> Markdown version of [/jobs/ext/2051845-senior-isso](https://www.wearedevelopers.com/jobs/ext/2051845-senior-isso). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior ISSO - **Company:** Zachary Piper - **Location:** Raleigh, NC, United States - **Experience:** Expert - **Salary:** $130,000.0 - $170,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Amazon Web Services, Unix, Cyber Security, Linux, Information Technology, Splunk, Servicenow, Vulnerability Analysis - **Published:** August 14, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9088568/senior-isso ## About the Role * 5+ years of Information Systems Security Officer (ISSO) experience in secure government environments * Strong knowledge of ICD 503, Risk Management Framework (RMF), and NIST SP 800-53 requirements * Experience implementing DISA STIGs and securing Windows, Linux, Unix, and AWS environments * Experience with security tools such as Splunk, Tenable Security Center, HBSS, EMASS, and ServiceNow * Bachelor's degree in Computer Information Systems, Computer Science, or a related technical field; equivalent experience may be considered * Active TS/SCI Clearance with Full Scope Polygraph ## Description Zachary Piper is hiring a Sr. ISSO (TS/SCI - FSP) for a government technology program located in Raleigh, NC. The Sr. ISSO (TS/SCI - FSP) will support secure information systems and ensure compliance with Intelligence Community and Department of Defense security requirements throughout the authorization and continuous monitoring lifecycle. The Sr. ISSO (TS/SCI - FSP) is a contract position requiring 5 days onsite per week in Raleigh, NC and an active TS/SCI Clearance with Full Scope Polygraph. Responsibilities of the Sr. ISSO (TS/SCI - FSP): * Partner with the Information Systems Security Manager (ISSM) to manage Assessment & Authorization (A&A) activities in accordance with ICD 503 and Risk Management Framework requirements * Develop, maintain, and review System Security Plans (SSPs), POA&Ms, and other security documentation for authorized systems * Conduct continuous monitoring activities including audits, vulnerability scans, security reviews, and compliance reporting * Ensure compliance through implementation of DISA STIGs and applicable NIST, DoD, and Intelligence Community security standards * Coordinate with program leadership and government stakeholders throughout authorization and accreditation efforts * Maintain system records in EMASS, ServiceNow, and other systems of record while providing security briefings and recommendations ## Related Videos - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [WeAreDevelopers LIVE - Node and Package Security](https://www.wearedevelopers.com/videos/2138-wearedevelopers-live-node-and-package-security) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [Securing Your Web Application Pipeline From Intruders](https://www.wearedevelopers.com/videos/53-securing-your-web-application-pipeline-from-intruders) ## Related Articles - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [The Best X (Twitter) Accounts for Developers](https://www.wearedevelopers.com/magazine/294-the-best-x-twitter-accounts-for-developers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)