Information Systems Security Mangager (ISSM)
KBR, Inc.About the role
Title:
Information Systems Security Mangager (ISSM)Belong. Connect. Grow. with KBR!
KBR’s National Security Solutions team provides high-end engineering and advanced technology solutions to our customers in the intelligence and national security communities. In this position, your work will have a profound impact on the country’s most critical role – protecting our national security.
Why Join Us?
Innovative Projects: KBR’s work is at the forefront of engineering, logistics, operations, science, program management, mission IT and cybersecurity solutions.
Collaborative Environment: Be part of a dynamic team that thrives on collaboration and innovation, fostering a supportive and intellectually stimulating workplace.
Impactful Work: Your contributions will be pivotal in designing and optimizing defense systems that ensure national security and shape the future of space defense.
Position Summary:
The Information System Security Manager will provide system authorization support, risk management and business continuity expertise, threat detection and prevention methods, incident response and management methods, auditing, vulnerability management support, and system security documentation.
Key Responsibilities:
Coordinating, executing, and managing cybersecurity assessment & authorization (A&A) related activities supporting IT hardware, software, and connectivity capabilities in support of intelligence data management and analysis requirements
Provide advice and assistance on all things cyber security for customer-acquired development and systems maintenance projects, driving and monitoring system authorization status of segment components, authoring and coordinating related documentation
Facilitate, perform, and manage actions necessary to maintain system and capability accreditation status consistent with DoDI 8510.01 (Risk Management Framework (RMF) for DoD Information Technology (IT)), including scanning, auditing, and authoring/coordinating security accreditation-related documentation
Review and advise on security aspects of contracted maintenance deliverables and proposals
Perform requirements analysis, design, and integration for complex software applications and collaboration infrastructures
Participate in the change management process, including reviewing Change Requests and assisting in the assessment of security impact of proposed changes
Write implementation and design documents describing how security features are implemented
Create and maintain information system security documentation, Standard Operating Procedures (SOP), and provide guidance on active Plans of Action and Milestones (POA&M)
Present system maintenance, authorization status, and potential issues to various intelligence and acquisition community audiencesKeep leadership aware of any roadblocks, issues, or concerns with system authorization status
Work Environment:
Location: Dayton, OH
Travel Requirements: 35%
Working Hours: Standard
Qualifications:
Required:
BS degree in information systems or related technical field
9+ years' technical experience in cybersecurity or information technology
DoD 8570 IAT/IAM Level I/II certification
Understanding of common operating systems (Windows, Linux/Unix, Cisco IOS/NX-OS)
Knowledge of client, server, data storage, and networking technologies
Understanding of the requirements and standards for Cloud security
Familiarity with DevSecOps principles and Secure Software Development Lifecycle (SSDLC)
Ability to troubleshoot, assess root cause, and resolve technical issues
Innovative with strong analytical, problem-solving, organization and interpersonal skills
Self-motivated; able to work independently with minimal direction
An active TS/SCI clearance is required
Must have experience working with Special Access Programs (SAPs)
Desired:
Advanced degree in a technical field
9+ years of IT/security-related experience with recent ISSM experience
Sec+/CASP/CISSP certification
Software Development in Java, Python, Ruby and/or C++ knowledge
Linux Expertise (RedHat/RHEL or CentOS preferred) knowledge.
Prior experience with software scanning/static code analysis (e.g. Fortify, SonarQube)
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s