Cybersecurity - Lead ISSO
Securepro Inc
Job Description
Job Description
Benefits:
- 401(k)
- 401(k) matching
- Dental insurance
- Health insurance
- Execute the NIST SP 800-37 Rev. 2 RMF lifecycle for FISMA Moderate systems.
- Develop, maintain, review, and quality-control authorization packages including SSPs, SARs, RARs, POA&Ms, security controls, and assessment evidence.
- Manage POA&Ms from finding identification through validated closure.
- Perform continuous monitoring and vulnerability analysis.
- Verify security logging and audit coverage using Splunk.
- Maintain authorization and compliance information in CSAM as the authoritative GRC platform.
- Maintain ticket-to-POA&M traceability using ServiceNow.
- Perform Security Impact Analyses for system and infrastructure changes.
- Coordinate cybersecurity incident response activities and corrective actions.
- Support FISMA audits, Inspector General reviews, independent assessments, and evidence requests.
- Review inherited and common controls for AWS and Azure environments.
- Participate in Change Advisory Boards, Change Control Boards, Enterprise Review Boards, and cybersecurity governance forums.
- Coordinate with federal ISSMs, CISOs, Authorizing Officials, System Owners, and other cybersecurity stakeholders.
- Direct Senior ISSO workstreams and authorization schedules.
- Perform quality reviews before cybersecurity deliverables are submitted to the Government.
- Own cybersecurity risk and issue tracking and escalation.
- Prepare Authorizing Official decision briefings.
- Lead responses to audits, IG reviews, and independent assessments.
- Provide technical direction to other ISSOs while maintaining responsibility for an assigned system portfolio.
- U.S. citizenship required.
- Ability to obtain and maintain a Tier 4 High Risk Public Trust .
- Hands-on experience with CSAM supporting federal authorization and RMF activities.
- Experience executing NIST SP 800-37 Rev. 2 RMF for FISMA Moderate systems.
- Hands-on ownership of the POA&M lifecycle through validated closure .
- Working proficiency with Splunk and ServiceNow .
- Experience developing and maintaining federal cybersecurity documentation.
- Ability to work on-site in Washington, DC, five days per week .
- Knowledge of NIST SP 800-53 security controls and federal cybersecurity requirements.
- 10+ years of federal cybersecurity experience.
- 8+ years of federal ISSO, RMF, or Assessment & Authorization experience.
- 5+ years providing technical direction to other ISSOs.
- Demonstrated experience working directly with federal ISSMs, CISOs, Authorizing Officials, or AODRs.
- Experience reviewing and approving SSPs, SARs, RARs, POA&Ms, and assessment evidence.
- Experience leading FISMA audits, Inspector General reviews, or independent security assessments.
- Working knowledge of CSAM System Inventory, A&A/ATO, SSP/Security Controls, Assessments, Common Control/Inheritance, POA&M, and Continuous Monitoring modules.
- At least one active certification: CISM, CISSP, or CISA .
- 6–8+ years of federal cybersecurity experience, depending on position level.
- 4–5+ years of ISSO, RMF, or federal authorization experience.
- Experience with continuous monitoring, vulnerability management, security documentation, incident coordination, or Security Impact Analysis.
- Experience with vulnerability platforms such as Tenable Nessus, Qualys, or ACAS .
- Experience validating Splunk log-source coverage, retention, and audit-trail completeness.
- Experience authoring SSPs, control implementation statements, system boundary/data-flow documentation, and control inheritance records.
- At least one active certification such as CISM, CISSP, CISA, or CASP+ .
- Candidates considered for the Alternate Lead role must have experience assuming lead responsibilities, including briefings, prioritization, and artifact approval.
- Active federal Public Trust or security clearance.
- CISA certification.
- AWS or Azure cloud certification.
- AWS GovCloud or Azure Government experience.
- FedRAMP shared-responsibility and control-inheritance experience.
- NIST SP 800-53 Rev. 4 to Rev. 5 transition experience.
- Microsoft Defender, Intune, BigFix, Palo Alto, Zscaler, Okta, or Entra ID experience.
- CyberScope and federal FISMA reporting experience.
- NIST SP 800-128 Security Impact Analysis experience.
- Container, Kubernetes, or DevSecOps exposure.
- Experience supporting federal audit, penetration testing, or Inspector General activities.
Vacancy posted 20 days ago
Similar jobs that could be interesting for youBased on the Cybersecurity - Lead ISSO in Arlington, VA vacancy
- ...Position Overview SecurePro is seeking experienced Lead and Senior Information System Security Officers (ISSOs) to support a federal cybersecurity program in Washington, DC. The team will provide ISSO support across a portfolio of approximately 32 FISMA Moderate...SuggestedContract work
$125k - $175k
OverviewSteampunk is seeking an ISSO Portfolio Manager / Team Lead to support a federal customer. This role is perfect for someone who blends strong cybersecurity expertise with exceptional customer engagement, coaching, and leadership skills. You’ll guide a team of ISSOs...SuggestedContract work1 day per week- Zermount, Inc is seeking an ISSO Program Manager to lead security governance and RMF activities for a federal client. This role combines project management with cybersecurity expertise to ensure secure, compliant operations across enterprise systems. The role requires...Suggested
- ...Description Description: Xtreme Solutions is seeking an experienced Lead Information System Security Officer (ISSO) / Technical Program Lead to provide technical leadership and hands-on cybersecurity support for a federal customer in Washington, DC. This is an...SuggestedFor contractorsLocal area
- ...Job Title: ISSO/ISCM Lead (RFP) Job Location: Washington, DC Contractor shall provide an ISSO/ISCM Lead responsible for the strategic coordination of compliance, authorization support, and the comprehensive execution of the Information Security Continuous Monitoring (...SuggestedFor contractorsWork at office
$69.4k - $158k
...Security Officer, LeadThe Opportunity:When our country’s cybersecurity is on the line, simply reacting is not enough—we need a... ...resilience.As an Information Systems Security Officer (ISSO) on our team, you’ll lead the assessment of the Department of War's IT infrastructure...Full timeContract workPart timeWork at officeLocal areaRemote work- ...Job Description Job Description Position: Cybersecurity Lead Clearance: Secret Location: Crystal City, VA (Hybrid Telework) Type... ...Manager (ISSM) or Information System Security Officer (ISSO) on DoD programs · Experience executing cybersecurity...Full timeTemporary workWork at officeRemote workFlexible hours
- ...Agile Business Concepts is seeking an experienced ISSO Lead to oversee Information System Security Officer and Risk Management Framework (RMF) activities supporting a federal cybersecurity program. Responsibilities include SSP and POA&M management, security controls...
- ...Job Description Job Description Cybersecurity Lead - Joint Base Anacostia-Bolling, Washington, D.C. - Active TS/SCI Clearance with Polygraph... ...engineering standards documents.Collaborate with the Lead ISSO to support RMF package development, security control...Full time
- Guidehouse is seeking an experienced Information Security Systems Officer (ISSO) to lead RMF, ATO, and continuous monitoring for a major federal initiative. You will mentor staff and guide system owners through cloud and on‑premises security in hybrid environments. In this...
- Zermount, Inc. is seeking an ISSO Program Manager in Arlington, VA. The successful candidate will provide project management and security expertise, managing a team to ensure compliance and risk management processes align with federal guidelines. Responsibilities include...Remote job
- ...CONTINGENT UPON CONTRACT AWARD**Overview: Job Title: Lead Information System Security Officer (ISSO) Security Clearance: Ability to Obtain Tier 4... ...Information System Security Officer (ISSO) to provide on-site cybersecurity and Risk Management Framework (RMF) sustainment...Contract work
- ...the government create lasting impact in fields as diverse as cybersecurity, healthcare, aviation, defense, and enterprise transformation.... ...operational capabilities.The ADI Department is seeking a Task Lead for the Advanced Battle Management System (ABMS) project for the...For contractorsWork experience placementLocal area
- About DMIDMI is a leading provider of digital services and technology solutions, headquartered in Tysons Corner, VA. With a focus on... ...to-end managed IT services, including managed mobility, cloud, cybersecurity, network operations, and application development, DMI supports...Work experience placement
- ...development opportunities, a world-class training facility, and leading market tools, we help our people continue to grow both... ...DoD Architecture Provide subject matter expertise on federal cybersecurity regulations, including the NIST Risk Management Framework (RMF...Full timeLocal area
- ...the government create lasting impact in fields as diverse as cybersecurity, healthcare, aviation, defense, and enterprise transformation.... ...Technical Division is seeking an experienced, highly motivated Lead Mission Modeling and Simulation Engineer to support defense mission...Work experience placementLocal area
$112.8k - $257k
DFIR Team LeadThe Opportunity:Lead and inspire a team of skilled incident response analysts, fostering a culture of technical expertise... ...incidents and coordinating efforts to contain and resolve cybersecurity issues. Convey status updates to critical stakeholders,...Full timeContract workPart timeWork at officeLocal areaRemote workAfternoon shift$62k - $141k
Cybersecurity RMF LeadThe Opportunity:Design, implement, and manage policies and procedures to ensure database and software security. Apply... ...Practitioner (SSCP)CertificationNice If You Have:Experience leading RMF efforts across multiple systems, including providing oversight...Full timeContract workPart timeWork at officeLocal areaRemote work- ...Description Apogee Global RMS is seeking a Senior Cybersecurity Engineer / Offensive Security Lead to support high‑visibility federal and IC programs. This role is designed for operators who bring hands‑on offensive tradecraft, current certifications, and recent...Full time
$100k - $120k
...Bering Straits Native Corporation is seeking a Sr. Cybersecurity Incident Response Specialist in Washington, DC. This role involves monitoring cyber threats and ensuring the security of networks and systems. The ideal candidate should have a deep understanding of cybersecurity...- ...A cybersecurity and data operations firm is seeking Cyber Eviction Analysts to support the DHS's Hunt and Incident Response Team. The role requires extensive experience in incident response and the ability to think independently. Candidates must have a strong understanding...
$112.8k - $257k
...cloud, digital solutions, enterprise DevSecOps, AI, and ML. Apply leading-edge principles, theories, and concepts. Contribute to the... ...experience in software delivery across key areas such as development, cybersecurity, data engineering and analytics, and operationsExperience...Full timeContract workPart timeWork at officeLocal areaRemote work- ...Description AC4S LLC is seeking an IT Asset Management Lead to join their team in Northern Virginia. The qualified... ...maintenance, inventory in compliance with DoW policies, regulations and cybersecurity Manage enterprise hardware and software asset...Full timeContract workPart timeWork experience placementWorldwideShift work
- ...conflicts to influence what we do. The R&D centers we operate for the government create lasting impact in fields as diverse as cybersecurity, healthcare, aviation, defense, and enterprise transformation. We're making a difference every day—working for a safer, healthier...Work experience placementLocal area
- ...Required:Ability to Obtain Public TrustWhat You Will Do:The Fraud Analytics Senior Consultant Lead will support highly specialized fraud analytics activities across the Cybersecurity Fraud Analytics and Monitoring program. This position will independently assess difficult...Full timeFor contractorsFlexible hours
- ...company and make a direct impact in a dynamic environment where your expertise drives meaningful change and growth.As a Senior Lead Cybersecurity Architect at JPMorganChase within Cybersecurity and Technology Controls, you are an integral part of a team that develops...For contractors
$150k - $175k
...100% employee-owned federal contracting company, is seeking a Lead Systems Administrator with strong Linux CLI and Windows administration... ...infrastructure across multiple datacenters, partnering with cybersecurity and engineering teams, and providing Tier III support for...Local areaRemote workRelocation package$82.55k - $149.23k
...seeking a Senior Exercise Planner to serve as a Regional Exercise Lead for the CISA National Cyber Exercise Program (NCEP), including... ...globally across aviation security, passenger screening, cybersecurity, and border and port security, ABS integrates next-generation...Full timeContract workWorldwide- ...the government create lasting impact in fields as diverse as cybersecurity, healthcare, aviation, defense, and enterprise transformation.... ...providing successful thought leadership in applying, teaching, or leading acquisition reform or modernization - prior experience as an...Work experience placementLocal areaShift work
$69.4k - $158k
...need strategic policy development. That’s why we need you, a cybersecurity specialist with the expertise required to analyze the policies... ...planning and policy development specialist on our team, you’ll lead the assessment of the Department's current cyber policies, the...Full timeContract workPart timeWork at officeLocal areaRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cybersecurity - Lead ISSO. Be the first to apply!
Related searches
- IT cyber security Arlington, VA
- cyber security intern Arlington, VA
- cybersecurity technical writer Arlington, VA
- cybersecurity certificate Arlington, VA
- cybersecurity grc Arlington, VA
- cybersecurity Arlington, VA
- remote cyber security Arlington, VA
- cyber security technician Arlington, VA
- cybersecurity administrator Arlington, VA
- senior cybersecurity engineer Arlington, VA




