- Location
- DC
- Type
- Full-time
- Department
- Administration
- Seniority
- Lead
- Visa
- Not sponsored
- Closing date
- Today
- Source
- ApplyToJob
Description
Team Lead Information System Security Officer (Lead ISSO)
The Team Lead ISSO will serve as the our primary technical and operational lead for cybersecurity services supporting the federal customer’s enterprise information systems and cloud environments. The position will manage day-to-day ISSO activities, coordinate the work of the ISSOs, oversee RMF and authorization activities, and serve as the primary Contractor interface with the Government ISSM, CISO, AO/AODR, System Owners, and other cybersecurity stakeholders.
The Team Lead ISSO will provide hands-on cybersecurity leadership while managing delivery, schedules, risks, issues, quality, and stakeholder coordination. Responsibilities include oversight of ATO and authorization-package activities, continuous monitoring, vulnerability management, POA&M management, audit readiness, cybersecurity compliance, and quality control of ISSO deliverables.
The ideal candidate is a PMP-certified delivery leader with cybersecurity experience who can manage personnel, deliverables, risks, schedules, and Government relationships while maintaining sufficient technical depth to effectively lead senior ISSO and RMF activities.
Required Qualifications
- Active Project Management Professional (PMP) certification
- Significant project management experience supporting cybersecurity, information assurance, or federal IT programs
- Working knowledge of FISMA, NIST Risk Management Framework (RMF), NIST SP 800-53, FedRAMP, ATO processes, continuous monitoring, vulnerability management, and POA&M management
- Experience leading cybersecurity personnel and coordinating with technical and executive Government stakeholders
- Familiarity with enterprise security environments and tools such as Azure/Microsoft 365, ServiceNow, CSAM/GRC platforms, Splunk, Microsoft Defender, Tenable/Qualys, Entra ID, and related cybersecurity technologies
- Strong written and verbal communication, risk management, quality assurance, and stakeholder-management skills
- Must be a U.S. Citizen
- Must be eligible to successfully complete and maintain a Tier 4 background investigation (or Tier 5 / Top Secret)
Preferred Qualifications
- Cybersecurity certification such as CISSP, CISM, CGRC/CAP, Security+, SC-100, SC-500, or equivalent
- Experience supporting federal FISMA Moderate systems and FedRAMP-authorized cloud environments
- Experience with Microsoft Azure Government and Microsoft 365 GCC/GCC High
- Prior experience serving as a Lead ISSO, ISSM, cybersecurity program lead, or similar role in a federal environment
Corporate Resources
Unlike traditional ISSO positions that are primarily compliance and documentation focused, this role is backed by a broader cybersecurity and engineering organization. You will have access to a large cybersecurity laboratory environment, engineering resources, and reach-back subject matter experts across cloud, networking, identity, systems engineering, application security, vulnerability management, security operations, and federal cybersecurity compliance.
You will be able to use these resources to investigate technical issues, validate security approaches, reproduce and assess configurations, evaluate emerging technologies, and develop practical solutions to security and compliance challenges. The position offers an opportunity to lead not only the execution of RMF activities, but also to help shape the technical approaches, processes, tools, and practices used by the cybersecurity team.
Technical Environment and Professional Resources
You will be supported by capabilities beyond those normally available to an embedded ISSO team, including:
- Access to a dedicated cybersecurity and engineering laboratory for testing, validation, prototyping, and technical investigation
- Reach-back access to experienced cybersecurity, cloud, network, systems, identity, application, and infrastructure SMEs
- Opportunities to work directly with engineers to translate security findings and control requirements into implementable technical solutions
- Ability to evaluate and test security tools, configurations, architectures, and remediation approaches outside of the production environment
- Access to organizational lessons learned, technical expertise, reusable engineering approaches, and cybersecurity research developed across other federal programs
- Opportunity to help mature the team's RMF, continuous monitoring, vulnerability management, security engineering, and automation practices
- Ability to influence the technical direction and operating model of a growing federal cybersecurity team
115k to 193k Depending on experience and/or certifications