ISSO Lead

Posted Yesterday
Be an Early Applicant
Washington, DC, USA
In-Office
Senior level
Information Technology • Professional Services • Defense • Manufacturing
The Role
Leads cybersecurity governance and risk management for federal information systems across the full RMF lifecycle. Oversees ISSO, FISMA, A&A, ATO, security documentation, continuous monitoring, vulnerability remediation, audits, and annual reporting. Advises system owners and authorizing officials, prepares executive risk briefings and compliance metrics, and mentors ISSOs across a large system portfolio.
Summary Generated by Built In
ISSO Lead

The ISSO Lead is a senior cybersecurity governance and risk-management professional responsible for supporting federal information systems throughout the complete Risk Management Framework (RMF) lifecycle. This position leads ISSO activities across a large portfolio of systems, maintains authorization status, oversees security documentation, and advises system owners, ISSMs, and Authorizing Officials on cybersecurity risk. 

Compensation & Benefits

Pay commensurate with experience.

Full-time benefits include Medical, Dental, Vision, 401K, and other possible benefits as provided. Benefits are subject to change with or without notice. 

ISSO Lead Responsibilities Include:
  • Lead ISSO, FISMA, RMF, and Assessment and Authorization activities for federal systems. 

  • Apply NIST SP 800-37, NIST SP 800-53, FIPS 199, and NIST SP 800-60 requirements. 

  • Support obtaining and maintaining Authorities to Operate (ATOs). 

  • Develop and maintain SSPs, POA&Ms, PIAs, DIRAs, ISAs, SARs, Security Assessment Plans, Incident Response Plans, Contingency Plans, and Security Impact Assessments. 

  • Track system lifecycles, authorization status, control implementation, vulnerabilities, and enterprise risks. 

  • Manage continuous-monitoring and annual FISMA reporting activities. 

  • Coordinate vulnerability remediation with system owners, engineering teams, assessors, SOC teams, and security operations contractors. 

  • Support federal audits, inspections, data calls, and security assessments. 

  • Prepare executive-level risk briefings, compliance reports, metrics, and recommendations. 

  • Lead or mentor ISSOs and maintain consistent security documentation across multiple systems. 

  • Perform other job-related duties as assigned. 

ISSO Lead Experience, Education, Skills, Abilities Requested:
  • Bachelor’s degree in cybersecurity, information technology, computer science, engineering, or a related field. 

  • Minimum of 8 years of relevant cybersecurity experience. 

  • CISSP, CISM, or equivalent senior-level cybersecurity certification. 

  • Active Top Secret (TS) security clearance is required. Candidates must possess the required clearance to be considered for this position. 

  • U.S. citizenship required. 

  • Experience leading ISSO, FISMA, RMF, or Assessment and Authorization activities for federal systems. 

  • Experience supporting large federal system portfolios preferred. 

  • Department of State or Bureau of Consular Affairs experience preferred. 

  • Familiarity with ArchAngel or another federal GRC platform preferred. 

  • Experience with Tenable Nessus, Wiz, iPost, vulnerability reporting, and POA&M tracking preferred. 

  • Understanding of DevSecOps, CI/CD security controls, cloud security, zero-trust requirements, and High Value Assets preferred. 

  • Must pass pre-employment qualifications of Cherokee Federal.

 

Company Information

Criterion is part of Cherokee Federal — the division of tribally owned federal contracting companies owned by Cherokee Nation Businesses. As a trusted partner supporting federal customers, Cherokee Federal companies are focused on solving complex challenges and serving the government’s mission

 

#CherokeeFederal #LI-SM2 #AppC 

Similar searchable job titles: 

  • Lead Information System Security Officer

  • Senior ISSO

  • ISSO Manager

  • Cybersecurity Governance Lead

  •  RMF Lead

  • Senior A&A Lead

  •  Information System Security Manager

  • Cybersecurity Risk and Compliance Lead.

 

Keywords: 

  • ISSO

  • FISMA

  • RMF

  • ATO

  • NIST 800-37

  • NIST 800-53

  • FIPS 199

  • A&A

  • SSP

  • ArchAngel

  • Tenable

Pipeline Position Notice: 
This is a pipeline position intended to identify qualified candidates for anticipated future opportunities. This posting does not represent a current vacancy. Candidates who meet the qualifications may be contacted as positions become available and program requirements are finalized.

Skills Required

  • Bachelor's degree in cybersecurity, information technology, computer science, engineering, or a related field
  • At least 8 years of relevant cybersecurity experience
  • CISSP, CISM, or equivalent senior-level cybersecurity certification
  • Active Top Secret security clearance
  • U.S. citizenship
  • Experience leading ISSO, FISMA, RMF, or Assessment and Authorization activities for federal systems
  • Experience supporting large federal system portfolios
  • Department of State or Bureau of Consular Affairs experience
  • Familiarity with ArchAngel or another federal GRC platform
  • Experience with Tenable Nessus, Wiz, iPost, vulnerability reporting, and POA&M tracking
  • Understanding of DevSecOps, CI/CD security controls, cloud security, zero-trust requirements, and High Value Assets
  • Must pass pre-employment qualifications of Cherokee Federal
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Tulsa, OK
5,000 Employees
Year Founded: 1969

What We Do

Cherokee Federal is a top federal contractor that empowers mission success for over 60 U.S. federal agencies by delivering innovative solutions in defense, technology, health, and intelligence, focusing on solving complex challenges and serving national missions.

Similar Jobs

In-Office
Washington, DC, USA
25 Employees
In-Office
Washington, DC, USA
25 Employees

The Aerospace Corporation Logo The Aerospace Corporation

Semiconductor Engineering Intern - Summer 2027 (U.S. Person Required)

Aerospace • Artificial Intelligence • Cloud • Machine Learning • Software • Cybersecurity • Defense
Remote or Hybrid
United States
4600 Employees
25-45 Hourly

The Aerospace Corporation Logo The Aerospace Corporation

Software AI Intern - Summer 2027 (U.S. Person Required)

Aerospace • Artificial Intelligence • Cloud • Machine Learning • Software • Cybersecurity • Defense
Remote or Hybrid
United States
4600 Employees
26-45 Hourly

Similar Companies Hiring

Amalgamated Sugar Thumbnail
Food • Greentech • Agriculture • Industrial • Manufacturing
Boise, Idaho
768 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Outpost Space Thumbnail
Aerospace • Defense
US
24 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account