About this opportunity
Prana Comunicación lists this Information System Security Manager opportunity in dayton, Ohio. Review the employer’s description below for duties, qualifications and application requirements.
Job description
Information System Security Manager (ISSM)
Wright-Patterson AFB
At IPT Associates (IPTA), we enjoy solving real-world problems with technology. We work closely with our customers, teammates, experts, and partners to come up with practical solutions that make a difference. Whether it's a government or business organization, we focus on understanding the need and building something that works.
Our Team
At IPTA, everything starts with our people. We're big believers that when you invest in your team, great things happen. That's why we encourage learning, growth, and trying new things-even if you don't have all the answers yet.
Our culture is rooted in fierce determination, fearless integrity, and passionate service -but we also like to keep things collaborative, supportive, and down-to-earth.
We're Looking For People Who
Are curious and excited about technology
Like solving problems and figuring things out
Can take initiative but also enjoy working with a team
Want to keep learning, growing, and challenging themselves
If you're someone who's eager to jump in, learn something new, and make an impact—you'll fit right in here.
*This position is contingent upon contract award and the actual job description may vary based on specific contract requirements and organizational needs.*
Responsibilities
Manage cybersecurity compliance for assigned information systems in accordance with DoW, Air Force, RMF, FISMA, and NIST requirements, ensuring systems remain mission-capable, risk-informed, and authorized to operate
Develop, implement, and enforce cybersecurity policies, procedures, and security controls in accordance with DoW, Air Force, RMF, FISMA, and NIST requirements
Lead all aspects of the RMF Lifecycle, including SSP development, maintenance, accreditation/re-accreditation, and oversight, including conducting periodic reviews to ensure compliance
Maintain and take action on POA&M items, coordinate mitigation plans with system owners and technical teams, and track remediation through closure
Support eMASS package development and updates, including control implementation statements, artifact uploads, risk documentation, and ATO coordination
Conduct cybersecurity risk assessments, audits, and control reviews to identify vulnerabilities, evaluate organizational risk, and recommend mitigation actions
Oversee continuous monitoring activities, including recurring control reviews, vulnerability scans, audit log reviews, and compliance status reporting.
Review ACAS, Splunk, STIG, IAVM, and audit log results to identify security risks, validate remediation actions, and support risk-based decisions
Coordinate security validation testing within DevSecOps, on-premises, and cloud environments to ensure new or changed capabilities meet authorization requirements.
Perform as a primary contact for IS security inspections, tests, and Security Control Assessors (SCA) and Representatives (SCAR)
Review firewall, system, and security change requests to assess cybersecurity risk, mission impact, and compliance with approved security baselines
Monitor intrusion detection, prevention, audit, and security event data to identify potential threats and coordinate timely response actions
Coordinate security incident response activities, support investigations, and report findings, impacts, and corrective actions to leadership
Requirements
BS in Computer Science, Cyber Security, or a related field; with 8+years of relevant cybersecurity experience
One of the following current certifications: CASP+, CISSP, or GSLC
Active TS clearance with SCI eligibility
Experience working with the Air Force RMF security frameworks, including DoD and Air Force security policies and instructions
Experience and ability to provide strategic and tactical information security advice and manage all Cybersecurity related activities for current or future IT platforms
Experience working in conjunction with a multi-contractor team in support of Cybersecurity, continuous monitoring, and other emerging compliance requirements
Experience with Federal Information Security Management Act (FISMA)
Experience with Air Force's Information Technology Investment Portfolio Suite (ITIPS)
Experience ensuring software, hardware, and firmware comply with appropriate IAVM's
Must track and action POA&M entries as part of the RMF process
Experience with reviewing and updating STIG results
Experience ensuring Continuous Monitoring is adhered to
Working experience with Risk Management Framework and NIST 800-53 revision 4 and revision 5 controls
Experience working within eMASS and obtaining an ATO
Familiar with performing Security validation testing through a DevSecOps process and within both on-premises and a Cloud Environment
Experience with ACAS, utilizing Splunk, reviewing of audit logs, and other cybersecurity monitoring functions
Ability to identify risks of implementing technology solutions and analyze the impact on achieving desired business outcomes
IPTA is an Equal Opportunity Employer. All employment decisions are based on individual merit, including qualifications, experience, performance, and business needs, consistent with applicable federal laws and federal contracting requirements. IPTA provides equal opportunity and utilizes merit-based principles to make employment-related decisions.
#clearance
#J-18808-Ljbffr
Worksite address
dayton, OH, 45444, US
Who can apply
Review the original listing for work authorization, qualifications and employer requirements.