Xtreme Solutions
Posted 4d ago

Lead Information System Security Officer (ISSO) / Technical Program Lead

Xtreme Solutions
Washington, District of Columbia, United States
OnsiteFull Time
Responsibilities
  • leading ISSOs
  • reviewing artifacts
  • briefing stakeholders
Requirements
  • Requires 10+ years cybersecurity experience
  • 7+ years federal ISSO/IA/A&A/C&A/RMF experience
  • 3+ years leadership
  • NIST expertise
  • Technical QA/QC
  • Executive communication, and CISSP, CISM
  • CGRC/CAP, or GSLC
Technical tools mentioned
NIST SP 800-37NIST SP 800-53CSAMServiceNowNIST SP 800-137

Job description

Description

 

Xtreme Solutions is seeking an experienced Lead Information System Security Officer (ISSO) / Technical Program Lead to provide technical leadership and hands-on cybersecurity support for a federal customer in Washington, DC.

This is an opportunity for an accomplished federal cybersecurity professional who can lead an ISSO team while remaining deeply involved in RMF, authorization, continuous monitoring, vulnerability management, and security-risk decisions.

The ideal candidate has led complex federal authorization activities, can review and challenge technical cybersecurity deliverables, and is comfortable briefing senior Government stakeholders on system risk, authorization status, vulnerabilities, and remediation priorities.


What You’ll Do

  • Lead day-to-day technical activities across the ISSO team. 
  • Assign systems, authorization boundaries, and security workstreams. 
  • Oversee multiple concurrent RMF authorization and reauthorization activities. 
  • Review and approve SSPs, SAPs, SARs, POA&Ms, risk assessments, Continuous Monitoring Plans, SIAs, and authorization packages. 
  • Perform technical QA/QC before cybersecurity deliverables are submitted to the Government. 
  • Track authorization milestones, dependencies, risks, issues, and corrective actions. 
  • Oversee POA&M, vulnerability-remediation, and continuous-monitoring activities. 
  • Coordinate with AOs/AODRs, the CISO, ISSMs, System Owners, assessors, privacy teams, Common Control Providers, and technical remediation teams. 
  • Resolve conflicting or incomplete cybersecurity information across tools, artifacts, and system records. 
  • Provide senior-level security posture, authorization, and risk briefings. 
  • Mentor and provide technical direction to ISSOs, assessors, and cybersecurity analysts. 
  • Support federal audits and independent security-control assessments. 


Requirements

 

Must-Have Qualifications

  • 10+ years of progressively responsible cybersecurity experience. 
  • 7+ years supporting federal ISSO, IA, A&A/C&A, or RMF activities. 
  • 3+ years leading ISSOs, Security Control Assessors, cybersecurity analysts, or federal authorization workstreams. 
  • Demonstrated experience managing multiple federal systems or authorization boundaries concurrently. 
  • Advanced knowledge of NIST SP 800-37 and NIST SP 800-53
  • Hands-on experience reviewing federal RMF and authorization artifacts. 
  • Experience coordinating with senior federal cybersecurity stakeholders. 
  • Experience performing technical QA/QC of cybersecurity deliverables. 
  • Strong executive briefing and written communication skills. 
  • CISSP, CISM, CGRC/CAP, or GSLC required.  

Preferred Qualifications

  • Experience with CSAM or another federal GRC platform. 
  • Experience with ServiceNow and federal ITSM workflows. 
  • FedRAMP and federal cloud-security experience. 
  • Experience with NIST SP 800-137 continuous monitoring. 
  • Current or recent Tier 4 or Tier 5 investigation. 
  • Experience supporting FISMA, IG, GAO, CISA, or similar federal assessments.

  

About Xtreme SolutionsXSI is a leading provider of information technology and professional services known for outstanding service delivery in a wide range of professional services engagements around the country. Team XSI continually meets and exceeds customer expectations. We are passionate about our work and making a difference. Our vision is to be the best professional services management company for both our customers and our employees. We need employees that share this vision. Our remarkable employees are the key to our company's incredible success. XSI promotes a work environment of trust, integrity, respect, continual improvement, customer satisfaction, and business success. We strive to provide a competitive salary and benefits, an engaging and rewarding work environment, and training and development opportunities.
Equal Employment OpportunityXtreme Solutions, Inc. is an Equal Opportunity Employer and federal contractor. All qualified applicants will receive consideration for employment without discrimination based on any status protected by applicable federal, state, or local law.As a federal contractor, Xtreme Solutions, Inc. takes affirmative action to employ and advance in employment qualified individuals with disabilities and protected veterans. We are committed to providing equal employment opportunities throughout all aspects of employment, including recruitment, hiring, promotion, compensation, training, and other terms and conditions of employment.Equal Opportunity Employer | Individuals with Disabilities | Protected Veterans

About Xtreme Solutions

An information technology and professional services provider delivering professional services engagements nationwide.

Similar jobs

Information System Security Officer roles near Washington, District of Columbia
3d
Save
Mark Applied
Hide
Information System Security Officer
Chantilly, Virginia, United States
$92k-$154k/yr OnsiteFull Time
ManTech
ManTech: Provides technology solutions for defense and intelligence agencies.
5+ YOEBachelor’s degree and 5 years of relevant experience, or 7 years without a degree; 3 years with RMF or similar frameworks; DoD 8570/8140 IAT Level III within 6 months; active TS/SCI and polygraph eligibility.
Risk Management Framework, JSIG, CNSSI 1253, NIST SP 800-53, NIST SP 800-171, DoDM-5220-22, System Security Plans (SSPs), Risk Assessment Reports (RAR), Security Controls Traceability Matrix (SCTM), Nessus, DISA STIGS, SCAP, System Development Life Cycle (SDLC)
3d
Save
Mark Applied
Hide
STIP Information System Security Officer
Stafford or Washington
$101k-$164k/yr RemoteFull Time
JRAD
JRAD: Provides technical research and defense support to federal agencies.
10+ YOEBachelor's degree in a technology or science field with 10 years of cybersecurity experience, or master's degree with 7 years. Requires CISSM, Security+, RMF/ATO expertise, DHS TSA suitability, and strong communication skills.
NIST 800-53, FISMA, Risk Management Framework (RMF), Cyber Security Assessment and Management (CSAM), Tenable Nessus, Zero Trust
4d
Save
Mark Applied
Hide
Senior Information System Security Officer
Springfield, Virginia, United States
$121k-$266k/yr HybridFull Time
CACI International
CACI InternationalNYSE: CACI: Provides information technology and engineering services for government agencies.
10+ YOEBS/BA and 15 years applicable information security experience, including 10+ years required. Requires U.S. citizenship, active Top Secret clearance, classified systems and SCIF experience, and RMF expertise.
Risk Management Framework (RMF), FISMA, NIST, CSAM, RegScale, eMASS, GRC, Configuration Management Plans, System Security Plans (SSPs), FISMA Scorecard Analysis
4d
Save
Mark Applied
Hide
Senior Information System Security Officer
Springfield, Virginia, United States
$121k-$266k/yr HybridFull Time
CACI
CACINYSE: CACI: Provides information technology and professional services to government clients.
10+ YOEU.S. citizenship, active Top Secret clearance, bachelor's degree, 10+ years in information security, and expertise in RMF, FISMA, NIST, DHS 4300 Series, and classified systems.
Risk Management Framework (RMF), FISMA, NIST, CSAM, RegScale, eMASS, Supply Chain Risk Management, Configuration Management Plans, System Security Plans (SSPs), Authority to Operate (ATO)
4d
Save
Mark Applied
Hide
Information System Security Officer, Senior
Washington, District of Columbia, United States
$120k-$181k/yr OnsiteFull Time
Applied Information Sciences
Applied Information Sciences: Delivers cloud transformation and software engineering services to organizations.
8+ YOERequires 8+ years of ISSO or cybersecurity experience, a degree or four additional years of experience, DoD 8140-equivalent certification, cloud security certification, Top Secret clearance, and NIST 800-53 expertise.
Tenable Nessus, Security Center, Splunk, IBM Guardium, HP WebInspect, NMAP, RMF, NIST 800-53, AWS, Microsoft Azure, Google Cloud
4d
Save
Mark Applied
Hide
Information System Security Officer
Washington, D.C., District of Columbia, United States
$101k-$152k/yr OnsiteFull Time
Applied Information Sciences
Applied Information Sciences: Provides cloud transformation and software engineering services for enterprises.
9+ YOERequires 9+ years in computer science or cybersecurity, 7+ years as an ISSO or ISS Engineer in a cleared environment, a bachelor's degree or equivalent experience, IAT Level III certification, and an active Top Secret clearance.
Tenable Nessus, Security Center, Splunk, IBM Guardium, HP WebInspect, NMAP, Risk Management Framework (RMF), NIST 800-53
4d
Save
Mark Applied
Hide
Information System Security Officer - Senior
Warrenton, Virginia, United States
$160k-$190k/yr OnsiteFull Time
Amentum
AmentumNYSE: AMTM: Global provider of engineering, technical, and mission support services.
8+ YOEBachelor’s degree in IT, 8 years of relevant experience, active Top Secret/SCI clearance, and an IAT Level II or III certification. Requires RMF, A&A, Windows/Linux, vulnerability management, and security tool experience.
Microsoft Windows, Red Hat Enterprise Linux (RHEL), Active Directory, Group Policy, XACTA, ACAS, NESSUS, Trellix, Splunk, DISA STIGs, DISA Viewer, Microsoft Excel, Microsoft Word, Microsoft Outlook, Microsoft SharePoint, Microsoft Project, Microsoft Visio, ForeScout, Ivanti
5d
Save
Mark Applied
Hide
Information System Security Officer - Senior
Warrenton, Virginia, United States
$160k-$190k/yr OnsiteFull Time
Amentum
AmentumNYSE: AMTM: Provides engineering, technology, and mission support to government agencies.
8+ YOEBachelor's degree in an IT-related field, 8 years of relevant experience, active Top Secret/SCI clearance or ability to obtain SCI, Windows/Linux security experience, RMF expertise, and an approved IAT certification.
Microsoft Windows, Red Hat Enterprise Linux (RHEL), Active Directory, Group Policy, XACTA, ACAS, NESSUS, Trellix, Splunk, DISA STIGs, DISA Viewer, Microsoft Excel, Microsoft Word, Microsoft Outlook, Microsoft SharePoint, Microsoft Project, Microsoft Visio, ForeScout, Ivanti