Information Security Manager
$140k - $170kCypress Creek Energy
Company Cypress Creek Energy is powering a sustainable future, one project at a time. We develop, finance, own and operate utility‑scale and distributed solar and storage projects across the country. Fostering a diverse group of innovative thinkers from all backgrounds, Cypress people are drawn to work in a purpose‑driven organization. We hope you will join us. Overview Cypress Creek Energy is hiring an Information Security Manager to lead the company's security operations and compliance program. This is a hands‑on individual contributor role designed for a senior technical security professional ready to take ownership of a complete program—with the opportunity to grow into a leader of a team as the function scales. The successful candidate brings a balance of deep technical execution and program‑level compliance maturity. You will own the day‑to‑day security tooling stack, lead the company's NIST‑based compliance program, shape policy in emerging areas including artificial intelligence, and maintain an accurate view of every system in the environment. You will report directly to the Chief Technology Officer and partner closely with IT, Counsel, and business stakeholders across the company. Responsibilities Security Operations & Engineering Endpoint security: Administer and tune Microsoft Defender across the endpoint estate, including policy configuration, alert triage, response, and reporting. Network and access security: Manage the Zscaler platform (ZIA/ZPA), including policy development, traffic inspection, access controls, and integration with identity systems. SIEM operations: Own SIEM tuning, detection engineering, log source onboarding, alerting, and incident workflows. Build dashboards and metrics that surface meaningful signals. Vulnerability management: Run the vulnerability scanning program across AWS and Azure cloud environments and on‑premises infrastructure. Prioritize, track, and verify remediation in partnership with IT and engineering teams. Patch management: Maintain endpoint patching cadence and reporting, ensuring coverage, exception tracking, and SLA adherence. Digital forensics & incident response: Lead investigations into security events, perform forensic analysis, document findings, and coordinate response with internal teams and external partners as needed. Compliance & Governance NIST‑based program: Maintain and continuously improve the company's NIST Cybersecurity Framework‑aligned security program, including controls mapping, evidence collection, and gap remediation. Policy management: Own the security policy library — ensure policies and standards are current, reviewed on a defined cadence, approved through the right channels, and communicated to the business. AI policy and guidance: Develop and maintain the company's AI usage policies, acceptable use guidance, and review process for new AI tools, in coordination with Counsel and IT. System inventory: Build and maintain an authoritative inventory of systems, applications, data flows, and ownership. Keep it accurate as the environment evolves. Audit and assessment support: Lead responses to internal and external audits, customer security reviews, and regulatory inquiries. Manage remediation of identified findings through closure. Risk management: Identify, document, and track information security risks; propose mitigations and report on residual risk to leadership. Leadership & Cross‑Functional Partnership Stakeholder engagement: Partner with IT, Counsel, HR, and business leaders on security matters, providing clear guidance that balances risk with business needs. Operational Technology (OT): Act as a partner and advisor to the OT team coordinating security and compliance initiatives across the company. Manage intersection of IT and OT endpoints, systems and networks. Security awareness: Drive the security awareness program, including phishing simulations, training content, and ongoing communications. Vendor and third‑party risk: Assess and manage security risk associated with vendors, contractors, and third‑party service providers. Future team leadership: Lay the groundwork to scale the function. As the program matures, hire, mentor, and lead a team of security professionals. Education & Experience Required Use of AI to enhance and scale security operations – establish AI first Security Ops Bachelor's degree in computer science, information systems, cybersecurity, or related field — or equivalent professional experience. 5+ years of progressive experience in information security, with demonstrated depth in security operations, engineering, or a combination of both. Hands‑on administration and tuning experience with Microsoft Defender (Endpoint, Identity, Cloud). Production experience operating Zscaler (ZIA and/or ZPA), including policy management and troubleshooting. Strong SIEM experience — building detections, tuning alerts, investigating incidents, and onboarding log sources. Vulnerability management experience across cloud environments, specifically AWS and Azure. Working knowledge of digital forensics and incident response methodology. Demonstrated experience operating a security program aligned to the NIST Cybersecurity Framework or NIST 800‑53. Track record of writing, maintaining, and operationalizing security policies and standards. Clear written and verbal communication, including the ability to explain technical risk to non‑technical audiences. Ability to work from the Durham, NC or Washington, DC office three days per week. Embrace and live by the mission and values of Cypress Creek Energy Preferred Qualifications Industry certifications such as CISSP, CISM, GIAC (GCIH, GCFA, GCIA), or equivalent. Experience operating in the energy, utility, or critical infrastructure sector. Familiarity with NERC CIP or other regulatory frameworks relevant to the power sector. Experience scripting or automating security workflows (Python, PowerShell, KQL). Prior experience as a senior technical lead preparing to step into a manager role. Location The preferred location for this role is our offices in Durham, NC and Washington, DC. Our team operates on a hybrid schedule, with an in‑office schedule of three days per week. Compensation The salary range for the position is $140,000 – $170,000 plus bonus and benefits. Compensation may vary outside of this range depending on a number of factors, including a candidate’s qualifications, skills, competencies and experience, and location. Benefits 15 days of Paid Time Off, accrual up to 20 days, 11 observed holidays. 401(k) Match Comprehensive package including medical, dental, vision and health insurance Wellness stipend, family planning stipend, and generous parental leave Tuition Reimbursement Phone Bill Reimbursement Company Swag Equal Employment Opportunity Statement Cypress Creek Energy is an equal opportunity employer and considers all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, or veteran status. We are committed to providing a workplace that is inclusive and values diversity, and we encourage candidates from all backgrounds to apply. #J-18808-Ljbffr Cypress Creek Energy
$140k - $170k
...are drawn to work in a purpose‑driven organization. We hope you will join us. Overview Cypress Creek Energy is hiring an Information Security Manager to lead the company's security operations and compliance program. This is a hands‑on individual contributor role...SuggestedFor contractorsWork at office3 days per week- ...enabling impactful research to operate securely? Description Do you love solving problems... ...security and oversight of our classified information systems in support of real world,... ...ISSE, Security Architect or Cyber Risk Manager for 5+ years. Held cybersecurity positions...SuggestedTemporary workWork experience placementRelocation packageFlexible hours
- ...Title: Information Systems Security Manager Location: Hybrid, Washington, DC Terms: Full-time Clearance: Qualified candidates must be US citizens with the ability to obtain a Public Trust Travel: 0-20% Position Description: Harmonia is seeking an Information Systems Security...SuggestedFull time
$175k - $200k
...: The Applied Research Laboratory for Intelligence & Security (ARLIS) at the University of Maryland is a University-Affiliated... ...an IT systems Engineer who will also serve as an Information Systems Security Manager (ISSM) to support advanced research programs at the...SuggestedWork experience placementInterim roleWork at office$500 per month
...Information Security Systems Manager Adelphi builds AI/ML-enabled secure data access and sharing technology for the U.S. intelligence and defense communities, using its Connector software product to enable federated data discovery that cuts intelligence-sharing time...SuggestedContract workFor contractorsWork at office$145k - $180k
Information System Security Manager (ISSM) - KBR is seeking an Information System Security Manager (ISSM) to join our team in either Virginia, Maryland, or Washington, DC. This position is primarily remote; however, the ISSM must reside in the area of the position and be...Local areaImmediate startRemote work$112k - $179k
About Peraton Peraton is a next-generation national security company that drives missions of consequence spanning the globe... ...customers face. About The Role Peraton is seeking an Information System Security Manager in support of Peraton Labs' information assurance and information...Full timeContract workTemporary workWork at officeShift work$107.9k - $195.05k
...join our team in Arlington, VA. This position is fully on-site and requires an active TS/SCI for consideration. The Information System Security Manager (ISSM) will work with a team to identify, assess, and prioritize risks to DISA and DoD mission partners, as well as develop...- ...Overview Metrea delivers effects-as-a-service to national security partners across five domains and more than a dozen... ...OEMs. Position Summary We are seeking a highly motivated Information System Security Manager (ISSM) and Alternate Security Officer for an entry-level...Full timeTemporary workFor contractorsWork at officeImmediate startMonday to FridayFlexible hoursShift workWeekend work
- ...Location: Washington DC Overtime Exempt: Yes Reports To: ARMADA HQ Security Clearance Required: TS/SCI w/ CI Poly CONTINGENT UPON AWARDING OF GOVERNMENT CONTRACT******** The Information Systems Security Manager oversees the cybersecurity posture of information systems,...Full timeContract workFor contractorsLocal areaRelocation
- ...seeks a motivated, career and customer-oriented Junior Cloud Information System Security Officer (ISSO) to join our team in Washington, D.C.... ...(POAMs) in response to reported security vulnerabilities. Manage the risks to ISs and other FBI assets by coordinating appropriate...Work at office
$260k - $420k
Job Details Practice Area: Cybersecurity, Data Privacy & AI Location: Washington, D.C. Salary: $260,000–$420,000 package Level: 2nd – 6th year (2019‑2023 grads) A leading international law firm is seeking a mid‑level associate (class years 2019–2023) to join its Cybersecurity...- ...Overview Join us and make a difference in National Security! This role protects customer information systems and networks from cyber-attacks. The Cyber Security... ...a DevSecOps life cycle. This is not a supervisory management role; success is measured by individual technical...
- ...Job Description Job Description Information Security Manager III Location: Arlington, VA (On-Site)/ Hybrid Citizenship: US only Clearance: Active TS/SCI (DHS EOD Suitability required) Company: Argo Cyber Systems, LLC - Service-Disabled Veteran-Owned Small...Temporary workFor contractorsWork at officeLocal area
- ...seeking a dedicated and skilled Cyber Security Analyst to join our team in support of... ...will serve on a team and collaborate with Information Assurance Engineers, Information System... ...frameworks. Support the Risk Management Framework (RMF) process, including categorizing...Permanent employmentFull time
- ...Information System Security Officer (ISSO) PingWind is seeking an Information System Security Officer (ISSO) responsible for overseeing system... ...• Serves as the senior ISSO supporting MODES III systems, managing day-to-day security compliance activities in accordance...
$86.4k - $176.2k
...technology and ingenuity for clients across defense, national security, public safety, civilian, and military health organizations. Join... ...missions and the government forward! Job Description The Information System Security Officer (ISSO)/Privacy Engineer (Subject Matter...Live inLocal area$78.6k - $160.2k
...Information System Security Officer (ISSO) Arlington, VA At Accenture Federal Services, nothing matters more than helping the US federal government make the nation stronger and safer and life better for people. Our 13,000+ people are united in a shared purpose to pursue...Local area$104k - $166k
...Peraton is a next-generation national security company that drives missions of consequence... .... About The Role Peraton is seeking an Information System Security Officer (ISSO) to work... ...requirements as outlined in the Risk Management Framework (RMF). Responsibilities Assist...Contract workTemporary workShift work- ...Information System Security Officer (ISSO) Washington, DC Barbaricum is a rapidly growing government contractor providing leading-edge support... ...such as ACAS (Tenable Nessus) and SCAP (STIG benchmark) and manage a Plan of Actions and Milestones (POA&M) for remediation of...For contractors
$104k - $166k
...Peraton is a next‑generation national security company that drives missions of consequence... ...Peraton Labs is seeking a poly‑cleared Information System Security Officer for a mission‑... ...collection, assessment support, POA&M management, continuous monitoring) Maintain...Full timeContract workTemporary workFor subcontractorRelocation packageShift work- ...Information System Security Officer (ISSO) Employment Type: Full-Time, Mid-Level Department: Administrative and Logistics Support As... ...security configurations. Understanding of configuration management and automation tools (e.g., Puppet, Terraform,...Full timeFlexible hours
- ...The Cyber Security Analyst (Senior) provides expert-level cybersecurity support for Navy systems, ensuring compliance with DoD and... ...Department of the Navy security requirements. This role leads Risk Management Framework (RMF) activities, supports system authorization...Full time
- ...Tactibit Technologies provides innovative information technology, cybersecurity, and cloud... ...do. About the Information System Security Officer position We are looking for... ...and maintain effective security and risk management programs on complex government information...Flexible hours
$125k
...Overview Information System Security Officer (ISSO) Arlington, VA Are you ready to enhance your skills and build your career in a rapidly... ...to Operate (ATO) under the Federal Information Security Management Act (FISMA) of 2002. Lead RMF A&A efforts, including...Remote work1 day per week- ...Information Systems Security Officer Washington, D.C. Metro Why do you need to choose between doing important work and having a fulfilling... ...cybersecurity standards, safeguarding sensitive information, and managing risk across classified and unclassified systems. This role...Local area3 days per week
$115k - $135k
...Information Systems Security Officer (ISSO) The Information Systems Security Officer (ISSO) supports complex Federal technology programs and oversees, manages, tracks, and reports on Government program-level information security to protect systems, facilities, and infrastructure...Contract workLive inWork at officeRemote workFlexible hours- ...AS & 13 YOE OR 16+ YOE Experience manage RMF process and POA&Ms Comfortable managing... ...with the CISO, it was clear that the security program and systems have been neglected... ...: Senior ISSO with 10+ years of Information Security experience supporting federal systems...Hourly payContract workImmediate startRemote workMonday to FridayShift work
$105.1k - $231.1k
...Senior Information System Security Officer The Opportunity: CACI is searching for a Senior Information System Security Officer (Senior ISSO... ...leading cybersecurity engineering efforts for assigned Program Management Organizations with direct support to the Compliance...Contract workWork experience placementWork at officeFlexible hours- ...Information System Security Officer iQuasar, LLC is seeking a motivated Information System Security Officer to join our team. The ideal candidate... ...4+ years of IT experience in NIST Cybersecurity Risk Management and risk management. The role requires collaboration...Work at office
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security Manager. Be the first to apply!
- director information security Washington DC
- information security analyst Washington DC
- information security Washington DC
- senior information security analyst Washington DC
- information technology security engineer Washington DC
- entry level information security analyst Washington DC
- sr information security engineer Washington DC
- information security compliance analyst Washington DC
- information system security engineer Washington DC
- data center security officer Washington DC



