Information System Security Manager
Listed on 2026-08-29
-
IT/Tech
Cybersecurity, Information Security & Data Protection, Security Management & Operations
Information System Security Manager (ISSM)
Work Arrangement: Onsite / Situational Remote
Salary Range: $135,000–$160,000 annually
Security Clearance: Active Top Secret/SCI (TS/SCI) Required
Recruitment Partner Notice
This position is being recruited and advertised by The O'Neil Group Company, LLC on behalf of Catalyst Campus for Technology & Innovation (CCTI). Applications will be submitted through The O'Neil Group Company, LLC; however, the selected candidate will be employed directly by Catalyst Campus for Technology & Innovation (CCTI) and will work onsite at CCTI's Colorado Springs location.
About Catalyst Campus
Catalyst Campus for Technology & Innovation (CCTI) is strategically headquartered in Colorado Springs, home to five military installations and a robust ecosystem of aerospace and defense organizations, innovative startups, entrepreneurs, government partners, and academic institutions.
Through its collaborative campus environment, CCTI brings together industry, academia, government, and key partners to cultivate public-private partnerships and accelerate the delivery of novel and disruptive aerospace and defense technologies supporting our nation and allied warfighters.
Position Summary
CCTI is seeking an experienced Information System Security Manager (ISSM) to lead cybersecurity accreditation, compliance, continuous monitoring, and operational security activities for classified information systems and supporting infrastructure.
Serving as the primary cybersecurity lead for CCTI's classified environments, the ISSM will work closely with Government security representatives, technical teams, and organizational leadership to ensure information systems remain secure, compliant, accredited, and operational throughout their lifecycle.
The ISSM will lead activities required to obtain, maintain, and sustain Authorities to Operate (ATOs) and support implementation of the Risk Management Framework (RMF) in accordance with applicable Intelligence Community (IC), Department of Defense (DoD), NIST, CNSSI, and Government cybersecurity requirements.
This position serves as a key point of contact for cybersecurity accreditation and compliance activities and will coordinate with Government security personnel, Accrediting Officials (AOs), Information System Owners (ISOs), System Security Officers (SSOs), technical teams, and operational stakeholders.
What You'll Do
Security Accreditation & Risk Management
- Lead cybersecurity accreditation activities required to obtain, maintain, and sustain ATOs for classified information systems and supporting infrastructure.
- Execute RMF activities throughout the system lifecycle in accordance with NIST SP 800-53 and applicable Government cybersecurity requirements.
- Develop, maintain, and manage authorization packages and accreditation artifacts, including:
- System Security Plans (SSPs)
- Security Assessment Reports (SARs)
- Security Control Traceability Matrices (SCTMs)
- Plans of Action and Milestones (POA&Ms)
- Supporting accreditation evidence
- Coordinate with Government security representatives and accrediting authorities throughout authorization and sustainment activities.
Security Compliance & Continuous Monitoring
- Manage continuous monitoring activities to maintain cybersecurity, configuration management, and accreditation compliance.
- Track, assess, and coordinate remediation of vulnerabilities identified through security scans, assessments, audits, and compliance reviews.
- Maintain documentation and supporting evidence for ongoing accreditation, compliance reporting, and Government inspections.
- Coordinate cybersecurity incident reporting, response activities, and corrective actions affecting accredited systems.
Classified Systems Security Operations
- Support the secure operation of classified information systems and associated infrastructure within approved classified environments.
- Provide guidance regarding cybersecurity requirements, security controls, system changes, and compliance obligations.
- Support development and maintenance of cybersecurity architecture documentation, network diagrams, data-flow diagrams, and related system-security artifacts.
Stakeholder Engagement & Program Support
- Serve…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).