42 open roles
Lead Information System Security Officer (ISSO)
Job description
CONTINGENT UPON CONTRACT AWARD
Overview:
Job Title: Lead Information System Security Officer (ISSO)
Security Clearance: Ability to Obtain Tier 4 High-Risk Public Trust
Location: Washington, D.C.
(Due to the nature of the work and contract requirements, U.S. Citizenship is required.)
Description:
C3EL is seeking a Lead Information System Security Officer (ISSO) to provide on-site cybersecurity and Risk Management Framework (RMF) sustainment support in Washington, D.C., for a new contract. This role will serve as the single point of accountability for technical performance and remain a hands-on cybersecurity practitioner as the technical leader, Government interface, and quality authority for the entire ISSO program.
Responsibilities will include, but not be limited to:
- Provide on-site cybersecurity and RMF sustainment support.
- Chair internal quality reviews and ensure deliverables are complete, current, consistent, timely, and audit ready.
- Manage technical risks, issues, escalations, SLA/KPI/AQL performance, action items, and corrective actions.
- Support weekly reports, monthly status reports, and quarterly executive reviews, including authorization, vulnerability, POA&M, audit, and staffing status.
- Lead a team of two Senior ISSOs and maintain coverage during absence, vacancy, surge, or suitability delay.
- Produce accurate, concise, and audit-ready Government cybersecurity documentation.
- Support team coverage from 7:00 a.m. to 6:00 p.m. ET (M-F) and participate in after-hours incident coverage as needed.
Minimum Qualifications:
- U.S. Citizenship.
- Eligibility to obtain a Tier 4 High-Risk Public Trust.
- Minimum ten (10) years in cybersecurity.
- Minimum seven (7) years in federal RMF/ISSO work.
- Minimum three (3) years leading ISSO or authorization teams.
- Hands-on CSAM experience supporting system profiles, controls, evidence, POA&Ms, and authorization workflows.
- Working knowledge of NIST SP 800-37, 800-53, 800-53B, FIPS 199, FISMA, and applicable CISA/OMB guidance.
- Familiarity with GRC, ITSM, SIEM, scanner, identity, endpoint, and cloud-security platforms.
- Direct experience briefing and coordinating with ISSMs, CISOs, AOs, AODRs, System Owners, assessors, and senior Government officials.
- Direct experience overseeing SSPs, SAPs, SARs, POA&Ms, risk assessments, control statements, and evidence packages.
- Expert knowledge of all seven RMF steps, ATO, reauthorization, ongoing authorization, control baselines, and inheritance.
- Working proficiency with ServiceNow, Splunk, and vulnerability-scanning platforms.
Preferred Qualifications:
- At least one current cybersecurity certification such as CISSP, CGRC, CISM, CRISC, Security+, SecurityX, CCSP, or GIAC.
Education:
- Associate’s degree in Cybersecurity, Information Technology, or related field. (Relevant experience may be considered in lieu of formal education.)
Description copied from C3EL's careers page. Read the full posting before you apply.
More jobs at C3EL
AV/VTC Integration Project Manager
C3EL· Tampa, FLSEWP Program Analyst
C3EL· Tampa, FloridaIT Support Specialist - Senior
C3EL· Ashburn, VAJRSS Network Technician
C3EL· Hill AFB, UTImplementations Network Engineer
C3EL· Scott AFB, IL
More jobs in Washington
Part Time Teller
PNC Financial Services· DC - Washington (20010)· $36k – $60kSpecial Police Officer (6 opportunities)
Georgetown University· Washington DC· $60kExecutive Assistant to the President
All* Above All· Washington, District of Columbia, United StatesSenior Policy Analyst
SHEEO (State Higher Education Executive Officers Association)· Remote - Washington, D.C. (hybrid), Boulder, CO, (hybrid) or remote, CODevelopment Director
Northern Illinois Conference of The United Methodist Church· Washington D.C. - Washington, DC 20002· $94k – $112k