Information Security Manager
$140k - $170kCypress Creek Energy
Company Cypress Creek Energy is powering a sustainable future, one project at a time. We develop, finance, own and operate utility‑scale and distributed solar and storage projects across the country. Fostering a diverse group of innovative thinkers from all backgrounds, Cypress people are drawn to work in a purpose‑driven organization. We hope you will join us. Overview Cypress Creek Energy is hiring an Information Security Manager to lead the company's security operations and compliance program. This is a hands‑on individual contributor role designed for a senior technical security professional ready to take ownership of a complete program—with the opportunity to grow into a leader of a team as the function scales. The successful candidate brings a balance of deep technical execution and program‑level compliance maturity. You will own the day‑to‑day security tooling stack, lead the company's NIST‑based compliance program, shape policy in emerging areas including artificial intelligence, and maintain an accurate view of every system in the environment. You will report directly to the Chief Technology Officer and partner closely with IT, Counsel, and business stakeholders across the company. Responsibilities Security Operations & Engineering Endpoint security: Administer and tune Microsoft Defender across the endpoint estate, including policy configuration, alert triage, response, and reporting. Network and access security: Manage the Zscaler platform (ZIA/ZPA), including policy development, traffic inspection, access controls, and integration with identity systems. SIEM operations: Own SIEM tuning, detection engineering, log source onboarding, alerting, and incident workflows. Build dashboards and metrics that surface meaningful signals. Vulnerability management: Run the vulnerability scanning program across AWS and Azure cloud environments and on‑premises infrastructure. Prioritize, track, and verify remediation in partnership with IT and engineering teams. Patch management: Maintain endpoint patching cadence and reporting, ensuring coverage, exception tracking, and SLA adherence. Digital forensics & incident response: Lead investigations into security events, perform forensic analysis, document findings, and coordinate response with internal teams and external partners as needed. Compliance & Governance NIST‑based program: Maintain and continuously improve the company's NIST Cybersecurity Framework‑aligned security program, including controls mapping, evidence collection, and gap remediation. Policy management: Own the security policy library — ensure policies and standards are current, reviewed on a defined cadence, approved through the right channels, and communicated to the business. AI policy and guidance: Develop and maintain the company's AI usage policies, acceptable use guidance, and review process for new AI tools, in coordination with Counsel and IT. System inventory: Build and maintain an authoritative inventory of systems, applications, data flows, and ownership. Keep it accurate as the environment evolves. Audit and assessment support: Lead responses to internal and external audits, customer security reviews, and regulatory inquiries. Manage remediation of identified findings through closure. Risk management: Identify, document, and track information security risks; propose mitigations and report on residual risk to leadership. Leadership & Cross‑Functional Partnership Stakeholder engagement: Partner with IT, Counsel, HR, and business leaders on security matters, providing clear guidance that balances risk with business needs. Operational Technology (OT): Act as a partner and advisor to the OT team coordinating security and compliance initiatives across the company. Manage intersection of IT and OT endpoints, systems and networks. Security awareness: Drive the security awareness program, including phishing simulations, training content, and ongoing communications. Vendor and third‑party risk: Assess and manage security risk associated with vendors, contractors, and third‑party service providers. Future team leadership: Lay the groundwork to scale the function. As the program matures, hire, mentor, and lead a team of security professionals. Education & Experience Required Use of AI to enhance and scale security operations – establish AI first Security Ops Bachelor's degree in computer science, information systems, cybersecurity, or related field — or equivalent professional experience. 5+ years of progressive experience in information security, with demonstrated depth in security operations, engineering, or a combination of both. Hands‑on administration and tuning experience with Microsoft Defender (Endpoint, Identity, Cloud). Production experience operating Zscaler (ZIA and/or ZPA), including policy management and troubleshooting. Strong SIEM experience — building detections, tuning alerts, investigating incidents, and onboarding log sources. Vulnerability management experience across cloud environments, specifically AWS and Azure. Working knowledge of digital forensics and incident response methodology. Demonstrated experience operating a security program aligned to the NIST Cybersecurity Framework or NIST 800‑53. Track record of writing, maintaining, and operationalizing security policies and standards. Clear written and verbal communication, including the ability to explain technical risk to non‑technical audiences. Ability to work from the Durham, NC or Washington, DC office three days per week. Embrace and live by the mission and values of Cypress Creek Energy Preferred Qualifications Industry certifications such as CISSP, CISM, GIAC (GCIH, GCFA, GCIA), or equivalent. Experience operating in the energy, utility, or critical infrastructure sector. Familiarity with NERC CIP or other regulatory frameworks relevant to the power sector. Experience scripting or automating security workflows (Python, PowerShell, KQL). Prior experience as a senior technical lead preparing to step into a manager role. Location The preferred location for this role is our offices in Durham, NC and Washington, DC. Our team operates on a hybrid schedule, with an in‑office schedule of three days per week. Compensation The salary range for the position is $140,000 – $170,000 plus bonus and benefits. Compensation may vary outside of this range depending on a number of factors, including a candidate’s qualifications, skills, competencies and experience, and location. Benefits 15 days of Paid Time Off, accrual up to 20 days, 11 observed holidays. 401(k) Match Comprehensive package including medical, dental, vision and health insurance Wellness stipend, family planning stipend, and generous parental leave Tuition Reimbursement Phone Bill Reimbursement Company Swag Equal Employment Opportunity Statement Cypress Creek Energy is an equal opportunity employer and considers all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, or veteran status. We are committed to providing a workplace that is inclusive and values diversity, and we encourage candidates from all backgrounds to apply. #J-18808-Ljbffr Cypress Creek Energy
$72.7k - $149.2k
Job Title: Cybersecurity Analyst/Information Systems Security ManagerJob Category: Information TechnologyTime Type: Full timeMinimum Clearance Required... ...as a Cybersecurity Analyst/Information Systems Security Manager supporting a Joint Interagency Task Force that reports to...SuggestedContract workWork experience placementLocal areaFlexible hours$146k - $234k
ResponsibilitiesPeraton is seeking an Information Systems Security Manager to support out customer onsite in Washington D.C. who will be responsible for the following but not limited to:Manage and oversee the security posture of all information systems. Implement and enforce...SuggestedContract workFor contractorsRemote workShift work- ...delivers high-impact, technical solutions to complex national security issues. With over 50 years of business expertise and... ..., and Future Force Assessments.SPA has a need for an Information Systems Security Manager to lead cybersecurity and Risk Management Framework activities...SuggestedFlexible hours
$120.9k - $184.5k
Job Type: RegularOverviewInformation Systems Security functionally manages the process to protect classified information. The Information Systems Security group’s primary function is to implement all classified security policy, procedures and security requirements as required...SuggestedFull timeWork experience placementMonday to Friday$83k - $166k
...Logistics Support /Full Time On-Site /On-siteInformation Systems Security Manager (ISSM) - SME Work Location: Washington, DC Employment Type:... ...and Logistics Support CGS is seeking a skilled Information Systems Security Manager (ISSM) - SME to support mission-critical...SuggestedFull time- ...Job Description Job Description Information Security Manager IIILocation: Arlington, VA (On-Site)/ HybridCitizenship: US onlyClearance: Active TS/SCI (DHS EOD Suitability required)Company: Argo Cyber Systems, LLC - Service-Disabled Veteran-Owned Small Business (SDVOSB...Temporary workFor contractorsWork at officeLocal area
$112k - $179k
ResponsibilitiesPeraton is seeking an Information System Security Manager in support of Peraton Labs’ information assurance and information technology operations. This is a full-time on-site position working out of the Silver Spring, Maryland office.Responsibilities include...Full timeContract workWork experience placementWork at officeShift work$134.5k - $265.1k
...landscape. Through powerful solutions and managed services that simplify complexity, we... ...with confidence, and proactively manage to secure success.Recruiting for this role ends on... ...:Bachelor’s degree in Cybersecurity, Information Security, Engineering, Computer Science,...Local area$102k - $108k
...Hunt and Incident Response Team (HIRT) secures the Nation’s cyber and communications infrastructure... .... Castalia Systems is seeking an Information Systems Security Specialist to support... ...Information Assurance professionals to manage the full Risk Management Framework...Contract workTemporary workWork at officeLocal areaImmediate startRemote work- Responsibilities Work as part of a team of Information Assurance professionals to manage the full Risk Management Framework lifecycle for Information Technology... ...activities, having overall responsibility for security management, methods, and staffing to ensure that...Temporary workWork at office
- Castalia Systems seeks an Information Systems Security Specialist to support the Hunt and Incident Response Team (HIRT) securing the Nation’s cyber and communications infrastructure. You will lead RMF lifecycle activities, coordinate with ISSM and CISO, and provide frontline...
- ...Job Description Job Description Information Systems Security Manager (ISSM) Company Overview: KMS Solutions, LLC is a technical management / solutions company that specializes in engineering, analysis, and cyber security. Founded in 2005, KMS is a certified...Full timeContract workTemporary workWork at officeLocal areaRemote workFlexible hours
- ...HQSecurity Clearance Required: TS/SCI w/ CI Poly**********CONTINGENT UPON AWARDING OF GOVERNMENT CONTRACT********The Information Systems Security Manager oversees the cybersecurity posture of information systems, ensuring compliance with applicable federal regulations...Contract workFor contractorsLocal areaRelocation
$150k - $200k
...customers from increasing threats and vulnerabilities in this digital age. TDI is seeking a Risk Management Framework (RMF) subject matter experts as Information Systems Security Managers to support cloud-based and Artificial Intelligence (AI) integrated systems. We are...Permanent employmentFull timeContract workRemote work$104.73k - $160k
...ExemptAnticipated Salary Range: $104,733.00 - $160,000.00 Security Clearance: TS/SCI Level of Experience: Mid Meet HII’s... ...Technologies.SummaryHII Mission Technologies is seeking an Information System Security Manager (ISSM) for our Barclay Dr., Alexandria, VA office. HII...Full timeWork experience placementWork at officeLocal areaWorldwide$235k - $310k
...international privacy regulations such as GDPR, CCPA, and HIPAA.Excellent communication and analytical skills, with an ability to manage multiple priorities effectively.What’s on OfferCompetitive salary ranging from $235,000 to $310,000 USD annually.Comprehensive benefits...- Company DescriptionProSidian is a Management And Operations Consulting Services firm that... ...Officer (OCHCO) / Office of the Chief Information Officer (OCIO) Generally Located In Alexandria... ...- Identifying, pursuing, and securing growth opportunities through strategic...Full timeContract workTemporary workFor contractorsH1bWork at officeFlexible hours
- ...cybersecurity, engineering, and professional services supporting federal government customers. We are seeking an experienced Information Systems Security Manager (ISSM) to provide cybersecurity leadership, Risk Management Framework expertise, and oversight of Assessment and...Local area
$105k
...enabling impactful research to operate securely? Are you passionate about making meaningful... ...and oversight of our classified information systems in support of real world, mission... ...prevails. As an Information System Security Manager... Your primary responsibility will be to...Temporary workWork experience placementRelocation packageFlexible hours$215k - $295k
...cybersecurity issues.The breadth of work available is phenomenal, from cybersecurity compliance and incident response, data privacy, national security and consumer protection issues, to internal and government investigations.You will assist in responding to data breaches and...$150.45k - $233.45k
...growth. Find your future with us. The Boeing Company is looking for a highly experienced and detail-oriented Information Security Governance Senior Manager to join the team in Arlington, VA; Berkeley, MO; Dallas, TX; Herndon, VA; El Segundo, CA; Huntsville, AL; Mesa,...Permanent employmentRelocationVisa sponsorshipWork visaRelocation packageFlexible hoursShift workDay shift$175k - $200k
## Information Systems Security ManagerApplylocations: University of Maryland College Parktime type: Full timeposted on: Posted 2 Days Agojob requisition... ...who will also serve as an Information Systems Security Manager (ISSM) to support advanced research programs at the...Work experience placementInterim roleWork at office$103.1k - $171.8k
...delivery. This position is onsite in Camp Springs, Maryland and requires a Top-Secret clearance. Essential Duties The Information System Security Manager (ISSM) provides senior leadership for security aspects of highly complex technology programs under this task order,...Contract workWork experience placementH1b- Title: Information Systems Security Manager Location: Hybrid, Washington, DC Terms: Full-time Clearance: Qualified candidates must be US citizens with the ability to obtain a Public Trust Travel: 0-20% Position Description: Harmonia is seeking an Information Systems Security...Full time
$145k - $180k
Information System Security Manager (ISSM) - KBR is seeking an Information System Security Manager (ISSM) to join our team in either Virginia, Maryland, or Washington, DC. This position is primarily remote; however, the ISSM must reside in the area of the position and be...Local areaImmediate startRemote work$143.91k
...NavySalary: Starting at $143,913 Per year (GS 14)Dates: Open 08/04/2026 to 08/17/2026Schedule: Full-timeWork type: PermanentRelocation: FalsePosition ID: DE-13027019-26-LWDocument ID: 879052200Grade: GS 14Job category: Information Technology Management (2210)Hiring path: public- Job Position: Chief Information Security Officer (CISO)Department: Information TechnologyReports to: Chief Information Officer (CIO)FLSA: Exempt... ...trust, and a foundational element of enterprise risk management.ESSENTIAL RESPONSIBILITIES: Provides strategic guidance and...Full time
- Systems Planning and Analysis, Inc. (SPA) seeks an Information Systems Security Manager (ISSM) to lead RMF activities for APACS and related systems. You will maintain authorizations to operate and protect sensitive data, coordinating with government security officials...
- Systems Planning and Analysis, Inc. seeks an Information Systems Security Manager (ISSM) to lead RMF, eMASS, and related cybersecurity activities for APACS and associated systems, protecting sensitive data and maintaining authorizations to operate. The role collaborates...
$146k - $234k
...currently seeking a Cyber Incident Response Analyst Manager to support a government Cyber Security Operation Center (CSOC) onsite in Washington D.C. The... ...from various systems, review open and closed source information on related threats & vulnerabilities, diagnose...Contract workWork experience placementShift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security Manager. Be the first to apply!
- information technology security engineer Washington DC
- information security Washington DC
- entry level information security analyst Washington DC
- director information security Washington DC
- information security lead Washington DC
- information security analyst Washington DC
- information security compliance analyst Washington DC
- data center security officer Washington DC
- senior director information security Washington DC
- senior information security analyst Washington DC

