Program Information System Security Manager - Special Access Programs - Woburn, MA
Listed on 2026-08-04
-
IT/Tech
Cybersecurity, Information Security & Data Protection
Date Posted: Country:
United States of America
Location:
US-MA-WOBURN-WB1 ~ 235 Presidential Way ~ SPENCER BLDG Position Role Type:
Onsite U.S. Citizen, U.S. Person, or Immigration Status Requirements:
Active and transferable U.S. government issued security clearance is required prior to start date. U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance Security Clearance Type:
Top Secret - Current Security Clearance Status:
Active and existing security clearance required on day 1
At RTX, the world's largest aerospace and defense company, 185,000 great minds are united by purpose and inspired to make a difference solving the world’s most complex problems. With our three market leading businesses, world-class operations and investments in research and development, we offer capabilities and opportunity no one else can. Together, we push the boundaries of known science and find new ways to connect and protect our world.
Raytheon brings the strength of more than 100 years of experience and renowned engineering expertise to meet the needs of today’s mission and stay ahead of tomorrow’s threat. We deliver solutions that help our nation and allies defend freedoms and deter aggression, creating a safer, more secure world. Join us and help shape the future of aerospace and defense.
Our Cybersecurity team is seeking a Program Information System Security Manager (ISSM) – Special Access Programs to support our Special Access Program classified computing environments 100% onsite at our facility in Woburn, Massachusetts. The Cybersecurity Program Information Systems Security Manager is responsible for compliance oversight, assessment, and operations of systems under their purview. They may be assigned to a single large-scale program or oversee multiple programs.
The Program ISSM has cognizance over classified programs at the Woburn site per Commercial and Government Entity (CAGE) code as stipulated by various US Government requirements including (but not limited to):
National Industrial Security Operating Manual (NISPOM) and related documentation such as Risk Management Framework (RMF), Joint SAP Implementation Guide (JSIG), Intelligence Community Directive 503 (ICD 503), Baseline Technical Security Configuration Standards, DCSA Assessment and Authorization Guide (DAAG), Customer/contract specific Cybersecurity regulations.
- Complete Raytheon GSS required training within 6 months of appointment (annual requirements thereafter).
- Accountability for classified systems under site CAGE and SBU: metrics, Raytheon business process (RCAST), Continuous Monitoring (Con Mon) as described by Sr. ISSM.
- Maintaining a working knowledge of all classified functions, security policies, technical security safeguards, and operational security measures.
- Interactions with SCA to track items including, but not limited to, upcoming authorizations (ATO), new technology solutions (i.e., new SIEM, OS, etc.), policy interpretations (in conjunction with Sr. ISSM), and onsite inspections.
- Developing, maintaining, and updating, in coordination with all system stakeholders (CS Manager, ISO, DT, etc.), applicable site POAM(s) to identify system weaknesses, mitigating actions, resources, and timelines for corrective actions.
- Coordinating customer inspection preparation activities for assigned sites in conjunction with Program/Industrial Security.
Important note:
Within six months of hire date, you must obtain and maintain a Security professional certification commensurate with IAM Level III certification commensurate with your role as a Site ISSM as required by DoDD 8140 (8570) if you do not already have this certification.
You Must Have Typically a Bachelors Degree or equivalent experience and minimum 8 years prior relevant experience, or an Advanced Degree in a related field and minimum 5 years experience Experience supporting cybersecurity compliance as stipulated by the Joint SAP Implementation Guide (JSIG), DCSA Assessment and Authorization Guide (DAAG), and/or National Industrial Security Program Operating Manual (NISPOM) regulations Direct leadership or project/program…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).