Location: Washington, DC (Federal Client)
Duration: 12+ Months
Minimum Qualifications
Bachelor's degree in cybersecurity, information systems, computer science, engineering, or a related discipline.
At least 7 years of cybersecurity experience.
At least 5 years of ISSO, RMF, authorization, or federal cybersecurity compliance experience.
Direct experience supporting FISMA Moderate information systems.
Experience developing and maintaining federal security authorization artifacts.
Experience with vulnerability analysis, POA&M lifecycle management, continuous monitoring, security documentation, audit support, and security impact analysis.
Experience coordinating with system owners, engineers, assessors, auditors, SOC personnel, and federal cybersecurity officials.
Ability to perform Lead ISSO responsibilities during Lead ISSO absences.
Ability to obtain and maintain Tier 4 High-Risk Public Trust suitability.
United States citizenship.
Preferred Qualifications
CISSP, CGRC/CAP, CISM, CCSP, Security+, or equivalent cybersecurity certification.
Hands-on experience with CSAM or a comparable GRC platform.
Experience with ServiceNow and Splunk.
Experience with Tenable Nessus, Qualys, Microsoft Defender, Intune, and BigFix.
Experience with Azure Government, Microsoft 365 GCCC High, Entra ID, and FedRAMP cloud services.
Experience supporting FISMA audits, independent security control assessments, penetration tests, or Inspector General reviews.
Experience developing executive-level cybersecurity metrics and dashboards.