Cybersecurity - Lead ISSO
Securepro Inc
Job Description
Job Description
Position Overview
SecurePro is seeking experienced Lead and Senior Information System Security Officers (ISSOs) to support a federal cybersecurity program in Washington, DC. The team will provide ISSO support across a portfolio of approximately 32 FISMA Moderate information systems, including Risk Management Framework (RMF) and authorization activities, continuous monitoring, vulnerability management, POA&M execution, security documentation, security impact analysis, incident coordination, and audit support.
This is a hands-on, on-site position supporting a federal environment. Candidates will be considered for either the Lead ISSO or Senior ISSO role based on experience and qualifications.
Key Responsibilities
- Execute the NIST SP 800-37 Rev. 2 RMF lifecycle for FISMA Moderate systems.
- Develop, maintain, review, and quality-control authorization packages including SSPs, SARs, RARs, POA&Ms, security controls, and assessment evidence.
- Manage POA&Ms from finding identification through validated closure.
- Perform continuous monitoring and vulnerability analysis.
- Verify security logging and audit coverage using Splunk.
- Maintain authorization and compliance information in CSAM as the authoritative GRC platform.
- Maintain ticket-to-POA&M traceability using ServiceNow.
- Perform Security Impact Analyses for system and infrastructure changes.
- Coordinate cybersecurity incident response activities and corrective actions.
- Support FISMA audits, Inspector General reviews, independent assessments, and evidence requests.
- Review inherited and common controls for AWS and Azure environments.
- Participate in Change Advisory Boards, Change Control Boards, Enterprise Review Boards, and cybersecurity governance forums.
- Coordinate with federal ISSMs, CISOs, Authorizing Officials, System Owners, and other cybersecurity stakeholders.
Lead ISSO Responsibilities
The Lead ISSO will serve as the primary technical lead for the engagement and will:
- Direct Senior ISSO workstreams and authorization schedules.
- Perform quality reviews before cybersecurity deliverables are submitted to the Government.
- Own cybersecurity risk and issue tracking and escalation.
- Prepare Authorizing Official decision briefings.
- Lead responses to audits, IG reviews, and independent assessments.
- Provide technical direction to other ISSOs while maintaining responsibility for an assigned system portfolio.
Required Qualifications — All Candidates
- U.S. citizenship required.
- Ability to obtain and maintain a Tier 4 High Risk Public Trust .
- Hands-on experience with CSAM supporting federal authorization and RMF activities.
- Experience executing NIST SP 800-37 Rev. 2 RMF for FISMA Moderate systems.
- Hands-on ownership of the POA&M lifecycle through validated closure .
- Working proficiency with Splunk and ServiceNow .
- Experience developing and maintaining federal cybersecurity documentation.
- Ability to work on-site in Washington, DC, five days per week .
- Knowledge of NIST SP 800-53 security controls and federal cybersecurity requirements.
Lead ISSO Qualifications
- 10+ years of federal cybersecurity experience.
- 8+ years of federal ISSO, RMF, or Assessment & Authorization experience.
- 5+ years providing technical direction to other ISSOs.
- Demonstrated experience working directly with federal ISSMs, CISOs, Authorizing Officials, or AODRs.
- Experience reviewing and approving SSPs, SARs, RARs, POA&Ms, and assessment evidence.
- Experience leading FISMA audits, Inspector General reviews, or independent security assessments.
- Working knowledge of CSAM System Inventory, A&A/ATO, SSP/Security Controls, Assessments, Common Control/Inheritance, POA&M, and Continuous Monitoring modules.
- At least one active certification: CISM, CISSP, or CISA .
Senior ISSO Qualifications
- 6–8+ years of federal cybersecurity experience, depending on position level.
- 4–5+ years of ISSO, RMF, or federal authorization experience.
- Experience with continuous monitoring, vulnerability management, security documentation, incident coordination, or Security Impact Analysis.
- Experience with vulnerability platforms such as Tenable Nessus, Qualys, or ACAS .
- Experience validating Splunk log-source coverage, retention, and audit-trail completeness.
- Experience authoring SSPs, control implementation statements, system boundary/data-flow documentation, and control inheritance records.
- At least one active certification such as CISM, CISSP, CISA, or CASP+ .
- Candidates considered for the Alternate Lead role must have experience assuming lead responsibilities, including briefings, prioritization, and artifact approval.
Preferred Qualifications
- Active federal Public Trust or security clearance.
- CISA certification.
- AWS or Azure cloud certification.
- AWS GovCloud or Azure Government experience.
- FedRAMP shared-responsibility and control-inheritance experience.
- NIST SP 800-53 Rev. 4 to Rev. 5 transition experience.
- Microsoft Defender, Intune, BigFix, Palo Alto, Zscaler, Okta, or Entra ID experience.
- CyberScope and federal FISMA reporting experience.
- NIST SP 800-128 Security Impact Analysis experience.
- Container, Kubernetes, or DevSecOps exposure.
- Experience supporting federal audit, penetration testing, or Inspector General activities.
Work Environment
The engagement supports a hybrid federal technology environment that may include Azure Government, Microsoft 365 GCC/GCC High, Entra ID, Okta, Palo Alto, Zscaler, Tenable or Qualys, Microsoft Defender, Intune, BigFix, Splunk, ServiceNow, and CSAM .
This position is on-site in Washington, DC and is not remote or hybrid .
SecurePro is an equal opportunity employer. Employment for these positions is contingent upon contract award and successful completion of applicable federal suitability and onboarding requirements.
- ...Zantech is seeking a Senior Information System Security Officer to lead cybersecurity compliance for complex systems and serve as the Cybersecurity... ...onsite work at the Headquarters in Washington, DC. The Sr ISSO will oversee RMF implementations, SSPs, security assessments,...Suggested
- ...Technology Automation & Management (TeAM), Inc. seeks a Lead Senior Information System Security Officer (ISSO) to provide executive-level cybersecurity oversight across the enterprise and ensure continuous ISSO coverage for FISMA Moderate systems within the GSS boundary...SuggestedRemote job
- ...Team Lead Information System Security Officer (Lead ISSO) The Team Lead ISSO will serve as the our primary technical and operational lead for cybersecurity services supporting the federal customer’s enterprise information systems and cloud environments. The position will...SuggestedFull timeFor contractors
- ...AWARD Mission Objectives: Provide executive-level cybersecurity oversight, ensure continuous ISSO coverage across the enterprise, and ensure compliance... ...of contact for cybersecurity matters and the overall lead for TeAM's ISSO support. The Lead Senior ISSO will own...SuggestedContract work
- ...Lead Senior Information System Security Officer (ISSO) - DFC EOE Statement Technology Automation & Management (TeAM), Inc. TeAM is looking for... ...AWARD Mission Objectives: Provide executive-level cybersecurity oversight, ensure continuous ISSO coverage across...SuggestedFull timeContract workPart timeRemote workRelocation package2 days per week
- ...Description Description: Xtreme Solutions is seeking an experienced Lead Information System Security Officer (ISSO) / Technical Program Lead to provide technical leadership and hands-on cybersecurity support for a federal customer in Washington, DC. This is an...For contractorsLocal area
- ...Job Description Job Description Position: Cybersecurity Lead Clearance: Secret Location: Crystal City, VA (Hybrid Telework) Type... ...Manager (ISSM) or Information System Security Officer (ISSO) on DoD programs · Experience executing cybersecurity...Full timeTemporary workWork at officeRemote workFlexible hours
- ...Mission Objectives: Execute the full RMF lifecycle for high-priority Tier 1 systems while serving as the designated backup to the Lead Senior ISSO. Position Responsibility Summary: Manage a named portfolio of Tier 1 systems (FedRAMP shared-responsibility environments,...Contract work
- ...commercial and government clients, is seeking a full-time Lead Senior Information Systems Security Officer (ISSO) to support the government customer located in... ...to ensure consistent, compliant, and effective cybersecurity execution across supported information systems....Full timeContract workFor contractorsRemote work2 days per week
- Zermount, Inc. is seeking an ISSO Program Manager in Arlington, VA. The successful candidate will provide project management and security expertise, managing a team to ensure compliance and risk management processes align with federal guidelines. Responsibilities include...Remote job
- Guidehouse is seeking an experienced Information Security Systems Officer (ISSO) to lead RMF, ATO, and continuous monitoring for a major federal initiative. You will mentor staff and guide system owners through cloud and on‑premises security in hybrid environments. In this...
- ...CONTINGENT UPON CONTRACT AWARD**Overview: Job Title: Lead Information System Security Officer (ISSO) Security Clearance: Ability to Obtain Tier 4... ...Information System Security Officer (ISSO) to provide on-site cybersecurity and Risk Management Framework (RMF) sustainment...Contract work
- ...Department of Defense (DoD) contractors that must obtain and maintain Cybersecurity Maturity Model Certification (CMMC). SecureITSM is a CMMC... ...a highly organized and technically skilled CMMC Assessment Lead to oversee the planning, preparation, coordination, and...For contractorsRemote work
$229.9k - $262.4k
...protecting our customers to our associates. What You’ll Do: Lead, mentor, and develop associates by setting clear expectations,... ...feedback, and supporting career progression Serve as a cybersecurity subject matter expert and advise on best practices in risk reduction...Full timePart timeH1bLocal area- ...Job Description Job Description Description: XSI is seeking a Lead Cyber Security Analysis SME to anchor the cybersecurity engineering team supporting the Congressional Budget Office (CBO). This is a senior, hands-on engineering leadership role — not a policy,...Work at office
- cFocus Software seeks a Cybersecurity Shift Lead to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybrid with the onsite location being in Washington, DC. This position requires a Public Trust clearance....Full timeWork at officeShift work
- ...Job Description Job Description Strategic Growth Lead (Executive‑Track Role - CGO Pathway) Washington, DC (Remote with DMV travel... ...IT solutions, application development, systems integration, cybersecurity, and professional services to federal agencies. Our culture...Contract workWork at officeRemote work
- ...identifying candidates for the following position. Requisition Type:Full Time Position Status: Contingent Position Title: Cybersecurity Policy Lead Location:Washington, DC Clearance: Secret Duties and Responsibilities The Cybersecurity Policy...Full timeFor contractorsWork at office
- ...Position Title Threat Emulation & Readiness Lead / Red Team Lead Position Overview The Threat Emulation & Readiness Lead... ...-informed defense initiatives supporting a federal enterprise cybersecurity program. The Lead will direct realistic adversary simulation...Full time
- ...Incident Response Lead ShorePoint is a fast-growing, industry recognized and award-winning cybersecurity services firm with a focus on high-profile, high-threat, private and public-sector customers who demand experience and proven security models to protect their data...Contract work
$86.8k - $198k
...LeadThe Opportunity:Join Booz Allen as an Industry Analyst Relations Lead and help shape how the market understands the company’s expanding portfolio of proprietary enterprise software, cybersecurity, and tech-enabled solutions. In this role, you will design, drive, and...Full timeContract workPart timeWork at officeLocal areaRemote work- ...Data Systems Analysts, Inc. in Washington, DC is seeking a Cybersecurity Specialist to lead security across ACWS environments and pipelines. The role requires RMF/ATO experience and DoD IL5/IL6 controls, vulnerability management, and collaboration with DevSecOps and infrastructure...
- ...support both stable production systems and rapidly changing research and development environments. Experience operating within DoD cybersecurity, information assurance, and system-security requirements. U.S. citizenship is required for this position. Clearance:...For subcontractorLocal area
$105.4k - $207.8k
...understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our... ...candidate would possess these skills: Proven ability to lead and coordinate a team of analysts across shiftsStrong client-facing...Local areaVisa sponsorshipShift workRotating shift- ...programs across defense and civilian agencies, with core expertise in cybersecurity, program management, enterprise IT, and technical oversight services. BTI is currently searching for a Technical Lead to fulfill the roles and responsibilities below: Roles and...
- ...environments. We apply modern capabilities, including AI/ML, cloud, cybersecurity, and IT modernization to solve complex challenges, enable... ...speed, ownership, and execution over bureaucracy. Lead Systems Architect Location: Suitland, MD (Hybrid) Terms:...Full timeFor contractorsWork experience placementFlexible hours
$61k - $101k
...probability, statistics, and statistical distributions, applied to cybersecurity or technology risk use cases. We require advanced Python... ...as Matplotlib, Seaborn, or Plotly. We look for experience leading teams in the safe use of enterprise-authorized AI capabilities...Full time- Bering-Alaka'ina Holdings, LLC is seeking a Sr Cybersecurity Compliance Specialist to support a government customer in Arlington, Virginia... ...U.S. citizenship and an active Top Secret clearance. You will lead auditing efforts in eMASS, manage compliance tasks, and support...
- ...Description Dexian Government Solutions is seeking an Asset Lead for a proposal effort supporting the F-35 Joint Program Office... ...equipment exchanges, and organizational changes. Work with cybersecurity and technical teams to support approved sanitization and disposal...Contract workTemporary workWork at officeLocal areaRemote work
- ...Job Description Job Description SkyePoint Decisions is a leading Cybersecurity Architecture and Engineering, Critical Infrastructure and Operations, and Applications Development and Maintenance IT service provider headquartered in Dulles, Virginia with operations...Contract workFor contractorsRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cybersecurity - Lead ISSO. Be the first to apply!
- cyber security incident responder Arlington, VA
- remote cyber security Arlington, VA
- cyber security Arlington, VA
- cybersecurity policy and compliance analyst Arlington, VA
- cybersecurity Arlington, VA
- cybersecurity certificate Arlington, VA
- cybersecurity technical writer Arlington, VA
- cyber security lead Arlington, VA
- cybersecurity software engineer Arlington, VA
- entry level cyber security Arlington, VA





