Information System Security Manager (ISSM) - TS/SCI Information System Security Manager (ISSM) - TS/SCI AWS Cloud / RMF Location: Arlington, VA - Onsite Clearance Required: Active TS/SCI Employment ...
Information System Security Manager (ISSM) - TS/SCI Information System Security Manager (ISSM) - TS/SCI AWS Cloud / RMF Location: Arlington, VA - Onsite Clearance Required: Active TS/SCI Employment ...
The Defense Sector at Leidos is looking for an Information System Security Manager (ISSM) to ... Azure Security Technologies or AWS Certified Security Specialty). If you're looking for comfort ...
The Defense Sector at Leidos is looking for an Information System Security Manager (ISSM) to ... Azure Security Technologies or AWS Certified Security Specialty). If you're looking for comfort ...
Information System Security Manager
Silver Spring, MD ยท On-site
$112/hr
Perform Information System Security Manager (ISSM) roles and responsibilities as prescribed by the DAAG, JSIG, ICD-503, and other applicable regulations. * Create, manage, and maintain RMF Package ...
Information System Security Manager
Silver Spring, MD ยท On-site
$112/hr
Perform Information System Security Manager (ISSM) roles and responsibilities as prescribed by the DAAG, JSIG, ICD-503, and other applicable regulations. * Create, manage, and maintain RMF Package ...
... an Information Systems Security Manager. The candidate will be supporting a Cyber Compliance Team providing ISSM-Basic support for tactical systems. The person will be a key member of a team ...
... an Information Systems Security Manager. The candidate will be supporting a Cyber Compliance Team providing ISSM-Basic support for tactical systems. The person will be a key member of a team ...
Manage and oversee the security posture of all information systems. Implement and enforce security policies, procedures, and best practices to ensure system integrity and confidentiality. * Lead the ...
Manage and oversee the security posture of all information systems. Implement and enforce security policies, procedures, and best practices to ensure system integrity and confidentiality. * Lead the ...
Information System Security Manager
Washington, DC ยท On-site
$146K - $234K/yr
Manage and oversee the security posture of all information systems. Implement and enforce security policies, procedures, and best practices to ensure system integrity and confidentiality. * Lead the ...
Information System Security Manager
Washington, DC ยท On-site
$146K - $234K/yr
Manage and oversee the security posture of all information systems. Implement and enforce security policies, procedures, and best practices to ensure system integrity and confidentiality. * Lead the ...
Manage and oversee the security posture of all information systems. Implement and enforce security policies, procedures, and best practices to ensure system integrity and confidentiality. * Lead the ...
Manage and oversee the security posture of all information systems. Implement and enforce security policies, procedures, and best practices to ensure system integrity and confidentiality. * Lead the ...
Information System Security Manager
Philadelphia, PA ยท On-site
$95K - $130K/yr
Red Peak Technical Services, LLC a subsidiary of Alutiiq, LLC is looking for an experienced Information Systems Security Manager to support a mission critical contract at the Naval Surface Warfare ...
Information System Security Manager
Philadelphia, PA ยท On-site
$95K - $130K/yr
Red Peak Technical Services, LLC a subsidiary of Alutiiq, LLC is looking for an experienced Information Systems Security Manager to support a mission critical contract at the Naval Surface Warfare ...
SIPRNet Information System Security Manager
King Of Prussia, PA ยท On-site
$118K - $219K/yr
The work that ourSIPRNet Information System Security Managers (ISSMs)do can be summarized in this way: You will have the opportunity to engage in all aspects of the cyber discipline. It's really a ...
SIPRNet Information System Security Manager
King Of Prussia, PA ยท On-site
$118K - $219K/yr
The work that ourSIPRNet Information System Security Managers (ISSMs)do can be summarized in this way: You will have the opportunity to engage in all aspects of the cyber discipline. It's really a ...
About the Role The Information System Security Manager (ISSM) is responsible for applying Information System (IS) security principles, practices, and procedures under the Risk Management Framework ...
About the Role The Information System Security Manager (ISSM) is responsible for applying Information System (IS) security principles, practices, and procedures under the Risk Management Framework ...
Advise senior management (e.g., CIO) on cost/benefit analysis of information security programs, policies, processes, systems, and elements. * Advise appropriate senior leadership or Authorizing ...
Advise senior management (e.g., CIO) on cost/benefit analysis of information security programs, policies, processes, systems, and elements. * Advise appropriate senior leadership or Authorizing ...
Information System Security Manager Job Category: Security Time Type: Full time Minimum Clearance Required to Start: TS/SCI with Polygraph Employee Type: Regular Percentage of Travel Required: Up to ...
Information System Security Manager Job Category: Security Time Type: Full time Minimum Clearance Required to Start: TS/SCI with Polygraph Employee Type: Regular Percentage of Travel Required: Up to ...
Information System Security Manager
Maple Grove, MN ยท On-site
$100K - $130K/yr
About the Role The Information System Security Manager (ISSM) is responsible for applying Information System (IS) security principles, practices, and procedures under the Risk Management Framework ...
Information System Security Manager
Maple Grove, MN ยท On-site
$100K - $130K/yr
About the Role The Information System Security Manager (ISSM) is responsible for applying Information System (IS) security principles, practices, and procedures under the Risk Management Framework ...
Possess a strong understanding of cybersecurity principles, information system security, vulnerability management, access controls, system authorization, and security architecture. You can translate ...
Possess a strong understanding of cybersecurity principles, information system security, vulnerability management, access controls, system authorization, and security architecture. You can translate ...
Serve as the formally appointed Information Systems Security Manager (ISSM) for up to four contractor-managed Information Systems (including RPA Low, ACN, Audio MLS, and RPA High), overseeing the ...
Serve as the formally appointed Information Systems Security Manager (ISSM) for up to four contractor-managed Information Systems (including RPA Low, ACN, Audio MLS, and RPA High), overseeing the ...
Possess a strong understanding of cybersecurity principles, information system security, vulnerability management, access controls, system authorization, and security architecture. You can translate ...
Quick apply
Possess a strong understanding of cybersecurity principles, information system security, vulnerability management, access controls, system authorization, and security architecture. You can translate ...
Advise senior management (e.g., CIO) on cost/benefit analysis of information security programs, policies, processes, systems, and elements. * Advise appropriate senior leadership or Authorizing ...
Advise senior management (e.g., CIO) on cost/benefit analysis of information security programs, policies, processes, systems, and elements. * Advise appropriate senior leadership or Authorizing ...
The Information System Security Manager (ISSM) will oversee the cybersecurity posture of systems, ensuring compliance with the Risk Management Framework (RMF) and collaborating with various ...
The Information System Security Manager (ISSM) will oversee the cybersecurity posture of systems, ensuring compliance with the Risk Management Framework (RMF) and collaborating with various ...
Information System Security Manager Location - Anchorage, AK The Essential Duties and Responsibilities are intended to present a descriptive list of the range of duties performed for this position ...
Information System Security Manager Location - Anchorage, AK The Essential Duties and Responsibilities are intended to present a descriptive list of the range of duties performed for this position ...
Job Type Full-time Description Information System Security Manager (ISSM) We are seeking an experienced Information System Security Manager (ISSM) to lead cybersecurity oversight for assigned systems ...
Job Type Full-time Description Information System Security Manager (ISSM) We are seeking an experienced Information System Security Manager (ISSM) to lead cybersecurity oversight for assigned systems ...
Aws Information System Security Manager information
See salary details
$62.5K - $75K
3% of jobs
$75K - $87.5K
5% of jobs
$87.5K - $100K
10% of jobs
$109.8K is the 25th percentile. Wages below this are outliers.
$100K - $112.5K
9% of jobs
$112.5K - $125K
13% of jobs
The median wage is $133.5K / yr.
$125K - $137.5K
15% of jobs
$137.5K - $150K
13% of jobs
$156.5K is the 75th percentile. Wages above this are outliers.
$150K - $162.5K
14% of jobs
$162.5K - $175K
12% of jobs
$175K - $187.5K
6% of jobs
$187.5K - $200K
0% of jobs
$62.5K
$136.1K
$200K
How much do aws information system security manager jobs pay per year?
What are popular job titles related to Aws Information System Security Manager jobs?
For Aws Information System Security Manager jobs, the most frequently searched job titles are:

Information System Security Manager (ISSM) - TS/SCI
Arlington, VA โข On-site
Other
Medical, Dental, Vision, Life, Retirement, PTO
Posted 10 days ago
Job description
Information System Security Manager (ISSM) โ TS/SCI
AWS Cloud / RMF
Location: Arlington, VA โ Onsite
Clearance Required: Active TS/SCI
Employment Type: Full-Time
ABOUT SBS
Strategic Business Systems, Inc. (SBS) delivers AWS-aligned mission-critical cloud, cybersecurity, software engineering, and data modernization solutions to the U.S. Department of Defense, Intelligence Community, and federal civilian agencies.
We hire engineers, architects, cybersecurity professionals, and consultants who want to perform handsโon work supporting high-impact nationalโsecurity programs while collaborating directly with AWS Professional Services and Federal customers. Our culture is technical, lean, and clearanceโfocused, with an emphasis on professional development, certifications, and longโterm customer engagements.
POSITION OVERVIEW
SBS is seeking an experienced Information System Security Manager (ISSM) to lead cybersecurity, Risk Management Framework (RMF), and authorization activities supporting Amazon Web Services (AWS) Federal customers operating within highly secure and classified cloud environments.
The ISSM will provide overall security leadership and governance for assigned information systems and cloud environments, ensuring compliance with DoD, Intelligence Community, NIST, and customer cybersecurity requirements. This individual will oversee the development and maintenance of Authorization to Operate (ATO) packages, continuous monitoring programs, vulnerability and risk management activities, and security control implementation across multiple security domains.
The ISSM will serve as a primary cybersecurity interface between customer security leadership, Authorizing Officials and their representatives, ISSOs, ISSEs, cloud engineers, architects, and program leadership.
The ideal candidate combines deep knowledge of RMF and NIST SP 800-53 with experience securing AWS cloud environments and has demonstrated the ability to lead systems through initial authorization and ongoing continuous monitoring.
Security Program Leadership- Serve as the primary ISSM for assigned information systems and AWS cloud environments.
- Provide cybersecurity leadership, governance, and oversight throughout the system lifecycle.
- Lead and mentor ISSOs and coordinate activities across security, engineering, architecture, and operations teams.
- Establish and maintain system cybersecurity policies, procedures, and security documentation.
- Advise program leadership and customer stakeholders regarding cybersecurity risk, compliance status, and authorization strategy.
- Ensure security requirements are incorporated into system architecture, engineering, deployment, and operations.
- Lead the complete RMF lifecycle in accordance with DoDI 8510.01, NIST SP 800-37, and NIST SP 800-53 Rev. 5.
- Develop and manage strategies for obtaining and maintaining IATTs and ATOs.
- Oversee development and maintenance of:
- System Security Plans (SSPs)
- Security Control Family Plans
- Security Assessment documentation
- Control Implementation Statements
- Plans of Action & Milestones (POA&Ms)
- Continuous Monitoring documentation
- Risk assessments and authorization artifacts
- Coordinate security control assessments and authorization reviews with customer security organizations and Authorizing Officials.
- Track authorization conditions, findings, vulnerabilities, and POA&M items through closure.
- Maintain system authorization packages within eMASS, Xacta, Keyhole, or equivalent GRC platforms.
- Provide security oversight for AWS environments supporting IL2, IL4, Secret, and Top Secret workloads.
- Assess AWS cloud architectures against applicable NIST and DoD security controls.
- Partner with cloud architects and engineers to implement secure AWS architectures and services.
- Provide oversight and guidance for AWS-native security capabilities including:
- AWS Security Hub
- Amazon GuardDuty
- AWS Config
- AWS Identity and Access Management (IAM)
- AWS CloudTrail
- AWS Organizations
- Service Control Policies (SCPs)
- AWS Key Management Service (KMS)
- Review proposed architecture and system changes for cybersecurity and authorization impacts.
- Support implementation of security controls within AWS Landing Zones and multiโaccount environments.
- Develop and oversee system Continuous Monitoring (ConMon) strategies.
- Review vulnerability assessments, security scans, and compliance findings.
- Establish priorities and timelines for vulnerability remediation based on mission and security risk.
- Oversee POA&M development, management, and closure.
- Coordinate remediation activities with engineering and operations teams.
- Monitor security posture using AWSโnative and thirdโparty security platforms.
- Support security tools and environments including:
- ACAS
- Palo Alto
- Elastic
- AWS Security Hub
- AWS Config
- GuardDuty
- Ensure required vulnerability, configuration, and compliance reporting is completed accurately and on schedule.
- Ensure systems remain compliant with applicable:
- DoD cybersecurity requirements
- NIST SP 800โ53
- DISA STIGs
- DoD Cloud Computing Security Requirements Guide (SRG)
- Customerโspecific security policies
- Support cybersecurity inspections, audits, assessments, and authorization activities.
- Identify security risks and provide mitigation recommendations to program and customer leadership.
- Review significant system changes and determine potential impacts to system authorization.
- Promote automation of security controls, evidence collection, compliance monitoring, and reporting where practical.
- Partner with customer security leadership, Authorizing Officials, SCA teams, ISSOs, ISSEs, cloud architects, DevSecOps engineers, and program management.
- Provide cybersecurity guidance throughout system design and implementation.
- Participate in technical and architecture reviews.
- Communicate cybersecurity risks and compliance issues to both technical and nonโtechnical stakeholders.
- Provide leadership during security assessments, audits, and authorization reviews.
- Active TS/SCI security clearance.
- 7+ years of Information Assurance, Cybersecurity, Information System Security, or related experience.
- 3+ years supporting RMF and NIST SP 800โ53 within DoD, Intelligence Community, or Federal environments.
- Previous experience serving as an ISSM, senior ISSO, Information System Security Engineer (ISSE), or equivalent cybersecurity lead.
- Demonstrated experience leading systems through the RMF authorization process and obtaining/maintaining ATOs.
- Experience developing and reviewing complete authorization packages including SSPs, POA&Ms, security controls, risk assessments, and continuous monitoring documentation.
- Experience managing or providing security oversight for AWS cloud environments.
- Strong knowledge of NIST SP 800โ53 security controls and RMF requirements.
- Experience with vulnerability management, security assessments, and compliance activities.
- Ability to work directly with technical engineering teams and customer cybersecurity leadership.
- Strong written and verbal communication skills.
- Experience supporting DoD or Intelligence Community classified cloud environments.
- Experience with AWS environments supporting IL4, IL5, Secret, or Top Secret workloads.
- Experience with eMASS, Xacta, Keyhole, or equivalent GRC platforms.
- Familiarity with AWS Landing Zone Accelerator (LZA).
- Experience implementing Zero Trust security principles.
- Experience integrating cybersecurity requirements into DevSecOps and Infrastructure-as-Code environments.
- Experience with automated security compliance and continuous monitoring.
- Knowledge of DISA STIGs and the DoD Cloud Computing SRG.
- DoD 8570/8140 IAM Level III or equivalent certification.
- CISSP
- CISM
- CAP / CGRC
- CASP+ / SecurityX
- CCSP
- AWS Certified Security โ Specialty
- Strong leadership and cybersecurity programโmanagement capabilities.
- Excellent technical writing and documentation skills.
- Ability to communicate cybersecurity risk to technical teams, program leadership, and government customers.
- Strong analytical, troubleshooting, and riskโmanagement skills.
- Ability to operate independently within classified environments.
- Experience supporting highly regulated DoD, Intelligence Community, or Federal customers.
- Ability to balance mission requirements with cybersecurity and compliance requirements.
SBS is a trusted technology and cybersecurity partner supporting federal agencies, the Department of Defense, Intelligence Community, and leading commercial technology companies.
Our ATOaaS offering is designed to solve a significant challenge for technology providers: navigating the complex security and authorization requirements necessary to bring commercial technologies into government environments.
Youโll be part of a team that:
- Works directly with innovative technology companies and government customers
- Helps accelerate the delivery of new technologies into DoD and Intelligence Community environments
- Works across cloud security, ATO, RMF, vulnerability management, and continuous monitoring
- Provides handsโon guidance throughout the authorization lifecycle
- Has direct impact on getting new technology into the hands of government and military users
COMPENSATION & BENEFITS
SBS offers a comprehensive totalโrewards package, including a market competitive salary along with:
- Comprehensive medical, dental, and vision coverage; HSAโeligible plan options available
- 401(k) retirement plan with company match (vesting schedule per Plan Document)
- Paid Time Off, federal holidays, and floating holiday for personal observance
- Annual professional development support for AWS certifications, training, and conferences
- Employee referral program where applicable and documented by program policy
- Life, AD&D, and shortโ / longโterm disability insurance
- Telework and flexibleโschedule support where mission and contract permit
- Missionโfocused federal contractor supporting nationalโsecurity customers
Target Salary Range: $160,000-220,000.This range reflects the anticipated compensation for this role. Actual salary will be based on a combination of factors, including the positionโs scope and level of responsibility, the candidateโs relevant experience, education, technical expertise, skills and qualifications, geographic location, and applicable business or contractual requirements.
Equal Employment Opportunity
SBS is an equal opportunity employer; all qualified applicants will receive consideration for employment without regard to age, gender, gender identity, sex, sexual orientation, color, race, creed, national origin, religion, marital status, parental status, citizenship status, ancestry, physical or mental disability, genetic information, veteran status, military status, or any other classification protected by federal, state, or local laws.
Accommodations
If you need an accommodation while seeking employment with SBS, please emailhr@sbsplanet.com. Accommodations are made on a caseโcase basis.
No Unsolicited Agency Referrals
SBS does not accept unsolicited resumes from staffing agencies. Any resumes submitted without a prior agreement will be considered the property of SBS.
About Strategic Business Systems
Sourced by ZipRecruiter
Industry
It services
Company size
51 - 200 Employees
Headquarters location
Chantilly, VA, US
Year founded
2000