Information Systems Security Manager
Listed on 2026-08-02
-
IT/Tech
Cybersecurity, Information Security & Data Protection
Information Systems Security Manager
Information Systems Security Manager
The Opportunity:
Department of War (DoW) information systems require continuous, disciplined oversight to stay authorized to operate and defensible against evolving threats. As a Senior Information System Security Manager (ISSM), you will own that oversight — serving as the principal cybersecurity authority for one or more system authorization packages across their full lifecycle. You'll manage the RMF process end-to-end: categorizing systems, selecting and tailoring controls, overseeing assessment and authorization activities, and maintaining continuous monitoring posture after ATO.
You'll supervise a team of ISSOs, assigning control families, reviewing their work, and consolidating it into authoritative packages in eMASS. You'll coordinate directly with Authorizing Officials (AO), Authorizing Official Designated Representatives (AODR), Security Control Assessors (SCA), and program leadership to resolve findings, manage POA&Ms, and drive packages to authorization on schedule. This role combines technical depth in NIST SP 800-53/800-37/800-137 with the leadership to run a compliance program: you'll set standards for documentation and artifact management, train and mentor ISSOs, and represent the security posture of your systems to senior stakeholders.
Join us. The world can’t wait.
- 8+ years of experience in cybersecurity compliance, information assurance, or IT security operations
- Experience serving as an ISSM, ISSO, or RMF authorization role on DoD/DoW systems
- Experience managing RMF Steps 1-6:
Categorize through Authorize, and Step 7:
Continuous Monitoring - Experience with eMASS, including authorization package development, control implementation statements, POA&Ms management, and artifact and evidence management
- Experience supervising or mentoring ISSOs or junior compliance staff
- Experience preparing systems for and supporting compliance audits, inspections, or assessments
- Ability to communicate security risk and compliance status clearly to senior leaders, AOs, and SCAs
- TS/SCI clearance
- Bachelor's degree
- DoD 8570/8140 IAM Level III certification
- Experience with defense or national security issues in a specific theater or combatant command environment
- Experience working at a DoD/DoW Command-level Headquarters
- Experience with CNSSI 1253, NIST SP 800-53B, and DoD-specific overlays
- Experience developing internal SOPs, naming conventions, or governance frameworks for artifact and control management
- Experience with system boundary changes, categorization changes, or reauthorization packages
- Experience hiring, interviewing, or building out a compliance team
- Knowledge of cloud-hosted DoD systems, such as AWS, Azure, or GCP
- Master's degree
Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; TS/SCI clearance is required.
CompensationAt Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen’s benefit programs.
Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page. Salary at Booz Allen is determined by various factors, including but not limited to location, the individual’s particular combination of education, knowledge, skills, competencies, and experience, as well as contract‑specific affordability and organizational requirements.
The projected compensation range for this position is $86,900.00 to $…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).