Information System Security Manager/Officer (ISSM/O)

Koniag Tech Infrastructure Solutions, LLC a Koniag Government Services company, is seeking an Information System Security Manager/Officer (ISSM/O) with TS/SCI security clearance to support KTIS And our government customer at Wright-Patterson AFB, OH.    We offer competitive compensation and an extraordinary benefits package including health, dental and vision insurance, 401K with company matching, flexible spending accounts, paid holidays, three weeks paid time off, and more.   The Information System Security Manager/Officer (ISSM/O) works as part of a team to provide cybersecurity support to an Air Force Materiel Command (AFMC) customer at Wright-Patterson AFB, Ohio. This position is responsible for ensuring information systems meet cybersecurity requirements and achieve Risk Management Framework (RMF) assessment and authorization within the Science and Technology (S&T) Authorizing Official (AO) boundary. Telework is not an option. These positions require the ability to work in a fast-paced, mission-critical environment with strict security. The successful candidate must demonstrate commitment to continuous learning and professional development to maintain currency with evolving technology and security landscapes.   Key Responsibilities: Risk Management Framework (RMF) Process Management: Manage RMF processes to achieve system authorization primarily within S&T AO boundary Develop proactive planning strategies and efficient documentation processes Coordinate closely with system owners, authorizing officials, SCAs, and SCARs Develop and submit complete and accurate RMF packages that meet all applicable requirements Achieve Authority to Operate (ATO) or Interim Authority to Test and Evaluate (IATT) within reasonable timelines established with Government Security Control Implementation & Support: Implement and maintain security controls aligned with sustainment requirements Develop and update System Security Plans (SSPs) and control family plans Create and maintain directorate cybersecurity policies Remediate vulnerabilities identified by SCAs/SCARs within established timelines Ensure Continuous Monitoring (ConMon) compliance Facilitate smooth transition to sustainment ownership and operation Risk Management Support: Support risk management activities by providing documentation to SCAs/SCARs Develop and maintain risk management plans in coordination with assessment teams Serve as cybersecurity liaison between project teams and AO boundary representatives Assist project teams in creating and submitting RMF packages Support SCAs/SCARs with technical questions and documentation requirements Security Documentation Management: Prepare and maintain required security documentation (SSPs, POA&Ms, etc.) Ensure documentation accuracy and compliance with applicable regulations Maintain version control processes and change management procedures Develop security-relevant documentation for future sustainment teams Create clear and complete documentation for system transitions Policy & Compliance Management: Maintain current awareness of cybersecurity threats and vulnerabilities Ensure compliance with DoD, Air Force, and local security policies and directives Stay current on security guidance and ensure system compliance Monitor and report on ongoing compliance activities Incident Response Support: Support incident response activities including investigation, containment, eradication, and recovery Document incident response processes and procedures for sustainment Maintain familiarity with existing Incident Response Plans (IRP) for supported systems Provide effective and efficient incident response support   Continuous Monitoring & Analysis: Implement and maintain continuous monitoring processes for ongoing security compliance Design monitoring processes for sustainable execution after transition to sustainment Develop and implement monitoring strategies Analyze security logs and report on security status Create sustainable monitoring frameworks for long-term system operation Additional Security Duties: Support implementation of new security technologies and processes Assist with security awareness training programs Participate in security audits and assessments Support development of security-related standard operating procedures Attend regular cybersecurity meetings (weekly, monthly, quarterly) Organize cybersecurity-focused team meetings for RMF activities   Required Qualifications Education & Experience: Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field Minimum 5-7 years’ experience in information security and risk management Extensive experience with DoD RMF processes and NIST cybersecurity frameworks Experience with both classified and unclassified system authorization processes Certifications & Training: Current DoD 8140.01 certification appropriate for ISSM/O role (typically IAM Level II or III) CISSP, CISA, or equivalent advanced cybersecurity certification preferred RMF-specific training and certification Continuous education to maintain certification currency Clearance Requirements: Must possess or be able to obtain and maintain a Top-Secret security clearance Preference will be given to those with a current Top-Secret clearance Technical Expertise: Deep understanding of NIST RMF process and NIST SP 800-53 security controls Proficiency with security assessment and authorization tools Knowledge of vulnerability management and remediation processes Experience with security control assessment and testing methodologies Understanding of continuous monitoring technologies and processes Regulatory Knowledge: Thorough knowledge of DoD, Air Force, and AFRL cybersecurity policies Understanding of FedRAMP, FISMA, and other federal security requirements Familiarity with multi-service (Army, Navy, Air Force) cybersecurity requirements Knowledge of privacy and data protection regulations Communication & Leadership Skills: Excellent written and verbal communication skills for technical and non-technical audiences Ability to effectively communicate security posture, risks, and RMF progress Strong collaboration skills for working with diverse stakeholders Leadership capabilities for organizing and conducting team meetings Ability to translate complex security requirements into actionable plans Performance Standards: Achieve system authorizations within agreed-upon reasonable timelines Maintain 100% compliance with applicable security policies and directives Provide complete and accurate security documentation meeting all requirements Effectively support incident response activities when required Successfully implement and maintain continuous monitoring processes Special Considerations: Position may require support across multiple AO boundaries based on program evolution Must be adaptable to changing cybersecurity landscape and emerging threats Requires coordination with sustainment teams for seamless system transitions May need to support complex systems requiring extensive documentation or remediation with adjusted timelines   Our Equal Employment Opportunity Policy The company is an equal opportunity employer. The company shall not discriminate against any employee or applicant because of race, color, religion, creed, ethnicity, sex, sexual orientation, gender or gender identity (except where gender is a bona fide occupational qualification), national origin or ancestry, age, disability, citizenship, military/veteran status, marital status, genetic information or any other characteristicprotected by applicable federal, state, or local law. We are committed to equal employment opportunity in all decisions related to employment, promotion, wages, benefits, and all other privileges, terms, and conditions of employment. The company is dedicated to seeking all qualified applicants. If you require an accommodation to navigate or apply for a position on our website, please get in touch with Heaven Wood via e-mail at  accommodations@koniag-gs.com  or by calling 703-488-9377 to request accommodations.   Koniag Government Services (KGS) is an Alaska Native Owned corporation supporting the values and traditions of our native communities through an agile employee and corporate culture that delivers Enterprise Solutions, Professional Services and Operational Management to Federal Government Agencies. As a wholly owned subsidiary of Koniag, we apply our proven commercial solutions to a deep knowledge of Defense and Civilian missions to provide forward leaning technical, professional, and operational solutions. KGS enables successful mission outcomes for our customers through solution-oriented business partnerships and a commitment to exceptional service delivery. We ensure long-term success with a continuous improvement approach while balancing the collective interests of our customers, employees, and native communities. For more information, please visit  www.koniag-gs.com.   Equal Opportunity Employer/Veterans/Disabled. Shareholder Preference in accordance with Public Law 88-352

Back to blog

Common Interview Questions And Answers

1. HOW DO YOU PLAN YOUR DAY?

This is what this question poses: When do you focus and start working seriously? What are the hours you work optimally? Are you a night owl? A morning bird? Remote teams can be made up of people working on different shifts and around the world, so you won't necessarily be stuck in the 9-5 schedule if it's not for you...

2. HOW DO YOU USE THE DIFFERENT COMMUNICATION TOOLS IN DIFFERENT SITUATIONS?

When you're working on a remote team, there's no way to chat in the hallway between meetings or catch up on the latest project during an office carpool. Therefore, virtual communication will be absolutely essential to get your work done...

3. WHAT IS "WORKING REMOTE" REALLY FOR YOU?

Many people want to work remotely because of the flexibility it allows. You can work anywhere and at any time of the day...

4. WHAT DO YOU NEED IN YOUR PHYSICAL WORKSPACE TO SUCCEED IN YOUR WORK?

With this question, companies are looking to see what equipment they may need to provide you with and to verify how aware you are of what remote working could mean for you physically and logistically...

5. HOW DO YOU PROCESS INFORMATION?

Several years ago, I was working in a team to plan a big event. My supervisor made us all work as a team before the big day. One of our activities has been to find out how each of us processes information...

6. HOW DO YOU MANAGE THE CALENDAR AND THE PROGRAM? WHICH APPLICATIONS / SYSTEM DO YOU USE?

Or you may receive even more specific questions, such as: What's on your calendar? Do you plan blocks of time to do certain types of work? Do you have an open calendar that everyone can see?...

7. HOW DO YOU ORGANIZE FILES, LINKS, AND TABS ON YOUR COMPUTER?

Just like your schedule, how you track files and other information is very important. After all, everything is digital!...

8. HOW TO PRIORITIZE WORK?

The day I watched Marie Forleo's film separating the important from the urgent, my life changed. Not all remote jobs start fast, but most of them are...

9. HOW DO YOU PREPARE FOR A MEETING AND PREPARE A MEETING? WHAT DO YOU SEE HAPPENING DURING THE MEETING?

Just as communication is essential when working remotely, so is organization. Because you won't have those opportunities in the elevator or a casual conversation in the lunchroom, you should take advantage of the little time you have in a video or phone conference...

10. HOW DO YOU USE TECHNOLOGY ON A DAILY BASIS, IN YOUR WORK AND FOR YOUR PLEASURE?

This is a great question because it shows your comfort level with technology, which is very important for a remote worker because you will be working with technology over time...