Lead Information System Security Officer

BizSolutions 360, Inc.
Washington, DC, United States
about 1 month ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Compensation
$101,563.0 - $122,313.0
Working hours
Shift work
Job source

Tech stack

Microsoft Windows Microsoft Azure Cyber Security Information Systems Information Security Management Software Vulnerability Management SC Clearance Information Technology Servicenow Plan of Action and Milestones

Job description

  • Serve as B360’s single point of accountability for technical execution of ISSO support services.
  • Manage day-to-day work performed by the ISSO team.
  • Serve as the primary Contractor technical interface with the Government ISSM, CISO, Authorizing Official, AODR, System Owners, assessors, Common Control Providers, Privacy Office, and other cybersecurity stakeholders.
  • Direct and coordinate ISSO activities across supported information systems.
  • Assign work and provide technical supervision to Senior ISSOs.
  • Maintain continuity of ISSO coverage across planned absences, vacancies, surge periods, and security-processing delays.
  • Oversee RMF, authorization, reauthorization, and ongoing-authorization activities.
  • Review and quality-control authorization-package artifacts before Government submission.
  • Support development and maintenance of System Security Plans, control implementations, assessment evidence, security assessments, authorization packages, continuous-monitoring artifacts, and related security documentation.
  • Chair internal technical and quality reviews of ISSO deliverables.
  • Maintain Contractor risk, issue, action-item, and deliverable registers.
  • Escalate cybersecurity, authorization, compliance, staffing, quality, and schedule risks.
  • Lead continuous-monitoring, vulnerability-management, POA&M, security-impact-analysis, audit-support, and compliance workstreams.
  • Participate in cybersecurity governance forums, including change-control, enterprise-review, risk-management, privacy, and cybersecurity steering activities.
  • Support incident-response coordination, situation reporting, evidence preservation, corrective-action tracking, and root-cause-analysis activities.
  • Coordinate with technical teams responsible for vulnerability remediation without assuming final Government risk-acceptance or POA&M-closure authority.
  • Prepare and review dashboards, metrics, briefings, authorization-status reports, cybersecurity posture information, vulnerability trends, POA&M status, and executive-level recommendations.
  • Ensure cybersecurity artifacts remain accurate, complete, current, professionally prepared, traceable, and audit-ready.
  • Coordinate with B360 program management regarding staffing, reporting, invoicing, performance, quality, and contract administration.
  • Maintain hands-on technical involvement and not operate solely as an administrative manager.

The Lead ISSO is expected to maintain availability, personally or through an approved designated Alternate, during DFC core business hours of 7:00 AM to 6:00 PM Eastern Time, Monday through Friday, excluding federal holidays.Preferred Qualifications

Requirements

The solicitation does not prescribe a specific degree, certification, or minimum number of years. B360 will give preference to candidates with:

  • Bachelor’s degree in cybersecurity, information technology, computer science, engineering, information systems, or a related discipline.
  • CISSP, CISM, CGRC, CAP, CASP+, GSLC, CCSP, or comparable advanced cybersecurity certification.
  • Experience supporting a federal civilian agency.
  • Experience leading authorization activities for Microsoft Azure Government, Microsoft 365 GCC/GCC High, ServiceNow, or similar FedRAMP-authorized environments.
  • Experience developing executive cybersecurity dashboards and presenting risk information to senior federal stakeholders.
  • Current or recent Tier 4 Public Trust, Secret clearance, or comparable federal suitability determination.Key Personnel Requirement

This position is designated as Key Personnel. The selected candidate’s resume, certifications, technical qualifications, availability, and suitability may be submitted to the Government for evaluation and approval. Replacement or material reduction of the candidate’s role after award may require prior written Government approval.

Benefits & conditions

  • Citizenship confirmation
  • Current clearance or Public Trust status, if applicable
  • Relevant certifications
  • Earliest availability date
  • Salary expectations
  • Brief description of federal ISSO, RMF, authorization, POA&M, continuous-monitoring, and team-leadership experience

Pay: $101,563.08 - $122,312.52 per year

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

56 sec

Integrating automated approval workflows into the portal

Markus Eisele Markus Eisele · World Congress 2025

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

2:27 min

Establishing a simulated technical environment for the workflow demo

Tobias Dunn-Krahn · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all