> Markdown version of [/jobs/ext/2547535-senior-information-system-security-officer-isso](https://www.wearedevelopers.com/jobs/ext/2547535-senior-information-system-security-officer-isso). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Information System Security Officer (ISSO) - **Company:** E-Logic INC - **Location:** Washington, DC, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Microsoft Azure, Cloud Computing Security, CompTIA Security+, Cyber Security, Information Systems, Information Security Management, Security Information and Event Management, Software Vulnerability Management, Data Ingestion, RSA Archer Platform, Splunk, Qualys, Servicenow, Plan of Action and Milestones, Vulnerability Analysis - **Published:** August 6, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=cf7fd29ce0897615 ## About the Role * Citizenship: Must be a U.S. Citizen. * Clearance: Must be eligible to obtain and maintain a Tier 4 High-Risk Public Trust background investigation. * Certifications: Must hold a relevant cybersecurity certification (e.g., CISSP, CISM, Security+, or equivalent). CISSP or CISM is highly preferred. * Experience: Minimum of 5-7 years of experience in information security, with at least 3 years of direct experience as an ISSO or in a similar RMF/compliance role within the federal government. * Technical Proficiency: Demonstrated hands-on experience with cybersecurity and compliance tools, including: * GRC Platforms (CSAM strongly preferred). * SIEM Platforms (Splunk strongly preferred). * ITSM Tools (ServiceNow). * Vulnerability Assessment Tools (Tenable, Qualys). * Cloud Security (Microsoft Azure, M365, Entra ID). Desired Experience: * Strong knowledge of NIST SP 800-37, NIST SP 800-53, and FISMA compliance. * Experience with federal audit preparation and Inspector General (IG) or GAO reviews. * Experience supporting FedRAMP-compliant cloud environments. * Excellent analytical, problem-solving, and communication skills. Clearance Requirement: Must be eligible for a Tier 4 High-Risk Public Trust ## Description We are looking for a highly skilled and proactive Senior Information System Security Officer (ISSO) to join our team supporting the U.S. International Development Finance Corporation (DFC). As a Senior ISSO, you will act as the Alternate ISSO, fully qualified to step in for the Lead ISSO during their absence. You will be responsible for performing complex ISSO duties across a portfolio of FISMA-moderate systems, leading critical workstreams in RMF, continuous monitoring, and vulnerability management. You will work directly with federal staff to ensure systems maintain a strong security posture and achieve compliance with federal cybersecurity policies., * ISSO Operations: Perform senior-level ISSO duties for assigned information systems, managing their security posture throughout the system lifecycle. * RMF Execution: Lead the development and maintenance of RMF artifacts, including System Security Plans (SSPs), POA&Ms, and Security Control Assessments within the CSAM platform. * Continuous Monitoring: Manage continuous monitoring and security posture activities, including analyzing vulnerability scan results and verifying log ingestion in Splunk. * Incident & Audit Support: Provide critical ISSO support during cybersecurity incidents and audits by retrieving system context, coordinating with the SOC, and documenting corrective actions. * Change Management: Conduct Security Impact Analyses (SIAs) for proposed system changes and support federal decision-making at Change Control Boards (CCB). * Workstream Leadership: Lead assigned workstreams in areas such as vulnerability management, POA&M lifecycle management, or security documentation. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Applying Agile Principles to Incident Management ](https://www.wearedevelopers.com/videos/101-applying-agile-principles-to-incident-management) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [AI in Production: applied AI & enterprise use cases](https://www.wearedevelopers.com/videos/100130-ai-in-production-applied-ai-enterprise-use-cases) - [Robots are coming into the wild! Full-Stack Robotics Engineers, be ready!](https://www.wearedevelopers.com/videos/479-robots-are-coming-into-the-wild-full-stack-robotics-engineers-be-ready) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking)