Mid-Level ISSO - HHS ESS

Posted 9 Days Ago
Be an Early Applicant
Washington, DC
In-Office
Senior level
Software
The Role
The Mid-Level ISSO oversees cybersecurity requirements, supports risk assessments, develops security documentation, and mentors junior staff in a federal environment.
Summary Generated by Built In

cFocus Software is seeking a highly skilled Mid-Level Information Systems Security Officer (ISSO) to support the Enterprise Security Services (ESS) program. This role is responsible for ensuring compliance with federal cybersecurity requirements, maintaining security documentation, and supporting system authorization and continuous monitoring activities. The successful candidate will oversee security control assessments, provide risk management guidance, and collaborate with stakeholders to maintain secure system configurations in alignment with the ESS Performance Work Statement (PWS).

ResponsibilitiesSecurity Governance
  • Oversee the implementation and enforcement of system security requirements as defined by the PWS.

  • Ensure compliance with federal cybersecurity policies, including NIST RMF, FISMA, and FedRAMP.

  • Support and maintain system security plans (SSPs), risk assessments, and authorization documentation.

  • Collaborate with system owners, administrators, and engineers to maintain secure system configurations.

Risk & Compliance Management
  • Lead security control assessments and support continuous monitoring activities.

  • Conduct vulnerability assessments, risk analyses, and recommend remediation strategies.

  • Support audits, inspections, and authorization processes (ATO/ATC).

  • Develop, maintain, and track Plans of Action and Milestones (POA&Ms).

Documentation & Reporting
  • Develop and deliver security documentation, reports, and briefings to leadership and stakeholders.

  • Ensure timely and accurate reporting of cybersecurity posture, risks, and incidents.

  • Maintain accurate and up-to-date security artifacts to support compliance and accreditation efforts.

Mentorship & Collaboration
  • Mentor and provide guidance to junior ISSOs and cybersecurity staff.

  • Collaborate with internal and external stakeholders to resolve security concerns and support mission objectives.

Required Experience
  • 6+ years of cybersecurity experience, with at least 3+ years as an ISSO in a federal environment.

  • Strong knowledge of NIST SP 800-53, Risk Management Framework (RMF), and federal cybersecurity policies.

  • Experience developing and maintaining security documentation (SSPs, SARs, POA&Ms, etc.).

  • Proficiency in vulnerability management, incident response, and continuous monitoring practices.

  • Demonstrated ability to brief senior leadership and communicate effectively across technical and non-technical stakeholders.

Education & Certifications
  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or related field.

  • Relevant cybersecurity certifications (e.g., CISSP, CISM, CISA, CAP, or equivalent).

  • Master’s degree preferred.

Clearance Requirement
  • Active Public Trust clearance required.

Top Skills

Computer Science
Cybersecurity
Fedramp
Fisma
Information Technology
Nist Rmf
Nist Sp 800-53
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Largo, MD
25 Employees
Year Founded: 2006

What We Do

Established in 2006, cFocus Software automates FedRAMP compliance and develops government chatbots for the Azure Government Cloud, Office 365, and SharePoint.

cFocus Software is the exclusive vendor of ATO (Authority To Operate) as a Service™, which automates FedRAMP compliance for the Azure Government Cloud and Office 365.

Contact Us for a demo of ATO as a Service™ or a FREE government chatbot proof of concept project today!

Similar Jobs

General Motors Logo General Motors

Senior Software Engineer

Automotive • Big Data • Information Technology • Robotics • Software • Transportation • Manufacturing
Remote or Hybrid
District of Columbia, USA
134K-236K Annually

CrowdStrike Logo CrowdStrike

Principal - Product Operations Lead (Remote)

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
DC, USA
210K-300K Annually

Anduril Logo Anduril

Cybersecurity Analyst

Aerospace • Artificial Intelligence • Hardware • Robotics • Security • Software • Defense
In-Office
Washington, DC, USA
150K-225K Annually

LogicMonitor Logo LogicMonitor

Senior Account Executive

Artificial Intelligence • Cloud • Information Technology • Machine Learning • Software
Easy Apply
Remote or Hybrid
Washington, DC, USA
145K-150K Annually

Similar Companies Hiring

Sailor Health Thumbnail
Telehealth • Software • Social Impact • Healthtech
New York City, NY
20 Employees
Credal.ai Thumbnail
Software • Security • Productivity • Machine Learning • Artificial Intelligence
Brooklyn, NY
Standard Template Labs Thumbnail
Software • Information Technology • Artificial Intelligence
New York, NY
10 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account