ISSM

TekSynapFort Belvoir, VA
Onsite

About The Position

We are seeking an Information Systems Security Manager to support our Prime Contract at Fort Belvoir, VA. Candidates must possess active Top Secret/SCI Clearance and DOD 8570 IAM III. TekSynap is a fast growing high-tech company that understands both the pace of technology today and the need to have a comprehensive well planned information management environment. “Technology moving at the speed of thought” embodies these principles – the need to nimbly utilize the best that information technology offers to meet the business needs of our Federal Government customers.

Requirements

  • Six (6) – Fifteen (15) years of experience.
  • BA/BS college degree required.
  • Top Secret Clearance required.
  • Active Top Secret/SCI Clearance
  • DOD 8570 IAM III certification
  • US Citizenship

Nice To Haves

  • Ability to obtain SCI

Responsibilities

  • Plan and coordinate security accreditation reviews and risk analysis for new and installed systems and networks; assess and advise on appropriate security measures and countermeasures based on review findings.
  • Apply the NIST Risk Management Framework (RMF) and serve as the primary point of contact (POC) for all security matters related to assigned systems.
  • Collaborate with stakeholders to develop security plans and policies that defend against unauthorized access to systems, networks, and data; advise leadership on cybersecurity status and educate stakeholders on cybersecurity practices and processes.
  • Develop and implement security programs, policies, and procedures to ensure the security, reliability, and accessibility of information systems, networks, and data in accordance with the System Security Plan (SSP); provide input to RMF process activities and associated documentation.
  • Participate in network and system design efforts to ensure the implementation of appropriate security controls in alignment with defined security implementation plans.
  • Provide DoD Information Technology Portfolio Repository (DITPR) and Enterprise Mission Assurance Support Service (eMASS) registration guidance to system owners.
  • Leverage cyber scorecard experience to assess and report on organizational security performance and compliance metrics.
  • Execute Assured Compliance Assessment Solution (ACAS) scans and Security Content Automation Protocol (SCAP) scans, and conduct manual reviews of Security Technical Implementation Guide (STIG) checklists.
  • Apply strong technical expertise in Linux environments to assess, configure, and harden systems.
  • Support the preparation of the Security Assessment Plan (SAP).
  • Provide data categorization guidance to system owners.
  • Identify and evaluate system impacts, including consideration of existing risk mitigation strategies.
  • Develop Plans of Action and Milestones (POA&Ms) based on assessment results.
  • Ensure full traceability of all vulnerabilities from raw assessment results through to the POA&M.
  • Conduct vulnerability analysis to support mitigation efforts and residual risk determinations.
  • Perform and oversee eMASS data entry requirements.
  • Support the continuous monitoring program, ensuring Information System Continuous Monitoring (ISCM) results are used to inform continuing authorization and ongoing authorization requirements.
  • Develop, review, and maintain RMF accreditation packages with subject-matter expertise.
  • Execute and oversee all steps of the RMF process.
  • Evaluate security controls and compliance across a variety of hardware and software systems.
  • Author and maintain System Security Plans (SSPs).
  • Lead and mentor a team of two Information System Security Officers (ISSOs) and two Information System Security Engineers (ISSEs), providing technical direction, task management, and professional development.
  • Work effectively both independently and within a collaborative team environment.
  • Develop and maintain supporting authorization artifacts, including Configuration Management Plans, Contingency Plans, Incident Response Plans, and Privacy Impact Assessments (PIAs).
  • Generate executive-level security status reports and dashboards for leadership and oversight bodies.
  • Manage the vulnerability lifecycle, including tracking remediation timelines and validating closure of POA&M items.
  • Review and analyze Information Assurance Vulnerability Alerts and ensure timely compliance.
  • Prepare, review, and submit Authorization to Operate (ATO), Interim Authorization to Test (IATT), and continuous authorization packages to the Authorizing Official (AO).
  • Coordinate with the Authorizing Official (AO), Security Control Assessor (SCA), and Information System Owner (ISO) throughout the authorization lifecycle.
  • Ensure systems maintain compliance with applicable DoD, federal, and agency cybersecurity directives, including DoDI 8500.01, DoDI 8510.01, and NIST SP 800-37/800-53.

Benefits

  • health
  • dental
  • vision
  • 401K
  • life insurance
  • short-term and long-term disability plans
  • vacation time
  • holidays
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service