BS
Cyber Security Manager / ISSM (Non-IT & Classified Systems)
BAE Systems
- 🇺🇸 United States
- On-site
- Manager or above
- 22 hours ago
- 132,962 – 226,035
- Risk Management Framework
- RMF
- Incident Response
- Secret Clearance
- IAM
- CISSP
- CISM
- Pension
22 hours ago
Job Description
BAE Systems is looking for an experienced Cyber Security Manager to join our team supporting the NATO Seasparrow Project Office in Arlington, VA. The successful candidate will act as the Information System Security Manager (ISSM) responsible for the leadership, management, and execution of protecting NSPO not IT and classified systems. He/She will implement information assurance (IA) measures to mitigate vulnerabilities and maintain strict compliance. The incumbent acts as the NSPO’s representative (Sponsor) for the NSPO’s missile, combat system, associated test equipment and associated IT classified systems cyber security posture, ensuring all systems maintain a current Authorization to Operate (ATO) through the Risk Management Framework (RMF). Additionally, this role integrates technical cybersecurity leadership with budgetary execution to ensure the NSPO receives the appropriate level of support from US Navy Field Activities (FAs). This is a key position subject to customer approval, before onboarding.Primary Duties and Responsibilities
1. ISSM for Non-IT & Classified Systems
- Serves as the primary point of contact for the organization's cybersecurity program reporting to key external organizations (e.g. DON/PAE CIO, DISA etc).
- Sponsor Representation: Acts as the NSPO ISSM for the NSPO’s missile and combat systems variants, associated test equipment and associated IT classified systems. Ensures these systems remain secure and that all modifications/upgrades align with the sponsor's intended purpose and security requirements.
- ATO Maintenance: Lead the effort to ensure all non-IT and classified systems have a valid, current Authority to Operate (ATO). This includes managing the RMF process, coordinating with the Authorizing Official (AO), and ensuring all security controls are implemented.
- Field Activity Coordination: Work closely with US Navy Field Activity (FA) experts to synchronize security requirements and ensure that technical implementations meet both Navy and NSPO standards.
- Incident Response Team (IRT): Serve as a core member of the NSPO Cyber Security Response Team. Lead or support the detection, containment, and recovery efforts during cyber incidents.
- Threat Mitigation: Act as the NSPO sponsor SME for security anomalies within non-IT and specialized classified IT systems and oversee implementation of remedial actions to mitigate vulnerabilities.
- Security Oversight: Oversee the installation of security software and the implementation of physical and technical controls for classified networks to protect the integrity and confidentiality of consortium data.
- Conducts research of emerging security threats.
- SEATASK Management: Manage and execute a variety of SEATASKs (Sustainment Engineering and Technical Assistance tasks) to secure and coordinate the required level of support from Navy FAs, through funding/scope packages.
- Financial Alignment: Apply an understanding of DoD budgeting and execution to ensure that cybersecurity requirements are properly funded and that deliverables from Field Activities are met.
- Resource Planning: Align technical security needs with the NSPO’s financial cycle to ensure no lapse in security support or ATO validity.
- SME Leadership: Serve as the Subject Matter Expert (SME) for performing security and threat assessments across the program.
- Policy Development: Develop and implement comprehensive security policies that address the unique challenges of non-IT systems in an international consortium environment.
Required Skills and Education
Education: Bachelor’s degree in a technical or business field (Graduate degree preferred).Clearance: Must possess a current DoD/DoW Secret Clearance with Tier 5 investigation.
Certification: Must meet or exceed DoD 8570.1 IAM Level III (e.g., CISSP, CISM).
Experience: >15 years of senior-level experience in cybersecurity management, specifically within a mixed DoD/International environment.
Preferred Skills and Education
Specialized Knowledge:- Proven experience managing Non-IT/Operational Technology (OT) security and RMF processes.
- Deep understanding of air gapped or IL6 equivalent cloud networks.
- Demonstrated experience in DoD budgeting and budget execution.
About BAE Systems, Inc.
BAE Systems, Inc. is a defense, aerospace, and security company headquartered in Falls Church, Virginia, with more than 40,000 employees worldwide. We serve, supply, and protect those who protect us. As one of the most geographically diverse international defense companies, we deliver a full range of products and services spanning air, land, maritime, space, and cyber, including advanced electronics, intelligence solutions, and dedicated customer support.Our culture is performance-driven and values-led, built on curiosity, creativity, and collaboration. Purpose isn't a tagline here. It's what drives us. We're developing breakthrough technologies that defend national security and make a lasting impact on our communities and our planet. When you join BAE Systems, you're not just building a career. You're contributing to a mission that truly matters.
This position will be posted for at least 5 calendar days. The posting will remain active until the position is filled, or a qualified pool of candidates is identified.
Benefits Information
Employee Benefits: At BAE Systems, we support our employees in all aspects of their life, including their health and financial well-being. Regular employees scheduled to work 20+ hours per week are offered: health, dental, and vision insurance; health savings accounts; a 401(k) savings plan; disability coverage; and life and accident insurance. We also have an employee assistance program, a legal plan, and other perks including discounts on things like home, auto, and pet insurance. Our leave programs include paid time off, paid holidays, as well as other types of leave, including paid parental, military, bereavement, and any applicable federal and state sick leave. Employees may participate in the company recognition program to receive monetary or non-monetary recognition awards. Other incentives may be available based on position level and/or job specifics.Intern Benefits: Temporary employees generally are not eligible for BAE Systems benefits, but can elect to participate in the 401(k) savings plan. Temporary employees working 20+ hours per week are eligible for medical benefits, the employee assistance program, and business travel accident insurance.
Please note: Some benefits may be different for union employees that are governed by a collective bargaining agreement (CBA) or for positions covered by a wage law called the McNamara-O’Hara Service Contract Act (SCA).
- Sector: Intelligence & Security
- Job Category: Engineering & Technology
- Salary Min Point: 132962
- Salary Max Point: 226035
- Referral Bonus: 500
- Full Time / Part Time: Full-Time
- Career Level: Experienced
- Travel Percentage:<10%
- Shift: 1st Shift
- U.S. Person Required: Yes
- Clearance Level – Must be able to obtain for position: Secret
- Clearance Level – Must currently possess: Secret
- Country: United States
- U.S. Citizenship Required: Yes
Cyber Security Manager / ISSM (Non-IT & Classified Systems) · BAE Systems