Information Systems Security Manager

Parsons CorporationColumbia, MD
$157,500 - $283,500Onsite

About The Position

In a world of possibilities, pursue one with endless opportunities. Imagine Next! At Parsons, you can imagine a career where you thrive, work with exceptional people, and be yourself. Guided by our leadership vision of valuing people, embracing agility, and fostering growth, we cultivate an innovative culture that empowers you to achieve your full potential. Unleash your talent and redefine what’s possible. Parsons is looking for an amazingly talented Information Systems Security Manager to join our team! In this role you will get to lead the shift from static, point-in-time compliance assessments to a dynamic, real-time risk authorization posture RMF.

Requirements

  • Minimum 15 years relevant experience with Masters Degree in Computer Science, Cybersecurity, Information Assurance, Information Security System Engineering, or related discipline from an accredited college or University.
  • Active DoD IAM and/or IAT Level III, Certified Information Security Manager (CISM), Certified Information Systems Security Professional (CISSP), or SecurityX
  • Mastery of the Risk Management Framework (RMF) and associated federal cybersecurity standards, including NIST SP 800-37, NIST SP 800-53, and CNSSI 1253.
  • Demonstrated understanding and experience with Enterprise-level Cloud Architecture & Security principles, including control inheritance and shared responsibility models across AWS and Azure.
  • DevSecOps practices, automated pipeline security (SAST, DAST, SCA), and CI/CD tools.
  • Experience as SETA contractor.
  • Demonstrated experience providing technical leadership on assignments.
  • Active TS SCI w/Polygraph required

Responsibilities

  • Govern a secure, pre-accredited DevSecOps platform designed for downstream applications to inherit security controls seamlessly.
  • Define, implement, and maintain automated risk thresholds, security baselines, and compliance rules integrated directly into continuous integration/continuous deployment (CI/CD) pipelines
  • Oversee real-time configuration tracking, live vulnerability assessments, and threat analytics to ensure ongoing compliance
  • Act as the interface translating automated pipeline data, Software Bills of Materials (SBOMs), and tool generated security metrics into actionable risk acceptance frameworks to the Task Lead.
  • Guide and orchestrate the POA&M process, transitioning it from a manual tracking spreadsheet to an automated, tool-driven lifecycle RMF
  • Set formal governance criteria outlining exactly what level of security vulnerabilities (e.g., critical/high SAST, DAST, or container flaws) will automatically break a software build or block a production deployment DevSecOps Basics DevSecOps Roles & Responsibilities
  • Validate that Terraform scripts, Helm charts, and cloud-native templates used to spin up environments are programmatically hardened against DISA STIGs and NIST baselines
  • Enforce rigorous software supply chain security standards, including automated container scanning, open-source dependency tracking, signature validation, and compliance with SLSA frameworks Software Composition Analysis DoD Continuous Authorization Implementation Guide
  • Govern the Least Privilege Access model across the entire development community, strictly partitioning and isolated tenant developer environments from live, production-level pipelines
  • Serve as a collaborative bridge between system administrators, software engineers, cloud architects, and compliance officers to shift security left into the early design phases
  • Establish goals and plans that meet project objectives.

Benefits

  • medical
  • dental
  • vision
  • paid time off
  • 401(k)
  • life insurance
  • flexible work schedules
  • holidays
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service