Lead Information Systems Security Officer (ISSO) - Joint Base

Synertex LLC
Washington, DC, United States
3 months ago
Apply on clearancejobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Working hours
Regular working hours

Tech stack

Artificial Intelligence Cyber Security Information Systems Data Transmissions Identity and Access Management Information Systems Security Architecture Professional Log Analysis Machine Learning SAP (Applications) Security Content Automation Protocol Security Information and Event Management SARS Software Products
+6 more
Cloud Platform System Information Technology Nessus Machine Learning Operations Devsecops Vulnerability Analysis

Job description

The Lead Information Systems Security Officer (ISSO) is responsible for the oversight and execution of the program’s information assurance and compliance posture across all systems under the contract. The Lead ISSO manages the NIST Risk Management Framework (RMF) lifecycle for all program systems, including system registration, security categorization, control selection and implementation, assessment support, and Authorization to Operate (ATO) package preparation. This position serves as the primary contractor interface with the Government ISSM and Security Control Assessors.

The Lead ISSO ensures systems maintain continuous compliance with ICD 503, FISMA, DISA STIGs, and applicable IC security directives throughout their operational lifecycle, enabling rapid and defensible system authorizations in a dynamic AI/ML delivery environment., * Lead RMF lifecycle activities for all ASTRA information systems: registration, categorization, security plan development, control implementation, assessment preparation, and ATO package submission.

  • Prepare and maintain System Security Plans (SSPs), Security Assessment Reports (SARs), Plan of Action and Milestones (POA&Ms), and related RMF artifacts.
  • Serve as the primary contractor point of contact for Government ISSMs, Information System Owners (ISOs), and Security Control Assessors (SCAs).
  • Conduct continuous monitoring activities including log analysis, SIEM review, vulnerability scan review, and POA&M tracking.
  • Coordinate with the Lead Cybersecurity Engineer to ensure security controls are implemented, tested, and documented in accordance with the Security Assessment Plan (SAP).
  • Manage STIG compliance activities, including STIG viewer checklists, configuration baselines, and deviation requests.
  • Support system interconnection agreements (ISAs/MOUs) and data transfer agreements as required.
  • Provide IA guidance to software engineers, system administrators, and DevSecOps teams on security-relevant configurations and hardening.
  • Track and manage all open security findings, ensuring timely remediation or risk acceptance with Government concurrence.
  • Support insider threat reporting requirements and user activity monitoring (UAM) in accordance with IC directives.

Requirements

  • Bachelor’s degree in Information Assurance, Cybersecurity, Computer Science, or related field; or equivalent experience., * Minimum 8 years of experience as an ISSO or equivalent role within DoD or IC environments.
  • Demonstrated experience managing NIST RMF processes and preparing ATO packages for DoD or IC systems.
  • Experience with DISA STIGs, vulnerability scanning tools (Nessus/ACAS, SCAP), and continuous monitoring.
  • Familiarity with ICD 503, CNSSI 1253, and FISMA compliance requirements.

Certifications (Minimum per PWS - DoD 8570/8140 IAM Level II or III)

  • CISSP (Certified Information Systems Security Professional) - preferred IAM Level III; OR
  • CISM (Certified Information Security Manager) - IAM Level II or III; OR
  • Equivalent DoD 8570.01-M / DoD 8140.01 IAM Level II or III baseline certification.

PPREFERRED REQUIREMENTS

  • CISSP-ISSMP (Information Systems Security Management Professional) concentration.
  • Experience supporting ATOs for AI/ML systems or advanced analytics platforms.
  • Familiarity with eMASS (Enterprise Mission Assurance Support Service) for RMF documentation management.
  • Prior ISSO experience supporting DIA, DISA, or IC-accredited systems.
  • Experience with cloud-hosted system ATOs in IC cloud environments.
  • Knowledge of NIST AI RMF and emerging guidance on securing AI systems.

Drive innovation and deliver mission-ready AI/ML capabilities. Apply today and join Synertex LLC’s tradition of excellence, innovation, and technical leadership.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on clearancejobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:44 min

Coordinating security mitigations with the CISA clearinghouse

Adrian Mouat Adrian Mouat · World Congress 2026 Europe

11:18 min

Addressing audience questions on security and microservice architectures

Reinhard Kugler · LIVE

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

2:52 min

Addressing junior hiring bottlenecks and mitigating widespread employee burnout

Hung Lee Hung Lee +3 · World Congress 2026 Europe

3:48 min

Leveraging multi-agent systems for autonomous software testing

Ondřej Gróf Ondřej Gróf · World Congress 2026 Europe

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

Videos

See all

Related articles

See all