This position may be filled prior to the posted deadline. Interested candidates are encouraged to apply as soon as possible.
Koniag IT Systems, LLC a Koniag Government Services company, is seeking an ISSM Consultant with a Top- Secret security clearance to support KITS and our government customer. We will consider candidates in the following areas: Las Vegas, NV, Albuquerque, NM, Germantown, MD or Washington DC. This is an On-Site position.
Benefits include medical, dental, and vision insurance, 401(k) retirement plan, paid time off, paid parental leave, life and disability insurance, flexible spending accounts, commuter benefits and tuition reimbursement.
Koniag IT Systems is seeking an experienced Information System Security Manager (ISSM) to support the Department of Energy's National Nuclear Security Administration (DOE NNSA). The ideal candidate will have strong expertise in cybersecurity risk management, security authorization processes, and compliance with federal security requirements. This position requires a professional who can effectively manage system authorization activities while ensuring adherence to the Risk Management Framework (RMF). Candidates must meet NNSA and/or DoD 8140 training requirements and experience levels and be eligible for the appropriate security clearance.
Essential Functions, Responsibilities & Duties may include, but are not limited to:The ISSM will be responsible for ensuring that federal and program cybersecurity requirements are implemented as needed, including executing activities related to the Risk Management Framework (RMF). Principal responsibilities include:
Authorization Activities:- Ensure system, application, and hardware authorization activities such as Information System Security Plans (ISSPs), Risk Assessments, and Security Baselines are completed in a timely and accurate manner
- Manage both initial authorization and re-authorization processes for information systems
- Develop comprehensive authorization packages and submit them to appropriate stakeholders for review
- Submit finalized authorization packages to the Authorizing Official (AO) or Authorizing Official Designated Representative (AODR) for review and approval upon ISSM clearance
Maintenance Activities:- Maintain current knowledge of AO-approved risk boundaries and risk tolerance levels
- Update authorization documentation at organizationally defined frequencies in accordance with the risk management objectives of the organization
- Ensure continuous monitoring of security controls and implementation of necessary updates
Approval and Management:- Approve operations only when covered within existing authorizations
- Ensure all decisions support the Authorizing Official and maintain full transparency
- Actively manage and coordinate onboarding and termination processes for contractor personnel
- Ensure all work products and deliverables meet Enterprise Cybersecurity Program requirements and adhere to quality standards
- Provide strategic support at meetings, briefings, and presentations as needed
- Work, coordinate, and maintain productive working relationships with other contractors supporting NA-IM and NNSA
Education and Experience:Required:- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field
- Minimum of 7+ years of experience in cybersecurity or information security
- Minimum of 5+ years of experience with RMF or similar security authorization frameworks
- Experience as an ISSM or equivalent position managing security authorization processes
- Experience developing and maintaining security documentation including ISSPs, Risk Assessments, and Security Baselines
- Experience working with federal agencies, particularly DOE, NNSA, or Department of Defense
- Training and experience that meets NNSA and/or DoD 8140 requirements (or equivalent)
Required Skills and Competencies:- Comprehensive knowledge of the NIST Risk Management Framework (RMF)
- Strong understanding of federal cybersecurity regulations, policies, and standards
- Proficiency with security authorization documentation and processes
- Experience with risk assessment methodologies and practices
- Knowledge of security control implementation and assessment
- Strong project management skills with ability to manage multiple authorization projects simultaneously
- Excellent documentation skills and attention to detail
- Superior communication skills, both written and verbal
- Ability to effectively interface with senior leadership, technical staff, and contractors
- Experience with continuous monitoring and ongoing authorization processes
- Knowledge of incident management and reporting requirements
- Understanding of NNSA and DOE security requirements
- Ability to obtain and maintain required security clearance
- Experience coordinating personnel security processes (onboarding/offboarding)
- Strong interpersonal skills and ability to collaborate across organizational boundaries
Clearance Requirement: - Top Secret security clearance / Q
Desired Skills and Competencies:- Master's degree in Cybersecurity, Information Technology, or related field
- Current security clearance
- Certifications such as CISSP, CAP, CISM, or equivalent
- Experience specifically with DOE NNSA cybersecurity requirements and authorization processes
- Experience with Archer, eMASS or similar authorization management systems
- Knowledge of FISCAM, FISMA, and other federal compliance frameworks
- Experience working in classified environments
- Prior experience working with Authorizing Officials and security governance bodies
- Experience developing security policies and procedures
- Knowledge of industrial control system security
- Experience with system categorization processes
- Familiarity with supply chain risk management
- Experience presenting cybersecurity concepts to executive leadership
- Experience with cybersecurity metrics and reporting