About The Position

The Information System Security Manager (ISSM) supports the implementation and oversight of information security activities for our client’s systems and programs. This role helps manage cybersecurity risk, RMF activities, compliance, security improvements, and coordination across technical and program stakeholders. This is a contingent posting, meaning the position is dependent on JMA Resources receiving a contract award and confirmation of staffing requirements and funding.

Requirements

  • Current or ability to obtain a Department of Defense (DoD) Secret Clearance is required.
  • To obtain a security clearance, you must be a U.S. citizen and meet the 13 adjudicative guidelines.
  • At least 8 years of professional experience overseeing or managing information security program implementation, including experience with: Coordinating cybersecurity activities across multiple levels of an organization.
  • Managing cybersecurity strategy, personnel, infrastructure, policy enforcement, emergency planning, security awareness, and/or related resources.
  • Supporting information security risk management, compliance, and security program activities.
  • Master’s degree in computer science, information technology, or an equivalent STEM field.
  • One of the following certifications: Certified Authorization Professional (CAP), CompTIA Advanced Security Practitioner Continuing Education (CASP+ CE), Certified Information Security Manager (CISM), Certified Information Systems Security Professional (CISSP) or Associate of ISC2, GIAC Security Leadership Certification (GSLC), Certified Chief Information Security Officer (CCISO), HealthCare Information Security and Privacy Practitioner (HCISPP).
  • Strong knowledge of RMF, A&A, cybersecurity risk management, and information security compliance.
  • Ability to evaluate cybersecurity findings, risks, and corrective actions.
  • Experience coordinating across technical, program, and leadership stakeholders.
  • Strong analytical, organizational, and technical communication skills.
  • Ability to manage multiple cybersecurity priorities, findings, and compliance activities.

Nice To Haves

  • Experience supporting Navy or Department of Defense cybersecurity and RMF programs.
  • Experience with Navy and DoD compliance and vulnerability management systems such as DADMS, DITPR-DON, or VRAM.

Responsibilities

  • Support information security goals and initiatives that reduce organizational cybersecurity risk.
  • Coordinate cybersecurity activities and communicate security priorities across organizational levels and stakeholders.
  • Support the evaluation, validation, and implementation of security improvements.
  • Identify security requirements throughout the system lifecycle and support effective implementation of related policies and procedures.
  • Evaluate patterns of noncompliance and assess their impact on risk and overall cybersecurity program effectiveness.
  • Identify and recommend information security strategies to address organizational security objectives.
  • Support information security risk assessments throughout the Assessment and Authorization (A&A) process.
  • Perform quality assurance reviews of RMF package submissions in accordance with applicable NSWCPD and NAVSEA requirements.
  • Support cybersecurity inspections, testing, and reviews of network environments.
  • Track audit findings, deficiencies, and recommendations through appropriate mitigation or corrective action.
  • Develop findings reports and recommend corrective actions for identified deficiencies.
  • Coordinate resolution of findings identified through internal and external reviews.
  • Monitor authorization conditions, POA&M items, and System Level Continuous Monitoring (SLCM) activities.
  • Collect and analyze data needed to support cybersecurity reporting and management decisions.
  • Report and maintain system compliance information in applicable Navy and DoD systems, including DADMS, DITPR-DON, and VRAM.
  • Facilitate communication and coordination among RMF stakeholders throughout the authorization process.
  • Support cybersecurity strategy, policy enforcement, security awareness, emergency planning, and other information security program activities.
  • Carry out other related duties assigned to support evolving client, project, and company needs.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service