> Markdown version of [/jobs/ext/2581684-senior-isso](https://www.wearedevelopers.com/jobs/ext/2581684-senior-isso). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior ISSO - **Company:** Softthink Solutions, Inc. - **Location:** United States (Remote available) - **Experience:** Expert - **Salary:** $93,600.0 - $135,200.0 - **Contract:** Permanent contract - **Skills:** Cyber Security, Information Security Management, Software Vulnerability Management, Okta, Information Technology, Qualys, Plan of Action and Milestones, Vulnerability Analysis - **Published:** August 9, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=8b9e0c2bf8a8023c ## About the Role * Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field. * Experience supporting Federal cybersecurity programs. * Experience with: + RMF, Experience using: * CSAM * ServiceNow * Splunk * Microsoft Defender * Azure Government * Microsoft 365 * Intune * Tenable * Qualys * Okta * Palo Alto * Zscaler Preferred Certifications * Security+ * CISSP * CAP * CISM ## Description We are seeking experienced Senior Information Systems Security Officers (ISSOs) to support a Federal cybersecurity program. The Senior ISSO will assist in implementing RMF, Continuous Monitoring, vulnerability management, security compliance, authorization activities, and audit readiness. Responsibilities * Perform Information System Security Officer (ISSO) duties. * Support RMF implementation and ongoing authorization. * Conduct Continuous Monitoring (ConMon). * Perform vulnerability assessments and remediation tracking. * Create and maintain POA&M documentation. * Support security assessments and audits. * Maintain authorization package documentation. * Coordinate with System Owners, ISSM, and engineering teams. * Maintain cybersecurity documentation using Government tools. * Serve as Alternate Lead ISSO when required. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Organizational Change Through The Power Of Why - DevSecOps Enablement](https://www.wearedevelopers.com/videos/478-organizational-change-through-the-power-of-why-devsecops-enablement) - [Less Is More: How Lagom and Agile Can Create Harmonious Workflows](https://www.wearedevelopers.com/videos/1993-less-is-more-how-lagom-and-agile-can-create-harmonious-workflows) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking)