Senior ISSO/ISSE ? National Vetting Center

Rividium

Washington (District of Columbia)

On-site

USD 140,000 - 190,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

RiVidium Inc. seeks a Senior ISSO/ISSE to support a federal client (NVC). You will lead RMF activities, maintain SSPs, and coordinate with SCAs to ensure authorization and continuous monitoring.

The role requires senior-level cybersecurity expertise, familiarity with NIST standards, and the ability to mentor junior staff while guiding security engineering across systems and networks.

Qualifications

  • Bachelor's degree in a related field.
  • Significant information security experience and ISSO/ISSE responsibilities.
  • Strong RMF experience and ability to implement controls.
  • Experience with federal security authorization and ATO processes.
  • Experience maintaining SSPs and authorization documentation.
  • Knowledge of NIST SP 800-53/37 and FISMA.
  • Ability to evaluate architectures and perform risk-based remediation.
  • Senior-level guidance and mentorship capabilities.

Responsibilities

  • Serve as senior security advisor and primary security point of contact for NVC systems.
  • Lead RMF activities including categorization, control implementation, assessment, and continuous monitoring.
  • Develop and maintain SSPs and related authorization documentation.
  • Coordinate with SCAs and remediation teams to address findings and POA&Ms.
  • Review vulnerabilities and provide risk-based remediation strategies.
  • Conduct security risk assessments and support continuous monitoring.
  • Provide technical guidance on security architecture, hardening, access control, and encryption.
  • Mentor junior ISSOs/ISSEs and stay current with federal cybersecurity standards.

Skills

ISSO/ISSE
Cybersecurity Engineering
RMF
Security Architecture
Technical Writing
Continuous Monitoring
Vulnerability Management
Risk Assessment

Education

Bachelor's degree in Cybersecurity, Information Systems, Information Technology, Computer Science, Engineering, or related field

Tools

NIST RMF
NIST SP 800-53
NIST SP 800-37
FISMA
RSA Archer
eMASS
ServiceNow GRC

Job description

Full-Time/Part-Time Full-Time

Description

Position Overview

We are seeking a highly experienced Senior Information System Security Officer / Information System Security Engineer (ISSO/ISSE) to support the cybersecurity, security engineering, risk management, and authorization activities for the National Vetting Center (NVC).

This is a Key Personnel position requiring a senior cybersecurity professional who can provide both operational security oversight and technical security engineering expertise. The successful candidate will help ensure that systems remain secure, compliant, and authorized throughout their lifecycle.

The Senior ISSO/ISSE will work closely with system owners, cybersecurity engineers, Security Control Assessors (SCAs), program leadership, infrastructure teams, and government stakeholders to implement security controls, manage risk, support authorization activities, and maintain continuous monitoring.

Key Responsibilities

  • Serve as a senior cybersecurity advisor and primary security point of contact for assigned NVC systems and environments.
  • Perform ISSO and ISSE responsibilities supporting system security throughout the system development and operational lifecycle.
  • Lead and support Risk Management Framework (RMF) activities, including categorization, control implementation, assessment, authorization, and continuous monitoring.
  • Develop, maintain, and update System Security Plans (SSPs) and related security authorization documentation.
  • Implement, evaluate, and monitor security controls in accordance with federal cybersecurity requirements.
  • Support Authorization to Operate (ATO) and ongoing authorization activities.
  • Coordinate with Security Control Assessors to provide assessment evidence and resolve identified security deficiencies.
  • Review security assessment findings and develop risk-based remediation strategies.
  • Manage and track Plans of Action and Milestones (POA&Ms) and security weaknesses.
  • Validate remediation activities and ensure vulnerabilities and control deficiencies are appropriately addressed.
  • Perform security engineering reviews of systems, applications, networks, and infrastructure.
  • Evaluate system architectures and technical designs for cybersecurity risks.
  • Provide recommendations for security architecture, system hardening, access controls, encryption, authentication, and other security mechanisms.
  • Support security requirements throughout system design, development, implementation, and operations.
  • Conduct security risk assessments and analyze potential threats and vulnerabilities.
  • Support continuous monitoring activities and periodic security control assessments.
  • Review vulnerability assessment results and coordinate remediation with technical teams.
  • Monitor system changes and determine their potential impact on security posture and authorization status.
  • Ensure security documentation remains accurate and reflects current system configurations and controls.
  • Coordinate with system administrators, network engineers, developers, cloud engineers, cybersecurity analysts, and other technical personnel.
  • Support security audits, inspections, assessments, and compliance reviews.
  • Prepare cybersecurity status reports, risk assessments, briefings, and executive-level presentations.
  • Provide technical guidance and mentorship to junior ISSOs and cybersecurity personnel.
  • Stay current with federal cybersecurity policies, NIST publications, emerging threats, and security engineering best practices.

Required Qualifications

  • Bachelor's degree in Cybersecurity, Information Systems, Information Technology, Computer Science, Engineering, or a related field.
  • Significant experience in information security, cybersecurity, information assurance, security engineering, or a related discipline.
  • Demonstrated experience performing ISSO and/or ISSE responsibilities.
  • Strong experience with the NIST Risk Management Framework (RMF).
  • Experience implementing and assessing cybersecurity controls.
  • Experience supporting federal security authorization and ATO processes.
  • Experience developing and maintaining System Security Plans and authorization documentation.
  • Experience managing POA&Ms, vulnerabilities, security findings, and remediation activities.
  • Knowledge of NIST SP 800-53 security controls and federal cybersecurity requirements.
  • Ability to evaluate technical architectures and identify cybersecurity risks.
  • Strong understanding of security engineering principles, system hardening, access control, authentication, encryption, and network security.
  • Experience supporting continuous monitoring and security assessment activities.
  • Strong analytical, technical writing, communication, and problem-solving skills.
  • Ability to work independently and provide senior-level cybersecurity guidance.

Required Certification

Candidates must possess one or more of the following:

  • Certified Information Security Manager (CISM)
  • Certified Authorization Professional (CAP)
  • Other equivalent senior-level cybersecurity/GRC certification aligned with federal security requirements.

Preferred Qualifications

  • Experience supporting federal civilian or national security programs.
  • Experience supporting Department of Homeland Security (DHS) or similar federal cybersecurity environments.
  • Experience with NIST SP 800-37, NIST SP 800-53, and FISMA.
  • Experience with RSA Archer, eMASS, ServiceNow GRC, or comparable GRC platforms.
  • Experience supporting cloud environments, including AWS, Azure, Google Cloud, and/or Microsoft 365.
  • Cloud security certification such as AWS, Azure, or Google Cloud.
  • Experience with security architecture and secure system design.
  • Experience with vulnerability management and security assessment tools.
  • Knowledge of cybersecurity incident response and security operations.
  • Experience supporting continuous authorization and ongoing risk management.
  • CISSP certification.
  • Experience working with sensitive, mission-critical, or high-impact federal information systems.

Technical Skills

  • ISSO / ISSE
  • Cybersecurity Engineering
  • NIST RMF
  • NIST SP 800-53
  • NIST SP 800-37
  • FISMA
  • Assessment & Authorization (A&A)
  • Authorization to Operate (ATO)
  • Continuous Monitoring
  • Security Controls
  • Security Control Assessment
  • System Security Plans
  • Security Assessment Reports
  • POA&M Management
  • Cybersecurity Risk Management
  • Vulnerability Management
  • Security Architecture
  • Network Security
  • System Hardening
  • Identity and Access Management
  • Authentication and Authorization
  • Encryption
  • Cloud Security
  • GRC Platforms
  • RSA Archer
  • eMASS
  • ServiceNow GRC
  • Security Documentation
  • Risk Assessments

RiVidium Inc is seeking a 'Senior Information System Security Officer / Information System Security Engineer (ISSO/ISSE)' to support a federal client. This position is contingent upon contract award and funding approval. As such, this job posting is intended to identify qualified candidates for a potential future opportunity and does not represent a currently available position. Compensation has not yet been determined and will be established based on contract requirements, candidate qualifications, experience, and applicable market conditions.

About the Organization Established in 2008, RiVidium, Inc. (dba TripleCyber) is a VA-Verified SDVOSB and an SBA-Certified 8(a) company. To prepare our clients for the future, RiVidium has balanced all parts of our organization to attract the finest employees in order to 'Strive to be the missing element defining tomorrow's technology'. RiVidium keeps pace and surpasses its competitors by meeting challenges of advancements in Logistics, Human Capital, Cyber, Intelligence & Technology.

EOE Statement We are an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status or any other characteristic protected by law. If you need a reasonable accommodation for any part of the employment process, please contact Human Resources (HR) at hr@rividium.com.

This position is currently accepting applications.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information Systems Security Officer (ISSO) ? Junior
Information Systems Security Officer (ISSO) ? Junior

Rividium • Washington

On-site
USD 65,000 - 95,000
IT Security Operations Specialist
IT Security Operations Specialist

Rividium • Washington

On-site
USD 100,000 - 150,000
ISSO/Control Evaluator
ISSO/Control Evaluator

Viateq Corporation • Washington

On-site
USD 115,000 - 145,000
Medical, dental, and vision insurance
401(k) plan
Paid time off + 12 federal holidays
+2
Information Systems Security Manager - Intermediate
Information Systems Security Manager - Intermediate

Rividium Inc • Springfield (VA)

On-site
USD 140,000 - 220,000
Cleared Information System Security Officer (ISSO) — L3
Cleared Information System Security Officer (ISSO) — L3

Virtual Service Operations • Lorton (VA)

On-site
USD 140,000 - 180,000
Health benefits
Flexible work arrangements
Relocation assistance
Information Systems Security Officer
Information Systems Security Officer

Kids for the Future • Foster (VA)

On-site
USD 120,000 - 185,000
Senior Information Systems Security Officer
Senior Information Systems Security Officer

Data Intelligence LLC • Vienna (VA)

On-site
USD 83,000 - 96,000
Information System Security Officer
Information System Security Officer

ECS • Arlington (VA)

On-site
USD 120,000 - 165,000
ISSO - (Active TS/SCI Clearance with Full Scope Poly Required)
ISSO - (Active TS/SCI Clearance with Full Scope Poly Required)

J&T Business Consulting • Corridor North (MD)

On-site
USD 140,000 - 190,000
Health Insurance
Dental and Vision Insurance
Life Insurance and Disability
+4
ME00673-Senior Information System Security Officer (ISSO)
ME00673-Senior Information System Security Officer (ISSO)

Momentum Engineering, Inc. • Washington

On-site
USD 120,000 - 180,000
11 paid holidays
3 weeks PTO
Company medical plan
+4