Lead Information System Security Officer (ISSO) / Technical Program Lead

Xtreme Inc
Washington, DC, United States
26 days ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Working hours
Regular working hours
Job source

Tech stack

Cloud Computing Security Cyber Security Information Security Management Software Vulnerability Management SARS Software Products Servicenow Plan of Action and Milestones

Job description

Xtreme Solutions is seeking an experienced Lead Information System Security Officer (ISSO) / Technical Program Lead to provide technical leadership and hands-on cybersecurity support for a federal customer in Washington, DC.

This is an opportunity for an accomplished federal cybersecurity professional who can lead an ISSO team while remaining deeply involved in RMF, authorization, continuous monitoring, vulnerability management, and security-risk decisions.

The ideal candidate has led complex federal authorization activities, can review and challenge technical cybersecurity deliverables, and is comfortable briefing senior Government stakeholders on system risk, authorization status, vulnerabilities, and remediation priorities.

What You’ll Do

  • Lead day-to-day technical activities across the ISSO team.
  • Assign systems, authorization boundaries, and security workstreams.
  • Oversee multiple concurrent RMF authorization and reauthorization activities.
  • Review and approve SSPs, SAPs, SARs, POA&Ms, risk assessments, Continuous Monitoring Plans, SIAs, and authorization packages.
  • Perform technical QA/QC before cybersecurity deliverables are submitted to the Government.
  • Track authorization milestones, dependencies, risks, issues, and corrective actions.
  • Oversee POA&M, vulnerability-remediation, and continuous-monitoring activities.
  • Coordinate with AOs/AODRs, the CISO, ISSMs, System Owners, assessors, privacy teams, Common Control Providers, and technical remediation teams.
  • Resolve conflicting or incomplete cybersecurity information across tools, artifacts, and system records.
  • Provide senior-level security posture, authorization, and risk briefings.
  • Mentor and provide technical direction to ISSOs, assessors, and cybersecurity analysts.
  • Support federal audits and independent security-control assessments.

Requirements

  • 10+ years of progressively responsible cybersecurity experience.
  • 7+ years supporting federal ISSO, IA, A&A/C&A, or RMF activities.
  • 3+ years leading ISSOs, Security Control Assessors, cybersecurity analysts, or federal authorization workstreams.
  • Demonstrated experience managing multiple federal systems or authorization boundaries concurrently.
  • Advanced knowledge of NIST SP 800-37 and NIST SP 800-53.
  • Hands-on experience reviewing federal RMF and authorization artifacts.
  • Experience coordinating with senior federal cybersecurity stakeholders.
  • Experience performing technical QA/QC of cybersecurity deliverables.
  • Strong executive briefing and written communication skills.
  • CISSP, CISM, CGRC/CAP, or GSLC required., * Experience with CSAM or another federal GRC platform.
  • Experience with ServiceNow and federal ITSM workflows.
  • FedRAMP and federal cloud-security experience.
  • Experience with NIST SP 800-137 continuous monitoring.
  • Current or recent Tier 4 or Tier 5 investigation.
  • Experience supporting FISMA, IG, GAO, CISA, or similar federal assessments.

About the company

About Xtreme SolutionsXSI is a leading provider of information technology and professional services known for outstanding service delivery in a wide range of professional services engagements around the country. Team XSI continually meets and exceeds customer expectations. We are passionate about our work and making a difference. Our vision is to be the best professional services management company for both our customers and our employees. We need employees that share this vision. Our remarkable employees are the key to our company’s incredible success. XSI promotes a work environment of trust, integrity, respect, continual improvement, customer satisfaction, and business success. We strive to provide a competitive salary and benefits, an engaging and rewarding work environment, and training and development opportunities.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

56 sec

Integrating automated approval workflows into the portal

Markus Eisele Markus Eisele · World Congress 2025

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

2:27 min

Establishing a simulated technical environment for the workflow demo

Tobias Dunn-Krahn · LIVE

5:03 min

Navigating new cybersecurity compliance frameworks and laws

Kurt Eder · LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all