Loading jobs…
Loading jobs…
Tlingit Haida Tribal Business Corporation — Atlanta Georgia
At Tlingit Haida Tribal Business Corporation (THTBC), your work goes beyond the job description—it becomes part of a purpose-driven legacy. Our continuous commitment to growth directly contributes to the strength, resilience, and future of the communities we serve. Every milestone we achieve helps fund programs, expand services, and create lasting value for the Tribe, making each success a shared one.
For more than 35 years THTBC and its subsidiaries have delivered mission-critical services to federal clients globally. From logistics and information technology to cybersecurity and facilities operations, we are united by a single purpose: to generate meaningful economic opportunity and sustainable growth for the Tlingit & Haida Tribes of Alaska. Together We Grow – One Mission, One Team – With a Commitment to Serve Subsidiary: THTBC Job Title: ISSM - ATO Program Lead (ECS-MNS) Job Location: Atlanta, Georgia Labor Category: Exempt Clearance Level: N/A Travel Requirement: Up to 25% of the time Pay: DOE Scope of Work: The ATO Program Lead (Information System Security Manager) provides cybersecurity leadership for the successful authorization, accreditation, and lifecycle management of systems supporting the Emergency Communication System (ECS) and Mass Notification System (MNS) modernization program.
The role serves as the primary cybersecurity advisor responsible for Risk Management Framework (RMF) execution, Authority to Operate (ATO) activities, continuous monitoring, and cybersecurity compliance across the program.
Responsibilities
: Lead all Authority to Operate (ATO) activities throughout the system lifecycle. Serve as the Information System Security Manager (ISSM) supporting cybersecurity governance for the program.
Requirements
Coordinate with Government Authorizing Officials (AO), ISSOs, ISSEs, cybersecurity assessors, and program leadership throughout the authorization process. Oversee development, review, and maintenance of RMF documentation including System Security Plans (SSPs), POA&Ms, Security Assessment Reports (SARs), Continuous Monitoring Plans, and supporting authorization artifacts.
Lead vulnerability management activities including remediation planning, risk acceptance, and security compliance reporting.
are incorporated into system design and implementation. Advise project leadership on cybersecurity risks, mitigation strategies, and authorization status. Coordinate security testing, assessment activities, and continuous monitoring efforts.
Support accreditation of interconnected systems and enterprise network integrations. Performs other duties as assigned.
: 10+ years supporting cybersecurity, information assurance, or federal information systems. 5+ years serving as an ISSM, Senior ISSO, Cybersecurity Lead, or equivalent role supporting Authority to Operate (ATO) efforts. Experience supporting mission-critical communications, emergency communications, or critical infrastructure systems.
Demonstrated experience leading RMF packages through the ATO process for DoD or other federal agencies. Experience with NIST Risk Management Framework (RMF), NIST SP 800-37, NIST SP 800-53, DISA STIGs, Security Technical Implementation Guides, and continuous monitoring. Experience using Enterprise Mission Assurance Support Service (eMASS) or comparable authorization management systems.
Strong understanding of cybersecurity governance, vulnerability management, system hardening, and risk management. Experience coordinating with Government Authorizing Officials (AO), Security Control Assessors (SCA), ISSOs, ISSEs, and Program Managers.