1

Issm Security Jobs in Pennsylvania (NOW HIRING)

next page

Showing results 1-20

Issm Security information

See Pennsylvania salary details

$12

$20

$33

How much do issm security jobs pay per hour?

As of Aug 31, 2026, the average hourly pay for issm security in Pennsylvania is $20.49, according to ZipRecruiter salary data. Most workers in this role earn between $16.88 and $21.44 per hour, depending on experience, location, and employer.

What is an ISSM Security professional?

An ISSM (Information System Security Manager) Security professional is responsible for overseeing and managing the security of information systems within an organization. Their role includes developing, implementing, and enforcing security policies, ensuring compliance with regulatory requirements, and managing risk assessments. ISSMs also coordinate security training, respond to incidents, and work to maintain the confidentiality, integrity, and availability of organizational data. They often act as a liaison between technical teams and management to ensure robust cybersecurity practices are in place.

What are the key skills and qualifications needed to thrive as an ISSM Security professional?

To thrive as an Information Systems Security Manager (ISSM), you need a deep understanding of cybersecurity principles, risk management, and compliance frameworks, typically supported by a bachelor’s degree in IT or cybersecurity and relevant certifications like CISSP or CISM. Familiarity with security tools such as SIEM systems, vulnerability assessment platforms, and government compliance systems like RMF is essential. Strong leadership, analytical thinking, and effective communication skills help you coordinate security initiatives and policies across teams. These competencies are crucial for safeguarding organizational assets, ensuring regulatory compliance, and proactively mitigating security threats.

What are some common challenges faced by an ISSM Security professional in maintaining compliance across multiple projects?

ISSM Security professionals often manage compliance for several projects simultaneously, each with unique requirements and stakeholders. A common challenge is keeping up-to-date with evolving regulations and ensuring all teams adhere to security policies. Effective communication and regular training are essential to align project teams, while detailed documentation helps track compliance. Leveraging automated tools for monitoring and reporting can also streamline the process and reduce the risk of oversight.

What is the difference between Issm Security vs Cybersecurity Analyst?

AspectIssm SecurityCybersecurity Analyst
CertificationsSecurity+, CISSP, CISMSecurity+, CEH, CISSP (preferred)
Work EnvironmentGovernment agencies, defense contractors, militaryPrivate companies, IT firms, corporate environments
Employer & IndustryDefense, government, militaryTechnology, finance, healthcare

Issm Security professionals focus on managing and implementing security systems within government and defense sectors, often requiring specific certifications and clearance. Cybersecurity Analysts work across various industries, analyzing security threats and vulnerabilities in corporate IT environments. While both roles require security certifications, Issm Security roles are more specialized for government and military settings, whereas Cybersecurity Analysts have broader industry applications.

Infographic showing various Issm Security job openings in Pennsylvania as of August 2026, with employment types broken down into 90% Full Time, 8% Part Time, and 2% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $42,622 per year, or $20.5 per hour.

(603) Information System Security Officer (ISSO) III

Philadelphia, PA

Arlo Solutions LLC
IT Services • 1 - 10 employees

Full-time

Re-posted 25 days ago


Job description

Position Description: The Information System Security Officer (ISSO) III will support Naval Surface Warfare Center Philadelphia Division (NSWCPD) as a contractor through Arlo Solutions, serving as a key cybersecurity professional for NSWCPD Code 104. This key personnel position is responsible for coordinating cybersecurity processes and activities for assigned systems, ensuring compliance with all applicable policies, and managing security controls implementation throughout the Risk Management Framework (RMF) lifecycle.


Location: 
 Philadelphia, PA

Clearance:  Active Secret


Responsibilities and/or Success Factors:

Cybersecurity Compliance and Policy Implementation

  •  Assist the Information System Security Managers (ISSM) in executing their duties and responsibilities
  • Ensure compliance with all NAVSEA, DON, and DoD cybersecurity policies 
  • Ensure relevant cybersecurity policy and procedural documentation is current and accessible 
  • Coordinate cybersecurity processes and activities for assigned systems 
  • Report changes in system security posture to the ISSM Security Assessment and Authorization (A&A) Management 
  • Maintain and report Assess Only (AO) and Assessment and Authorization (A&A) status to Program Managers, Information System Owners, and ISSMs
  • Provide oversight of Security Plans for assigned systems throughout their lifecycle 
  • Manage and maintain Plan of Actions and Milestones (POA&M), tracking vulnerabilities through remediation 
  • Assist with identification of security control baselines and applicable overlays 
  • Coordinate the validation of security controls with Navy Qualified Validators (NQV) 
  • Perform Risk Management Framework (RMF) Standard Operating Procedure (SOP) reviews 
  • Adjudicate findings from Package Submitting Officer (PSO) System Security Management
  • Register and maintain systems in Enterprise Mission Assurance Support Service (eMASS) 
  • Plan and coordinate security control testing during Risk Assessments and Annual Security Reviews 
  • Maintain vulnerability data in Vulnerability Remediation Asset Manager (VRAM) 
  • Participate in change control and configuration management processes 
  • Ensure execution of Continuous Monitoring requirements as defined in system strategies 
  • Review all data produced by Continuous Monitoring activities and update eMASS records as necessary 
  • Correlate findings from non-RMF vulnerability assessments to RMF controls for holistic risk assessment Cybersecurity Analysis and Reporting 
  • Perform analysis of logs, events, and reporting from various data collection tools 
  • Assess impacts from observed risks and report via the Cybersecurity Program chain of command 
  • Present data to management in a comprehensive and cohesive manner 
  • Develop reports and produce procedural documentation as required 
  • Evaluate system administrator, security engineer, and/or system owner proposed corrections


Minimum Qualifications Including Certificates:

  • Must be a U.S. Citizen 
  • Active Secret security clearance 
  • Bachelor's degree in computer science, information technology, communications systems management, or equivalent STEM degree from an accredited college or university 
  • Minimum 6 years of experience coordinating and implementing security changes, ensuring compliance with published policies, conducting cybersecurity vulnerability and threat analysis, and supporting cyber incident response 
  • Current IAM-II certification (CAP, CASP+ CE, CISM, CISSP, GSLC, CCISO, or HCISPP)


Desired Qualifications: 

  • Experience with the DoD Information Assessment and Authorization (A&A) process 
  • Familiarity with Risk Management Framework (RMF) implementation 
  • Proficiency with eMASS, VRAM, and other DoD cybersecurity systems 
  • Experience with NIST Special Publications and DoD/Navy cybersecurity directives 
  • Experience with vulnerability management tools (ACAS, HBSS, etc.) 
  • Knowledge of Security Technical Implementation Guides (STIGs) and Security Requirements Guides (SRGs)