About the role
Seeking a mid-level Information System Security Manager I (ISSM I) to provide expert oversight and advisory services on the security of information systems within Special Access Programs (SAPs) supporting Department of Defense agencies. The ideal candidate will have strong experience in RMF, JSIG, and DoD security protocols, with a focus on ensuring compliance, risk management, and security posture maintenance. This on-site role at Hanscom AFB, Bedford, MA, offers an exciting opportunity to contribute to national security through critical information system protection.
Job Responsibilities
- Oversee development, implementation, and evaluation of information system security program policies, emphasizing SAP network integration
- Advise customers on RMF assessment and authorization issues
- Perform risk assessments and recommend security measures to DoD agency customers
- Evaluate authorization documentation and provide recommendations for government program managers
- Develop and maintain formal Information Systems Security Programs
- Ensure technical and security training for IAOs, network administrators, and cybersecurity personnel
- Develop and execute security assessment plans verifying protection levels
- Maintain repositories for system authorization documentation and modifications
- Implement Configuration Control Board (CCB) charters
- Develop policies and procedures for security incident response and reporting
- Ensure corrective measures for discovered vulnerabilities or incidents
- Establish data ownership and access responsibilities for authorization boundaries
- Develop and implement information security education, training, and awareness programs
- Conduct periodic security posture assessments and configuration management
- Ensure system recovery and reconstitution processes meet availability requirements
- Participate in self-inspections and act as ISSO when necessary
Required skills
Risk Management Framework (RMF) Joint Special Access Program Implementation Guide (JSIG) Information System Security Program Development Security Risk Assessment Authorization Documentation Evaluation Configuration Management Security Incident Response DoD 8140 / 8570.01-M IAM Level I Certification Counterintelligence Polygraph Compliance Special Access Program (SAP) Security
Preferred skills
SAP Network Infrastructure Integration Security Training Program Development Intrusion Detection and Monitoring Tools Information Assurance Officer (IAO) Coordination System Recovery and Reconstitution Planning
Education requirements
Degree
Bachelor
Major
Information Technology or Cybersecurity
Job Requirements
5-7 years of related experience in information system security management or similar roles such as ISSO or ISSMActive TS clearance with SCI eligibility and willingness to submit to a Counterintelligence polygraphDoD 8140 / 8570.01-M IAM Level I certificationBachelor's degree in a related field or equivalent experienceExperience with Special Access Programs (SAP) is highly desiredStrong knowledge of Risk Management Framework (RMF) and Joint Special Access Program Implementation Guide (JSIG)Ability to perform risk assessments and provide actionable recommendationsExcellent communication skills to advise government program managers and coordinate with security officialsAbility to develop and maintain formal information system security programs and policiesWillingness to travel 10%-25% as required