Full-Time

Information Systems Security Manager

Posted on 8/18/2026

Deadline 8/18/27
Kentro

Kentro

501-1,000 employees

IT engineering and federal program management

No salary listed

No H1B Sponsorship

Tampa, FL, USA

In Person

Onsite in Tampa, Florida.

US Citizenship, US Top Secret Clearance Required

Bachelor's

Category
IT & Security (1)
Required Skills
Cybersecurity
Vulnerability Analysis
Risk Management

Get referred to Kentro

See people who can refer or advise you

Requirements
  • A bachelor's degree in Cybersecurity, Information Assurance, Information Systems, Computer Science, Information Technology, Engineering, or a related technical field is required; equivalent education and experience may be considered in accordance with contract and position requirements.
  • Significant experience supporting cybersecurity and Risk Management Framework activities within classified Department of Defense or Intelligence Community environments is required.
  • Hands-on experience using Xacta to develop, manage, track, or submit Risk Management Framework and Authorization to Operate packages is required.
  • Demonstrated experience supporting information systems through the full Risk Management Framework and Authorization to Operate lifecycle is required.
  • Knowledge of the Department of Defense Risk Management Framework is required.
  • Knowledge of NIST Special Publication 800-53 security controls is required.
  • Experience with security control implementation and assessment is required.
  • Experience with System Security Plans is required.
  • Experience with Plans of Action and Milestones is required.
  • Experience with vulnerability and risk management is required.
  • Experience with continuous monitoring is required.
  • Knowledge of authorization and reauthorization processes is required.
  • Ability to understand technical system architectures and communicate with cybersecurity engineers, system engineers, architects, and other technical subject-matter experts is required.
  • Strong written and verbal communication skills, including the ability to communicate cybersecurity risk to technical and non-technical stakeholders, are required.
  • Ability to operate effectively on a multidisciplinary team and coordinate activities across engineering, cybersecurity, program management, and government organizations is required.
  • Must meet applicable Department of Defense Information Assurance Technical Level III certification requirements.
  • An active TS/SCI clearance is required.
  • Must be a U.S. citizen or lawful permanent resident.
Responsibilities
  • Lead and coordinate Risk Management Framework and Authorization to Operate activities for systems operating within USSOCOM classified environments.
  • Manage systems through the complete authorization lifecycle, from initial system categorization and control implementation through assessment, authorization, continuous monitoring, and reauthorization.
  • Develop, maintain, and manage authorization packages within Xacta.
  • Serve as a primary cybersecurity liaison between engineering teams, system owners, program leadership, Information System Security Officers, security assessors, and Defense Intelligence Agency authorization stakeholders.
  • Work directly with engineers to understand system architecture, configurations, data flows, interfaces, security boundaries, and implemented cybersecurity controls.
  • Translate technical engineering activities into appropriate Risk Management Framework control implementation statements and supporting evidence.
  • Develop and maintain required authorization artifacts, including System Security Plans, control implementation documentation, Plans of Action and Milestones, risk assessments, network and system diagrams, inventories, security procedures, and supporting evidence.
  • Review Authorization to Operate packages for completeness, technical accuracy, consistency, and readiness before submission.
  • Coordinate remediation of security findings and vulnerabilities with engineering teams.
  • Track cybersecurity risks, deficiencies, Plans of Action and Milestones items, dependencies, and authorization milestones through closure.
  • Support security control assessments, validation activities, and responses to assessor or Authorizing Official questions.
  • Maintain authorization posture following Authorization to Operate through continuous monitoring, change management, vulnerability management, and reauthorization activities.
  • Identify authorization risks early and communicate potential schedule or compliance impacts to program leadership.
  • Participate in technical and programmatic discussions to ensure cybersecurity requirements are incorporated into engineering decisions rather than addressed only at the end of the development lifecycle.
  • Build productive working relationships across the program and maintain professional, collaborative engagement with USSOCOM and Defense Intelligence Agency stakeholders.
Desired Qualifications
  • Direct experience obtaining Authorization to Operate approvals through the Defense Intelligence Agency is preferred.
  • Experience taking multiple systems from initial Risk Management Framework activities through successful Defense Intelligence Agency authorization is preferred.
  • Previous experience supporting USSOCOM or another Combatant Command is preferred.
  • Experience working within TS/SCI environments and classified networks is preferred.
  • Previous experience operating within or supporting the SOCRATES environment is preferred.
  • Experience working directly with Defense Intelligence Agency cybersecurity, assessment, or authorization personnel is preferred.
  • Experience supporting complex enterprise cybersecurity programs involving multiple systems, enclaves, security boundaries, and engineering teams is preferred.
  • Strong familiarity with Department of Defense and Intelligence Community cybersecurity governance and authorization processes is preferred.

Kentro delivers information technology engineering and business consulting services focused on Federal government agencies. It works by applying strategy, systems engineering, program management, and IT delivery skills to both large federal projects and smaller software solutions, ensuring disciplined planning and execution. The company differentiates itself by combining high-level strategic thinking with hands-on technical delivery, serving federal clients with a consistent, precision-driven approach across complex initiatives. Its goal is to help federal agencies achieve mission objectives through reliable, well-planned IT and engineering solutions.

Company Size

501-1,000

Company Stage

N/A

Total Funding

N/A

Headquarters

Vienna, Virginia

Founded

2003

Get referred to Kentro

See people who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • June 2026 NASA SEWP VI expands task-order access across a $60 billion vehicle.
  • April 2026 leadership split into growth and delivery improves execution discipline.
  • July 2026 AI modernization messaging and June 2026 contract wins strengthen hiring appeal.

What critics are saying

  • VA and SSA drive roughly 75% of obligated revenue, creating severe concentration risk.
  • $361.1 million returns to market within 24 months; recompetes hit 2027-2028.
  • If VA and SSA recompetes slip, Kentro's federal revenue base collapses quickly.

What makes Kentro unique

  • March 2025 rebrand from IT Concepts to Kentro sharpened its federal digital-services positioning.
  • Kentro holds prime vehicles across VA, SSA, GSA, NRC, and NASA SEWP VI.
  • Its July 2026 Digital Services Factory repackages modernization into repeatable, AI-accelerated delivery.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health Insurance

401(k) Retirement Plan

401(k) Company Match

Hybrid Work Options

Remote Work Options

Professional Development Budget

Wellness Program