Lead ISSO / Technical Program Lead

chameleonintegratedservices

Washington (District of Columbia)

On-site

USD 180,000 - 260,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Health insurance
Vision plan (100% company paid)
401K match
Life insurance (100% company paid)
Disability insurance (100% company pay
Training allowance
PTO

Job summary

Chameleon Integrated Services seeks a Lead ISSO / Technical Program Lead to serve as the single point of accountability for the DFC ISSO program. You will direct day-to-day technical execution, oversee RMF artifacts, and coordinate with DFC ISSM, CISO, AO/AODR, System Owners, and assessors.

Minimum: 10+ years in cybersecurity; 7+ years federal ISSO/ RMF; 3+ years leading teams; Tier 4/5 suitability; CISSP/CISM/CGRC/GSLC; bachelor’s preferred. Competitive benefits and on-site DC work.

Qualifications

  • At least 10 years of progressively responsible cybersecurity experience.
  • At least 7 years supporting federal ISSO, information assurance, assessment and authorization, C&A, or RMF activities.
  • At least 3 years leading ISSOs, security control assessors, cybersecurity analysts, or authorization workstreams.
  • Led or materially directed authorization support for multiple systems or authorization boundaries concurrently.
  • Direct experience with NIST SP 800-37 and NIST SP 800-53.
  • Experience developing, reviewing, or approving: System Security Plans; Security control implementation statements; Security assessment plans and reports; POA&M records; Risk assessments; Authorization decision packages; Continuous Monitoring Plans; Security impact analysis.
  • Experience coordinating with Authorizing Officials, ISSMs, System Owners, Common Control Providers, assessors, privacy personnel, and technical remediation teams.
  • Experience overseeing deliverable quality before Government submission.
  • Strong executive briefing and federal technical-writing skills.
  • One senior cybersecurity certification: CISSP or CISM or CGRC or GSLC.
  • Bachelor’s degree preferred; extensive relevant federal RMF experience may substitute.

Responsibilities

  • Serve as Chameleon’s single point of accountability for technical execution of the DFC ISSO program.
  • Direct day-to-day work, assign systems and workstreams, oversee authorization packages, and chair internal deliverable reviews.
  • Manage technical risks and issues, and represent Chameleon before the DFC ISSM, CISO, AO/AODR, System Owners, assessors, and cybersecurity governance bodies.
  • Capable of personally reviewing RMF artifacts, identifying defects, resolving conflicts, and defending recommendations before senior federal officials.

Skills

Cybersecurity leadership
RMF experience
NIST SP 800-37/53
Security documentation
Executive briefings

Education

Bachelor’s degree

Tools

ServiceNow
Splunk
Tenable
Qualys
Microsoft Defender
Entra ID
Okta

Job description

We are a growing information technology company that offers its employees a culture of success, the chance to work on revolutionary federal IT infrastructure, and the opportunity to grow alongside cutting-edge technology that is reshaping the industry. We are seeking forward-thinking candidates that have strong experience in operational support and can help take to the next level in a proactive stance.

Chameleon Integrated Services has expertise in operations management, quality systems, data operations and cybersecurity. We secure some of the most sensitive data for the Department of Defense and for other U.S. federal government agencies. We are known for the great care we take with clients and employees, and we believe in promoting from within.

We offer a Full Benefits package including:
  • Competitive Employee Health Insurance options including dental
  • 100% company paid vision plan
  • 401K plan with generous company match and no vesting period
  • 100% company paid life insurance
  • 100% company paid long and short-term disability insurance
  • Training allowance
  • PTO and more
Lead ISSO / Technical Program Lead
  • Must be a United States citizen.
  • Must be eligible for a Tier 4 High-Risk Public Trust investigation.
  • Strong preference for a current or recently favorably adjudicated Tier 4 or Tier 5 investigation.
Role:

Serve as Chameleon’s single point of accountability for technical execution of the DFC ISSO program. The Lead ISSO will direct day-to-day work, assign systems and workstreams, oversee authorization packages, chair internal deliverable reviews, manage technical risks and issues, and represent Chameleon before the DFC ISSM, CISO, AO/AODR, System Owners, assessors, and cybersecurity governance bodies. This is a hands-on senior cybersecurity position.

It is not a purely administrative program manager role. The candidate must be capable of personally reviewing RMF artifacts, identifying technical and documentation defects, resolving conflicting security records, and defending recommendations before senior federal officials.

Minimum Requirements:
  • At least 10 years of progressively responsible cybersecurity experience.
  • At least 7 years supporting federal ISSO, information assurance, assessment and authorization, C&A, or RMF activities.
  • At least 3 years leading ISSOs, security control assessors, cybersecurity analysts, or authorization workstreams.
  • Led or materially directed authorization support for multiple systems or authorization boundaries concurrently.
  • Direct experience with NIST SP 800-37 and NIST SP 800-53.
  • Experience developing, reviewing, or approving:
    • System Security Plans
    • Security control implementation statements
    • Security assessment plans and reports
    • POA&M records
    • Risk assessments
    • Authorization decision packages
    • Continuous Monitoring Plans
    • Security impact analysis
  • Experience coordinating with Authorizing Officials, ISSMs, System Owners, Common Control Providers, assessors, privacy personnel, and technical remediation teams.
  • Experience overseeing deliverable quality before Government submission.
  • Strong executive briefing and federal technical-writing skills.
  • One senior cybersecurity certification:
    • CISSP
    • CISM
    • CGRC, formerly CAP
    • GSLC
  • Bachelor’s degree preferred. Extensive relevant federal RMF experience may substitute.
Competitive Differentiators:
  • Direct CSAM experience
  • Civilian federal agency FISMA experience
  • Responsibility for FISMA Moderate systems
  • Azure Government, Microsoft 365 GCC, or GCC High experience
  • FedRAMP customer-responsibility and inherited-control analysis
  • Experience with ServiceNow, Splunk, Tenable, Qualys, Microsoft Defender, Entra ID, Okta, Palo Alto, or Zscaler
  • Experience supporting Inspector General, GAO, OMB CyberStat, CISA, or independent security-control assessments
  • Current Tier 4 or Tier 5 suitability
  • CISSP plus CGRC
  • Experience managing 20 or more systems or several simultaneous authorization events
  • Experience producing executive cybersecurity dashboards and quarterly risk briefings
The resume must clearly identify:
  • Number and type of systems supported
  • FIPS 199 or comparable impact levels
  • Candidate’s authority and leadership responsibilities
  • RMF steps personally performed or directed
  • Authorization artifacts personally authored, reviewed, or approved for submission
  • GRC tools used
  • Number of ATOs, reauthorizations, assessments, or authorization packages supported
  • POA&M and continuous-monitoring responsibilities
  • Audit and assessment support
  • Quantifiable quality, schedule, closure, or acceptance results

“We are an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status”

Texting Privacy Policy
  • Message type: Informational; you will receive text messages regarding your application and potentially regarding interview scheduling.
  • No mobile information will be shared with third parties/affiliates for marketing/promotional purposes.
  • Message frequency will vary depending on the application process.Msg & data rates may apply.
  • OPT out at any time by texting "Stop".
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior ISSO & Technical Program Lead (Federal)
Senior ISSO & Technical Program Lead (Federal)

chameleonintegratedservices • Washington

On-site
USD 180,000 - 260,000
Health insurance
Vision plan (100% company paid)
401K match
+4
Senior ISSO
Senior ISSO

chameleonintegratedservices • Washington

On-site
USD 120,000 - 150,000
Health insurance
Vision plan
401K match
+4
Senior ISSO, RMF and Authorization / Alternate Lead
Senior ISSO, RMF and Authorization / Alternate Lead

chameleonintegratedservices • Washington

Hybrid
USD 140,000 - 170,000
ISSO / Security Compliance Analyst
ISSO / Security Compliance Analyst

chameleonintegratedservices • Washington

On-site
USD 90,000 - 130,000
Health insurance
Vision plan
401K plan
+4
Lead Information System Security Officer (ISSO)
Lead Information System Security Officer (ISSO)

Development InfoStructure • Washington

On-site
USD 137,000 - 147,000
Lead Information System Security Officer (ISSO)
Lead Information System Security Officer (ISSO)

E-Logic, Inc. • Washington

On-site
USD 140,000 - 190,000
Senior Cybersecurity Analyst / RMF Lead
Senior Cybersecurity Analyst / RMF Lead

chameleonintegratedservices • South Dakota

On-site
USD 120,000 - 160,000
Health insurance
Vision plan
401K with match
+4
Senior Partner / Program Director
Senior Partner / Program Director

Chameleon Integrated Services • St. Louis (MO), Northern (KY)

Hybrid
USD 180,000 - 260,000
Competitive Employee Health Insurance
Vision plan fully paid by company
401K with generous company match
+4
Security Documentation, Audit, and Quality Analyst
Security Documentation, Audit, and Quality Analyst

chameleonintegratedservices • Washington

On-site
USD 110,000 - 160,000
Health insurance
Vision plan
401K plan with generous company match
+4
Senior Cybersecurity Analyst - DAFFM
Senior Cybersecurity Analyst - DAFFM

chameleonintegratedservices • South Dakota

On-site
USD 110,000 - 140,000
Health insurance (dental)
Vision plan
401K plan with company match
+4