> Markdown version of [/jobs/ext/1832811-senior-isso](https://www.wearedevelopers.com/jobs/ext/1832811-senior-isso). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior ISSO - **Company:** Tetra Tech - **Location:** Arlington, VA, United States - **Experience:** Expert - **Salary:** $130,000.0 - $135,000.0 - **Contract:** Permanent contract - **Skills:** Cyber Security, Document-Oriented Databases, Software Engineering, Systems Architecture, HP WebInspect, Information Technology, Nessus, Appscan, Splunk, Plan of Action and Milestones - **Published:** July 18, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=a01292a3b21106b8 ## About the Role * 8 years of IT cybersecurity experience including direct support for the US Government and 4 years acting as an ISSO, assessor, or compliance analyst OR * A relevant bachelor's degree in IT, Computer Science or Engineering and 5 years of IT cybersecurity experience including direct support for the US Government and 4 years acting as an ISSO, assessor, or compliance analyst. * At least one of the following security certifications including but not limited to: CAP, CGRC, CISSO, CISM, or CISSP. The Government will determine if other applicable certifications are acceptable upon contractor submittal. * Demonstrated knowledge and application of NIST Guidelines and FISMA Cybersecurity compliance requirements. * Demonstrated experience with all phases of the NIST Risk Management Framework (RMF) * Knowledge of and experience using relevant cybersecurity and analysis tools such as Archer, Nessus Security Center, Splunk, etc. * Experience communicating effectively, both oral and written, with technical, non-technical, and executive-level customers. * Must have active SECRET Clearance * Must be located in DC/MD/VA, * In-depth knowledge of laws, directives, orders, etc., pertaining to IT security and directing Federal government agencies. * Technical background such as Network Engineering, Systems Administration, and Application Development. Hands on experience working with security tools like NESSUS, AppDetective, Web Inspect, AppScan, etc. * Strong written and oral communications skills * Ability to quickly adapt to customer, environment, policies, procedures, etc. * Proactive and self-directed workstyle * Ability to prioritize tasks in a fast-paced environment ## Description * Assess, review, update, and develop security authorization and accreditation documentation to ensure consistency with laws, regulations, and best practices as it pertains to the systems and customer requirements. * Work closely with Federal customers to develop and update security-related documentation to reflect the security posture of the IT system, as directed by the government and federal program managers. * Prepare or assist in the preparation of other security documentation or reports as required to support customer engagements. * Support ISSOs in their responsibilities for systems including Enterprise security support and risk management and system weakness management (POA&M maintenance for the Risk Management Framework Portal (RMFP)). * Assist the Federal customer in reviewing or modifying security documentation to ensure it maintains quality and accuracy in customer products. * Work with Engineers and System Administrators to properly document data flows, system architecture, and other necessary diagrams/charts. * Work with various security tools including NESSUS, AppDetective, Web Inspect, AppScan, etc. * Provide administrative support as necessary, to include, but not limited to: * + Compile, or provide input to, weekly customer status reporting (e.g. deliverables completed) and project plans + Assist with meeting minutes and action items as need + Attend customer meetings in person, unless otherwise noted * Advocate industry best practices on behalf of EGT Cyber Solutions Practice. Contribute to EGT business development goals by creating and developing white papers and innovative solutions. ## Related Videos - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [How should you format your IT resume?](https://www.wearedevelopers.com/magazine/68-how-should-you-format-your-it-resume) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)