Senior Cybersecurity Lead

Chameleon Integrated Services

• $120K — $145K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years of experience in cybersecurity and risk management
  • Certified Information Systems Security Manager (ISSM) or equivalent (CISSP, CISM, GSLC)
  • Proven track record with the RMF lifecycle and eMASS submissions
  • Experience in writing and consolidating SSPs and POA&Ms
  • Direct advisory experience to government officials on risk acceptance

Responsibilities

  • Manage the enterprise Risk Management Framework (RMF) package for compliance validation
  • Execute dual RMF tracks for continuous monitoring and ATO attainment
  • Author System Security Plans (SSPs) and Security Assessment Plans
  • Track and manage the enterprise-level Plan of Action and Milestones (POA&M)
  • Guide the transition to an automated Continuous ATO (cATO) framework
  • Direct teams of Information System Security Officers (ISSOs)
  • Interface with live cyber operations to ensure compliance with DoD mandates

Benefits

  • Full-time employment with potential for contract award
  • Opportunity to work on high-impact cybersecurity projects
  • Engagement with cutting-edge cyber operations
  • Collaboration with government officials and technical teams
  • Professional development in a dynamic environment
Full Job Description
ISSM / Senior Cybersecurity & GRC Lead

Location: Linthicum Heights, MD
Employment Type: Full-Time / Contingent Upon Contract Award
Clearance Required: TS/SCI clearance eligibility preferred;
U.S. Citizenship required

Required Certifications: Must hold a certified Information Systems Security Manager (ISSM) or equivalent credential compliant with DoD 8140/8570 requirements (e.g., CISSP, CISM, or GSLC).

Position Note
Chameleon Integrated Services is actively bidding on a proposal to provide Cyberspace Operations and Development for the Enterprise (CODE) services under the DC3 Technical, Analytical, and Business Operations (TABO) requirement. This position is contingent upon contract award.

Position Overview
Chameleon Integrated Services is seeking an ISSM / Senior Cybersecurity & GRC Lead to serve as the primary cybersecurity risk advisor to the Government Program Manager and Authorizing Official (AO).
This role requires a unique, comprehensive skill set. While you will maintain the overarching enterprise Risk Management Framework (RMF) package and lead Governance, Risk, and Compliance (GRC) efforts, you must also be deeply familiar with the live, operational cyber environment. This position encompasses overseeing technical boundaries that include penetration testing, vulnerability assessments, threat hunting, incident response, and Security Operations Center (SOC) operations.

Responsibilities
  • Manage and maintain the overarching enterprise RMF package, validating the security compliance of all interconnected agency systems.
  • Execute dual RMF tracks: Steady-State Continuous Monitoring for systems with existing valid ATOs, and ATO Attainment ("Get-Well") authoring for newly onboarded systems.
  • Author and compile initial System Security Plans (SSPs), Security Assessment Plans, and coordinate AO-ready eMASS packages delivered within rigid 180-day windows.
  • Consolidate, manage, and track the enterprise-level Plan of Action and Milestones (POA&M) on behalf of the government, providing formal Risk Acceptance recommendations to the AO.
  • Guide the rapid evolution of agency networks away from a static ATO process and toward an automated Continuous ATO (cATO) framework.
  • Direct and coordinate teams of Information System Security Officers (ISSOs) and technical assessors.
  • Interface directly with live cyber operations to ensure vulnerability scans, automated patching windows, Infrastructure as Code (IaC) change repositories, and incident response procedures are fully compliant with DoD mandates.
Required Skills & Qualifications
  • Proven track record executing the end-to-end RMF lifecycle and submitting packages through eMASS.
  • Demonstrated experience writing, reviewing, or consolidating enterprise SSPs, POA&Ms, and STIG compliance documentation.
  • Direct experience advising an Authorizing Official (AO) or senior government program manager on risk acceptance boundaries.
  • Strong understanding of operational cybersecurity environments, including standard tools or workflows for penetration testing, threat hunting, and incident response.
Preferred Qualifications
  • Active TS/SCI security clearance.
  • Familiarity with continuous monitoring automation or cATO transition models inside a DoD enterprise.

Similar Jobs

More Jobs at Chameleon Integrated Services

  • IT Support Engineer
    $120K *
    San Francisco, CA 94112 (San Francisco County)
    Information Technology
    In-Person

More Information Technology Jobs

Find similar Senior Cybersecurity Lead jobs: