Quick Overview
Job Description
RMantra is conducting immediate interviews for a Sr. ISSM at Fort Meade, MD.
Clearance: Minimum Secret clearance required, we can hold up to TS and TS/SCI. Primary Responsibilities
Manage the Risk Management Framework (RMF) lifecycle for supported systems enabling the achievement and continued maintenance of Authority to Operate (ATO) accreditation. Provide ISSM, FISMA, and certification and accreditation support for systems and associated components. Conduct recurring assessments of security controls and documentation in eMASS and PPSM to verify continued accuracy, compliance, and readiness.
Manage whitelist records, address vulnerabilities identified through recurring IAVMS scans, and develop Plans of Action and Milestones (POA&Ms) when required. Maintain eMASS control records and POA&Ms in accordance with ATO conditions, approval requirements, and remediation timelines. Coordinate cybersecurity activities supporting interim and final authorization to test and operate, including assessments, mitigation planning, patch validation, implementation tracking, and status reporting.
Create and deliver cybersecurity test plans, test reports, implementation plans, security technical configuration documentation, vulnerability assessment reports, and authorization package materials. Lead cybersecurity governance and reporting activities, including the development and maintenance of system architectures, requirements, security plans, protection plans, IAVA actions, and IA-related objectives. Prepare program documentation, evidence, and briefings for DISA OAB reviews and support the team throughout the review process.
Education
Bachelor’s Degree with 8+ years of experience or Master’s degree with 6+ years of experience. Additional experience may be considered in lieu of a degree.
Certifications
CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), or similar cybersecurity certification. In-depth knowledge of DoD cybersecurity policies, frameworks, and compliance standards (e.g., NIST 800-53, RMF, FISMA, ICD 503, JSIG). Required skills:
In-depth experience with network systems and building/maintaining an ATO for enterprise computing information systems. Experience with system security engineering, risk management, and vulnerability assessments.
Strong understanding of network security, security controls, and common cybersecurity tools (e.g., firewalls, IDS/IPS, SIEM, endpoint protection). Ability to work independently and collaborate effectively with cross-functional teams. Strong communication skills, including the ability to create and present detailed security reports to stakeholders. Experience in managing security for complex DoD programs or mission-critical systems. Experience with security tools for vulnerability scanning, penetration testing, and security auditing.
Advanced security certifications (e.g., CISA, CEH, CSSP, etc.). Experience with configuration management and change management processes in a secure environment. Experience with automation and the continuous ATO (cATO) process. Send resume to for immediate interview.
Similar jobs
- CL
Senior Cloud Data Infrastructure Engineer (US Remote)
Clickhouse
United States🇺🇸Remote2 months agoGCPAWSAzure+5Technology - CL
Principal AI Architect
NewClera
New York🇺🇸Remote9 hours agoRisk ManagementTechnology - PC
Splunk SIEM Engineer
NewPacific Consultancy Services
San Jose, CA🇺🇸On-site17 hours agoTechnology - RT
Senior Network Security Engineer - Local to Florida Only
NewRedSalsa Technologies, Inc.
Tallahassee, FL🇺🇸Hybrid17 hours agoEncryptionTechnology - SI
Support Technician 1 - Help Desk - IT Support
NewStellar IT Solution
Austin, TX🇺🇸On-site17 hours agoTechnology - KR
DBX Leader/ Solution Architect
NewK-Tek Resourcing LLC
Minneapolis, MN🇺🇸Hybrid17 hours agoSQLETLEncryption+8Technology