and corrected.
  • Conduct self-inspections per 32 CFR 7117.18,
  • Incident Reporting: ensure incidents are investigated are reported to DCSA and appropriate Government agencies; coordinate incident response activities; maintain incident documentation, and track remediation activities.
  • Configuration Management: approve and monitor configuration changes; ensure security impact analyses are completed; verify secure baseline configurations; maintain system inventories.
  • User Management: approve user access procedures; ensure least privilege is enforced; review privileged accounts; ensure user accounts are disabled when no longer required.
  • Partner with the IT team to coordinate POA&M remediation, review and approve configuration changes, evaluate requested new software prior to deployment, and drive close collaboration between the Information Systems Security (ISS) and IT teams.
  • Training and Awareness: ensure users receive initial and annual cybersecurity training; promote insider threat awareness within the IS security program.
  • Coordination with Insider Threat Program.
  • Coordination with the FSO.
  • Interface with Defense Counterintelligence and Security Agency (DCSA) and other government agencies.

About Astrion

Astrion Careers

Joining Astrion presents an unparalleled opportunity to become part of a leading team of professionals dedicated to pioneering innovation and digital transformation. Astrion, a beacon in the tech industry, offers a variety of job opportunities that cater to ambitious individuals eager to drive change and lead industries forward.

Work That Matters

At Astrion, every position is a chance to collaborate with some of the brightest minds in technology and business. The company helps the world’s most renowned companies navigate their digital transformation journeys, leveraging a unique blend of industry expertise and technological innovation.

Explore Job Opportunities and Internships

Astrion is constantly seeking passionate, curious, and creative individuals to join its team. Whether looking for full-time employment or an internship, Astrion provides a platform to develop professional skills, engage in meaningful networking, and contribute to impactful projects. Explore the myriad of positions available and find where your skills can help shape the future of technology.

Innovative Work Environment

Astrion fosters a culture of innovation where team members from diverse backgrounds come together to solve complex challenges. The company is committed to diversity training and leadership development, ensuring that all team members have the opportunity for personal and professional growth.

Benefits and Growth

Astrion is dedicated to the growth of its team members, offering substantial benefits and resources to support career advancement. This includes comprehensive health benefits, leadership training programs, and opportunities for professional development. Astrion’s commitment to career growth ensures that every team member has the resources to reach their full potential.

Join the Astrion Team

Astrion is hiring! Search open positions that match your skills and interests. The company looks for driven, solution-oriented team players. Prepare your resume, refine your interview skills, and get ready to join a team that values leadership and professional growth.

Stay Connected with Astrion Careers

Keep up to date with career tips, insider perspectives, and industry-leading insights—all from the professionals who are part of Astrion. Personalize your subscription to receive job alerts, latest news, and insider tips tailored to your preferences. Discover the exciting and rewarding career opportunities that await at Astrion.

Networking and Professional Development

Astrion values the power of networking and encourages its team to engage in events and activities that foster professional connections. This commitment to networking is integral to maintaining a vibrant, innovative, and inclusive workplace.

Empower Your Career with Astrion

Embark on a journey of professional discovery and innovation at Astrion. Whether you are starting your career or looking to enhance it, Astrion offers a dynamic environment where your ambitions can take flight.
Learn more about Astrion

Similar Jobs

More Jobs at Astrion

More Information Technology Jobs

Find similar Information Systems Security Manager (ISSM) jobs: