Senior Information System Security Manager (ISSM)
ECS Limited
Everforth ECS is seeking a Senior Information System Security Officer (ISSM) to work out of the customer site in Ft. Meade, MD.
Everforth ECS is seeking a seasoned Senior Information System Security Manager (ISSM) to support DISA-owned Impact Level (IL) IL6 programs in an operational DoW environment inside Microsoft's Isolated Secret Region (MS-ISR) that houses multiple U.S. Coalition Mission Partner Environments (MPE). This role operates in a hybrid onsite/remote capacity. The ISSM serves as the senior cybersecurity authority responsible for managing the cybersecurity program, overseeing risk and compliance, and maintaining the security posture of information systems within the authorization boundary. This position is a fast-paced, mission-focused role that requires sound cybersecurity judgment, attention to detail, and the ability to both lead and execute authorization, compliance, and continuous monitoring activities across multiple enclaves in a dynamic Azure DoW environment. The ideal candidate has extensive ISSM experience supporting classified DoW programs, expert knowledge of RMF and NIST 800-53 controls, and familiarity with cyber tools such as ACAS, Trellix, and SIEM platforms. As part of a focused cybersecurity team, this role requires someone who can provide senior level direction while also directly contributing to artifact review, risk documentation, control validation, POA&M management, and day-to-day ATO support - all within an organization that values operational security and contributes to national security. The Senior ISSM reports to the Senior Technical Program Manager. Job Responsibilities: The Senior ISSM serves as the senior cybersecurity lead for the program, advising leadership while directly supporting RMF, ATO maintenance, risk management, and continuous monitoring activities across the Azure environment.- Serve as the senior cybersecurity lead for the program, advising leadership while directly supporting RMF, ATO maintenance, risk management, and continuous monitoring activities across the Azure environment.
- Lead:
- Cybersecurity activities for a DoD Azure environment operating under a shared ATO boundary with multiple mission enclaves.
- POA&M governance by reviewing open risks, validating remediation plans, tracking milestone progress, and ensuring closure evidence is complete and defensible.
- Oversee day-to-day execution of the cybersecurity program, including security authorization documentation, compliance tracking, vulnerability management, control validation, and risk reporting.
- Maintain overall accountability for the program's RMF posture, including ATO sustainment, continuous monitoring, POA&M management, and security control implementation.
- Provide direction and support to the ISSO, Cyber Engineer, and Cyber Analyst while also contributing directly to artifact review, documentation updates, and risk management activities.
- Review and approve RMF and ATO artifacts, including control implementation details, assessment evidence, POA&Ms, risk documentation, system diagrams, inventories, and continuous monitoring deliverables.
- Ensure eMASS records remain accurate and current, including security controls, artifacts, assessment results, POA&Ms, milestones, and authorization package documentation.
- Review vulnerability, STIG, ACAS, Trellix, and Sentinel data to assess risk, prioritize remediation, and communicate security posture to program leadership and government stakeholders.
- Coordinate with engineers, system administrators, cloud teams, mission enclave stakeholders, and government cybersecurity personnel to resolve findings and maintain compliance.
- Assess cybersecurity impacts of planned architecture, configuration, infrastructure, cloud, and boundary changes within the Azure environment.
- Support:
- Security control assessments, audit readiness, continuous monitoring reviews, and authorization package updates for classified systems.
- Review of incident response activities, security events, and operational findings to ensure appropriate documentation, escalation, reporting, and follow-up.
- Prepare and present cybersecurity status, risk summaries, POA&M metrics, vulnerability trends, compliance gaps, and ATO readiness updates to program and government leadership.
- Serve as the primary cybersecurity point of contact for DISA government stakeholders, including DISA cyber teams, assessors, auditors, program leadership, and internal program teams supporting RMF, ATO, continuous monitoring, risk, and compliance activities.
- Ensure cybersecurity documentation remains aligned with the operational environment, including enclave-specific mission needs, shared services, inherited controls, and authorization boundary considerations.
- Drive continuous improvement of cybersecurity processes, documentation quality, artifact management, reporting, and coordination across the cyber team.
- Other duties, as assigned.
- U.S. Citizen.
- Active Secret clearance with ability to obtain TS/SCI.
- Active CISSP, CISM, GSLC, or other DoW 8140 IAM Level III certification.
- Ability to work four days per week onsite at Fort Meade, MD, with one remote day per week permitted based on program needs and operational requirements.
- 10+ years of experience supporting DoW RMF, ATO maintenance, continuous monitoring, security authorization documentation, and cybersecurity compliance for classified systems.
- Prior ISSM, senior ISSO, security control assessor, or cybersecurity lead experience supporting DoW, DISA, or federal information systems.
- Hands-on experience with eMASS or similar RMF/GRC platforms, including control documentation, artifact management, POA&M oversight, risk documentation, assessment results, and authorization package maintenance.
- Experience leading or directly supporting the full RMF lifecycle, including control implementation, evidence validation, security assessment support, risk management, POA&M governance, and ATO sustainment.
- Strong working knowledge of NIST SP 800-53 controls, DoW RMF processes, continuous monitoring requirements, and cybersecurity assessment documentation.
- Experience supporting cloud authorization activities involving inherited controls, shared services, interconnections, federation, or boundary changes.
- Experience reviewing, validating, and approving DISA STIG artifacts, vulnerability evidence, remediation plans, mitigations, and closure documentation.
- Experience overseeing vulnerability management activities using ACAS/Nessus, including scan results review, remediation prioritization, POA&M alignment, and risk reporting.
- Familiarity with endpoint security, SIEM, and cyber monitoring tools such as Trellix, Microsoft Sentinel, or similar platforms.
- Practical understanding of secured IT infrastructure, particularly Windows, RHEL, and Azure environments, with the ability to evaluate how network, identity, server, endpoint, authentication, logging, and core service components affect security, compliance, and authorization posture.
- Experience coordinating directly with government cybersecurity stakeholders, assessors, auditors, technical teams, and program leadership on RMF, ATO, risk, and compliance activities.
- Ability to translate technical security findings, vulnerabilities, control gaps, and operational risks into clear risk-based recommendations for leadership and government stakeholders.
- Strong written and verbal communication skills, including the ability to develop, review, and present cybersecurity documentation, risk summaries, POA&M status, compliance metrics, and authorization package materials.
- Ability to provide senior-level direction to ISSOs, cyber engineers, analysts, and technical teams while also contributing directly to day-to-day cybersecurity execution.
- Strong problem-solving and decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate solution.
- Highly developed interpersonal and oral/written communication skills, with the ability to effectively and professionally interact with a diverse set of stakeholders (from peers to end-users to executive management).
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Senior Information System Security Manager (ISSM) in Maryland vacancy
- ...Information Systems Security Manager (ISSM) We are looking for an experienced and dedicated Information Systems Security Manager (ISSM) to join our team... ...Provide regular reports and updates to senior management Required Skills: Strong understanding...SuggestedTemporary workFor contractorsImmediate startFlexible hours
- ...Quantech Services Inc. is seeking an experienced Information System Security Manager to join our team in Fort Meade, MD. The ideal candidate will oversee the security posture of information systems and ensure compliance with security policies. This position requires a...Senior
- ...Kaizen Approach is currently seeking an Information Security Manager (ISSM) to provide management support for a program, organization, system, or enclave’s Information Assurance program. In this role, the ISSM will propose, coordinate, implement, and enforce Information...SuggestedContract workFor contractorsWork experience placement
- ...A leading company in cybersecurity is seeking an experienced Information System Security Manager for a full-time role in Fort Meade, MD. Ideal candidates will have significant experience in information assurance, managing security policies and compliance, and hold relevant...SeniorFull time
- ...A leading consulting firm providing IT solutions is seeking an Information Systems Security Manager (ISSM). The ideal candidate will possess extensive experience in security operations and authorization, driving the security posture for various federal programs. The role...Senior
- ...Elucidation Concepts is seeking an experienced Information Systems Security Manager (ISSM) to manage the security posture for programs in Fort Meade, Maryland. The role involves developing and enforcing security policies, overseeing security audits, and maintaining compliance...Senior
- ...Modern Technology Solutions, Inc. in Annapolis, Maryland, is seeking an experienced Information System Security Manager (ISSM) to lead cybersecurity efforts for Navy-centric software development. Responsibilities include managing and overseeing the security posture of...Senior
- ...Information Systems Security Manager (ISSM) Strategic Analytix (SA) is an IT engineering and management consulting firm focused on mission critical services and solutions to the Federal Government including the Department of Defense (DOD), the Intelligence Community...For contractors
- ...Quantech Services is seeking an experienced Information System Security Manager to join our team in Fort Meade, MD. The ideal candidate is a seasoned... ...required Cybersecurity objectives. Serve as the Program's ISSM. Enable the Government with the development and...For contractorsWork at office
$185k - $230k
...MTSI Defense Services Division is seeking an experienced Information System Security Manager (ISSM) to lead cybersecurity efforts for a Navy-centric... ...Ability to serve as a primary cybersecurity advisor to senior leadership, engineering teams, and external stakeholders...Contract work$150k - $190k
...We are seeking a highly skilled Senior Cybersecurity Analyst / Information Security Manager with expertise in IT security, risk management, and policy development... ..., integrity, and availability of information systems and data, along with at least two (2) years of supervisory...SeniorFull timePart time$150k - $190k
...Senior Cybersecurity Analyst / Information Security Manager We are seeking a highly skilled Senior Cybersecurity Analyst / Information Security Manager with... ...confidentiality, integrity, and availability of information systems and data, along with at least two (2) years of...SeniorFull timeContract workPart timeFor contractorsRemote work- ...Tyto Athene is seeking a Senior Cyber Lead to support the... ...enterprise environments. Manage forensic workflows, evidence... ...tools, intrusion detection systems, endpoint security solutions, SIEM platforms,... ...Cybersecurity, Computer Science, Information Systems, Digital Forensics,...SeniorFull timeWorldwide
- ...About the role Seeking a Senior Information System Security Officer (ISSO) to support a critical government... ...for maintaining security policies, managing vulnerabilities, and ensuring... ...Information System Security Manager (ISSM) in maintaining operational security...Senior
$170k - $220k
...Information Systems Security Officer (ISSO) Ft. Meade Area, MD · Government/Military Clearance Required: TS/SCI with Polygraph $170K... ...you will: Support the Information System Security Manager (ISSM) in maintaining operational security posture. Own and...Senior$76.93 - $91.35 per hour
...Job Title Information Systems Security Officer, Senior Overview EverWatch is a government solutions... ...variety of audiences, including senior management. ~ Implement... ...Information System Security Manager (ISSM) and provide oversight to other ISSOs...SeniorHourly payContract workLocal area$210k - $220k
...Senior Information System Security Officer (ISSO) Unisity, LLC is a Service-Disabled Veteran Owned Small... ...information. Assist with the Configuration Management for information system security... ...System Security Manager (ISSM) for maintaining the appropriate operational...SeniorFull timeContract workTemporary workWork experience placementImmediate start$155k - $195k
...Technologies is seeking an experienced Information Systems Security Officer (ISSO) for a large software... ...information. Assist with the Configuration Management for information system security... ...Information System Security Manager (ISSM) for maintaining the appropriate...SeniorContract workWork experience placementFlexible hours- Senior Information Systems Security Officer Telophase Corporation is seeking a motivated, career and customer-... ...such as penetration testing is bonus. Manage changes to the information system and... ...experience is required as an ISSO/ ISSM including experience implementing, and...SeniorWork experience placementRemote work
$180k - $210k
...Information System Security Officer, Senior Job ID WOOD-0134 # Positions 1 Location US... ...Assurance Vulnerability Alert (IAVA) management, remediation, and reporting. Develop... .... Collaborate closely with the ISSM to uphold the program's IA posture....SeniorFull timeRemote workFlexible hoursShift work$131.3k - $237.35k
Leidos offers a Senior Information System Security Officer (ISSO) position in Annapolis Junction, MD in the... ...information. Assist with configuration management for information system security... ...Information System Security Manager (ISSM) for maintaining the appropriate operational...SeniorImmediate startFlexible hours- ...Senior ISSO Seeking an ISSO who is ready to dive into meaningful work and... ...Science degree in Computer Science, Information Assurance, Information Security, or related discipline. DoD 8570... ...Experience with the creation of System Security Plans (SSPs). Experience...Senior
$81k - $170k
Torch Technologies is seeking a TARCES Information System Manager in Patuxent River, MD. The role involves ensuring cybersecurity for various programs... ...and systems, with responsibilities including monitoring security risks, enforcing policies, and responding to incidents....- ...Job Title Bachelor of Science degree in Computer Science, Information Assurance, Information Security, or a related discipline, plus 12+ years of relevant experience. In lieu of a degree, an additional 4 years of experience may be considered on a case by case basis....Senior
- A consulting firm based in Annapolis, MD, is seeking an Information System Security Officer Level 3 to support information assurance programs. The ideal candidate will have at least ten years of experience in IT and cybersecurity, along with strong knowledge of security...Senior
$84.56k - $120.5k
...Position Title Information Security Manager Position Summary We are seeking a highly skilled... ...firewalls, intrusion detection/prevention systems (IDS/IPS), and antivirus software.... ...Communicate security risks and strategies to senior management and stakeholders....Full timeWork at office- ...Premier Group is seeking top talent to join our team as an Information Security Manager. The Information Security Manager is responsible for... ...the confidentiality, integrity, and availability of company systems and data.This is an individual contributor role with no direct...Work at officeRemote work
- LufCo is hiring an Information System Security Officer based in Annapolis Junction, MD. The role demands expertise in cybersecurity, strong troubleshooting, and communication skills. Requires a B.S. in Computer Science or a related field, plus ten years of experience, with...Senior
$150k - $200k
Senior Information Systems Security Officer Location: Fort Meade / Columbia, MD Area Salary: $150,000 - $200,000 Clearance Required: Active TS/SCI... ...Security Plan development Conduct configuration management reviews Lead continuous monitoring efforts Provide daily...SeniorFull timeRelocation package- LufCo is seeking an Information System Security Officer in Annapolis Junction, MD. This full-time role involves hands-on cybersecurity support and enforcing security policies for critical national security initiatives. Ideal candidates will have a B.S. in Computer Science...SeniorFull time
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Information System Security Manager (ISSM). Be the first to apply!
Related searches
- senior program specialist Maryland
- consultant senior consultant Maryland
- senior cloud solutions architect Maryland
- senior ai engineer Maryland
- senior performance engineer Maryland
- senior manager diversity & inclusion Maryland
- senior robotics software engineer Maryland
- senior customer service Maryland
- senior specialist Maryland
- senior mainframe developer Maryland

