Leidos Holdings Inc logo

Senior Information System Security Manager (ISSM)

Leidos Holdings Inc
  • Odenton, MD
  • $107,900–$195,050 Per Year
3 days ago
Leidos Holdings Inc

Job Description

Our customer, the Defense Information Systems Agency (DISA), provides, operates, and assures command and control of the Defense Information System Network (DISN) services to its customers, the department of Defense (DoD) and national security organizations. This position directly supports DISA-provided capabilities and services.

The Digital Sector at Leidos has an IMMEDIATE NEED for a Senior Information System Security Manager (ISSM) to support a fast-paced program with the Defense Information Systems Agency (DISA). This role involves supporting the delivery of specialized network and support services to ensure mission success while adhering to DoD standards and regulations. The ISSM will oversee the cybersecurity posture of DoD information systems, ensuring compliance with DoD security standards and protecting sensitive data. The ISSM will develop and implement security policies, conduct risk assessments, manage system accreditations (RMF), and lead continuous monitoring efforts. This role requires collaboration with cross-functional teams and program stakeholders to enforce security controls and manage continuous monitoring. The ISSM will also maintain security documentation and ensure ongoing compliance with applicable regulations.

Responsibilities:

  • Manage the Risk Management Framework (RMF) lifecycle for supported systems enabling the achievement and continued maintenance of Authority to Operate (ATO) accreditation.
  • Provide ISSM, FISMA, and certification and accreditation support for systems and associated components.
  • Conduct recurring assessments of security controls and documentation in eMASS and PPSM to verify continued accuracy, compliance, and readiness.
  • Manage whitelist records, address vulnerabilities identified through recurring IAVMS scans, and develop Plans of Action and Milestones (POA&Ms) when required.
  • Maintain eMASS control records and POA&Ms in accordance with ATO conditions, approval requirements, and remediation timelines.
  • Coordinate cybersecurity activities supporting interim and final authorization to test and operate, including assessments, mitigation planning, patch validation, implementation tracking, and status reporting.
  • Create and deliver cybersecurity test plans, test reports, implementation plans, security technical configuration documentation, vulnerability assessment reports, and authorization package materials.
  • Lead cybersecurity governance and reporting activities, including the development and maintenance of system architectures, requirements, security plans, protection plans, IAVA actions, and IA-related objectives.
  • Prepare program documentation, evidence, and briefings for DISA OAB reviews and support the team throughout the review process.

Core Qualifications:

  • Bachelor's Degree with 8+ years of experience or Master's degree with 6+ years of experience. Additional experience may be considered in lieu of a degree.
  • CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), or similar cybersecurity certification.
  • In-depth knowledge of DoD cybersecurity policies, frameworks, and compliance standards (e.g., NIST 800-53, RMF, FISMA, ICD 503, JSIG).
  • In-depth experience with network systems and building/maintaining an ATO for enterprise computing information systems.
  • Experience with system security engineering, risk management, and vulnerability assessments.
  • Strong understanding of network security, security controls, and common cybersecurity tools (e.g., firewalls, IDS/IPS, SIEM, endpoint protection).
  • Ability to work independently and collaborate effectively with cross-functional teams.
  • Strong communication skills, including the ability to create and present detailed security reports to stakeholders.
  • Clearance: US Secret clearance required

Preferred Qualifications:

  • Experience in managing security for complex DoD programs or mission-critical systems.
  • Experience with security tools for vulnerability scanning, penetration testing, and security auditing.
  • Advanced security certifications (e.g., CISA, CEH, CSSP, etc.).
  • Experience with configuration management and change management processes in a secure environment.
  • Experience with automation and the continuous ATO (cATO) process.

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 - and moving faster than anyone else dares.

Original Posting:

September 2, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:

Pay Range $107,900.00 - $195,050.00

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

Numbers & Facts

LocationOdenton, MD
IndustryComputer/IT Services
Salary$107,900–$195,050 Per Year
Company Size10,000 employees or more
Year Founded2013
Websitehttps://jobs.saic.com/

About Company

SAIC is a premier Fortune 500® technology integrator driving our nation's digital transformation. Our robust portfolio of offerings across the defense, space, civilian, and intelligence markets includes secure high-end solutions in engineering, IT modernization, and mission solutions. Using our expertise and understanding of existing and emerging technologies, we integrate the best components from our own portfolio and our partner ecosystem to deliver innovative, effective, and efficient solutions that are critical to achieving our customers' missions. We are a team of 26,000 strong driven by mission, united purpose, and inspired by opportunity. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $7.1 billion. For more information, visit saic.com.

Skills

  • Automationunmatched
  • CISA - Certified Information Systems Auditorunmatched
  • CISM - Certified Information Security Managerunmatched
  • CISSP - Certified Information Systems Security Professionalunmatched
  • Certification & Accreditation Process (C&A)unmatched
  • Change Managementunmatched
  • Communication Skillsunmatched
  • Computer Securityunmatched
  • Configuration Managementunmatched
  • Cross-Functionalunmatched
  • Customer Support/Serviceunmatched
  • Defense Information Systems Agency (DISA)unmatched
  • Document Managementunmatched
  • Documentationunmatched
  • Endpoint Securityunmatched
  • Enterprise Computingunmatched
  • FISMA - Federal Information Security Management Actunmatched
  • Firewallsunmatched
  • Functional Programming Languagesunmatched
  • Information Technology & Information Systemsunmatched
  • Information/Data Security (InfoSec)unmatched
  • International Classification of Diseases (ICD)unmatched
  • Internet Securityunmatched
  • Intrusion Detection Systemsunmatched
  • Intrusion Prevention Systemsunmatched
  • Legalunmatched
  • Maintain Complianceunmatched
  • Military/DoD Standardsunmatched
  • Network Securityunmatched
  • Network Supportunmatched
  • Network Systemsunmatched
  • Penetration Testingunmatched
  • Policy Implementationunmatched
  • Presentation/Verbal Skillsunmatched
  • Record Keepingunmatched
  • Records Managementunmatched
  • Regulationsunmatched
  • Regulatory Complianceunmatched
  • Risk Analysisunmatched
  • Risk Managementunmatched
  • Risk Management Framework (RMF)unmatched
  • Secret Clearanceunmatched
  • Security Analysisunmatched
  • Security Auditingunmatched
  • Security Complianceunmatched
  • Security Information and Event Management (SIEM)unmatched
  • Security Monitoringunmatched
  • Software Patchesunmatched
  • System Architectureunmatched
  • System Lifecycleunmatched
  • Systems Administration/Managementunmatched
  • Systems Engineeringunmatched
  • Systems Maintenanceunmatched
  • Technical Writingunmatched
  • Testingunmatched
  • U.S. National Institute of Standards and Technology (NIST)unmatched
  • United States Department of Defense (DoD)unmatched
  • Validation Planunmatched
  • Vulnerability Scannersunmatched

Be found by employers

5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

Level up your application

Professional resume templates

Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

Free resume templates

Free resume builder

Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

Free resume builder