cover image
Credence

Information Systems Security Manager (ISSM)

Remote

Arlington, United states

$ 211,000 /year

Full Time

02-02-2026

Share this job:

Skills

Communication Monitoring Change Management

Job Specifications

Overview

Join a team where innovation meets mission. Our AI, cloud, cyber, and modernization solutions save agencies thousands of hours, safeguard national security, and strengthen health and humanitarian missions worldwide. With 1,700+ team members, 1,500+ AI/data experts, and 100+ prime contracts, we deliver at scale and with purpose. 

We've been recognized as a Top Workplace by the Washington Post for six straight years and named to the Inc. 5000 Fastest Growing Private Companies 13 of the past 14 years. Credence is a welcoming home for those looking to grow and contribute to positive change. We encourage all employees to expand beyond their boundaries, dive into important world-changing Federal challenges.  

Position Summary 

Credence has an immediate need for a highly skilled and experienced Information Systems Security Manager. In this role, you will manage a security team responsible for daily Security Operations (SecOps) activities, including proactive threat hunting, continuous monitoring and analysis of security alerts, vulnerability management across both on-premises and cloud environments, and formal reporting to the program management office and government stakeholders. Additionally, the qualified candidate will provide oversight of certification and accreditation (C&A) activities for existing technologies as well as new tools and platforms introduced into the target environment, ensuring alignment with federal cybersecurity and compliance requirements. 

 

Responsibilities include, but are not limited to the duties listed below 

Ensure that all IT systems are compliant with NIST, FISMA, and other governmental security requirements. 
Lead the development and implementation of the System Security Plan (SSP) and all associated documentation required for the RMF Assessment and Authorization process. 
Collaborate closely with Authorizing Officials representatives, stakeholders, and subject matter experts to gather the necessary information and ensure compliance with all applicable security policies and guidelines. 
Play a crucial role in managing, developing, and executing Continuous monitoring plan to ensure all FISMA system remain compliant by actively participating in the IT change management process. Assess and provide mitigation recommendation for potential security risks associated with system changes. 
Coordinate and collaborate with system owners and information owners to ensure seamless and secure implementation of changes to the system. This includes coordinating change management processes, assessing potential security or privacy impacts, and working towards effective resolutions. 
Conduct thorough assessments of the security or privacy impact resulting from system changes, considering factors such as data sensitivity, access controls, confidentiality, integrity, and availability. Provide recommendations and guidance for mitigating any identified risks or vulnerabilities. 
Collaborate with cross-functional teams and subject matter experts to identify, evaluate, and implement security controls and measures necessary to maintain the security posture of the system(s). 
Provide expert guidance and support to project teams regarding security requirements and controls during system development, integration, and maintenance phases. 
Coordinate with cross-functional teams to ensure that security controls are integrated seamlessly into system architectures and configurations. 
Collaborate with Department of State and/or external auditors and assessors during security assessments and audits, addressing any findings and facilitating the timely resolution of identified issues. 
Manage the Plan of Actions and Milestones (POA&M) process, ensuring that identified security weaknesses and vulnerabilities are promptly documented, tracked, and remediated. 
Collaborate with relevant teams and stakeholders to prioritize and address items on the POA&M, ensuring timely remediation actions are taken to maintain the security posture of the systems. 
Provide timely and accurate information in response to data calls and queries from internal and external partners, such as IRM/A&A, GITR, and other government agencies. 
Interpret interdepartmental and government directives related to security requirements, policies, and guidelines, and effectively communicate these directives to cross-functional teams. 
Facilitate cross-team communication and coordination to ensure that security-related issues are addressed in a timely manner, promoting efficient remediation efforts. 
Monitor and assess the impact of interdepartmental and government directives on existing systems, identifying necessary adjustments or changes to maintain compliance and security. 
Collaborate with relevant teams to develop and implement action plans for timely remediation of security vulnerabilities and non-compliant areas based on interpreted directives. 
Stay informed about emerging security trends, changes in regulations, and industry best pr

About the Company

Credence provides innovative technology, health, engineering, and management solutions to support mission-critical programs for Federal government customers. Our ability to perform exceptionally to implement new solutions, efficiencies, and savings across 220 U.S. Government programs is due to our obsession with exceeding customer expectations and our emphasis on employee wellbeing—best exemplified by our corporate philosophy: “One Measure of Success. Yours.” WHY WORK WITH CREDENCE? We are consistently rated as a Top Workpla... Know more