Principal ISSO (DevSecOps & Governance)

• Posted 11 hours ago • Updated 2 hours ago
Contract W2
On-site
USD60 - USD69/hr
Fitment

Dice Job Match Score™

🛠️ Calibrating flux capacitors...

Job Details

Skills

  • Principal ISSO (DevSecOps & Governance)

Summary

job summary:

Randstad is seeking a high-caliber Principal ISSO (DevSecOps & Governance) to serve as a strategic cybersecurity leader and trusted advisor for our client in the Washington, D.C. area. In this high-visibility role, you will embed cybersecurity into large-scale Agile Release Trains (ARTs) and business portfolios, ensuring robust security-by-design and DevSecOps principles are integrated throughout the system development lifecycle. You will lead risk assessments, conduct security architecture reviews, enforce enterprise security standards aligned with NIST frameworks, and serve as the vital bridge between technology teams, product owners, and executive leadership.





location: Washington, Washington, D.C.

job type: Contract

salary: $60 - 69 per hour

work hours: 9am to 5pm

education: Bachelors



responsibilities:

Agile & DevSecOps Governance: Serve as the primary cybersecurity representative within Agile Release Trains (ARTs); participate in Program Increment (PI) Planning to ensure security requirements, risks, and remediation items are embedded directly into team backlogs.


Security Architecture & Design Reviews: Conduct comprehensive threat modeling, risk assessments, and design reviews across cloud, application, network, and emerging tech environments to identify gaps and recommend compensating controls.


Risk Management & Compliance: Develop, maintain, and enforce enterprise security baselines and policies aligned with NIST RMF, NIST CSF, CIS Controls, and regulatory obligations; evaluate exception requests and facilitate executive risk-acceptance decisions.


Vulnerability & Incident Management: Review vulnerability scan and penetration test results, prioritize remediation with development/infrastructure teams, track corrective actions, and provide expert guidance during incident response and containment efforts.


Stakeholder & Audit Collaboration: Partner closely with Solution Architects, Product Managers, RTEs, and executive leaders to communicate security postures; author and maintain key governance artifacts (SSPs, SDDs, risk assessments) to support internal, external, and federal audits.




qualifications:

Experience: 10+ years of progressive cybersecurity experience across security architecture, risk management, engineering, and compliance in large-scale enterprise environments.


Framework Mastery: Deep, hands-on knowledge of cybersecurity governance frameworks, specifically NIST RMF, NIST CSF, CIS Controls, and UCF.


Agile & Technical Integration: Proven track record supporting Agile delivery methodologies (ARTs, PI Planning) and integrating security toolchains into modern DevSecOps pipelines.


Certification: Active CISSP certification is required.


Technical Tooling: Experience evaluating vulnerabilities and threat data using enterprise security tools (e.g., Nessus, Checkmarx, Qualys, Tenable, Burp Suite, or Nmap).


Communication: Exceptional written and verbal communication skills with a proven ability to translate complex security risks into actionable guidance for both technical engineering teams and C-suite stakeholders.




Equal Opportunity Employer: Race, Color, Religion, Sex, Sexual Orientation, Gender Identity, National Origin, Age, Genetic Information, Disability, Protected Veteran Status, or any other legally protected group status.

At Randstad Digital, we welcome people of all abilities and want to ensure that our hiring and interview process meets the needs of all applicants. If you require a reasonable accommodation to make your application or interview experience a great one, please contact

Pay offered to a successful candidate will be based on several factors including the candidate's education, work experience, work location, specific job duties, certifications, etc. In addition, Randstad Digital offers a comprehensive benefits package, including: medical, prescription, dental, vision, AD&D, and life insurance offerings, short-term disability, and a 401K plan (all benefits are based on eligibility).

This posting is open for thirty (30) days.


Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: cxsapwma1
  • Position Id: 1343535
  • Posted 11 hours ago
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Washington, District of Columbia

Today

Easy Apply

Contract, Third Party

59

Hybrid in Wilmington, Delaware

Today

Easy Apply

Third Party, Contract

$50 - $60

District of Columbia

Today

Contract

USD55 - USD60

Saint Paul, Minnesota

Today

Full-time

USD 153,000.00 - 194,600.00 per year

Search all similar jobs