ISSO Portfolio Manager / Team Lead

Steampunk, Inc.

McLean (VA)

Hybrid

USD 125,000 - 175,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Steampunk, Inc. is seeking an ISSO Portfolio Manager / Team Lead to guide a federal customer through risk management and security operations. You will mentor ISSOs, coordinate with system owners, and deliver high-quality security outcomes at speed across a dynamic portfolio.

The role requires strong leadership, familiarity with NIST RMF, FISMA, and federal requirements, plus experience with vulnerability management and agile delivery. Hybrid work with on-site days in the DC area is offered.

Qualifications

  • Master's degree with 6+ years of relevant experience; OR Bachelor's with 8 years of relevant experience; OR No degree with 12 years of relevant experience.
  • Active CISSP, CASP, CISA, CISM or GSLC certification is required to support the contract.
  • Strong knowledge of NIST RMF, FISMA, and modern security practices.
  • Prior experience as a supervisor or team lead, with demonstrated ability to manage, mentor, and develop staff.
  • Experience with vulnerability management and reviewing systems against federal requirements.
  • Excellent communication skills and the ability to simplify security for non-technical partners.

Responsibilities

  • Lead, mentor, and develop a team of ISSOs to deliver high-quality security support.
  • Serve as the primary point of coordination between ISSO teams and project/program managers to ensure security tasks are reflected accurately in project schedules and sprints.
  • Build strong relationships with system owners and stakeholders and position security as a customer-oriented service.
  • Manage competing priorities across multiple systems while ensuring clear communication and timely delivery.
  • Operate effectively in Agile environments, using sprint-based planning to prioritize ISSO work
  • Drive execution of ISSO-related project work across multiple systems, coordinating timelines, dependencies, and deliverables in partnership with program/project leads
  • Maintain accurate security records and workflows in JIRA, ServiceNow, and other modern tools.
  • Deliver technically accurate, polished, and timely security artifacts that meet program standards and enable “quality at speed.”
  • Oversee security authorization packages, continuous monitoring deliverables, audit readiness, data calls, and risk reporting.
  • Track vulnerabilities, guide remediation, and keep all systems “green” on the FISMA scorecard.
  • Identify blockers, communicate risks, and provide actionable mitigation recommendations.
  • Participate in SDLC/SLM activities and help teams integrate security early and effectively.
  • Deliver executive-level reporting and presentations to senior leadership or stakeholders
  • Train or facilitate sessions for moderate-sized groups (10–25+ people)
  • Contribute to the development or refinement of processes, standard operating procedures (SOPs), and templates for recurring security artifacts.
  • Assess workload trends across assigned systems and provide leadership with input on resource allocation, staffing needs, and hiring priorities.

Skills

Team leadership
Security operations
Stakeholder management
Agile / SDLC
Communication skills

Education

Master's degree
Bachelor's degree
No degree
CISSP
CASP
CISA
CISM
GSLC

Tools

JIRA
ServiceNow

Job description

Steampunk is seeking an ISSO Portfolio Manager / Team Lead to support a federal customer. This role is perfect for someone who blends strong cybersecurity expertise with exceptional customer engagement, coaching, and leadership skills. You'll guide a team of ISSOs, partner closely with system owners and stakeholders, and deliver high‑quality security outcomes at speed across a dynamic portfolio.

What You’ll Do
  • Lead, mentor, and develop a team of ISSOs to deliver high‑quality security support.
  • Serve as the primary point of coordination between ISSO teams and project/program managers to ensure security tasks are reflected accurately in project schedules and sprints.
  • Build strong relationships with system owners and stakeholders and position security as a customer‑oriented service.
  • Manage competing priorities across multiple systems while ensuring clear communication and timely delivery.
  • Operate effectively in Agile environments, using sprint‑based planning to prioritize ISSO work
  • Drive execution of ISSO‑related project work across multiple systems, coordinating timelines, dependencies, and deliverables in partnership with program/project leads
  • Maintain accurate security records and workflows in JIRA, ServiceNow, and other modern tools.
  • Deliver technically accurate, polished, and timely security artifacts that meet program standards and enable “quality at speed.”
  • Oversee security authorization packages, continuous monitoring deliverables, audit readiness, data calls, and risk reporting.
  • Track vulnerabilities, guide remediation, and keep all systems “green” on the FISMA scorecard.
  • Identify blockers, communicate risks, and provide actionable mitigation recommendations.
  • Participate in SDLC/SLM activities and help teams integrate security early and effectively.
  • Deliver executive‑level reporting and presentations to senior leadership or stakeholders
  • Train or facilitate sessions for moderate‑sized groups (10–25+ people)
  • Contribute to the development or refinement of processes, standard operating procedures (SOPs), and templates for recurring security artifacts.
  • Assess workload trends across assigned systems and provide leadership with input on resource allocation, staffing needs, and hiring priorities.
Qualifications
What You Bring
  • Master's degree and 6 years of relevant experience; OR
  • Bachelor's degree and 8 years of relevant experience; OR
  • No degree and 12 years of relevant experience
  • One of the following certifications which must be Active to support of the contract: CISSP, CASP, CISA, CISM, GSLC.
  • Strong knowledge of NIST RMF, FISMA, and modern security practices.
  • Prior experience as a supervisor or team lead, with demonstrated ability to manage, mentor, and develop staff
  • Experience with vulnerability management and reviewing systems against federal requirements.
  • Excellent communication skills and the ability to simplify security for non‑technical partners.
  • Experience cultivating teams and balancing quality, speed, and customer expectations.
Clearance
  • Public Trust required.
Work Environment
  • This role is hybrid, with at least one on‑site day per week in Washington, DC to support strong client engagement and team collaboration.
About Steampunk

Steampunk relies on several factors to determine salary, including but not limited to geographic location, contractual requirements, education, knowledge, skills, competencies, and experience. The projected compensation range for this position is $125,000 to $175,000. The estimate displayed represents a typical annual salary range for this position. Annual salary is just one aspect of Steampunk’s total compensation package for employees. Learn more about additional Steampunk benefits here.

Identity Statement

As part of the application process, you are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.

Steampunk is a Change Agent in the Federal contracting industry, bringing new thinking to clients in the Homeland, Federal Civilian, Health and DoD sectors. Through our Human-Centered delivery methodology, we are fundamentally changing the expectations our Federal clients have for true shared accountability in solving their toughest mission challenges. As an employee owned company, we focus on investing in our employees to enable them to do the greatest work of their careers – and rewarding them for outstanding contributions to our growth. If you want to learn more about our story, visit http://www.steampunk.com . We are an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status, or any other characteristic protected by law. Steampunk participates in the E-Verify program.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Information Systems Security Officer
Senior Information Systems Security Officer

Steampunk • Bloomington (IL)

On-site
USD 90,000 - 140,000
Principal Information Systems Security Officer
Principal Information Systems Security Officer

Steampunk • Bloomington (IL)

On-site
USD 120,000 - 145,000
Principal Information Systems Security Officer
Principal Information Systems Security Officer

Steampunk • McLean (VA)

Hybrid
USD 120,000 - 145,000
Principal Information Systems Security Officer
Principal Information Systems Security Officer

Steampunk, Inc. • McLean (VA)

On-site
USD 120,000 - 145,000
Cybersecurity/Technical Engineer
Cybersecurity/Technical Engineer

Steampunk, Inc. • McLean (VA)

On-site
USD 85,000 - 170,000
Cyber Risk Management Specialist
Cyber Risk Management Specialist

Steampunk • Bloomington (IL)

On-site
USD 100,000 - 150,000
Senior DevSecOps (Pipeline) Engineer
Senior DevSecOps (Pipeline) Engineer

Steampunk • Bloomington (IL)

On-site
USD 150,000 - 185,000
Red-Team / Adversarial Security Lead
Red-Team / Adversarial Security Lead

Steampunk, Inc. • McLean (VA)

On-site
USD 85,000 - 170,000
Cybersecurity/Technical Engineer
Cybersecurity/Technical Engineer

Steampunk • McLean (VA)

On-site
USD 85,000 - 170,000
Software / Integration Engineer
Software / Integration Engineer

Steampunk • Bloomington (IL)

On-site
USD 140,000 - 170,000