Senior ISSO

RJIT SolutionsWashington, DC

About The Position

This role serves as a Senior Information System Security Officer (ISSO) responsible for continuous monitoring, incident response coordination, and audit and assessment support. The Senior ISSO acts as a second-line backup to the Lead ISSO, reporting to the Lead ISSO for task direction. The core responsibilities involve executing continuous monitoring and security posture management to produce outputs that support Government risk decisions, audit readiness, and ongoing authorization. This includes coordinating incident response with the DFC SOC, adhering to specified timeframes for acknowledgement and notification, and maintaining comprehensive incident documentation and after-action records. The role also supports audits and assessments by maintaining audit-ready evidence, ensuring traceability between requirements and artifacts, minimizing the evidence-collection burden on Government staff, and proactively identifying documentation gaps. Additionally, the Senior ISSO will support vulnerability analysis and Plan of Action & Milestones (POA&M) lifecycle activities in coordination with remediation teams, understanding that closure approval, schedule extensions, and risk acceptance are Government responsibilities. Proficiency in CSAM, ServiceNow, Splunk, and relevant vulnerability scanning platforms is essential.

Requirements

  • Ten or more years of federal cybersecurity experience.
  • Hands-on authorization package development and security control assessment.
  • Operational experience with a federal GRC platform and an enterprise SIEM.
  • Demonstrated coordination with an agency security operations center during live incidents.
  • Active CISSP.

Nice To Haves

  • CGRC or CEH.
  • Direct CSAM experience.
  • Prior support to a federal civilian CISO organization.
  • Existing federal background investigation eligible for reciprocity under PWS 5.4.

Responsibilities

  • Execute continuous monitoring and security posture management, producing outputs that support Government risk decisions, audit readiness, and ongoing authorization.
  • Coordinate incident response with the DFC SOC, meeting the acknowledgement and notification timeframes in the PWS, and maintain incident documentation and after-action records.
  • Support audits and assessments: maintain audit-ready evidence, sustain traceability between requirements and artifacts, reduce evidence-collection burden on Government staff, and identify documentation gaps before assessors do.
  • Support vulnerability analysis and POA&M lifecycle activities in coordination with remediation teams, recognizing that closure approval, schedule extensions, and risk acceptance are reserved to Government officials.
  • Maintain proficiency in CSAM, ServiceNow, Splunk, and the vulnerability scanning platforms in use.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service