Information System Security Manager

CACIFlorham Park, NJ
Onsite

About The Position

CACI is seeking an experienced Information Systems Security Manager (ISSM) to lead and oversee Risk Management Framework (RMF) lifecycle activities for a portfolio of classified DoD systems supporting SAP, SCI, and NSA missions. You will manage system authorizations, direct cybersecurity compliance, and serve as the senior cybersecurity authority for multiple high-visibility programs—ensuring systems remain secure, compliant, and fully authorized to operate.

Requirements

  • TS/SCI with Poly Clearance
  • 8+ years of cybersecurity experience supporting DoD classified systems (SCI, SAP).
  • 3+ years as an ISSM or senior cybersecurity lead.
  • Deep knowledge of JSIG, RMF, DoDI 8510.01, NIST SP 800-53, ICD 503.
  • Experience coordinating directly with AOs, AO reps, SCAs, and government cyber stakeholders.
  • Demonstrated ability to manage cybersecurity across multi-system classified environments.
  • Strong technical risk assessment and communication skills.
  • Ability to operate independently in complex classified environments.
  • DoD 8140 IAM Level II/III or IAT III certification; CISSP preferred.
  • Experience with cybersecurity and RMF toolsets, including: eMASS and/or Xacta for RMF, authorization, and security control management.
  • SIEM platforms for security monitoring, event analysis, and incident response.
  • Vulnerability management tools, including Nessus/ACAS or equivalent platforms.
  • Tools used for STIG compliance, configuration management, continuous monitoring, and POA&M tracking.
  • Bachelor’s degree in Cybersecurity, IT, Computer Science, Engineering, or related field; or equivalent experience.
  • Current or recent SAP access
  • Must maintain eligibility for all required program-specific accesses.

Nice To Haves

  • CISSP preferred

Responsibilities

  • Lead RMF lifecycle activities from system categorization through Authorization to Operate (ATO), Interim Authorization to Test (IATT), and continuous authorization.
  • Develop and manage SSPs, POA&Ms, Risk Assessments, Implementation Plans, and other RMF artifacts.
  • Coordinate with SCAs, AOs, Cyber Leads, and program stakeholders to resolve findings and adjudicate risk.
  • Prepare systems for ATO, IATT, reauthorization, and continuous monitoring.
  • Ensure compliant implementation of security controls per JSIG, NIST SP 800-53, DoDI 8510.01, ICD 503, and SAP/NSA requirements.
  • Track, remediate, and validate POA&Ms to ensure timely closure of vulnerabilities.
  • Conduct internal cybersecurity compliance assessments and inspection-ready reviews.
  • Support DCSA, SAP, NSA, and customer cybersecurity inspections.
  • Evaluate system architecture changes for compliance and cybersecurity impact.
  • Provide cybersecurity guidance and oversight to ISSOs, admins, engineers, and program staff.
  • Develop and present cybersecurity briefings and risk recommendations to leadership and government customers.
  • Maintain strong working relationships with AOs, SCAs, FSOs, SAP Security, program management, and system owners.
  • Support cybersecurity incident response, vulnerability management, continuous monitoring, and reporting.
  • Ensure all authorization and cybersecurity documentation remains current and inspection-ready.
  • Manage cybersecurity across a multi-system classified portfolio.

Benefits

  • healthcare
  • wellness
  • financial
  • retirement
  • family support
  • continuing education
  • time off benefits
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service