Information System Security Manager (Onsite)

Apply Now

Information Systems Security Manager (ISSM)

The Pratt & Whitney Government Security Compliance (GSC) cybersecurity team is seeking an Information Systems Security Manager (ISSM) to support our team in East Hartford, Connecticut. The successful candidate will report directly to the Special Access Programs (SAP) Enclave Cybersecurity Senior Manager and adherence with National Institute of Standards and Technology (NIST) Special Publications, customer directives, and company policies as applicable all National Industrial Security Program Operating Manual (NISPOM) Chapter 8, and the Joint Special Access Program Implementation Guide (JSIG) policies. We are looking for people with initiative, creativity, adaptability, strong written and verbal skills, strong analytical skills and attention to detail; creative troubleshooting skills; possess excellent judgment and professional maturity; have multi-tasking abilities and a client focus; and work effectively in a time sensitive and dynamic environment.

Key Responsibilities

  • Ensure information system(s) security objectives are achieved and organizational risk is effectively managed for all Information Systems (IS) under purview.
  • Serve as the primary cybersecurity authority for inspections, assessments, audits, and continuous monitoring, leading preparation, execution, and response activities to maintain authorization and inspection readiness.
  • Engage with Program Managers to integrate cybersecurity requirements into program execution, schedules, and decision-making, and to address risk impacts to cost, scope, and mission delivery.
  • Investigate information system security violations and prepare reports specifying corrective and preventative actions.
  • Review and approve, within authority, configuration management requests.
  • Communicate with government Security Control Assessors (SCA) and Authorizing Officials (AO) when authorization is required. Know the difference between those two responsibilities.
  • Execute and maintain system authorization using the Risk Management Framework (RMF) and applicable guidance, including the JSIG for SAP systems.
  • Support the creation, review and update of cybersecurity documentation and other technical writing.
  • Maintain awareness and working knowledge of DD Form 254s and contractual security requirements, ensuring cybersecurity controls, inspection scope, and authorization boundaries align with approved mission and program objectives.
  • Develop, manage, and drive closure of Plans of Action and Milestones (POA&Ms) resulting from inspections, assessments, and continuous monitoring activities.
  • Develop, maintain, and validate cybersecurity plans, authorization artifacts, and compliance documentation to support audit-ready operations.
  • Identify, assess, and communicate cybersecurity risk including Security Impact Analysis (SIA) to senior leadership and AOs, including the impact of system changes, vulnerabilities, inspection findings, and authorization conditions.

Qualifications You Must Have

  • Advanced degree and 4+ years of combined experience in Systems Administration, Systems Engineering, Security/Cybersecurity, Info-Tech/Networking, or Management role supporting classified programs or government regulated environment; OR Bachelor's degree and 8+ years of relevant industry experience; OR Associate's degree (or 2-year technical training) and 10+ years of relevant industry experience; OR High School diploma or Military / Technical Training and 12+ years of relevant industry experience.
  • Current DoD 8570 IAM Level II certification (Security+, CGRC, CISM) with the ability to acquire IAM Level III certification (GSLC, CISSP, CISSM, or other) within 6 months
  • Active US Government Security Clearance, SECRET level or higher.
  • Ability to communicate effectively with Program Management, Government authorities, and Executive level leadership.

Qualifications We Prefer

  • Active US Government TOP SECRET level security clearance with previous SAP experience
  • DoD 8570 IAM Level III certification (GSLC, CISSP, CISSM, or other)
  • Experience working in DoD classified Special Operating Programs and/or laboratory environments
  • Experience with information system security and monitoring tools (i.e. Splunk, Symantec, Ivanti, Tenable, ACAS, HBSS, etc.)
  • Experience providing technical security consultation for complex, cross-domain, heterogeneous classified networked environments in collaboration with internal/external Customers
  • Familiarity with large multi-facility networks including various complex components, including Windows and Linux environments
  • Experience with interpreting, implementing, and assessing security hardening guides & tools (DISA STIGs/SCAP)
  • Familiarity with the execution and management of cyber incident response; preservation, containment, and eradication

This role is:

  • Onsite: Employees who are working in Onsite roles will work primarily onsite. This includes all production and maintenance workers, as they are essential to the development of our engines.

Candidates will learn more about role type and current site status throughout the recruiting process. For onsite and hybrid roles, commuting to and from the assigned site is the employee's personal responsibility.

Learn more & apply today!

The salary range for this role is 107,500 USD - 204,500 USD. The salary range provided is a good faith estimate representative of all experience levels. RTX considers several factors when extending an offer, including but not limited to, the role, function and associated responsibilities, a candidate's work experience, location, education/training, and key skills. Hired applicants may be eligible for benefits, including but not limited to, medical, dental, vision, life insurance, short-term disability, long-term disability, 401(k) match, flexible spending accounts, flexible work schedules, employee assistance program, Employee Scholar Program, parental leave, paid time off, and holidays. Specific benefits are dependent upon the specific business unit as well as whether or not the position is covered by a collective-bargaining agreement. Hired applicants may be eligible for annual short-term and/or long-term incentive compensation programs depending on the level of the position and whether or not it is covered by a collective-bargaining agreement. Payments under these annual programs are not guaranteed and are dependent upon a variety of factors including, but not limited to, individual performance, business unit performance, and/or the company's performance.

RTX is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or veteran status, or any other applicable state or federal protected class. RTX provides affirmative action in employment for qualified Individuals with a Disability and Protected Veterans in compliance with Section 503 of the Rehabilitation Act and the Vietnam Era Veterans' Readjustment Assistance Act.

Apply Now