Hiring.Camp

DFC - Lead ISSO

cFocus Software Incorporated

·

5 days ago

Location
Washington, DC
Workplace
Remote
Type
Full-time
Seniority
Lead
Education
Bachelor
Closing date
Today
Source
ApplyToJob

Description

cFocus Software seeks a Lead ISSO to join our program supporting the United States International Defense Finance Agency (DFC). This position is remote. This position requires an Active Public Trust clearance.
Qualifications:
  • Active Public Trust clearance
  • B.S. Computer Science, Information Technology, or a related field
  • 10+ years of progressive cybersecurity and Information Assurance experience.
  • 5+ years serving as an ISSO, Senior ISSO, ISSM, or equivalent cybersecurity leadership role supporting federal agencies.
  • Extensive experience implementing the NIST Risk Management Framework (RMF).
  • Experience supporting Authorization to Operate (ATO) activities.
  • Experience supporting federal cybersecurity programs governed by FISMA.
  • Demonstrated experience leading cybersecurity teams and technical personnel.
  • Experience briefing executive leadership and federal stakeholders.

Duties:
  • Serve as the Contractor’s single point of accountability for technical execution under this PWS and shall manage day-to-day ISSO support activities
  • Serve as the Contractor’s primary technical interface with the Government ISSM, CISO, AO/AODR, System Owners, and other Government-designated cybersecurity stakeholders
  • Direct Contractor ISSO activities
  • Ensure consistent execution across supported systems
  • Oversee the development, review, quality control, and submission of authorization-package artifacts
  • Chair internal quality reviews of ISSO deliverables before Government submission
  • Manage the Contractor’s risk and issue register; escalate risks and issues to Government leadership, as appropriate; participate in DFC governance forums on behalf of the Contractor
  • Represent the Contractor in technical reviews; and coordinate with the Contractor’s Program Manager for contract-level matters, including invoicing, staffing, and reporting.
  • Maintain hands-on cybersecurity expertise and shall not function solely as an administrative manager

Skills

CybersecurityRisk Management