Information Systems Security Manager (ISSM)
HDR, Inc. | |
United States, Virginia, Arlington | |
2701 N Westmoreland St (Show on map) | |
Mar 24, 2026 | |
|
At HDR, our employee-owners are fully engaged in creating a welcoming environment where each of us is valued and respected, a place where everyone is empowered to bring their authentic selves and novel ideas to work every day. As we foster a culture of inclusion throughout our company and within our communities, we constantly ask ourselves: What is our impact on the world? HDR is adding an experienced Information Systems Security Manager (ISSM) to lead and oversee the security posture of information systems supporting federal and sensitive programs. The ISSM serves as the authoritative security lead for system authorization, continuous monitoring, and compliance across classified and unclassified environments, ensuring alignment with NIST, RMF, CMMC, and federal cybersecurity requirements. This role partners closely with Corporate Security, IT, Legal, project teams, and external stakeholders to ensure HDR systems are designed, authorized, and operated securely throughout their lifecycle. Primary Responsibilities Governance & Risk Management * Serve as the ISSM for assigned systems, overseeing compliance with NIST SP 800-53, RMF, and applicable federal security requirements * Lead system authorization activities including SSP development, risk assessments, POA&M management, and ATO packages * Ensure continuous monitoring programs are implemented and maintained System Security Oversight * Oversee security architecture, boundary definitions, and system interconnections * Validate that security controls are properly implemented and operating as intended * Coordinate vulnerability management, incident response, and remediation activities Stakeholder & Program Support * Serve as the primary security advisor to program leadership and system owners * Interface with government customers, assessors, and authorizing officials * Support audits, assessments, and external reviews (e.g., DCSA, customer audits) Policy, Training & Awareness * Contribute to the development and refinement of HDR information security policies and procedures * Support workforce training and awareness related to system security responsibilities * Mentor ISSOs and technical staff on RMF and compliance best practices Preferred Qualifications * Experience serving as an ISSM or Senior ISSO * Strong working knowledge of NIST Risk Management Framework (RMF) * Strong working knowledge of NIST SP 800-53 control families * Experience with System Authorization (ATO) processes * Experience with Continuous Monitoring and POA&M management * Active or previously held U.S. security clearance (Secret or higher) * Experience supporting DoD or DOE programs * Familiarity with CMMC Level 2, ITAR, and CUI requirements * Professional certifications such as CISSP, CISM, CAP, GSLC #LI-KV1 Required Qualifications
What We Believe Primary Location
:
United States-Virginia-Arlington
Industry
:
IT
Schedule
:
Full-time
Employee Status
:
Regular
BusinessClass
:
Marketing and Admin
Job Posting
:
Mar 23, 2026 | |
Mar 24, 2026