Senior Information System Security Officer (ISSO)
COMMAND CONTROL COMMUNICATIONS ENGINEERING & LOGISTICS LLC
Washington, DC, United States
5 days ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Apply on www.clearancejobs.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Shift work
Job source
Tech stack
Microsoft Windows
Microsoft Azure
Cloud Computing Security
CompTIA Security+
Cyber Security
Federal Information Processing Standards (FIPS)
Information Security Management
Cloud Services
Security Information and Event Management
Privacy Controls
SARS Software Products
Okta
+1 more
Information Technology
Job description
C3EL is seeking a Senior Information System Security Officer (ISSO) to provide on-site cybersecurity and Risk Management Framework (RMF) sustainment support in Washington, D.C., for a new contract. This role will serve as the primary Alternate Lead, with deep CSAM, RMF, authorization, FedRAMP, cloud, identity, and assessment expertise, being capable of assuming Lead ISSO duties without service degradation for the program.
Responsibilities will include, but not be limited to:
- Provide on-site cybersecurity and RMF sustainment support.
- Independently manage categorization, control selection, implementation evidence, assessment readiness, authorization, and monitoring.
- Develop and maintain SSPs, SAPs, SARs, POA&Ms, risk assessments, control statements, inheritance records, and evidence packages.
- Support FedRAMP-authorized cloud services, provider artifacts, customer responsibilities, CRMs, SRMs, and inherited controls.
- Support privacy controls, PTAs, PIAs, and systems processing PII.
- Pre-stage evidence and coordinate SCA interviews, walkthroughs, demonstrations, findings, and comment adjudication.
- Track ATO dates, conditions, milestones, open risks, and briefing materials for AO/AODR decisions.
- Produce accurate, concise, and audit-ready Government cybersecurity documentation.
- Support team coverage from 7:00 a.m. to 6:00 p.m. ET (M-F) and participate in after-hours incident coverage as needed.
Requirements
- U.S. Citizenship.
- Eligibility to obtain a Tier 4 High-Risk Public Trust.
- Minimum seven (7) years of cybersecurity.
- Minimum five (5) years in federal RMF, A&A, ISSO, or authorization work.
- Working knowledge of NIST SP 800-37, 800-53, 800-53B, FIPS 199, FISMA, and applicable CISA/OMB guidance.
- Familiarity with GRC, ITSM, SIEM, scanner, identity, endpoint and cloud-security platforms.
- Hands-on CSAM experience supporting system profiles, controls, evidence, POA&Ms, and authorization workflows.
- Experience with Azure Government, Microsoft 365 GCC/GCC High, and cloud shared-responsibility models.
- Experience with Entra ID, Okta, privileged access, role assignments, and access recertification.
Preferred Qualifications:
- At least one current cybersecurity certification such as CISSP, CGRC, CISM, CRISC, Security+, SecurityX, CCSP, or GIAC.
Education:
- Associate’s degree in Cybersecurity, Information Technology, or related field. (Relevant experience may be considered in lieu of formal education.)
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.clearancejobs.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
AJ
Austin Joy
over 4 years ago
DC
Daniel Cranney
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
7 months ago
LM
Luis Minvielle
9 Ways to Make Money Hacking
over 2 years ago
CH
Chris Heilmann
Dev Digest 134 - Where pixels sing?
almost 2 years ago
KD
Krissy Davis
Best Paying Jobs in Technology
about 3 years ago
IK
Igor Khokhriakov
How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again
21 days ago