1,007 information security manager jobs at 400 companies in Fredericksburg, VA
3mo
Save
Mark Applied
Hide
3mo
Information Security Manager
Durham or Washington
$140k-$170k/yrHybridFull Time
Cypress Creek Renewables: U.S. independent power producer developing, owning, and operating solar-storage infrastructure for utilities, communities, and large-load customers.
5+ YOELead security operations and compliance; 5+ years in information security; hands-on with Defender, Zscaler, SIEM; NFIST/NIST framework experience; Durham, NC or Washington, DC office.
Microsoft Defender, Zscaler, SIEM, AWS, Azure, Forensics, NIST
Argo Cyber Systems: Service-disabled veteran-owned cybersecurity firm providing monitoring, assessments, consulting, and managed security services to businesses and government entities.
5+ YOEU.S. citizen with active TS/SCI clearance preferred; 5+ years info security management (or HS+7), RMF/ATO experience, Linux or AWS experience, POA&M and A&A knowledge, MS Office proficiency, risk assessment and security control implementation.
Linux, Amazon Web Services, CSAM, Xacta, Archer, RegScale, Nessus, Security Center, Tenable Vulnerability Management, nmap, Wiz, burp, CrowdStrike, CarbonBlack, Splunk, SOAR, ELK, Microsoft Word, Microsoft Excel, Microsoft Powerpoint, Microsoft Visio, python, AWS CLI, Lambda, bash, powershell
SESEuronext Paris / Luxembourg Stock Exchange: SESG: Global satellite operator providing content and connectivity solutions.
9+ YOEComputer Science or related degree, 9+ years of industry experience, US nationality, information security frameworks knowledge, ISMS implementation experience, and broad technical security expertise.
ISO 27000, NIST SP-800, SOC 2, PCI DSS, ISO 27001, SOX
Peraton: Provider of mission-critical national security technologies and services.
10+ YOEActive Top Secret with SCI, IAM Level III, extensive information systems security experience (10+ years), ISSM experience, A&A and RMF expertise, NIST/FISMA knowledge, risk assessment and stakeholder engagement skills.
Bank of AmericaNYSE: BAC: Global financial services and banking institution.
5+ YOERequires 5+ years in information security, 2–5 years in technology and application development or security, cloud experience with Azure, AWS, and Google Cloud Platform, risk management, and strong communication skills.
Microsoft Azure, Amazon Web Services, Google Cloud Platform, PaaS, SDLC
Bank of AmericaNYSE: BAC: Global financial services and banking institution.
5+ YOERequires 5+ years in information security, technology and application security experience, cloud experience with Microsoft Azure, Amazon Web Services and Google Cloud Platform, risk management, and strong communication skills.
Microsoft Azure, Amazon Web Services, Google Cloud Platform, PaaS, SDLC
PEMCCO: Private IT and information-management services firm serving government agencies and commercial customers.
3+ YOEBachelor's degree, 3+ years in information security or related field, RMF and NIST knowledge, vulnerability management, strong analysis and communication, ability to obtain government clearance.
NextGen Federal Systems: Private U.S. technology and professional-services provider delivering software, AI/ML, digital engineering, and mission support to federal agencies.
7+ YOE7+ years information security experience, ISSO experience, POA&M management, SSP/RA/PTA/PIA/ST&E development, NIST 800-series knowledge, CBP background adjudication, and proficiency with Microsoft Office and SharePoint.
Microsoft Word, Microsoft Excel, Microsoft PowerPoint, Microsoft Outlook, Microsoft SharePoint, FIPS 199, NIST SP 800-60, NIST 800-Series
Systems Planning and Analysis: Technical and analytical solutions for national security.
8+ YOE8+ years cybersecurity experience with ISSM or equivalent, deep familiarity with RMF, eMASS, STIGs, vulnerability management, relevant security certification (CISSP/CAP/CISM), and active TS/SCI clearance.
AHRI: Nonprofit HVACR trade association representing manufacturers through standards, certification, research, advocacy, and industry data.
2+ YOEBachelor's degree in cybersecurity/IT, 2+ years information security experience, industry certification (CompTIA Security+, Microsoft SC 200 or equivalent; CISSP/CISM preferred), familiarity with Microsoft Azure, SIEM, endpoint management, and security frameworks.
SIEM, endpoint protection, firewall, Microsoft Azure, endpoint management systems
Las Vegas or Washington or Mountain View or Huntsville or Dayton
HybridFull Time
Modern Technology Solutions, Inc.: Engineering services and technology solutions for national security.
5+ YOERequires 5+ years in information security or technology, IAM Level II credentials, ability to obtain IAM Level III, RMF knowledge, remote-work ability, and U.S. citizenship; CISSP and bachelor's degree preferred.
Risk Management Framework (RMF), NIST SP 800-30, NIST SP 800-53, DOD Manual 8140, Information Technology (IT)
Las Vegas or Washington or Mountain View or Huntsville or Dayton
HybridFull Time
Modern Technology Solutions, Inc.: Engineering services and technology solutions for national security.
5+ YOERequires 5+ years in information security or technology, IAM Level II credentials, RMF knowledge, Secret clearance eligibility, and U.S. citizenship. Bachelor's preferred; CISSP and IAM Level III eligibility desired.
Booz Allen HamiltonNYSE: BAH: Global firm providing management, technology, and engineering consulting services.
6+ YOE6+ years experience as ISSM/ISSO, knowledge of NIST RMF and SP 800 series, security configuration/hardening, cloud security, Bachelors preferred, ability to mentor and supervise, TS/SCI with polygraph required.
NIST Risk Management Framework, NIST Special Publication 800 series
Nightwing: Advanced cyber, intelligence, and systems integration services for national security.
5+ YOEU.S. citizen with active TS/SCI and ability to obtain DHS suitability; 5+ years information security management experience; RMF/A&A and ATO/POA&M experience; hands-on Linux or Amazon Web Services experience; strong technical writing and communication.
NIST Risk Management Framework (RMF), Linux, Amazon Web Services, AWS CLI, Lambda, Microsoft Word, Microsoft Excel, Microsoft PowerPoint, Microsoft Visio, CSAM, Xacta, Archer, RegScale, Nessus, Security Center, Tenable Vulnerability Management, nmap, Wiz, Burp, CrowdStrike, CarbonBlack, Splunk, SOAR, ELK, Python, Bash, PowerShell
WalmartNYSE: WMT: Global retail, e-commerce, and supply chain.
6+ YOE3+ MgmtBachelor's degree and 6 years of information security experience, or 8 years of experience; 3 years of supervisory experience. Preferred security certifications or master's degree.
Certificate Lifecycle Management, Secure Data Transfer, SSH Key Management, Web Content Accessibility Guidelines (WCAG) 2.2 AA
Marine Corps Community Services: Official morale, welfare, and recreation program for the Marine Corps.
5+ YOERequires 5+ years in ISSM, security assessments, vulnerability management, or cybersecurity; knowledge of government security standards and risk processes; and DoD 8570.01-M certification within six months.
Information System Security Manager (ISSM) - Level 4
Lorton, Virginia, United States
$167k-$205k/yrOnsiteFull Time
Virtual Service Operations: Veteran-led managed IT services provider serving government, defense, healthcare, and other regulated commercial organizations.
5+ YOE5+ MgmtRequires 5–7+ years in information security management, 5+ years in SCI/SAP environments, a relevant bachelor's degree, active TS/SCI clearance, security standards knowledge, leadership, and onsite availability.
NIST, ISO 27001, HIPAA, firewalls, IDS/IPS, SIEM, Azure, AWS, IBM, Microsoft
VTG: Provider of national security and digital transformation solutions.
Master's or PhD in a related technology field, or bachelor's with advanced security certification; active Top Secret/SCI clearance with CI Poly; and one listed cybersecurity certification.
WalmartNYSE: WMT: Global retail, e-commerce, and supply chain.
6+ YOE3+ MgmtExperience leading enterprise machine identity, CLM, secure data transfer and cryptographic services; 6–8+ years in information security, 3 years supervisory, knowledge of security controls and compliance, and stakeholder leadership.
VerisignNasdaq Global Select Market: VRSN: Public U.S. internet-infrastructure operating DNS root services and authoritative .com and .net domain registries.
8+ YOE2+ Mgmt8+ years in information security governance, risk, or compliance; 4+ years security control assessment; 2+ years managing staff; bachelor\u0002s in related field or equivalent; expertise with CIS, SOC 2/3, NIST frameworks; CISSP/CISA/CISM/CRISC preferred.