> Markdown version of [/jobs/ext/1203175-isso](https://www.wearedevelopers.com/jobs/ext/1203175-isso). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # ISSO - **Company:** Red Arch Solutions - **Location:** Reston, VA, United States - **Experience:** Expert - **Salary:** $165,000.0 - $190,000.0 - **Contract:** Permanent contract - **Skills:** Xacta, Agile Methodology, Amazon Web Services, Systems Engineering, Audit Trail, Microsoft Azure, Cloud Computing Security, Cyber Security, Computer Literacy, Data Security, Scrum Methodology, Zero Trust Network Access, Information Security Management System, Information Technology, Splunk, Plan of Action and Milestones, Vulnerability Analysis - **Published:** July 8, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9017155/isso ## About the Role * Clearance: Active, current Top Secret / SCI with Polygraph is mandatory. * Experience: 15+ years of progressive cybersecurity and systems engineering experience within the DoD or IC. * Technical Literacy: Deep, practical expertise with the Risk Management Framework (RMF), NIST controls, Xacta, Splunk, audit logging, and modern encryption standards. * Education: Bachelor's degree in Cybersecurity, Computer Science or a related technical discipline or business discipline. * Certification: Must be fully certified in accordance with DoD Directive 8570 "Information Assurance Training, Certification, and Workforce Management" (e.g., CISSP, CISM). With an understanding of the transition to 8140 compliances. DESIRED SKILLS & FRAMEWORKS * Prior experience serving as an ISSO for DIA or NSA platforms. * Familiarity with Zero Trust architectures and secure cloud infrastructures (AWS/Azure). * Strong analytical skills with the ability to articulate complex security risks to both technical teams and government leadership. ## Description Red Arch Solutions is seeking a senior-level Cybersecurity Systems Engineer who will also serve as an Information Systems Security Officer (ISSO) for a critical Defense Intelligence Agency (DIA) metadata platform.). This dual-hatted role leads Information Assurance (IA) and Security Engineering for the program. The successful candidate will manage the system's security posture, guide technical teams in implementing robust security requirements, and serve as the primary interface with DIA Cybersecurity authorities. You will ensure absolute compliance with IC standards, secure data processing, and maintain the platform's Authority to Operate (ATO). The Red Arch Distinction: People First Red Arch Solutions is a flat, highly collaborative organization where your voice is heard. We prioritize work/life balance and individualized professional growth, backed by a 100% company-paid healthcare model, a robust annual training allocation, and an elite technical community solving our nation's most urgent national security challenges., * Security Engineering Leadership: Lead IA and Security Engineering, providing authoritative security requirements and design guidance to the technical development team. * Risk Management Framework (RMF) & ATO Management: Manage the end-to-end Risk Management Framework (RMF) process. This includes maintaining system security documentation in Xacta, implementing security controls, and ensuring the platform retains its ATO. * Documentation and Compliance: Develop and meticulously maintain critical security artifacts, including the System Security Plan (SSP), Security Assessment Report (SAR), and Plan of Action and Milestones (POA&M). * Continuous Monitoring: Conduct daily security monitoring utilizing tools such as Splunk. Oversee audit log reviews, security incident detection/response, vulnerability scanning, and compliance verification. * Agile Integration: Provide timely estimates and task statuses to the program Scrum Master, integrating security operations into the Agile workflow. ## Related Videos - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Resilient by Design: Building Robust Architectures in High-Stakes Financial Systems](https://www.wearedevelopers.com/videos/2106-resilient-by-design-building-robust-architectures-in-high-stakes-financial-systems) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [No Keys for the Robot: GitOps as the Control Plane for Autonomous Agents](https://www.wearedevelopers.com/videos/100095-no-keys-for-the-robot-gitops-as-the-control-plane-for-autonomous-agents) - [How One Developer Built the Back Office for 10 Million Companies](https://www.wearedevelopers.com/videos/100082-how-one-developer-built-the-back-office-for-10-million-companies) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)