1

Cyber Security Isso Jobs (NOW HIRING)

Cybersecurity Manager - Lead ISSO

Tampa, FL · On-site

$104K - $141K/yr

Responsible for supervision and oversight of ISSO cyber resources and personnel. Qualifications and Education Requirements * Bachelor's Degree in Information Technology, Cybersecurity, Data Science ...

E-Logic Inc. is seeking an experienced Lead ISSO to support the U.S. International Development ... This role requires hands-on cybersecurity expertise and the ability to interface with federal ...

Lead ISSO

Washington, DC · Remote

$130K/yr

E-Logic Inc. is seeking an experienced Lead ISSO to support the U.S. International Development ... This role requires hands-on cybersecurity expertise and the ability to interface with federal ...

ISSO Lead The ISSO Lead is a senior cybersecurity governance and risk-management professional responsible for supporting federal information systems throughout the complete Risk Management Framework ...

ISSO Lead The ISSO Lead is a senior cybersecurity governance and risk-management professional responsible for supporting federal information systems throughout the complete Risk Management Framework ...

Showing results 21-40

Cyber Security Isso information

See salary details

$57K

$133K

$186K

How much do cyber security isso jobs pay per year?

As of Sep 10, 2026, the average yearly pay for cyber security isso in the United States is $132,962.00, according to ZipRecruiter salary data. Most workers in this role earn between $111,000.00 and $150,000.00 per year, depending on experience, location, and employer.

What is a Cyber Security ISSO?

A Cyber Security Information System Security Officer (ISSO) is responsible for ensuring the security and compliance of an organization's information systems. They develop, implement, and monitor security policies, conduct risk assessments, and ensure systems adhere to regulatory requirements. ISSOs often collaborate with IT and security teams to manage vulnerabilities and respond to incidents. Their work is critical in protecting sensitive data and maintaining the integrity of organizational networks.

What are the key skills and qualifications needed to thrive as a Cyber Security ISSO, and why are they important?

To excel as a Cyber Security ISSO, you need a solid understanding of information security principles, risk management, and regulatory compliance, often supported by a degree in cybersecurity or related field and certifications like CISSP or CISM. Familiarity with security assessment tools, vulnerability management systems, and frameworks such as NIST or RMF is typically required. Strong analytical thinking, attention to detail, and effective communication skills help ISSOs manage security posture and liaise with stakeholders. These competencies ensure robust protection of information systems and compliance with security standards, which are critical for minimizing risks and safeguarding organizational assets.

What are some common challenges faced by Cyber Security ISSOs when ensuring compliance with security frameworks?

Cyber Security ISSOs often encounter challenges such as keeping up with rapidly changing regulations, interpreting complex compliance requirements, and implementing controls across diverse systems. Coordinating with multiple departments to gather documentation and evidence can also be demanding, especially in large organizations. Additionally, balancing security needs with business objectives and limited resources requires strong communication and prioritization skills. Staying current with industry best practices and fostering a security-minded culture are key to overcoming these challenges.

What is the difference between Cyber Security Isso vs Cyber Security Analyst?

AspectCyber Security IssoCyber Security Analyst
CertificationsCompTIA Security+, CEH, CISSP (preferred)CompTIA Security+, CEH, CISSP (preferred)
Work EnvironmentSecurity operations centers, incident response teamsSecurity teams, IT departments, consulting firms
Employer & IndustryTech companies, finance, government agenciesVaried industries including finance, healthcare, tech

Cyber Security Isso and Cyber Security Analyst roles share similar certifications and work environments, often collaborating within security teams. While the Isso focuses on security operations and incident response, the Analyst emphasizes analyzing security data and improving defenses. Both roles are vital in protecting organizational assets, with overlapping skills and industry usage.

Is cyber security isso an entry level position?

A Cyber Security ISSO (Information System Security Officer) is typically an experienced role that requires prior knowledge of cybersecurity principles, risk management, and security frameworks. Entry-level positions in cybersecurity often have titles like Security Analyst or Cybersecurity Technician, and may require certifications such as CompTIA Security+ or CISSP for more advanced roles like ISSO.

What are popular job titles related to Cyber Security Isso jobs?

For Cyber Security Isso jobs, the most frequently searched job titles are:

Infographic showing various Cyber Security Isso job openings in the United States as of June 2026, with employment types broken down into 1% Internship, 93% Full Time, 2% Part Time, 1% Contract, and 3% Nights. Highlights an 93% Physical, 3% Hybrid, and 4% Remote job distribution, with an average salary of $132,962 per year, or $63.9 per hour.

ISSO / RMF Cybersecurity Analyst

Remote

Xcelerate Solutions
Business Management Consulting • 201 - 500 employees

Full-time

Posted 12 days ago


Job description

Description
ISSO / RMF Cybersecurity Analyst
Xcelerate Solutions seeks an Information System Security Officer (ISSO) / RMF Cybersecurity Analyst to play a critical role in ensuring the security posture, compliance, and continuous monitoring of our secure enterprise IT systems. The successful candidate will guide systems through the federal Risk Management Framework (RMF) lifecycle to obtain and maintain an active Authorization to Operate (ATO).
This position requires a deep understanding of federal cybersecurity policies, NIST Special Publications (specifically NIST SP 800-37 and NIST SP 800-53), and hands-on experience managing security controls. The ISSO will collaborate closely with system administrators, software developers, and government authorizing officials to identify risks, implement mitigation strategies, and maintain robust system defenses. Come join our award-winning organization and work with some of the most talented and brightest minds in the GovCon industry.
Key Responsibilities
In accordance with established cybersecurity performance standards, the ISSO / RMF Cybersecurity Analyst will perform the following duties:
1. Risk Management Framework (RMF) & Compliance
  • Lead the system categorization, security control selection, implementation, assessment, and continuous monitoring processes across the RMF lifecycle.
  • Develop, update, and maintain comprehensive Security Authorization Packages, including System Security Plans (SSPs), Security Assessment Reports (SARs), Plan of Action and Milestones (POA&Ms), and continuous monitoring plans.
  • Utilise government systems of record (e.g., Enterprise Mission Assurance Support Service - eMASS) to document and track compliance packages.
2. Vulnerability Management & Assessment
  • Coordinate and conduct regular vulnerability scans using automated tools (e.g., ACAS, Nessus, SCAP Compliance Checker).
  • Analyze scan results, coordinate with technical teams to remediate vulnerabilities, and document necessary exceptions or POA&Ms.
  • Review Defense Information Systems Agency (DISA) Security Technical Implementation Guides (STIGs) and Security Requirements Guides (SRGs) to ensure secure system configurations.
3. Continuous Monitoring & Incident Response
  • Monitor and assess security controls on an ongoing basis to ensure they remain effective over time in a dynamic operational environment.
  • Assist with the identification, investigation, and reporting of security incidents or anomalies in accordance with established reporting procedures.
  • Ensure log management, system auditing, and boundary protections are maintained in compliance with federal guidelines.
4. Technical Collaboration & Advisory
  • Act as the primary cybersecurity advisor to technical development, systems engineering, and management teams.
  • Ensure that new software features, infrastructure changes, and system updates are designed and implemented with security-by-design principles.
  • Support the planning and execution of security control assessments (SCAs) conducted by external assessment teams.
Required Qualifications
  • Education: Bachelor's degree in Cybersecurity, Information Assurance, Computer Science, Information Technology, or a related field (equivalent professional experience may be considered).
  • Experience:
    • Minimum of 5+ years of experience in cybersecurity, information assurance, or IT compliance.
    • 3+ years of direct, hands-on experience guiding systems through the RMF process (Steps 1 through 7) to successful ATO determinations.
  • Technical Skills:
    • Deep working knowledge of NIST SP 800-37, NIST SP 800-53, and CNSSI 1253.
    • Direct experience using automated vulnerability assessment tools (e.g., Nessus, ACAS, SCC).
    • Proven experience managing and navigating security control databases (such as eMASS).
    • Solid understanding of operating system security configurations (Windows, Linux) and network security architectures.
  • Soft Skills:
    • Strong technical writing skills with demonstrated ability to produce clear, structured compliance documentation.
    • Excellent communication and interpersonal skills, with the ability to bridge the gap between technical teams and authorizing officials.
Preferred Qualifications
  • Experience with cloud security compliance models (e.g., FedRAMP, AWS GovCloud, Azure Government).
  • Familiarity with secure software development principles, DevSecOps pipelines, and container security (e.g., Docker, Kubernetes).
  • Experience implementing Section 508 accessibility standards within cybersecurity practices.
  • Experience supporting defense contract execution or secure federal program architectures.
Certifications
To meet federal cybersecurity and technical baseline requirements, candidates must possess or be willing to obtain:
1. Cybersecurity Baseline Certification (Required)
Active DoD 8570.01-M / DoD 8140 Information Assurance Management (IAM) Level II certification (or higher). Acceptable certifications include:
  • Certified Authorization Professional (CAP / CGRC) (highly preferred)
  • CompTIA Security+ CE (acceptable depending on IAM/IAT alignment)
  • Certified Information Security Manager (CISM)
  • Certified Information Systems Security Professional (CISSP)
  • GIAC Security Leadership (GSLC)
Security & Clearance Requirements
Due to the secure nature of the enterprise environment and associated federal mandates:
  • Work Status Allowable: U.S. citizenship
  • Minimum Clearance to Start: Public Trust or Favorably Adjudicated Secret Clearance
  • Compliance: Must strictly adhere to government cybersecurity policies, operations security (OPSEC) rules, and secure system access regulations.

About Xcelerate Solutions:
Founded in 2009 and headquartered in McLean, VA, Xcelerate Solutions (www.xceleratesolutions.com) is one of America's fastest-growing companies. Xcelerate's culture is defined by our diversified workforce of dynamic and versatile professionals, supported with growth and development opportunities that contribute to individual and company growth. This strong commitment to our employees has been recognized by our inclusion on the Washington Business Journal's "50 Best Places to Work" list as well as being a "Great Place to Work" certified company with a 4.6 star, and a 99% CEO approval Glassdoor rating. Come find out why Xcelerate Solutions is one of the top DC Metro employers!
Xcelerate Solutions is an Equal Employment Opportunity/Affirmative Action Employer. We evaluate qualified applicants without regard to race, color, national origin, religion, age, equal pay, disability, veteran status, sex, sexual orientation, gender identity, genetic information, or expression of another protected characteristic. As part of this commitment to the full inclusion of all qualified individuals, Xcelerate Solutions provides reasonable accommodation if needed because of an applicant's or an employee's disability.
Pay Transparency Notice: Xcelerate Solutions will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant.