About
Learn more about the company and their company culture.
Stay safe on Himalayas
Never send money to companies. Jobs on Himalayas will never require payment from applicants.
Please let cFocus Software Incorporated know you found this job on Himalayas. This helps us grow!
Learn more about the company and their company culture.
Here are other jobs you might want to apply for.
cFocus Software is a leading provider of cybersecurity compliance and enterprise IT services focused on federal government agencies, dedicated to ensuring secure cloud operations.
Employee count: 11-50
The ISSO serves as the principal advisor to the DHS Geospatial Information Infrastructure (GII) System Owner. This position provides security guidance, oversight, and technical expertise based on Department of Homeland Security (DHS) directives, policies, and standards. The ISSO ensures that security controls are implemented, maintained, and compliant with all DHS security requirements and the GII Security Plan (SP).
The ISSO operates under the authority of the System Owner (SO), a government employee, and is responsible for ensuring the continuous monitoring, assessment, and documentation of system security across all environments supporting DHS geospatial systems.
Serve as the principal security advisor to the GII System Owner.
Ensure implementation and maintenance of security controls in accordance with DHS policies and the GII Security Plan.
Perform Information Security Continuous Monitoring (ISCM), including:
Automated security management and credentialed scans.
Review and adjudication of findings from continuous monitoring and mitigation activities.
Support assessment, authorization, certification, and accreditation activities (ATO/ATC).
Execute Plan of Actions and Milestones (POA&M) and remediation processes per DHS MD 4300A.
Update the Contingency Plan annually, execute it, and report on outcomes.
Review Change Control Board (CCB) submissions for security compliance.
Create and update (but not finalize) key artifacts, such as:
Interconnection Security Agreements (ISAs)
Respond to Information Security Vulnerability Management (ISVM) notifications.
Monitor and report on system security posture, ensuring compliance with DHS Sensitive System Policy (MD 4300A).
Support DHS cyber investigation and data call responses related to system security.
Ensure compliance with Federal Information Security Modernization Act (FISMA) and DHS directives.
The SOW specifies that the ISSO must meet or exceed the GTSS 3.0 “Information System Security Officer” labor category standards. While the document does not include the exact GTSS labor category details, these positions typically require:
Minimum of 7–10 years of IT security or cybersecurity experience.
At least 3–5 years of experience specifically as an ISSO or in an equivalent federal security compliance role.
The ISSO must be qualified and credentialed in alignment with DHS 4300A Sensitive Systems Policy, which implies one or more of the following certifications (based on DHS and DoD 8570.01-M standards):
Certified Information Systems Security Professional (CISSP)
The ISSO role requires familiarity and practical experience with:
DHS ISCM tools (e.g., Swimlane, Tenable/Nessus, Splunk, or equivalent SIEM tools).
Vulnerability Management Systems (for ISVM response).
Change Management Systems (e.g., ServiceNow, Jira).
Plan of Action & Milestone (POA&M) tracking and reporting tools.
Compliance Frameworks: NIST SP 800-37, 800-53, 800-137, FISMA.
Documentation & Reporting Tools: Microsoft Office Suite, Confluence, or DHS-provided templates.
Cloud Environments: AWS (federal GovCloud), ESRI Geospatial Cloud integration, and DHS enterprise networks.
Full Time
Learn more about cFocus Software Incorporated and their company culture.
cFocus Software is a technologically advanced service provider dedicated to delivering FISMA, RMF, and FedRAMP compliance solutions, along with extensive cloud and enterprise IT services aimed at federal government agencies. Established in 2006, cFocus Software has amassed over 15 years of experience in this niche, showcasing a robust portfolio that includes our exclusive ATO as a Service™ offering. This groundbreaking solution automates the often-complex compliance processes required for federal contracts. By streamlining FISMA, RMF, and FedRAMP compliance, we enable agencies to focus their resources on their primary missions while maintaining strict adherence to security standards.
Our commitment to excellence is further demonstrated through our partnerships with key industry leaders such as Microsoft, AWS, and ServiceNow, positioning us as a Microsoft Gold Certified Partner and AWS Technology Partner among others. This allows us not only to leverage cutting-edge technologies but also to develop comprehensive multi-cloud strategies that align with modern government initiatives. At cFocus Software, we pride ourselves on our responsiveness to client needs and our dedication to superb customer service, ensuring that every federal agency we work with can achieve their operational goals efficiently and securely.
11-50 employees
2006
Jasson Walker, Jr.
Employee count: 5000+
Salary: 195k-219k USD
Employee count: 11-50
Employee count: 5000+
Salary: 105k-140k USD
Explore the variety of open remote roles at cFocus Software Incorporated, offering flexible work options across multiple disciplines and skill levels.
Employee count: 11-50
Employee count: 11-50
Employee count: 11-50
Employee count: 11-50
Employee count: 11-50
Employee count: 11-50
Find your next opportunity by exploring profiles of companies that are similar to cFocus Software Incorporated. Compare culture, benefits, and job openings on Himalayas.
Sign up now and join over 100,000 remote workers who receive personalized job alerts, curated job matches, and more for free!

Find your next opportunity by exploring profiles of companies that are similar to cFocus Software Incorporated. Compare culture, benefits, and job openings on Himalayas.
Coalfire is a cybersecurity advisor that helps private and public-sector organizations avert threats, close gaps, and effectively manage risk. They provide independent, tailored advice, assessments, technical testing, and cyber engineering services to help clients develop scalable programs that improve their security posture and achieve business objectives.
Contact Government Services (CGS) strives to simplify and enhance government bureaucracy through the optimization of human, technical, and financial resources, combining cutting-edge technology with world-class personnel to deliver customized solutions.
Secureframe provides automated compliance solutions that help businesses achieve and maintain security standards seamlessly.
RegScale is a compliance automation company that addresses the complexities of regulatory compliance through its innovative Continuous Controls Monitoring platform.
GCyber is a leading IT contractor that provides innovative solutions for U.S. Defense and Federal agencies, focusing on cybersecurity and operational support.
Concept Plus, LLC is a technology services company dedicated to maximizing business productivity through innovative IT solutions for the federal government.
Sign up now and join over 100,000 remote workers who receive personalized job alerts, curated job matches, and more for free!

Join the remote work revolution
Join over 100,000 job seekers who get tailored alerts and access to top recruiters.