Senior RMF ISSO

Posted Yesterday
Be an Early Applicant
Springfield, VA, USA
In-Office
135K-145K Annually
Senior level
Information Technology • Logistics • Professional Services • Defense
The Role
Leads RMF Steps 1–3 and manages two delivery pods supporting federal system authorization. Directs categorization, control selection, implementation documentation, evidence collection, assessment readiness, workload assignments, and quality reviews. Evaluates on-premises, cloud, and hybrid architectures; oversees SSPs, POA&Ms, inherited controls, DevSecOps evidence, and authorization artifacts. Coordinates technical reviews and shared specialists while preserving independent assessor authority.
Summary Generated by Built In

Description

Contingent on Contract Award

National Capital Region (Hybrid On-site/Telework if approved)

Connected Logistics is seeking a Senior ISSO to oversee the RMF Steps 1 through 3 Lead, to assist in providing the Department of State Directorate of Technology (DT), Enterprise Architecture (EA), Cyber Security Team (CST) comprehensive cybersecurity support services to protect critical consular systems and data. The CST Cyber portfolio ensures compliance with federal mandates including the Federal Information Security Modernization Act (FISMA) and the Risk Management Framework (RMF), encompassing security monitoring, incident response, threat detection, vulnerability management, and continuous authorization activities.

The Senior ISSO, RMF (Steps 1 through 3 Lead) manages two delivery pods supporting consular system authorization. The Lead assigns work according to system complexity, mission risk, authorization schedules, and package readiness, while maintaining consistent technical practices and current records in ArchAngel. 

Key Responsibilities:

Responsible for directing system categorization, control selection, implementation documentation, evidence collection, and assessment readiness across the RMF Steps 1 through 3 delivery teams.

  • Direct Pod Leads and IASS personnel; balance workload and establish primary and backup system assignments.
  •  Review authorization boundaries, information types, architecture and data flows, FIPS 199 categorization, and NIST SP 800-60 mappings.
  • Direct NIST SP 800-53 Rev. 5 baseline selection, Department overlays, tailoring, compensating controls, and inherited-control documentation.
  • Review SSP implementation statements, supporting evidence, Evidence Index entries, known gaps, and draft POA&Ms.
  • Coordinate privacy, digital identity, contingency, risk, and documentation support from shared specialists.
  • Support Technical Review Team reviews, resolve comments, and conduct implementation-readiness reviews before independent assessment.
  • Verify that DevSecOps pipeline security requirements and relevant scan evidence are represented in system authorization artifacts.
  • Preserve the independent assessor's authority over assessment methods, findings, and conclusions.

Requirements

  • U.S. citizenship and a final Secret clearance or higher.
  • Relevant degree in cybersecurity, computer science, information systems, or a related discipline, subject to the Senior ISSO LCAT and permitted substitutions.
  • Senior-level Federal ISSO or RMF experience with demonstrated leadership of authorization package development and technical teams.
  • Proficiency in NIST SP 800-37 Rev. 2, NIST SP 800-53 Rev. 5, FIPS 199, NIST SP 800-60, control inheritance, and evidence traceability.
  • Ability to evaluate on-premises, cloud, and hybrid system architectures and translate security requirements into actionable technical guidance.
  • Meet applicable LCAT certification requirements and maintain required credentials.

Preferred Qualifications

  • CISSP, CGRC, or CISM.
  • DOS/CST experience with ArchAngel, TRT reviews, Department overlays, and authorization workflows.
  • Experience with FedRAMP inheritance, DevSecOps evidence, and reusable control implementation libraries.

Success in this position will be demonstrated by complete, technically defensible packages; timely quality-gate completion; effective pod workload management; and fewer avoidable review returns.

Total Rewards Statement

We believe in fairness and clarity throughout our hiring process. The anticipated salary range for this position is $135,000.00-$145,000.00 USD. This is a good-faith range based on factors such as your experience, geographic location, and any applicable contractual requirements, and may vary slightly.

Beyond salary, we provide a robust benefits package and encourage ongoing professional development, because your growth and well-being matter to us. We’re excited to support you in building a rewarding career with us!

Connected Logistics respects the need for confidentiality for all applicants.

Connected Logistics has been named a 2026 WTOP Top Workplace in the medium sized business category. Our mission is clear: we deliver mission-focused IT, cybersecurity, logistics, and enterprise modernization support to federal agencies. When we invest in our people and create an environment where they feel valued and empowered, we deliver stronger outcomes for our clients and the missions we support.

Connected Logistics offers an excellent benefits package that includes health, dental, vision, life, and disability insurance, a great 401(k) package, and generous Paid Time Off.

EOE/Disability/Veterans

Skills Required

  • U.S. citizenship
  • Final Secret clearance or higher
  • Relevant degree in cybersecurity, computer science, information systems, or a related discipline, subject to applicable substitutions
  • Senior-level Federal ISSO or RMF experience
  • Demonstrated leadership of authorization package development and technical teams
  • Proficiency in NIST SP 800-37 Rev. 2, NIST SP 800-53 Rev. 5, FIPS 199, NIST SP 800-60, control inheritance, and evidence traceability
  • Ability to evaluate on-premises, cloud, and hybrid system architectures and translate security requirements into technical guidance
  • Applicable LCAT certification requirements and required credentials
  • CISSP, CGRC, or CISM
  • Department of State/CST experience with ArchAngel, TRT reviews, Department overlays, and authorization workflows
  • Experience with FedRAMP inheritance, DevSecOps evidence, and reusable control implementation libraries
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Huntsville, AL
Year Founded: 2007

What We Do

Connected Logistics is a defense and health company specializing in network-enabled logistics, program management, and information system engineering for the Department of Defense and Army Business Mission Areas.

Similar Jobs

In-Office or Remote
2 Locations
121228 Employees
40K-120K Annually

SailPoint Logo SailPoint

Principal Software Engineer

Artificial Intelligence • Cloud • Sales • Security • Software • Cybersecurity • Data Privacy
Remote or Hybrid
United States
2461 Employees
179K-302K Annually

STR Logo STR

Lead Software Engineer

Machine Learning • Security • Software • Analytics • Defense
Easy Apply
In-Office
Arlington, VA, USA
800 Employees
180K-220K Annually

PNC Bank Logo PNC Bank

System Reliability & Support Lead

Machine Learning • Payments • Security • Software • Financial Services
Remote or Hybrid
USA
55000 Employees

Similar Companies Hiring

NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Outpost Space Thumbnail
Aerospace • Defense
Los Angeles, California
38 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account