Lead Information System Security Officer (ISSO) / Technical Program Lead
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
Xtreme Solutions is seeking an experienced Lead Information System Security Officer (ISSO) / Technical Program Lead to provide technical leadership and hands-on cybersecurity support for a federal customer in Washington, DC.
This is an opportunity for an accomplished federal cybersecurity professional who can lead an ISSO team while remaining deeply involved in RMF, authorization, continuous monitoring, vulnerability management, and security-risk decisions.
The ideal candidate has led complex federal authorization activities, can review and challenge technical cybersecurity deliverables, and is comfortable briefing senior Government stakeholders on system risk, authorization status, vulnerabilities, and remediation priorities.
What You’ll Do
- Lead day-to-day technical activities across the ISSO team.
- Assign systems, authorization boundaries, and security workstreams.
- Oversee multiple concurrent RMF authorization and reauthorization activities.
- Review and approve SSPs, SAPs, SARs, POA&Ms, risk assessments, Continuous Monitoring Plans, SIAs, and authorization packages.
- Perform technical QA/QC before cybersecurity deliverables are submitted to the Government.
- Track authorization milestones, dependencies, risks, issues, and corrective actions.
- Oversee POA&M, vulnerability-remediation, and continuous-monitoring activities.
- Coordinate with AOs/AODRs, the CISO, ISSMs, System Owners, assessors, privacy teams, Common Control Providers, and technical remediation teams.
- Resolve conflicting or incomplete cybersecurity information across tools, artifacts, and system records.
- Provide senior-level security posture, authorization, and risk briefings.
- Mentor and provide technical direction to ISSOs, assessors, and cybersecurity analysts.
- Support federal audits and independent security-control assessments.
Requirements
- 10+ years of progressively responsible cybersecurity experience.
- 7+ years supporting federal ISSO, IA, A&A/C&A, or RMF activities.
- 3+ years leading ISSOs, Security Control Assessors, cybersecurity analysts, or federal authorization workstreams.
- Demonstrated experience managing multiple federal systems or authorization boundaries concurrently.
- Advanced knowledge of NIST SP 800-37 and NIST SP 800-53.
- Hands-on experience reviewing federal RMF and authorization artifacts.
- Experience coordinating with senior federal cybersecurity stakeholders.
- Experience performing technical QA/QC of cybersecurity deliverables.
- Strong executive briefing and written communication skills.
- CISSP, CISM, CGRC/CAP, or GSLC required., * Experience with CSAM or another federal GRC platform.
- Experience with ServiceNow and federal ITSM workflows.
- FedRAMP and federal cloud-security experience.
- Experience with NIST SP 800-137 continuous monitoring.
- Current or recent Tier 4 or Tier 5 investigation.
- Experience supporting FISMA, IG, GAO, CISA, or similar federal assessments.
About the company
About Xtreme SolutionsXSI is a leading provider of information technology and professional services known for outstanding service delivery in a wide range of professional services engagements around the country. Team XSI continually meets and exceeds customer expectations. We are passionate about our work and making a difference. Our vision is to be the best professional services management company for both our customers and our employees. We need employees that share this vision. Our remarkable employees are the key to our company’s incredible success. XSI promotes a work environment of trust, integrity, respect, continual improvement, customer satisfaction, and business success. We strive to provide a competitive salary and benefits, an engaging and rewarding work environment, and training and development opportunities.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Best Paying Jobs in Technology
9 Ways to Make Money Hacking
Dev Digest 134 - Where pixels sing?