PeopleTec

Information Systems Security Manager (ISSM)

PeopleTec$130K — $170K *
Aerospace & Defense
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 10+ years of experience in cybersecurity and information assurance.
  • DoD 8140 compliant certification relevant to cybersecurity management.
  • Experience leading cybersecurity initiatives for DoD information systems.
  • Technical leadership experience over cybersecurity professionals like ISSOs and ISSEs.
  • Advanced knowledge of the DoD Risk Management Framework (RMF) and assessment processes.
  • Strong familiarity with NIST SP 800-53 security controls in a DoD context.
  • Experience with eMASS or similar compliance systems.

Responsibilities

  • Lead cybersecurity activities for assigned DoD information systems.
  • Provide oversight and direction to ISSOs, ISSEs, and other team members.
  • Establish cybersecurity processes and priorities across systems.
  • Oversee RMF authorization package development and maintenance.
  • Review and approve system security documentation and risk assessments.
  • Conduct cybersecurity risk assessments and provide actionable recommendations.
  • Support incident response and document significant cybersecurity events.

Benefits

  • Comprehensive health and wellness programs.
  • Flexible work schedules and remote work options.
  • Professional development and training opportunities.
  • Retirement savings plan with employer contributions.
  • Generous paid time off and holiday schedules.
Full Job Description
Responsibilities

PeopleTec is seeking an Information Systems Security Manager (ISSM)for an opportunty to support our Colorado Springs, CO and Los Angeles, CA locations.

The Information Systems Security Manager (ISSM) serves as the senior cybersecurity leader responsible for the security posture, Risk Management Framework (RMF) activities, and cybersecurity compliance of assigned United States Space Force information systems. The ISSM leads a team of cybersecurity professionals and works closely with Program Managers, system owners, engineering teams, system administrators, Information Systems Security Officers (ISSOs), Information Systems Security Engineers (ISSEs), and government security authorities to ensure cybersecurity requirements are effectively implemented and maintained throughout the system lifecycle.

The successful candidate will provide technical and managerial leadership across system authorization, security control implementation, continuous monitoring, vulnerability management, cybersecurity risk assessment, configuration management, and compliance activities. The ISSM will oversee the development and maintenance of RMF authorization packages, evaluate cybersecurity risk, establish priorities for remediation activities, and ensure assigned systems maintain an appropriate security posture.

The ISSM will serve as a primary cybersecurity advisor to program and technical leadership and will represent the cybersecurity team during technical reviews, security assessments, authorization activities, and customer engagements. This position requires the ability to balance cybersecurity requirements with mission, engineering, schedule, and operational considerations while maintaining compliance with applicable USSF security requirements.

Duties:
  • Lead cybersecurity and information assurance activities for assigned DoD information systems and programs.
  • Provide technical leadership, direction, and oversight to ISSOs, ISSEs, and other cybersecurity personnel.
  • Establish cybersecurity priorities, processes, and responsibilities across assigned systems and environments.
  • Oversee development, maintenance, and continuous review of RMF authorization packages.
  • Ensure applicable security controls are properly selected, implemented, documented, assessed, and maintained throughout the system lifecycle.
  • Oversee cybersecurity documentation and artifacts within eMASS and other approved authorization systems.
  • Review and approve system security documentation, including System Security Plans (SSPs), risk assessments, security procedures, control implementation statements, and supporting authorization artifacts.
  • Lead cybersecurity risk assessments and provide risk-based recommendations to Program Managers, system owners, and government security authorities.
  • Oversee vulnerability management, security configuration compliance, and remediation activities across assigned systems.
  • Establish priorities for Plans of Action and Milestones (POA&Ms) and monitor findings through remediation and closure.
  • Oversee continuous monitoring activities and evaluate changes in system security posture.
  • Ensure cybersecurity requirements are incorporated into system design, implementation, modification, operation, and sustainment activities.
  • Review proposed system changes and engineering modifications for cybersecurity and authorization impacts.
  • Coordinate cybersecurity activities with system administrators, network engineers, software engineers, system engineers, and other technical disciplines.
  • Support security-control assessments, authorization decisions, inspections, audits, and other cybersecurity reviews.
  • Coordinate with government cybersecurity representatives, Authorizing Officials and their representatives, security control assessors, and other authorization stakeholders.
  • Ensure assigned systems maintain required cybersecurity documentation, configuration records, evidence, and compliance artifacts.
  • Support cybersecurity incident response and ensure significant cybersecurity events are appropriately documented, coordinated, and reported.
  • Develop and maintain cybersecurity procedures, standards, processes, and technical guidance.
  • Track cybersecurity metrics, risks, findings, and authorization status and communicate significant issues to program leadership.
  • Lead cybersecurity working groups, technical reviews, risk discussions, and customer engagements.
  • Mentor and develop cybersecurity personnel and provide technical guidance on complex cybersecurity and RMF issues.
  • Maintain awareness of evolving DoD cybersecurity requirements and ensure applicable changes are incorporated into program cybersecurity practices.


Qualifications

Required Skills/Experience:
  • 10+ years of relevant experience in cybersecurity, information assurance, information systems security, systems security engineering, RMF, or related technical disciplines.
  • DoD 8140 compliant certification appropriate to assigned cybersecurity management responsibilities.
  • Demonstrated experience leading cybersecurity activities for DoD information systems or programs.
  • Experience providing technical leadership or supervision to cybersecurity professionals, including ISSOs, ISSEs, system administrators, or comparable personnel.
  • Advanced knowledge of the DoD Risk Management Framework and system Assessment and Authorization processes.
  • Strong working knowledge of NIST SP 800-53 security controls and their application within DoD information systems.
  • Experience developing, reviewing, and maintaining RMF authorization packages.
  • Experience with eMASS or comparable DoD authorization and compliance systems.
  • Experience reviewing and approving System Security Plans, security-control implementations, risk assessments, POA&Ms, and related cybersecurity documentation.
  • Experience managing vulnerability, security configuration, continuous monitoring, and cybersecurity remediation activities.
  • Demonstrated ability to evaluate cybersecurity risk and develop technically sound risk-mitigation recommendations.
  • Experience integrating cybersecurity requirements into system engineering, system administration, network engineering, and operational activities.
  • Experience supporting security-control assessments, authorization activities, cybersecurity inspections, or audits.
  • Demonstrated ability to communicate cybersecurity risk and technical issues to government customers, Program Managers, engineers, and senior leadership.
  • Experience supporting classified DoD information systems.
  • Ability to lead multidisciplinary cybersecurity activities with limited supervision.
  • Travel: Up to 25%
  • Must be a U.S. Citizen
  • Current Top Secret clearance with SCI eligibility and SAP eligibility.

Education Requirements:
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Information Systems, Engineering, or a related technical discipline; additional relevant experience may be considered in lieu of a degree.

Desired Skills:
  • Master's degree in Cybersecurity, Information Systems, Computer Science, Engineering, or a related technical discipline.
  • CISSP, CASP+/SecurityX, CISM, or other advanced cybersecurity certification appropriate to the position.
  • RMF, eMASS, NIST, JSIG, or SAP cybersecurity training applicable to assigned responsibilities.
  • Technical certifications related to enterprise systems, networking, cloud computing, or cybersecurity engineering.
  • CISSP-ISSAP or CISSP-ISSEP

This position description does not represent a current vacancy. However, it is intended to identify and engage candidates whose skills and experience align with roles that frequently become available at PeopleTec. Individuals who express interest may be considered for future opportunities as they arise.

Benefits offered can be found here: Benefits PeopleTec. In compliance with Colorado's Equal Pay for Equal Work Act and California's Equal Pay Act, the salary range for this role is ~$130,000 - $170,000; however, PeopleTec considers several factors when extending an offer, including but not limited to the role and associated responsibilities, a candidate's work experience, education/training, and critical skills.

#cjpost #dpost

About PeopleTec

PeopleTec, Inc. is a defense contractor that provides engineering and technical services to the United States Department of Defense and other government agencies. The company was founded in 2005 and is headquartered in Huntsville, Alabama. PeopleTec specializes in systems engineering, cybersecurity, and software development. The company has received numerous awards for its work, including the 2019 North Alabama Better Business Bureau Torch Award for Ethics and the 2018 Huntsville/Madison County Chamber of Commerce Small Business of the Year Award. PeopleTec has a strong commitment to giving back to the community and supports a variety of charitable organizations.
Learn more about PeopleTec
Size
500 employees
Industry
Net Income
$10 million
Founded
2005
5 Year Trend
+20%
Revenue
$100 million

Similar Jobs

More Jobs at PeopleTec

More Aerospace & Defense Jobs

Find similar Information Systems Security Manager (ISSM) jobs: