Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cybersecurity - Lead ISSO

Securepro Inc

Job Description

Job Description

Benefits:

  • 401(k)
  • 401(k) matching
  • Dental insurance
  • Health insurance
Position Overview

SecurePro is seeking experienced Lead and Senior Information System Security Officers (ISSOs) to support a federal cybersecurity program in Washington, DC. The team will provide ISSO support across a portfolio of approximately 32 FISMA Moderate information systems, including Risk Management Framework (RMF) and authorization activities, continuous monitoring, vulnerability management, POA&M execution, security documentation, security impact analysis, incident coordination, and audit support.

This is a hands-on, on-site position supporting a federal environment. Candidates will be considered for either the Lead ISSO or Senior ISSO role based on experience and qualifications.

Key Responsibilities

  • Execute the NIST SP 800-37 Rev. 2 RMF lifecycle for FISMA Moderate systems.
  • Develop, maintain, review, and quality-control authorization packages including SSPs, SARs, RARs, POA&Ms, security controls, and assessment evidence.
  • Manage POA&Ms from finding identification through validated closure.
  • Perform continuous monitoring and vulnerability analysis.
  • Verify security logging and audit coverage using Splunk.
  • Maintain authorization and compliance information in CSAM as the authoritative GRC platform.
  • Maintain ticket-to-POA&M traceability using ServiceNow.
  • Perform Security Impact Analyses for system and infrastructure changes.
  • Coordinate cybersecurity incident response activities and corrective actions.
  • Support FISMA audits, Inspector General reviews, independent assessments, and evidence requests.
  • Review inherited and common controls for AWS and Azure environments.
  • Participate in Change Advisory Boards, Change Control Boards, Enterprise Review Boards, and cybersecurity governance forums.
  • Coordinate with federal ISSMs, CISOs, Authorizing Officials, System Owners, and other cybersecurity stakeholders.
Lead ISSO Responsibilities

The Lead ISSO will serve as the primary technical lead for the engagement and will:

  • Direct Senior ISSO workstreams and authorization schedules.
  • Perform quality reviews before cybersecurity deliverables are submitted to the Government.
  • Own cybersecurity risk and issue tracking and escalation.
  • Prepare Authorizing Official decision briefings.
  • Lead responses to audits, IG reviews, and independent assessments.
  • Provide technical direction to other ISSOs while maintaining responsibility for an assigned system portfolio.
Required Qualifications — All Candidates

  • U.S. citizenship required.
  • Ability to obtain and maintain a Tier 4 High Risk Public Trust .
  • Hands-on experience with CSAM supporting federal authorization and RMF activities.
  • Experience executing NIST SP 800-37 Rev. 2 RMF for FISMA Moderate systems.
  • Hands-on ownership of the POA&M lifecycle through validated closure .
  • Working proficiency with Splunk and ServiceNow .
  • Experience developing and maintaining federal cybersecurity documentation.
  • Ability to work on-site in Washington, DC, five days per week .
  • Knowledge of NIST SP 800-53 security controls and federal cybersecurity requirements.
Lead ISSO Qualifications

  • 10+ years of federal cybersecurity experience.
  • 8+ years of federal ISSO, RMF, or Assessment & Authorization experience.
  • 5+ years providing technical direction to other ISSOs.
  • Demonstrated experience working directly with federal ISSMs, CISOs, Authorizing Officials, or AODRs.
  • Experience reviewing and approving SSPs, SARs, RARs, POA&Ms, and assessment evidence.
  • Experience leading FISMA audits, Inspector General reviews, or independent security assessments.
  • Working knowledge of CSAM System Inventory, A&A/ATO, SSP/Security Controls, Assessments, Common Control/Inheritance, POA&M, and Continuous Monitoring modules.
  • At least one active certification: CISM, CISSP, or CISA .
Senior ISSO Qualifications

  • 6–8+ years of federal cybersecurity experience, depending on position level.
  • 4–5+ years of ISSO, RMF, or federal authorization experience.
  • Experience with continuous monitoring, vulnerability management, security documentation, incident coordination, or Security Impact Analysis.
  • Experience with vulnerability platforms such as Tenable Nessus, Qualys, or ACAS .
  • Experience validating Splunk log-source coverage, retention, and audit-trail completeness.
  • Experience authoring SSPs, control implementation statements, system boundary/data-flow documentation, and control inheritance records.
  • At least one active certification such as CISM, CISSP, CISA, or CASP+ .
  • Candidates considered for the Alternate Lead role must have experience assuming lead responsibilities, including briefings, prioritization, and artifact approval.
Preferred Qualifications

  • Active federal Public Trust or security clearance.
  • CISA certification.
  • AWS or Azure cloud certification.
  • AWS GovCloud or Azure Government experience.
  • FedRAMP shared-responsibility and control-inheritance experience.
  • NIST SP 800-53 Rev. 4 to Rev. 5 transition experience.
  • Microsoft Defender, Intune, BigFix, Palo Alto, Zscaler, Okta, or Entra ID experience.
  • CyberScope and federal FISMA reporting experience.
  • NIST SP 800-128 Security Impact Analysis experience.
  • Container, Kubernetes, or DevSecOps exposure.
  • Experience supporting federal audit, penetration testing, or Inspector General activities.
Work Environment

The engagement supports a hybrid federal technology environment that may include Azure Government, Microsoft 365 GCC/GCC High, Entra ID, Okta, Palo Alto, Zscaler, Tenable or Qualys, Microsoft Defender, Intune, BigFix, Splunk, ServiceNow, and CSAM .

This position is on-site in Washington, DC and is not remote or hybrid .

SecurePro is an equal opportunity employer. Employment for these positions is contingent upon contract award and successful completion of applicable federal suitability and onboarding requirements.

Vacancy posted 20 days ago
Similar jobs that could be interesting for youBased on the Cybersecurity - Lead ISSO in Arlington, VA vacancy
  •  ...Position Overview SecurePro is seeking experienced Lead and Senior Information System Security Officers (ISSOs) to support a federal cybersecurity program in Washington, DC. The team will provide ISSO support across a portfolio of approximately 32 FISMA Moderate... 
    Suggested
    Contract work

    Securepro Inc

    Arlington, VA
    11 days ago
  • $125k - $175k

    OverviewSteampunk is seeking an ISSO Portfolio Manager / Team Lead to support a federal customer. This role is perfect for someone who blends strong cybersecurity expertise with exceptional customer engagement, coaching, and leadership skills. You’ll guide a team of ISSOs... 
    Suggested
    Contract work
    1 day per week

    Steampunk

    McLean, VA
    3 days ago
  • Zermount, Inc is seeking an ISSO Program Manager to lead security governance and RMF activities for a federal client. This role combines project management with cybersecurity expertise to ensure secure, compliant operations across enterprise systems. The role requires... 
    Suggested

    Hiring Our Heroes

    Arlington, VA
    10 hours ago
  •  ...Description Description: Xtreme Solutions is seeking an experienced Lead Information System Security Officer (ISSO) / Technical Program Lead to provide technical leadership and hands-on cybersecurity support for a federal customer in Washington, DC. This is an... 
    Suggested
    For contractors
    Local area

    Xtreme Solutions Corporate

    Washington DC
    11 days ago
  •  ...Job Title: ISSO/ISCM Lead (RFP) Job Location: Washington, DC Contractor shall provide an ISSO/ISCM Lead responsible for the strategic coordination of compliance, authorization support, and the comprehensive execution of the Information Security Continuous Monitoring (... 
    Suggested
    For contractors
    Work at office

    Ampcus

    Washington DC
    10 hours ago
  • $69.4k - $158k

     ...Security Officer, LeadThe Opportunity:When our country’s cybersecurity is on the line, simply reacting is not enough—we need a...  ...resilience.As an Information Systems Security Officer (ISSO) on our team, you’ll lead the assessment of the Department of War's IT infrastructure... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    McLean, VA
    3 days ago
  •  ...Job Description Job Description Position: Cybersecurity Lead Clearance: Secret Location: Crystal City, VA (Hybrid Telework) Type...  ...Manager (ISSM) or Information System Security Officer (ISSO) on DoD programs ·        Experience executing cybersecurity... 
    Full time
    Temporary work
    Work at office
    Remote work
    Flexible hours

    ADEPT Force Group Incorporated

    Arlington, VA
    11 days ago
  •  ...Agile Business Concepts is seeking an experienced ISSO Lead to oversee Information System Security Officer and Risk Management Framework (RMF) activities supporting a federal cybersecurity program. Responsibilities include SSP and POA&M management, security controls... 

    Agile Business Concepts, LLC

    Washington DC
    2 days ago
  •  ...Job Description Job Description Cybersecurity Lead - Joint Base Anacostia-Bolling, Washington, D.C. - Active TS/SCI Clearance with Polygraph...  ...engineering standards documents.Collaborate with the Lead ISSO to support RMF package development, security control... 
    Full time

    Synertex LLC

    Washington DC
    11 days ago
  • Guidehouse is seeking an experienced Information Security Systems Officer (ISSO) to lead RMF, ATO, and continuous monitoring for a major federal initiative. You will mentor staff and guide system owners through cloud and on‑premises security in hybrid environments. In this... 

    3M HEALTHCARE

    Arlington, VA
    10 hours ago
  • Zermount, Inc. is seeking an ISSO Program Manager in Arlington, VA. The successful candidate will provide project management and security expertise, managing a team to ensure compliance and risk management processes align with federal guidelines. Responsibilities include... 
    Remote job

    Zermount, Inc.

    Arlington, VA
    2 days ago
  •  ...CONTINGENT UPON CONTRACT AWARD**Overview: Job Title: Lead Information System Security Officer (ISSO) Security Clearance: Ability to Obtain Tier 4...  ...Information System Security Officer (ISSO) to provide on-site cybersecurity and Risk Management Framework (RMF) sustainment... 
    Contract work

    C3EL

    Washington DC
    2 days ago
  •  ...the government create lasting impact in fields as diverse as cybersecurity, healthcare, aviation, defense, and enterprise transformation....  ...operational capabilities.The ADI Department is seeking a Task Lead for the Advanced Battle Management System (ABMS) project for the... 
    For contractors
    Work experience placement
    Local area

    Mitre

    McLean, VA
    3 days ago
  • About DMIDMI is a leading provider of digital services and technology solutions, headquartered in Tysons Corner, VA. With a focus on...  ...to-end managed IT services, including managed mobility, cloud, cybersecurity, network operations, and application development, DMI supports... 
    Work experience placement

    DMI Mobile Enterprise Solutions

    Washington DC
    7 days ago
  •  ...development opportunities, a world-class training facility, and leading market tools, we help our people continue to grow both...  ...DoD Architecture Provide subject matter expertise on federal cybersecurity regulations, including the NIST Risk Management Framework (RMF... 
    Full time
    Local area

    KPMG

    Washington DC
    23 days ago
  •  ...the government create lasting impact in fields as diverse as cybersecurity, healthcare, aviation, defense, and enterprise transformation....  ...Technical Division is seeking an experienced, highly motivated Lead Mission Modeling and Simulation Engineer to support defense mission... 
    Work experience placement
    Local area

    Mitre

    McLean, VA
    7 days ago
  • $112.8k - $257k

    DFIR Team LeadThe Opportunity:Lead and inspire a team of skilled incident response analysts, fostering a culture of technical expertise...  ...incidents and coordinating efforts to contain and resolve cybersecurity issues. Convey status updates to critical stakeholders,... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work
    Afternoon shift

    Booz Allen Hamilton

    McLean, VA
    4 days ago
  • $62k - $141k

    Cybersecurity RMF LeadThe Opportunity:Design, implement, and manage policies and procedures to ensure database and software security. Apply...  ...Practitioner (SSCP)CertificationNice If You Have:Experience leading RMF efforts across multiple systems, including providing oversight... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Arlington, VA
    4 days ago
  •  ...Description Apogee Global RMS is seeking a Senior Cybersecurity Engineer / Offensive Security Lead to support high‑visibility federal and IC programs. This role is designed for operators who bring hands‑on offensive tradecraft, current certifications, and recent... 
    Full time

    Apogee Global Rms

    Washington DC
    10 hours ago
  • $100k - $120k

     ...Bering Straits Native Corporation is seeking a Sr. Cybersecurity Incident Response Specialist in Washington, DC. This role involves monitoring cyber threats and ensuring the security of networks and systems. The ideal candidate should have a deep understanding of cybersecurity... 

    Bering Straits Native Corporation

    Washington DC
    3 days ago
  •  ...A cybersecurity and data operations firm is seeking Cyber Eviction Analysts to support the DHS's Hunt and Incident Response Team. The role requires extensive experience in incident response and the ability to think independently. Candidates must have a strong understanding... 

    Nightwing

    Arlington, VA
    3 days ago
  • $112.8k - $257k

     ...cloud, digital solutions, enterprise DevSecOps, AI, and ML. Apply leading-edge principles, theories, and concepts. Contribute to the...  ...experience in software delivery across key areas such as development, cybersecurity, data engineering and analytics, and operationsExperience... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    McLean, VA
    6 days ago
  •  ...Description AC4S LLC is seeking an IT Asset Management Lead to join their team in Northern Virginia. The qualified...  ...maintenance, inventory in compliance with DoW policies, regulations and cybersecurity Manage enterprise hardware and software asset... 
    Full time
    Contract work
    Part time
    Work experience placement
    Worldwide
    Shift work

    Hui Huliau Corporation

    Washington DC
    1 day ago
  •  ...conflicts to influence what we do. The R&D centers we operate for the government create lasting impact in fields as diverse as cybersecurity, healthcare, aviation, defense, and enterprise transformation. We're making a difference every day—working for a safer, healthier... 
    Work experience placement
    Local area

    Mitre

    McLean, VA
    5 days ago
  •  ...Required:Ability to Obtain Public TrustWhat You Will Do:The Fraud Analytics Senior Consultant Lead will support highly specialized fraud analytics activities across the Cybersecurity Fraud Analytics and Monitoring program. This position will independently assess difficult... 
    Full time
    For contractors
    Flexible hours

    Guidehouse

    Arlington, VA
    6 days ago
  •  ...company and make a direct impact in a dynamic environment where your expertise drives meaningful change and growth.As a Senior Lead Cybersecurity Architect at JPMorganChase within Cybersecurity and Technology Controls, you are an integral part of a team that develops... 
    For contractors

    JP Morgan Chase

    Washington DC
    7 days ago
  • $150k - $175k

     ...100% employee-owned federal contracting company, is seeking a Lead Systems Administrator with strong Linux CLI and Windows administration...  ...infrastructure across multiple datacenters, partnering with cybersecurity and engineering teams, and providing Tier III support for... 
    Local area
    Remote work
    Relocation package

    AMERICAN SYSTEMS

    Arlington, VA
    4 days ago
  • $82.55k - $149.23k

     ...seeking a Senior Exercise Planner to serve as a Regional Exercise Lead for the CISA National Cyber Exercise Program (NCEP), including...  ...globally across aviation security, passenger screening, cybersecurity, and border and port security, ABS integrates next-generation... 
    Full time
    Contract work
    Worldwide

    Leidos

    Arlington, VA
    3 days ago
  •  ...the government create lasting impact in fields as diverse as cybersecurity, healthcare, aviation, defense, and enterprise transformation....  ...providing successful thought leadership in applying, teaching, or leading acquisition reform or modernization - prior experience as an... 
    Work experience placement
    Local area
    Shift work

    Mitre

    McLean, VA
    4 days ago
  • $69.4k - $158k

     ...need strategic policy development. That’s why we need you, a cybersecurity specialist with the expertise required to analyze the policies...  ...planning and policy development specialist on our team, you’ll lead the assessment of the Department's current cyber policies, the... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    McLean, VA
    6 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cybersecurity - Lead ISSO. Be the first to apply!