ISSO Lead

Cherokee FederalWashington, DC

About The Position

The ISSO Lead is a senior cybersecurity governance and risk-management professional responsible for supporting federal information systems throughout the complete Risk Management Framework (RMF) lifecycle. This position leads ISSO activities across a large portfolio of systems, maintains authorization status, oversees security documentation, and advises system owners, ISSMs, and Authorizing Officials on cybersecurity risk.

Requirements

  • Bachelor’s degree in cybersecurity, information technology, computer science, engineering, or a related field.
  • Minimum of 8 years of relevant cybersecurity experience.
  • CISSP, CISM, or equivalent senior-level cybersecurity certification.
  • Active Top Secret (TS) security clearance is required. Candidates must possess the required clearance to be considered for this position.
  • U.S. citizenship required.
  • Experience leading ISSO, FISMA, RMF, or Assessment and Authorization activities for federal systems.
  • Must pass pre-employment qualifications of Cherokee Federal.

Nice To Haves

  • Experience supporting large federal system portfolios.
  • Department of State or Bureau of Consular Affairs experience.
  • Familiarity with ArchAngel or another federal GRC platform.
  • Experience with Tenable Nessus, Wiz, iPost, vulnerability reporting, and POA&M tracking.
  • Understanding of DevSecOps, CI/CD security controls, cloud security, zero-trust requirements, and High Value Assets.

Responsibilities

  • Lead ISSO, FISMA, RMF, and Assessment and Authorization activities for federal systems.
  • Apply NIST SP 800-37, NIST SP 800-53, FIPS 199, and NIST SP 800-60 requirements.
  • Support obtaining and maintaining Authorities to Operate (ATOs).
  • Develop and maintain SSPs, POA&Ms, PIAs, DIRAs, ISAs, SARs, Security Assessment Plans, Incident Response Plans, Contingency Plans, and Security Impact Assessments.
  • Track system lifecycles, authorization status, control implementation, vulnerabilities, and enterprise risks.
  • Manage continuous-monitoring and annual FISMA reporting activities.
  • Coordinate vulnerability remediation with system owners, engineering teams, assessors, SOC teams, and security operations contractors.
  • Support federal audits, inspections, data calls, and security assessments.
  • Prepare executive-level risk briefings, compliance reports, metrics, and recommendations.
  • Lead or mentor ISSOs and maintain consistent security documentation across multiple systems.
  • Perform other job-related duties as assigned.

Benefits

  • Medical
  • Dental
  • Vision
  • 401K
  • other possible benefits as provided
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service