> Markdown version of [/jobs/ext/2610832-lead-information-system-security-officer-isso-technical-program-lead](https://www.wearedevelopers.com/jobs/ext/2610832-lead-information-system-security-officer-isso-technical-program-lead). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Lead Information System Security Officer (ISSO) / Technical Program Lead - **Company:** Xtreme Inc - **Location:** Washington, DC, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Cloud Computing Security, Cyber Security, Information Security Management, Software Vulnerability Management, SARS Software Products, Servicenow, Plan of Action and Milestones - **Published:** August 11, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=dabb21ae93069f81 ## About the Role * 10+ years of progressively responsible cybersecurity experience. * 7+ years supporting federal ISSO, IA, A&A/C&A, or RMF activities. * 3+ years leading ISSOs, Security Control Assessors, cybersecurity analysts, or federal authorization workstreams. * Demonstrated experience managing multiple federal systems or authorization boundaries concurrently. * Advanced knowledge of NIST SP 800-37 and NIST SP 800-53. * Hands-on experience reviewing federal RMF and authorization artifacts. * Experience coordinating with senior federal cybersecurity stakeholders. * Experience performing technical QA/QC of cybersecurity deliverables. * Strong executive briefing and written communication skills. * CISSP, CISM, CGRC/CAP, or GSLC required., * Experience with CSAM or another federal GRC platform. * Experience with ServiceNow and federal ITSM workflows. * FedRAMP and federal cloud-security experience. * Experience with NIST SP 800-137 continuous monitoring. * Current or recent Tier 4 or Tier 5 investigation. * Experience supporting FISMA, IG, GAO, CISA, or similar federal assessments. ## Description Xtreme Solutions is seeking an experienced Lead Information System Security Officer (ISSO) / Technical Program Lead to provide technical leadership and hands-on cybersecurity support for a federal customer in Washington, DC. This is an opportunity for an accomplished federal cybersecurity professional who can lead an ISSO team while remaining deeply involved in RMF, authorization, continuous monitoring, vulnerability management, and security-risk decisions. The ideal candidate has led complex federal authorization activities, can review and challenge technical cybersecurity deliverables, and is comfortable briefing senior Government stakeholders on system risk, authorization status, vulnerabilities, and remediation priorities. What You'll Do * Lead day-to-day technical activities across the ISSO team. * Assign systems, authorization boundaries, and security workstreams. * Oversee multiple concurrent RMF authorization and reauthorization activities. * Review and approve SSPs, SAPs, SARs, POA&Ms, risk assessments, Continuous Monitoring Plans, SIAs, and authorization packages. * Perform technical QA/QC before cybersecurity deliverables are submitted to the Government. * Track authorization milestones, dependencies, risks, issues, and corrective actions. * Oversee POA&M, vulnerability-remediation, and continuous-monitoring activities. * Coordinate with AOs/AODRs, the CISO, ISSMs, System Owners, assessors, privacy teams, Common Control Providers, and technical remediation teams. * Resolve conflicting or incomplete cybersecurity information across tools, artifacts, and system records. * Provide senior-level security posture, authorization, and risk briefings. * Mentor and provide technical direction to ISSOs, assessors, and cybersecurity analysts. * Support federal audits and independent security-control assessments. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Applying Agile Principles to Incident Management ](https://www.wearedevelopers.com/videos/101-applying-agile-principles-to-incident-management) - [Organizational Change Through The Power Of Why - DevSecOps Enablement](https://www.wearedevelopers.com/videos/478-organizational-change-through-the-power-of-why-devsecops-enablement) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [AI in Production: applied AI & enterprise use cases](https://www.wearedevelopers.com/videos/100130-ai-in-production-applied-ai-enterprise-use-cases) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)