Posted at: 21 July

DFC - Lead ISSO

Company

CompanycFocus Software Incorporated

cFocus Software is a Largo, Maryland-based B2G SaaS provider specializing in cybersecurity solutions and compliance automation for federal government agencies, including the DoD.

Remote Hiring Policy:

cFocus Software supports remote work for certain roles and is hiring from various locations within the United States, including Washington, DC. Team members may work remotely, but compliance as a federal contractor suggests a focus on U.S. candidates.

Job Type

Full-time

Allowed Applicant Locations

United States

Job Description

cFocus Software seeks a Lead ISSO to join our program supporting the United States International Defense Finance Agency (DFC). This position is remote. This position requires an Active Public Trust clearance.
Qualifications:
  • Active Public Trust clearance
  • B.S. Computer Science, Information Technology, or a related field
  • 10+ years of progressive cybersecurity and Information Assurance experience.
  • 5+ years serving as an ISSO, Senior ISSO, ISSM, or equivalent cybersecurity leadership role supporting federal agencies.
  • Extensive experience implementing the NIST Risk Management Framework (RMF).
  • Experience supporting Authorization to Operate (ATO) activities.
  • Experience supporting federal cybersecurity programs governed by FISMA.
  • Demonstrated experience leading cybersecurity teams and technical personnel.
  • Experience briefing executive leadership and federal stakeholders.

Duties:
  • Serve as the Contractor’s single point of accountability for technical execution under this PWS and shall manage day-to-day ISSO support activities
  • Serve as the Contractor’s primary technical interface with the Government ISSM, CISO, AO/AODR, System Owners, and other Government-designated cybersecurity stakeholders
  • Direct Contractor ISSO activities
  • Ensure consistent execution across supported systems
  • Oversee the development, review, quality control, and submission of authorization-package artifacts
  • Chair internal quality reviews of ISSO deliverables before Government submission
  • Manage the Contractor’s risk and issue register; escalate risks and issues to Government leadership, as appropriate; participate in DFC governance forums on behalf of the Contractor
  • Represent the Contractor in technical reviews; and coordinate with the Contractor’s Program Manager for contract-level matters, including invoicing, staffing, and reporting.
  • Maintain hands-on cybersecurity expertise and shall not function solely as an administrative manager