Information System Security Manager

CACI InternationalFlorham Park, NJ
$103,800 - $218,100Onsite

About The Position

CACI is seeking an experienced Information Systems Security Manager (ISSM) to lead and oversee Risk Management Framework (RMF) lifecycle activities for a portfolio of classified DoD systems supporting SAP, SCI, and NSA missions. You will manage system authorizations, direct cybersecurity compliance, and serve as the senior cybersecurity authority for multiple high-visibility programs—ensuring systems remain secure, compliant, and fully authorized to operate.

Requirements

  • TS/SCI with Poly Clearance
  • 8+ years of cybersecurity experience supporting DoD classified systems (SCI, SAP).
  • 3+ years as an ISSM or senior cybersecurity lead.
  • Deep knowledge of JSIG, RMF, DoDI 8510.01, NIST SP 800-53, ICD 503.
  • Experience coordinating directly with AOs, AO reps, SCAs, and government cyber stakeholders.
  • Demonstrated ability to manage cybersecurity across multi-system classified environments.
  • Strong technical risk assessment and communication skills.
  • Ability to operate independently in complex classified environments.
  • DoD 8140 IAM Level II/III or IAT III certification; CISSP preferred.
  • Experience with cybersecurity and RMF toolsets, including: eMASS and/or Xacta for RMF, authorization, and security control management; SIEM platforms for security monitoring, event analysis, and incident response; Vulnerability management tools, including Nessus/ACAS or equivalent platforms; Tools used for STIG compliance, configuration management, continuous monitoring, and POA&M tracking.
  • Bachelor’s degree in Cybersecurity, IT, Computer Science, Engineering, or related field; or equivalent experience.
  • Current or recent SAP access
  • Must maintain eligibility for all required program-specific accesses.

Nice To Haves

  • CISSP preferred

Responsibilities

  • Lead RMF lifecycle activities from system categorization through Authorization to Operate (ATO), Interim Authorization to Test (IATT), and continuous authorization.
  • Develop and manage SSPs, POA&Ms, Risk Assessments, Implementation Plans, and other RMF artifacts.
  • Coordinate with SCAs, AOs, Cyber Leads, and program stakeholders to resolve findings and adjudicate risk.
  • Prepare systems for ATO, IATT, reauthorization, and continuous monitoring.
  • Ensure compliant implementation of security controls per JSIG, NIST SP 800-53, DoDI 8510.01, ICD 503, and SAP/NSA requirements.
  • Track, remediate, and validate POA&Ms to ensure timely closure of vulnerabilities.
  • Conduct internal cybersecurity compliance assessments and inspection-ready reviews.
  • Support DCSA, SAP, NSA, and customer cybersecurity inspections.
  • Evaluate system architecture changes for compliance and cybersecurity impact.
  • Provide cybersecurity guidance and oversight to ISSOs, admins, engineers, and program staff.
  • Develop and present cybersecurity briefings and risk recommendations to leadership and government customers.
  • Maintain strong working relationships with AOs, SCAs, FSOs, SAP Security, program management, and system owners.
  • Support cybersecurity incident response, vulnerability management, continuous monitoring, and reporting.
  • Ensure all authorization and cybersecurity documentation remains current and inspection-ready.
  • Manage cybersecurity across a multi-system classified portfolio.

Benefits

  • healthcare
  • wellness
  • financial
  • retirement
  • family support
  • continuing education
  • time off benefits
  • flexible time off benefit
  • learning resources
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service