Information System Security Manager

General Dynamics

Quick summary

Work type
On-site
Location
Falls Church, VA
Salary
$81,349–$110,055 / yr
Posted
2 days ago

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $179k
This role $96k
$65k most similar roles pay here $231k

This role pays less than 97% of similar roles. Most pay $142,225–$215,103 — the shaded band above. At the midpoint, this role pays about $96k versus about $179k for comparable roles.

Based on 240 similar postings.

Employer

About General Dynamics

General Dynamics is a global aerospace and defense company offering a broad portfolio of products and services in business aviation, ship construction, land combat vehicles, and information technology. It serves customers in the U.S. government, allied governments, and a diverse array of commercial markets.

General Dynamics currently has 439 open roles on FindRole.

Listed pay typically runs $112,924–$149,500 across 366 roles with salary data.

Most-posted roles

View all roles at General Dynamics

At a glance

TL;DR · Information System Security Manager

As an IT and Cyber Risk Auditor at GDIT, you will join the Cyber and IT Risk Management team in Falls Church, VA, working as a senior-level ISSM/ISSO to ensure the security and compliance of critical government systems. Your daily responsibilities include conducting comprehensive security audits, RMF control assessments, and validating system documentation against DCSA, JSIG, and SAP requirements. You will develop and implement operational information security policies aligned with NIST SP 800-53 and collaborate with technical teams to analyze findings and recommend remediation actions. Familiarity with Windows/Linux environments, vulnerability tools, and a strong understanding of RMF and DCSA directives are essential. Prior SAP experience is desired, and you must hold an active Top Secret clearance with the ability to obtain TS/SCI clearance.

What you'll do

  • Conduct comprehensive security audits and RMF control assessments.
  • Review and validate system security documentation and artifacts for compliance.
  • Develop and implement operational information system security policies.
  • Evaluate system security controls for effectiveness and completeness.
  • Analyze findings to recommend remediation actions for vulnerabilities.
  • Support ongoing ATO and SAP authorization maintenance processes.
  • Prepare and deliver risk-focused briefings on audit results and compliance.

What we're looking for

  • US citizenship and active Top Secret clearance required.
  • At least 2 years of experience as an ISSO/ISSM.
  • Strong understanding of NIST SP 800-53, RMF, JSIG standards.
  • IAT II certification (Security+, SSCP, CCNA Security).
  • Experience with DISA STIG and NIST Risk Management Framework.
  • Familiarity with Windows/Linux environments and vulnerability tools.
  • Ability to conduct comprehensive security audits and control assessments.

More like this

Similar roles

Information System Security Officer

General Dynamics

Remote (Chantilly, VA) 3 days ago $124,093$149,500
AWS NIST SP-800-53 CI/CD Tenable Splunk Kubernetes Risk Management Auditing CCSP COMPTIA Cloud+ Python PostgreSQL Git Docker
Remote

Cyber Security Manager

General Dynamics

Falls Church, VA 3 days ago $124,093$155,250
Microsoft Entra ID Active Directory Okta Keeper CyberArk RSA MFA SAML OAuth OIDC Zero Trust IAM PAM SSO RBAC Automation Process Optimization CI/CD
Hybrid

Information Assurance Engineer

General Dynamics

San Jose, CA 3 days ago $141,155$148,874
RMF JSIG ICD-503 NIST_SP_800-53 STIGs SCAP ACAS Nessus AFT Linux Windows_Server System_Administration CI/CD DoD_8570_IAM-I
Hybrid

Classified Cyber Security Senior

Lockheed Martin

Orlando, FL 3 days ago
RMF DISA STIGs SCAP Vulnerability Scanners TACLANE NISPOM JSIG DAAPM CI/CD Kubernetes AWS Python PostgreSQL MSSQLSERVER Git Jira Confluence Linux Windows Server

Information Systems Security Manager

Anduril Industries

Costa Mesa, CA 23 days ago $146,000$194,000
IDS/IPS Encryption protocols Kubernetes Software Composition Analysis (SCA) DoD cybersecurity standards Authorization and Accreditation (A&A) Incident response Security risk assessments Vulnerability assessments Audit Cloud Service Providers (CSPs) Micro-services architecture Containerization Secure communications technologies Information Technology Risk Management Framework