Skip to content

Open nowPosted today

Sr. Information System Security Manager (ISSM)

PAE1,680 open roles

Where
US-FL-Palm Beach
Work mode
On site
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowSr. Information System Security Manager (ISSM)PAE · US-FL-Palm Beach
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on PAE's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.2% of postings close within 7 days. Measured by our own scanner across the market. PAE postings stay open a median of 5 days.

Share of postings closed within
  1. 1.8%1 day
  2. 3.8%3 days
  3. 8.2%7 days
  4. 15.2%14 days
  5. 34.2%30 days
This job: posted today

PAE median: 5 days open

The posting

Amentum currently has an opening for an Information Systems Security Manager (ISSM) to work in our Atlantic Undersea Test and Evaluation Center (AUTEC) office. This is a full-time on-site position with no remote capability working out of West Palm Beach, Florida.

The ISSM owns the cybersecurity posture of all contractor-operated information systems at AUTEC; including in West Palm Beach and on Andros Island, The Bahamas. The role leads each system through the DoD Risk Management Framework (RMF), keeps every Authorization to Operate (ATO) current, and is the contractor’s primary cybersecurity points of contact to the Government. The ISSM is accountable for systems spanning enterprise IT, range instrumentation and test-and-evaluation (T&E) systems, Platform IT (PIT) and operational technology supporting undersea testing.

Must be able to obtain and maintain a Secret U.S. Government Clearance. Note: U.S. Citizenship is required to obtain a Secret Clearance.

Duties and Responsibilities

Authorization and RMF

  • Lead all AUTEC systems through the six RMF steps under DoDI 8510.01, from categorization through authorization and continuous monitoring.
  • Build, maintain and submit authorization packages in eMASS: System Security Plan, security control traceability, risk assessments, POA&Ms and supporting artifacts.
  • Track ATO expiration dates and start reauthorization early enough that no system operates without a valid authorization.
  • Coordinate assessments with the Security Control Assessor (SCA) and Navy Qualified Validators, and close findings on schedule.
  • Assess the security impact of every proposed system change and serve as a voting member of the Configuration Control Board.

Continuous Monitoring and Vulnerability Management

  • Run the continuous monitoring program: scheduled ACAS/Tenable scans, STIG and SRG compliance checks, endpoint security (ESS) reporting and log review.
  • Track IAVM notices (IAVAs, IAVBs, TAs) and Navy cyber orders to closure, reporting compliance by the required dates.
  • Own the cybersecurity POA&M: accurate milestones, realistic dates and documented mitigations for every open weakness.
  • Prepare the site for Command Cyber Readiness/Operational Readiness inspections and other Government audits.

Incident Response and Reporting

  • Maintain the site incident response plan and lead the contractor response to cybersecurity incidents and spillages.
  • Report incidents to the Government ISSM and Navy cyber defense channels within required timelines.
  • Produce monthly cybersecurity status reports and brief program leadership and the Government on risk.

Program People and Policy

  • Supervise, task and develop ISSOs and cybersecurity technicians; verify each holds the DoD 8570/8140 qualification their work role requires.
  • Manage privileged access: DD Form 2875 (SAAR) processing, privileged user agreements and periodic access reviews.
  • Run cybersecurity awareness, removable media, and data-at-rest and data-in-transit controls for the site.
  • Write and maintain cybersecurity policies, standard procedures and continuity plans aligned with DoD, DoN and contract requirements.
  • Advise engineering and operations on secure design for new range, T&E and network capabilities, including Zero Trust alignment.

Other related duties as assigned.

Minimum Requirements

  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science or a related field.
  • At least 8 years of information assurance or cybersecurity experience, including at least 3 years as an ISSM or ISSO on DoD systems.
  • Hands-on experience taking DoD systems through RMF to an ATO, including authoring the SSP, POA&M and other package artifacts.
  • CISSP or CISM
  • Working proficiency in eMASS.
  • Experience applying DISA STIGs and SRGs, and managing vulnerability remediation with ACAS/Tenable.
  • Working knowledge of NIST SP 800-37, NIST SP 800-53, CNSSI 1253 and DoDI 8510.01.
  • Experience managing IAVM compliance and cybersecurity POA&Ms against Government deadlines.
  • Ability to occasionally travel, live and work on-site at AUTEC, Andros Island, a remote location, and to hold a valid U.S. passport and valid drivers license.
  • Must be able to obtain and maintain a Secret U.S. Government Clearance. Note: U.S. Citizenship is required to obtain a Secret Clearance.
  • Strong written and verbal communication, including briefing risk to Government leadership and auditors.

Preferred Requirements

Clearance and Education

  • Master's degree in Cybersecurity, Information Assurance or a related field.
  • Active Secret Clearance.

Certifications

  • CISSP-ISSMP or CISSP-ISSEP concentration.
  • CompTIA SecurityX (formerly CASP+), CISM or GIAC GSLC.
  • PMP or equivalent project management certification.

Navy and DoD Experience

  • Experience supporting NAVSEA, NUWC or another Navy warfare center, and working with the Navy AO and Navy Qualified Validators.
  • Prior ISSM duty on a Government-owned, contractor-operated (GOCO) site or a remote/OCONUS installation.
  • Experience leading a site through a Command Cyber Readiness or Operational Readiness inspection.
  • Experience with classified systems, including JSIG, DCSA DAAPM or SAP environments.

Technical Depth

  • Experience securing Platform IT, industrial control systems or range instrumentation and test-and-evaluation systems.
  • Experience with Splunk or another SIEM, Trellix ESS and Microsoft security tooling.
  • Familiarity with DoD Zero Trust strategy and capability roadmaps.
  • Experience with cybersecurity supply chain risk management and cloud authorizations (FedRAMP, DoD Cloud SRG).

Leadership

  • Experience supervising a cybersecurity team of three or more.
  • Experience writing cybersecurity procedures within a corporate business management system.

Compensation Details:

$125,000

The compensation range or hourly rate listed for this position is provided as a good-faith estimate of what the company intends to offer for this role at the time this posting was issued. Actual compensation may vary based on factors such as job responsibilities, education, experience, skills, internal equity, market data, applicable collective bargaining agreements, and relevant laws.

Benefits Overview:

Our health and welfare benefits are designed to support you and your priorities. Offerings include:

  • Health, dental, and vision insurance
  • Paid time off and holidays
  • Retirement benefits (including 401(k) matching)
  • Educational reimbursement
  • Parental leave
  • Employee stock purchase plan
  • Tax-saving options
  • Disability and life insurance
  • Pet insurance

Note: Benefits may vary based on employment type, location, and applicable agreements. Positions governed by a Collective Bargaining Agreement (CBA), the McNamara-O'Hara Service Contract Act (SCA), or other employment contracts may include different provisions/benefits.

Original Posting:

10/08/2026 - Until Filled

Amentum anticipates this job requisition will remain open for at least three days, with a closing date no earlier than three days after the original posting. This timeline may change based on business needs.

Amentum is proud to be an Equal Opportunity Employer. Our hiring practices provide equal opportunity for employment without regard to race, sex, sexual orientation, pregnancy (including pregnancy, childbirth, breastfeeding, or medical conditions related to pregnancy, childbirth, or breastfeeding), age, ancestry, United States military or veteran status, color, religion, creed, marital or domestic partner status, medical condition, genetic information, national origin, citizenship status, low-income status, or mental or physical disability so long as the essential functions of the job can be performed with or without reasonable accommodation, or any other protected category under federal, state, or local law. Learn more about your rights under Federal laws and supplemental language at Labor Laws Posters.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against PAE's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on PAE's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    PAE's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.