DMI

Information Systems Security Manager

Posted Date 1 day ago(1/7/2026 11:07 AM)
Job ID
2026-28445
Category
Security
Location
US-KY-Fort Knox

About DMI

DMI is a leading provider of digital services and technology solutions, headquartered in Tysons Corner, VA. With a focus on end-to-end managed IT services, including managed mobility, cloud, cybersecurity, network operations, and application development, DMI supports public sector agencies and commercial enterprises around the globe. Recognized as a Top Workplace, DMI is committed to delivering secure, efficient, and cost-effective solutions that drive measurable results. Learn more at www.dminc.com

About the Opportunity

DMI (Digital Management, Inc.) is seeking an experienced and proactive Information Systems Security Manager (ISSM) who will report directly to the Program Manager.
The ISSM will be the primary security leader for the program while achieving a new Authority to Operate (ATO) and maintaining the security posture for an application migrating to the Enterprise Cloud Management Agency (ECMA) cARMY environment. Responsible for navigating the unique challenges of securing systems in a DOW-approved cloud while ensuring compliance with all applicable DOW, DISA, and Army security policies. Primary focus will be on proactive risk management, continuous monitoring, and successfully managing the ATO lifecycle within the Army's cloud ecosystem.

 

Duties and Responsibilities:

  • Cloud ATO Lifecycle Management: Lead all efforts to achieve and maintain the system's ATO within the ECMA cARMY environment. Primary driver for the RMF package, developing, maintaining, and updating all required documentation within the Enterprise Mission Assurance Support Service (eMASS).
  • Vulnerability Management & ACAS Remediation: Directly manage the vulnerability remediation process. This includes analyzing scan results from the Assured Compliance Assessment Solution (ACAS), prioritizing vulnerabilities, and coordinating with system administrators and developers for timely remediation within the cloud environment.
  • Cloud Security Controls & Compliance: Architect and validate the implementation of security controls, interpreting and applying them specifically to a cloud environment. Leverage control inheritance from the cARMY platform and ensure compliance with relevant Security Technical Implementation Guides (STIGs).
  • Incident Response: Serve as the lead for investigating and resolving security-related incidents and anomalies.
  • Risk Management Framework (RMF): Apply a deep understanding of the RMF to advise leadership on security posture, risk acceptance, and strategic planning for the system's successful operation in cARMY.
  • Collaboration & Support: Interfaces directly with government counterparts, including but not limited to the ECMA, the system's Information System Security Officer (ISSO), and Authorizing Official (AO) representatives.
  • Oversee all aspects of application and system security for a program hosted in a DOW cloud environment.
  • Manage the Plan of Action & Milestones (POA&M): Track vulnerabilities and ensure a clear path to remediation.
  • Ensure continuous compliance with all relevant DISA STIGs and Cloud Computing Security Requirements Guide (CCSRG) mandates.
  • Provide regular security posture reports and briefings to program leadership and Government customers.
  • Other security-related duties as assigned.

Qualifications

Education and Years of Experience:  

  • 7+ years of progressive experience in cybersecurity, with at least 5 years in a direct ISSM or similar role supporting DOW programs.
  • A Bachelor of Science degree in Cybersecurity, Information Technology, or a related field is highly desirable.

Required Skills/Certifications:

  • DoD 8570 IAM Level III certification (e.g., CISM, CISSP, or GSLC) is highly preferred
  • DoD 8570 IAT Level II certification is mandatory (CompTIA Security+ CE).
  • Demonstrable experience successfully guiding a system through the ATO process is strongly preferred.
  • eMASS Proficiency: Significant experience working within eMASS to manage the RMF package for a DOW IT system.
  • Demonstrated expertise with ACAS: Proven hands-on experience managing vulnerabilities identified by ACAS and driving the remediation process
  • Deep Understanding of RMF and STIGs: A thorough understanding of the DOW Risk Management Framework and the ability to effectively apply and validate DISA STIGs

Citizenship and Clearance:

  • Citizenship Status: Must be a United States Citizen.
  • Security Clearance: Must possess an active SECRET security clearance.

Physical Requirements: None required for this position.

Location: Must reside within a one-hour driving time of Fort Knox, Kentucky. 

Working at DMI

DMI is a diverse, prosperous, and rewarding place to work. Our culture is shaped by five core values that guide how we work, grow, and succeed together:

 

  • Do What’s Right – We lead with honesty and integrity.
  • Own the Outcome – We take responsibility and deliver.
  • Deliver for Our Customers – We are relentless about delivering value.
  • Think Bold, Act Smart – We innovate with purpose.
  • Win Together – We collaborate and celebrate our success.

These values aren’t just ideals—they show up in how we support every part of your well-being:

 

  • Convenience/Concierge – Virtual health visits, commuter perks, pet insurance, and entertainment discounts that make life easier.
  • Development – Annual performance reviews, tuition assistance, and internal career growth opportunities to help you thrive.
  • Financial – Generous 401(k) matches, life and disability insurance, and financial wellness tools to support your future.
  • Recognition – Annual awards, service anniversaries, referral bonuses, and peer-to-peer shoutouts that spotlight your achievements.
  • Wellness – Healthcare coverage, wellness programs, flu shots, and biometric screenings to support your health.

DMI values employees for their talents and contributions, and we take pride in helping our customers achieve their goals. Because when we live our values, we all win together.

 

***************** No Agencies Please *****************

 

Applicants selected may be subject to a government security investigation and must meet eligibility requirements for access to classified information. US citizenship may be required for some positions.

Options

Sorry the Share function is not working properly at this moment. Please refresh the page and try again later.

Connect With Us!

Not ready to apply? Connect with us for general consideration.