1

Issm Jobs in Illinois (NOW HIRING)

IL · On-site

Develop and maintain RMF artifacts in eMASS with the Government ISSM, SCAR, and Security Control Assessor to obtain and maintain the network's Authority to Operate. * Manage the IT investment record ...

next page

Showing results 1-20

Issm information

See Illinois salary details

$44.6K

$114.7K

$178.8K

How much do issm jobs pay per year?

As of Sep 1, 2026, the average yearly pay for issm in Illinois is $114,662.00, according to ZipRecruiter salary data. Most workers in this role earn between $92,100.00 and $133,700.00 per year, depending on experience, location, and employer.

What is an ISSM?

An Information Systems Security Manager (ISSM) is responsible for overseeing and implementing cybersecurity policies for an organization's information systems. They ensure compliance with security standards, manage risk assessments, and coordinate with security teams to protect sensitive data. ISSMs work closely with IT and leadership to develop and enforce security strategies that align with regulatory requirements.

What are the typical daily responsibilities of an Information System Security Manager (ISSM)?

An ISSM’s daily responsibilities often include overseeing the implementation and monitoring of security controls, performing regular risk assessments, and ensuring compliance with relevant security policies and regulations. You may also coordinate incident response efforts, review system access logs, and provide guidance to IT staff on best practices. Additionally, ISSMs frequently interact with auditors, senior management, and cross-functional teams to report on security findings and advise on system improvements. This role requires staying current with emerging threats and adapting security strategies to protect organizational assets effectively.

What are the key skills and qualifications needed to thrive in the ISSM position, and why are they important?

To excel as an Information System Security Manager (ISSM), you need a strong background in information security, risk management, and compliance, typically supported by a degree in cybersecurity, computer science, or a related field. Familiarity with security frameworks (such as NIST or ISO 27001), vulnerability assessment tools, and certifications like CISSP or CISM are commonly required. Leadership, attention to detail, and effective communication are important soft skills for managing security teams and collaborating across departments. These skills help ensure organizational data is protected, compliance standards are met, and business operations remain secure.

What is the role of the ISSM?

An ISSM (Information Systems Security Manager) is responsible for developing, implementing, and maintaining an organization's information security program. They oversee security policies, manage risk assessments, and ensure compliance with security standards such as NIST or ISO 27001. The role often requires certifications like CISSP and involves coordinating security efforts across technical and management teams.

What job categories do people searching Issm jobs in Illinois look for?

The top searched job categories for Issm jobs in Illinois are:

Infographic showing various Issm job openings in Illinois as of August 2026, with employment types broken down into 76% Full Time, 22% Part Time, and 2% Contract. Highlights an 91% Physical, 4% Hybrid, and 5% Remote job distribution, with an average salary of $114,662 per year, or $55.1 per hour.

Information Assurance (IA) Manager with Security Clearance

GCyber

Scott Air Force Base, IL • On-site

Other

Posted 20 days ago


Job description

GCyber is hiring an Information Assurance Manager to support a high-profile Air Force network program. The Information Assurance Manager runs the vulnerability management program, processes USCYBERCOM and Air Force cyber orders, and maintains the artifacts that support the network's Authority to Operate (ATO). This position is full time onsite at Scott AFB, IL. Given the classified nature of the work, there is no opportunity for hybrid or remote work. This position is contingent upon contract award. As the Information Assurance Manager, you will: * Manage the Information Assurance Vulnerability Management (IAVM) program across three operational sites and a systems integration lab. * Receive and process USCYBERCOM and Air Force cyber orders, including TASKORDs, OPORDs, CTOs, TCNOs, MTOs, Cyber NOTAMs, and SPINs; determine what applies to the network and track mitigation to completion. * Run weekly vulnerability scans with ACAS, track remediation, and provide the recurring security compliance report to the Government ISSM and engineers. * Maintain compliance reporting in DISA VMS and CMRS and in the Air Force AFNETOPS Compliance Tracker. * Develop and maintain RMF artifacts in eMASS with the Government ISSM, SCAR, and Security Control Assessor to obtain and maintain the network's Authority to Operate. * Manage the IT investment record in ITIPS in accordance with Air Force policy. * Perform first responder scans, network defense incident reporting, and post-notification investigation. * Advise the Program Manager, Government engineers, COR, ISSM, and ISSO on RMF and cybersecurity compliance. Minimum Qualifications and Experience: * Active DoD SECRET clearance * ISC2 Certified Information Systems Security Professional (CISSP) * DoD 8140/8570 IAM Level II certification. * BA/BS and 7+ years of DoD information assurance or cybersecurity compliance experience. Additional experience may be considered in lieu of degree. * Hands-on ACAS (Tenable/Nessus) scanning, analysis, and remediation tracking. * Experience developing eMASS artifacts and maintaining an ATO package. * Experience processing DoD cyber orders and reporting compliance through VMS, CMRS, or ACT. Preferred Skills & Experience * Experience taking a system through a full ATO reauthorization. * Experience managing an ITIPS record under DAFI 17-100. * Familiarity with Air Force cybersecurity service providers, including AFNOC/NOD, 26 NOG Det 2, and AFCERT. * Experience automating STIG compliance and vulnerability reporting.