Lead Information System Security Officer
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
- Serve as B360’s single point of accountability for technical execution of ISSO support services.
- Manage day-to-day work performed by the ISSO team.
- Serve as the primary Contractor technical interface with the Government ISSM, CISO, Authorizing Official, AODR, System Owners, assessors, Common Control Providers, Privacy Office, and other cybersecurity stakeholders.
- Direct and coordinate ISSO activities across supported information systems.
- Assign work and provide technical supervision to Senior ISSOs.
- Maintain continuity of ISSO coverage across planned absences, vacancies, surge periods, and security-processing delays.
- Oversee RMF, authorization, reauthorization, and ongoing-authorization activities.
- Review and quality-control authorization-package artifacts before Government submission.
- Support development and maintenance of System Security Plans, control implementations, assessment evidence, security assessments, authorization packages, continuous-monitoring artifacts, and related security documentation.
- Chair internal technical and quality reviews of ISSO deliverables.
- Maintain Contractor risk, issue, action-item, and deliverable registers.
- Escalate cybersecurity, authorization, compliance, staffing, quality, and schedule risks.
- Lead continuous-monitoring, vulnerability-management, POA&M, security-impact-analysis, audit-support, and compliance workstreams.
- Participate in cybersecurity governance forums, including change-control, enterprise-review, risk-management, privacy, and cybersecurity steering activities.
- Support incident-response coordination, situation reporting, evidence preservation, corrective-action tracking, and root-cause-analysis activities.
- Coordinate with technical teams responsible for vulnerability remediation without assuming final Government risk-acceptance or POA&M-closure authority.
- Prepare and review dashboards, metrics, briefings, authorization-status reports, cybersecurity posture information, vulnerability trends, POA&M status, and executive-level recommendations.
- Ensure cybersecurity artifacts remain accurate, complete, current, professionally prepared, traceable, and audit-ready.
- Coordinate with B360 program management regarding staffing, reporting, invoicing, performance, quality, and contract administration.
- Maintain hands-on technical involvement and not operate solely as an administrative manager.
The Lead ISSO is expected to maintain availability, personally or through an approved designated Alternate, during DFC core business hours of 7:00 AM to 6:00 PM Eastern Time, Monday through Friday, excluding federal holidays.Preferred Qualifications
Requirements
The solicitation does not prescribe a specific degree, certification, or minimum number of years. B360 will give preference to candidates with:
- Bachelor’s degree in cybersecurity, information technology, computer science, engineering, information systems, or a related discipline.
- CISSP, CISM, CGRC, CAP, CASP+, GSLC, CCSP, or comparable advanced cybersecurity certification.
- Experience supporting a federal civilian agency.
- Experience leading authorization activities for Microsoft Azure Government, Microsoft 365 GCC/GCC High, ServiceNow, or similar FedRAMP-authorized environments.
- Experience developing executive cybersecurity dashboards and presenting risk information to senior federal stakeholders.
- Current or recent Tier 4 Public Trust, Secret clearance, or comparable federal suitability determination.Key Personnel Requirement
This position is designated as Key Personnel. The selected candidate’s resume, certifications, technical qualifications, availability, and suitability may be submitted to the Government for evaluation and approval. Replacement or material reduction of the candidate’s role after award may require prior written Government approval.
Benefits & conditions
- Citizenship confirmation
- Current clearance or Public Trust status, if applicable
- Relevant certifications
- Earliest availability date
- Salary expectations
- Brief description of federal ISSO, RMF, authorization, POA&M, continuous-monitoring, and team-leadership experience
Pay: $101,563.08 - $122,312.52 per year
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
9 Ways to Make Money Hacking
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Dev Digest 134 - Where pixels sing?
Best Paying Jobs in Technology