> Markdown version of [/jobs/ext/2653301-lead-information-system-security-officer-isso](https://www.wearedevelopers.com/jobs/ext/2653301-lead-information-system-security-officer-isso). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Lead Information System Security Officer (ISSO) - **Company:** E-Logic INC - **Location:** Washington, DC, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Microsoft Antivirus, Microsoft Azure, Cloud Computing, Cyber Security, Information Security Management, Zero Trust Network Access, RSA (Cryptosystem), SAP (Applications), Security Information and Event Management, Tenable Nessus, RSA Archer Platform, Splunk, Qualys, Servicenow, Vulnerability Analysis - **Published:** August 6, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=a7a6fa02a2add66d ## About the Role * Citizenship: Must be a U.S. Citizen. * Clearance: Must be eligible to obtain and maintain a Tier 4 High-Risk Public Trust background investigation. * Certifications: Must hold a relevant top-tier cybersecurity certification (e.g., CISSP, CISM, or equivalent). * Experience: Minimum of 8-10 years of progressive experience in cybersecurity, with at least 5 years in an ISSO or senior cybersecurity role managing RMF and federal compliance programs. * Technical Proficiency: Strong working knowledge of key security tools, including: * GRC Platforms (CSAM, RSA Archer, or similar). * SIEM Platforms (Splunk, Elastic, or similar). * Ticketing/ITSM (ServiceNow). * Vulnerability Scanners (Tenable Nessus, Qualys). * Cloud and Endpoint Security (Azure, Microsoft 365, Microsoft Defender). Desired Experience: * Deep understanding of NIST SP 800-37 (RMF), NIST SP 800-53 (Security Controls), and FISMA compliance. * Experience supporting Authorization to Operate (ATO) processes for federal agencies. * Experience with FedRAMP and cloud shared-responsibility models. * Proven ability to manage and mentor a team of cybersecurity professionals. Clearance Requirement: Must be eligible for a Tier 4 High-Risk Public Trust ## Description We are seeking an experienced and highly motivated Lead Information System Security Officer (ISSO) to support the U.S. International Development Finance Corporation (DFC). In this key leadership role, you will serve as the single point of accountability for all technical cybersecurity support services, managing a team of ISSOs and acting as the primary interface with senior federal officials, including the Information System Security Manager (ISSM), Chief Information Security Officer (CISO), and Authorizing Officials (AO). You will oversee the full lifecycle of cybersecurity support, ensuring compliance with the Risk Management Framework (RMF), NIST guidelines, and federal mandates. This is a senior-level position that requires a blend of hands-on technical expertise and strong program management skills., * Program Leadership: Manage the day-to-day execution of ISSO support activities, direct staff, and ensure consistent service delivery across all supported systems. * Government Liaison: Serve as the primary technical and operational interface with DFC federal leadership, including the ISSM, CISO, and System Owners. * RMF & Authorization: Oversee the development, quality control, and submission of critical authorization package artifacts (e.g., SSP, SAP, SAR) within the Cyber Security Assessment and Management (CSAM) tool. * Strategic Oversight: Chair internal quality reviews, manage the contractor risk/issue register, and represent the team in high-level DFC governance forums (e.g., Change Control Board, Enterprise Review Board). * Continuous Monitoring: Direct continuous monitoring and security posture management activities, ensuring alignment with DFC's Zero Trust architecture and the agency's ISCM strategy. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Applying Agile Principles to Incident Management ](https://www.wearedevelopers.com/videos/101-applying-agile-principles-to-incident-management) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [AI in Production: applied AI & enterprise use cases](https://www.wearedevelopers.com/videos/100130-ai-in-production-applied-ai-enterprise-use-cases) - [Robots are coming into the wild! Full-Stack Robotics Engineers, be ready!](https://www.wearedevelopers.com/videos/479-robots-are-coming-into-the-wild-full-stack-robotics-engineers-be-ready) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology)