> Markdown version of [/jobs/ext/1906892-senior-cyber-consultant-isso-issm](https://www.wearedevelopers.com/jobs/ext/1906892-senior-cyber-consultant-isso-issm). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Cyber Consultant - ISSO/ISSM - **Company:** Guidehouse Inc. - **Location:** Washington, DC, United States - **Experience:** Expert - **Salary:** $113,000.0 - $188,000.0 - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Application Firewall, Microsoft Azure, Cyber Security, Disaster Recovery, Intrusion Detection and Prevention, Network Architecture, Software Engineering, Data Logging, Network Routers, Information Security Management System, Cloud Platform System, Firewalls (Computer Science), SC Clearance, Cybercrime, Plan of Action and Milestones, Vulnerability Analysis - **Published:** August 3, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9072732/senior-cyber-consultant-issoissm ## About the Role * Minimum THREE (3) years of experience in Cyber Security/ Information Assurance. * Bachelors Degree * Experience applying fundamental cybersecurity principles and concepts to tasks and projects. * An ACTIVE and MAINTAINED DOD or Federal Secret Clearance * Cyber certification - CISM, CISSP, or Security+ * Ability to work full time on site in Washington DC What Would Be Nice To Have : * Experience working with networking, storage, intrusion detection/prevention systems, routers, switches, firewalls, logging, physical security systems, server, and workstation security configuration. * Experienced with performing risk assessments on cloud computing platforms i.e., AWS, Google, Azure. * Demonstrated ability leading successful teams and working in challenging situations. * Strong written and oral communication skills and demonstrates leadership role with the client and fellow team members. * Strong client leadership skills and ability to recognize opportunities for improvement to existing or future capabilities. * Ability to lead teams to complete projects with attention to detail on tight timelines. * Assures high quality work by taking advantage of learning opportunities and self-motivated. * HVA Assessment Qualification ## Description * Apply fundamental cybersecurity principles and concepts to tasks and projects. * Assess and implement NIST Cybersecurity Framework (CSF) guidelines, standards, and best practices for cyber security and risk management to strengthen an organizations security posture. * Review disaster recovery capabilities (backups), Endpoint Detection and Response (EDR), Web Application Firewall (WAF), application whitelisting, host-based firewalls, etc. to provide continuous monitoring of end-user devices to detect and respond to cyber threats. * Understand of Governance Risk and Compliance (GRC) requirements, standards, and guidelines governing security within the Federal Government (e.g., NIST publications, FISMA, and OMB memoranda) and aligning IT with business objectives to effectively manage risk. * Apply NIST Risk Management Framework (RMF), NIST SP 800-53 controls, Assessment and Authorization processes, POA&M management, and System Security Plan, FedRAMP, and SOC 2 * Perform cybersecurity risk management, research and development, and leading practices. * Gather and organize technical information about an organization's mission goals and needs, existing security products, and ongoing programs in cybersecurity. * Develop strategies, roadmaps, assessments, and policies. * Perform password auditing, network and web vulnerability scanning, virus management and intrusion detection. * Monitor change management documentation to identify potential impacts to previous, current, and future security testing. * Author risk narratives to communicate key risks to government CISO and security auditors. * Support risk audits and assessments, provide recommendations for application design. * Work with solution architects for security requirements on network architecture ## Related Videos - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Crypto-secure Data Management with In-Database Blockchain](https://www.wearedevelopers.com/videos/632-crypto-secure-data-management-with-in-database-blockchain) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Deep Fakes: The Lies We Can’t See](https://www.wearedevelopers.com/videos/1187-deep-fakes-the-lies-we-can-t-see) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Build Delightful Mobile Experiences with Kotlin, Realm, and Atlas Device Sync](https://www.wearedevelopers.com/videos/694-build-delightful-mobile-experiences-with-kotlin-realm-and-atlas-device-sync) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)