Find jobs
Pricing
Free Resume Checker
Sign in
Sign up
FIND JOBSPRICINGFREE RESUME CHECKERSIGN INSIGN UP
C3EL

Senior Information System Security Officer (ISSO)

SalaryNo pay range posted
LocationCustomer Site, Washington, D.C.
Work modeon-site
Typefull-time
SenioritySenior
Experience7+ yrs
DepartmentCybersecurity
Company size201–500 people
First seenOct 3, 2026 · 1w ago
Verified live1d ago
District of Columbia law requires most employers to post a pay range.
At a glanceSummarised by Seekless from the posting.
Must have10
Eligibility to obtain a Tier 4 High-Risk Public Trust
Minimum seven (7) years of cybersecurity
Minimum five (5) years in federal ISSO, ConMon, vulnerability, security operations, or compliance work
Working knowledge of NIST SP 800-37, 800-53, 800-53B, FIPS 199, FISMA, and applicable CISA/OMB guidance
Familiarity with GRC, ITSM, SIEM, scanner, identity, endpoint, and cloud-security platforms
Direct experience with Splunk searches, dashboards, ingestion verification, log coverage, and incident timeline support
Direct experience with ServiceNow incidents, problems, changes, remediation tickets, and reporting
Direct experience with Tenable Nessus, Qualys, ACAS, or comparable Government-approved scanners
Experience with Defender, Intune, BigFix, or equivalent endpoint and configuration platforms
Associate's degree in Cybersecurity, Information Technology, or related field
Nice to have1
At least one current cybersecurity certification such as CISSP, CGRC, CISM, CRISC, Security+, SecurityX, CCSP, or GIAC
Eligibility1
U.S. Citizenship
Skills
Splunk
ServiceNow
Tenable Nessus
Qualys
ACAS
Defender
Intune
BigFix
**CONTINGENT UPON CONTRACT AWARD**
Overview:
Job Title: Senior Information System Security Officer (ISSO)
Requirements
Security Clearance: Ability to Obtain Tier 4 High-Risk Public Trust
Location: Washington, D.C.
(Due to the nature of the work and contract requirements, U.S. Citizenship is required.)
Description:
C3EL is seeking a Senior Information System Security Officer (ISSO) to provide on-site cybersecurity and Risk Management Framework (RMF) sustainment support in Washington, D.C., for a new contract. This role will serve as Operational Specialist for Splunk, ServiceNow, ConMon, vulnerability management, POA&M, and incident and change coordination, as well as being workstream lead and secondary backup for Lead ISSO duties.
Responsibilities will include, but not be limited to:
•
Provide on-site cybersecurity and RMF sustainment support.
•
Maintain traceability between ServiceNow remediation tickets and CSAM POA&M records.
•
Analyze findings, validate false positives, and prioritize remediation using CVSS, CISA KEV, exposure, exploitability, and mission impact.
•
Support notification, triage, CSAM context retrieval, Splunk verification, SitReps, RCA, corrective actions, and post-incident updates.
•
Support CAB/CCB/ERB reviews, security impact analysis, artifact updates, and post-change verification.
•
Track audit, penetration-test, and assessment findings through corrective action and evidence-supported closure.
•
Maintain incident-response plans and support tabletop or functional exercises.
•
Produce accurate, concise, and audit-ready Government cybersecurity documentation.
•
Support team coverage from 7:00 a.m. to 6:00 p.m. ET (M-F) and participate in after-hours incident coverage as needed.
Minimum Qualifications:
•
U.S. Citizenship.
•
Eligibility to obtain a Tier 4 High-Risk Public Trust.
•
Minimum seven (7) years of cybersecurity.
•
Minimum five (5) years in federal ISSO, ConMon, vulnerability, security operations, or compliance work.
•
Working knowledge of NIST SP 800-37, 800-53, 800-53B, FIPS 199, FISMA, and applicable CISA/OMB guidance.
•
Familiarity with GRC, ITSM, SIEM, scanner, identity, endpoint, and cloud-security platforms.
•
Direct experience with Splunk searches, dashboards, ingestion verification, log coverage, and incident timeline support.
•
Direct experience with ServiceNow incidents, problems, changes, remediation tickets, and reporting.
•
Direct experience with Tenable Nessus, Qualys, ACAS, or comparable Government-approved scanners.
•
Experience with Defender, Intune, BigFix, or equivalent endpoint and configuration platforms.
Preferred Qualifications:
•
At least one current cybersecurity certification such as CISSP, CGRC, CISM, CRISC, Security+, SecurityX, CCSP, or GIAC.
Education:
•
Associate’s degree in Cybersecurity, Information Technology, or related field. (Relevant experience may be considered in lieu of formal education.)
More roles at C3EL
AV/VTC Integration Project ManagerSEWP Program AnalystTransport/IP (TRIP) Network TechnicianProject Manager / Deputy Program ManagerTransport/IP (TRIP) Network Technician
Seekless
Seek less: one search across companies' own career pages, instead of a dozen job boards.
Product
Find jobsCompaniesPricingFree Resume CheckerBlog
Legal
AboutPrivacyTermsCookies
© 2026 SEEKLESS. ALL RIGHTS RESERVED.BUILT WITH CARE