1

Information System Security Manager Jobs in Virginia

next page

Showing results 1-20

Information System Security Manager information

See Virginia salary details

$62K

$134.9K

$198.3K

How much do information system security manager jobs pay per year?

As of Sep 10, 2026, the average yearly pay for information system security manager in Virginia is $134,937.00, according to ZipRecruiter salary data. Most workers in this role earn between $109,600.00 and $159,100.00 per year, depending on experience, location, and employer.

What does an information system security manager do?

An Information System Security Manager (ISSM) is responsible for overseeing the security of an organization’s information systems. They develop and enforce policies, procedures, and protocols to protect sensitive data from cyber threats and unauthorized access. ISSMs also ensure compliance with relevant laws and regulations, conduct risk assessments, and respond to security incidents. Their duties often involve managing security teams, coordinating with IT departments, and staying updated on the latest cybersecurity trends.

What are the key skills and qualifications needed to thrive as an information system security manager?

To thrive as an Information System Security Manager, you need expertise in cybersecurity principles, risk management, and regulatory compliance, typically backed by a degree in information technology or a related field and relevant certifications like CISSP or CISM. Familiarity with security frameworks (e.g., NIST, ISO 27001), intrusion detection systems, and security information and event management (SIEM) tools is essential. Strong leadership, analytical thinking, and communication skills distinguish top performers in this role. These competencies are vital to effectively safeguard organizational data, lead security teams, and ensure compliance with evolving security standards.

What are some common challenges information system security managers face when balancing security and business objectives?

Information System Security Managers often encounter the challenge of aligning robust security protocols with the organization's operational needs. Balancing security requirements with user convenience and business agility can be difficult, as stringent controls may impact productivity or customer experience. Effective managers work closely with other departments to ensure security measures support, rather than hinder, business goals, requiring strong communication and negotiation skills. Staying current with evolving threats while supporting organizational growth is also an ongoing challenge in this role.

What is the difference between Information System Security Manager vs Security Analyst?

AspectInformation System Security ManagerSecurity Analyst
CertificationsCISSP, CISM, Security+Security+, CEH, CISSP (preferred)
Work EnvironmentOversees security policies, manages teams, strategic planningMonitors security systems, analyzes threats, implements security measures
Employer & Industry UsageOrganizations with complex security needs, IT departmentsSecurity teams, cybersecurity firms, IT departments

The main difference is that the Information System Security Manager focuses on managing security strategies and teams, while the Security Analyst primarily monitors and analyzes security threats. Both roles require similar certifications and work within the cybersecurity field, but their responsibilities and scope differ significantly.

What cities in Virginia are hiring for Information System Security Manager jobs?

Cities in Virginia with the most Information System Security Manager job openings:

Infographic showing various Information System Security Manager job openings in Virginia as of August 2026, with employment types broken down into 1% As Needed, 69% Full Time, 28% Part Time, and 2% Contract. Highlights an 93% Physical, 3% Hybrid, and 4% Remote job distribution, with an average salary of $134,937 per year, or $64.9 per hour.

Information System Security Manager (ISSM)

Lorton, VA • On-site

Leidos
IT Services • 10K+ employees

Full-time

Re-posted 22 hours ago


Leidos rating

8.3

Company rating: 8.3 out of 10

Based on 153 frontline employees who took The Breakroom Quiz


Job description

The Defense Sector at Leidos is looking for an Information System Security Manager (ISSM) to support a fast-paced program with the Air Force Life Cycle Management Center. This role involves supporting the delivery of comprehensive IT and support services to ensure mission success while adhering to DoD standards and regulations. The ISSM will oversee the cybersecurity posture of DoD information systems, ensuring compliance with DoD security standards and protecting sensitive data. The ISSM will develop and implement security policies, conduct risk assessments, manage system accreditations (RMF), and lead continuous monitoring efforts. This role requires collaboration with cross-functional teams and program stakeholders to enforce security controls and manage continuous monitoring. The ISSM will also maintain security documentation and ensure ongoing compliance with applicable regulations.
This position will require 100% on-site work with no remote work supported.
Primary Responsibilities:
  • Act as the Subject Matter Expert (SME) on cybersecurity compliance / information assurance.
  • Collaborate daily with assigned ISSOs and Cyber Security Engineers to execute the continuous monitoring process with full system observability.
  • Manage the operational cybersecurity posture of assigned networks through coordination with NOC/SOC and Cloud Teams.
  • Facilitate approval process for Authorization to Operate (ATO), Authority to Extend (ATE), Authorization to Connect (ATC), and Interconnection Security Agreements (ISA), working with the customer and stakeholders to submit body of evidence artifacts and receive SCA/AO endorsement.
  • Develop, implement, and maintain security policies, procedures, and documentation to ensure compliance with DoD security standards and regulations (e.g., NIST, RMF, FISMA).
  • Oversee the security posture of DoD information systems, ensuring they meet cybersecurity requirements for confidentiality, integrity, and availability.
  • Perform risk assessments, vulnerability assessments, and security audits to identify system vulnerabilities and provide remediation strategies.
  • Manage and conduct continuous monitoring of security controls, ensuring the protection of classified and unclassified data.
  • Coordinate with cross-functional teams (engineering, IT, operations) to implement and enforce security protocols and best practices.
  • Ensure the accreditation process for DoD systems (e.g., RMF accreditation) is completed and maintained in compliance with all applicable requirements.
  • Act as the primary point of contact for security-related issues, coordinating incident response and reporting to senior management and government customers.
  • Provide security training and awareness programs for personnel involved in the operation of DoD systems.
  • Maintain and track security documentation, including system security plans (SSPs), risk assessments, and Plan of Actions & Milestones (POA&Ms).
  • Stay current with emerging cybersecurity threats, vulnerabilities, and trends to ensure the program adapts to evolving security challenges.

Basic Qualifications:
  • US Citizen with an active Top Secret clearance and the ability to obtain a SCI prior to your start date.
  • Bachelor's Degree with 8+ years of experience or Master's degree with 6+ years of experience. Additional experience may be considered in lieu of a degree.
  • CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), or similar cybersecurity certification.
  • In-depth knowledge of DoD cybersecurity policies, frameworks, and compliance standards (e.g., NIST 800-53, RMF, FISMA, ICD 503, JSIG).
  • In-depth experience with cloud computing and building/maintaining an ATO for cloud-based information systems
  • Experience with system security engineering, risk management, and vulnerability assessments.
  • Strong understanding of cloud security, network security, security controls, and common cybersecurity tools (e.g., firewalls, IDS/IPS, SIEM, endpoint protection).
  • Ability to work independently and collaborate effectively with cross-functional teams.
  • Strong communication skills, including the ability to create and present detailed security reports to stakeholders.

Preferred Qualifications:
  • US Citizen with an active TS/SCI security clearance.
  • Experience in managing security for complex DoD programs or mission-critical systems.
  • Experience with security tools for vulnerability scanning, penetration testing, and security auditing.
  • Advanced security certifications (e.g., CISA, CEH, CSSP, etc.).
  • Experience with configuration management and change management processes in a secure environment.
  • Experience with automation and the continuous ATO (cATO) process.
  • Cloud security certifications (e.g. Azure Security Technologies or AWS Certified Security Specialty).

DABAOPP1
If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 - and moving faster than anyone else dares.
Original Posting:
August 11, 2026
For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.
Pay Range:
Pay Range $107,900.00 - $195,050.00
The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

What Leidos employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Leidos logo

About Leidos

Sourced by ZipRecruiter

At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers' success. We empower our teams, contribute to our communities, and operate sustainable practices. Everything we do is built on a commitment to do the right thing for our customers, our people, and our community.

Industry

It services

Company size

10,000+ Employees

Headquarters location

Reston, VA, US

Social media