About The Position

The Information Systems Security Manager (ISSM) serves as the primary cybersecurity authority for assigned classified and controlled information systems. This role is responsible for the end-to-end execution and oversight of cybersecurity activities in compliance with applicable U.S. Department of Defense (DoD) laws, regulations, and contractual requirements. As an advanced individual contributor, the ISSM independently leads system authorization, continuous monitoring, inspection readiness, and risk management activities, while providing technical oversight and mentorship to Information Systems Security Officers (ISSOs) and maintaining accountability for cybersecurity outcomes. Responsibilities include implementing and sustaining cybersecurity requirements defined by government frameworks and guidance, including the Risk Management Framework (RMF), Joint Special Access Program Implementation Guide (JSIG) for SAP systems, NIST publications, NISPOM, and the DCSA Assessment and Authorization Guide (DAAG), and associated assessment and authorization guidance. This position is onsite in Cedar Rapids. IA.

Requirements

  • Typically requires a University Degree and minimum 8 years prior relevant experience or an Advanced Degree in a related field and minimum 5 years of experience.
  • U.S. Citizen is required as only U.S. Citizen are able to obtain a clearance.
  • Active DOD Secret Security Clearance day one.
  • IAM Level III certification compliant with DoD 8570 / DoD 8140 (e.g., CISSP, CISM, GSLC).
  • Experience performing ISSM responsibilities for classified or controlled information systems.
  • Advanced knowledge of RMF and DoD system authorization processes.
  • Experience executing authorization and continuous monitoring using JSIG and/or DAAG.
  • Knowledge of cybersecurity regulations, contractual requirements, and DD Form 254 interpretation.
  • Experience supporting inspections, assessments, and audit activities.
  • Ability to independently assess risk and communicate cybersecurity status to leadership.
  • Must be willing to travel domestically up to 20%, generally supporting other company facilities.

Nice To Haves

  • Master’s degree in Cybersecurity, Computer Science, or a related field.
  • Experience as the primary ISSM for SAP and/or DoD collateral systems.
  • Experience owning ATOs and driving POA&M closure.
  • Experience mentoring ISSOs and providing technical oversight.
  • Experience leading Change Control Boards (CCBs).
  • Experience working with cross-functional teams and enterprise cybersecurity organizations.
  • Strong written and verbal communication skills for senior leadership briefings.

Responsibilities

  • Independently own cybersecurity responsibilities for assigned information systems, ensuring security objectives are achieved and organizational risk is effectively managed.
  • Serve as the primary cybersecurity authority for inspections, assessments, audits, and continuous monitoring, leading preparation, execution, and response activities to maintain authorization and inspection readiness.
  • Execute and maintain system authorization using the Risk Management Framework (RMF) and applicable guidance, including the Joint Special Access Program Implementation Guide (JSIG) for Special Access Program systems and the DCSA Assessment and Authorization Guide (DAAG) for DoD collateral systems.
  • Maintain awareness and working knowledge of DD Form 254s and contractual security requirements, ensuring cybersecurity controls, inspection scope, and authorization boundaries align with approved mission and program objectives.
  • Develop, maintain, and validate cybersecurity plans, authorization artifacts, and compliance documentation to support audit-ready operations.
  • Identify, assess, and communicate cybersecurity risk to senior leadership and Authorizing Officials, including the impact of system changes, vulnerabilities, inspection findings, and authorization conditions.
  • Lead continuous monitoring activities, including evaluation of security posture, validation of control effectiveness, and tracking of security-relevant data.
  • Develop, manage, and drive closure of Plans of Action and Milestones (POA&Ms) resulting from inspections, assessments, and continuous monitoring activities.
  • Lead and oversee cybersecurity Change Control Boards (CCBs), evaluating proposed system changes for security impact, authorization implications, and alignment with RMF requirements.
  • Execute or coordinate corrective and protective security actions resulting from inspections, continuous monitoring, or identified cybersecurity incidents.
  • Engage with Program Managers to integrate cybersecurity requirements into program execution, schedules, and decision-making, and to address risk impacts to cost, scope, and mission delivery.
  • Collaborate with cross-functional teams, including Information Technology, Facilities, and Industrial Security, to ensure cybersecurity requirements are integrated into technical, physical, and operational environments.
  • Coordinate with other cybersecurity teams across the enterprise to ensure consistent implementation of cybersecurity processes, standards, and authorization practices.
  • Provide technical direction and mentoring to ISSOs to ensure consistent execution of RMF activities, inspection readiness, and quality of authorization artifacts, while remaining accountable for cybersecurity outcomes.
  • Prepare and deliver cybersecurity status reporting to senior leadership, summarizing authorization posture, inspection readiness, risk trends, POA&Ms, and significant cybersecurity issues.

Benefits

  • Medical, dental, and vision insurance.
  • Three weeks of vacation for newly hired employees.
  • Generous 401(k) plan that includes employer matching funds and separate.
  • employer retirement contribution, including a Lifetime Income Strategy option.
  • Tuition reimbursement program.
  • Student Loan Repayment Program.
  • Life insurance and disability coverage.
  • Optional coverages you can buy pet insurance, home and auto insurance, additional life and accident insurance, critical illness insurance, group legal, ID theft protection.
  • Birth, adoption, parental leave benefits.
  • Ovia Health, fertility, and family planning.
  • Adoption Assistance.
  • Autism Benefit.
  • Employee Assistance Plan, including up to 10 free counseling sessions.
  • Healthy You Incentives, wellness rewards program.
  • Doctor on Demand, virtual doctor visits.
  • Bright Horizons, child, and elder care services.
  • Teladoc Medical Experts, second opinion program.
  • And more!

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Mid Level

Number of Employees

5,001-10,000 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service