Full-Time

Information System Security Officer

ISSO

Posted on 9/10/2026

PD Inc

PD Inc

No salary listed

No H1B Sponsorship

Washington, DC, USA

Remote

US Citizenship, US Top Secret Clearance Required

Category
Cybersecurity (1)
Required Skills
FedRAMP
Microsoft Azure
ServiceNow
CompTIA Security+
Microsoft Intune
Cybersecurity
Vulnerability Analysis
Zscaler
Splunk
Requirements
  • Experience supporting cybersecurity, information assurance, or Information System Security Officer activities in a federal environment.
  • Hands-on experience with FISMA, NIST Risk Management Framework, NIST Special Publication 800-53, FedRAMP, authorization-to-operate packages, system security plans, continuous monitoring, vulnerability management, and plan of action and milestones management.
  • Experience supporting FISMA Moderate systems, major applications, general support systems, or FedRAMP-authorized cloud services.
  • Working familiarity with cybersecurity tools and platforms such as CSAM, ServiceNow, Splunk, Tenable Nessus or Qualys, Microsoft Defender, Azure, Microsoft 365, Entra ID, Intune, Okta, Palo Alto, and Zscaler.
  • Technical writing, documentation, risk analysis, and stakeholder communication skills.
  • U.S. citizenship.
  • Eligibility to successfully complete and maintain a Tier 4 background investigation.
  • One or more Microsoft security certifications, including SC-500, SC-300, SC-200, SC-100, or another relevant Microsoft Azure, Microsoft 365, security, identity, or compliance certification.
Responsibilities
  • Provide senior-level, hands-on cybersecurity support for assigned federal information systems.
  • Assume Lead ISSO responsibilities during scheduled or unscheduled absences.
  • Support Risk Management Framework, authorization, continuous monitoring, vulnerability management, plan of action and milestones management, audit readiness, and cybersecurity compliance activities across enterprise and cloud environments.
  • Maintain system security posture and develop and maintain authorization artifacts.
  • Track remediation activities and review security controls and evidence.
  • Support government cybersecurity reviews and audits.
  • Use cybersecurity laboratory and engineering resources to investigate technical issues, validate security approaches, reproduce and assess configurations, evaluate emerging technologies, and develop practical solutions to security and compliance challenges.
  • Lead execution of Risk Management Framework activities and help shape the technical approaches, processes, tools, and practices used by the cybersecurity team.
  • Work with engineers to translate security findings and control requirements into implementable technical solutions.
  • Evaluate and test security tools, configurations, architectures, and remediation approaches outside the production environment.
  • Help mature the team's Risk Management Framework, continuous monitoring, vulnerability management, security engineering, and automation practices.
  • Influence the technical direction and operating model of a growing federal cybersecurity team.
Desired Qualifications
  • One or more of CISSP, CompTIA Security+, CISM, CGRC or CAP, CCSP, or a similar recognized cybersecurity or information assurance certification.

Company Size

N/A

Company Stage

N/A

Total Funding

N/A

Headquarters

N/A

Founded

N/A