Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Information Assurance Cyber Lead (ISSO) image - Rise Careers
Job details

Information Assurance Cyber Lead (ISSO)

Position Description:

At CGI Federal, we are dedicated to innovation and excellence. We are a dynamic team of professionals committed to creating cutting-edge solutions that drive the future of technology. Join us and be part of a company that values creativity, collaboration, and continuous learning.
We are seeking a talented and motivated Cyber Security Lead. This position will support our client with planning, organizing, securing, coordinating, and managing resources to initiate and successfully deliver the requirements of a large government contract. This project is a fast paced and dynamic environment that leverages Agile methodologies to quickly build solutions based on customer requirements.

This position is located in Newport News, VA.

Your future duties and responsibilities:

- Collaborate with the Program Manager and Technical Leads to develop, implement, and maintain a comprehensive cyber security strategy and program to protect the organization's information assets
- Manage the activities of the NIST 800-37 RMF, applicable ITIL guidelines, and continuous monitoring policies and processes for achieving and maintaining systems' authority to operate
- Oversee the identification, assessment, and mitigation of cyber security risks and vulnerabilities
- Coordinate vulnerability scans, and create, maintain, and manage plan of action and milestones (POA&Ms)
- Manage and coordinate incident response efforts, ensuring timely and effective resolution of security incidents
- Conduct regular security assessments, audits, and penetration testing to identify and address potential threats
- Develop and enforce security policies, procedures, and standards in compliance with relevant regulations and industry best practices
- Provide expert guidance and support to internal teams on cyber security matters, including secure software development, network security, and data protection
- Monitor and analyze security alerts and events, leveraging advanced tools and techniques to detect and respond to potential threats
- Collaborate with external partners, including government agencies and industry organizations, to stay informed about emerging threats and trends
- Collect, analyze, and report cyber security metrics
- Lead and mentor a team of cyber security professionals, fostering a culture of continuous improvement and professional development
- Prepare and deliver reports and presentations to senior leadership, providing insights and recommendations on cyber security initiatives and performance

Required qualifications to be successful in this role:

- Due to the nature of the work, US Citizenship and an active Top-Secret clearance with SCI designation required
- Bachelor's Degree or higher in Cyber Security, Information Technology, Computer Science, or a related field
- Minimum of 8-10 years of experience in cyber security, with at least 3 years in a leadership or management role
- In-depth knowledge of cyber security principles, technologies, and best practices
- Experience with security frameworks and standards such as NIST, ISO 27001, and CIS Controls
- Proficiency in security tools and technologies, including SIEM, IDS/IPS, firewalls, and endpoint protection
- Strong understanding of network protocols, operating systems, and secure coding practices
- Excellent analytical, problem-solving, and decision-making skills
- Strong communication and interpersonal skills, with the ability to effectively interact with technical and non-technical stakeholders
- Relevant certifications such as IAT / IAM III certification - CISSP, CISM, or equivalent
Desired qualifications/non-essential skills required:
- Master's Degree in Cyber Security, Information Technology, or a related field
- Experience working with cloud platforms (e.g. Azure, AWS)
- Experience working in a government or defense environment
- Experience with Federal Risk and Authorization Management (FedRAMP) Cloud related projects
- Knowledge of advanced persistent threats (APTs) and nation-state actors
- Experience with cloud security and securing hybrid environments

CGI is required by law in some jurisdictions to include a reasonable estimate of the compensation range for this role. The determination of this range includes various factors not limited to skill set, level, experience, relevant training, and licensure and certifications. To support the ability to reward for merit-based performance, CGI typically does not hire individuals at or near the top of the range for their role. Compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range for this role in the U.S. is $78,400.00 - $173,500.00.
CGI Federal's benefits are offered to eligible professionals on their first day of employment to include:
Competitive compensation
Comprehensive insurance options
Matching contributions through the 401(k) plan and the share purchase plan
Paid time off for vacation, holidays, and sick time
Paid parental leave
Learning opportunities and tuition assistance
Wellness and Well-being programs

#CGIFederalJob
#LI-PC1

Skills:

  • CompTIA Security+
  • DIACAP
  • English
  • Information Assurance

What you can expect from us:

Together, as owners, lets turn meaningful insights into action.

Life at CGI is rooted in ownership, teamwork, respect and belonging. Here, youll reach your full potential because


You are invited to be an owner from day 1 as we work together to bring our Dream to life. Thats why we call ourselves CGI Partners rather than employees. We benefit from our collective success and actively shape our companys strategy and direction.

Your work creates value. Youll develop innovative solutions and build relationships with teammates and clients while accessing global capabilities to scale your ideas, embrace new opportunities, and benefit from expansive industry and technology expertise.

Youll shape your career by joining a company built to grow and last. Youll be supported by leaders who care about your health and well-being and provide you with opportunities to deepen your skills and broaden your horizons.

Come join our teamone of the largest IT and business consulting services firms in the world.

Qualified applicants will receive consideration for employment without regard to their race, ethnicity, ancestry, color, sex, religion, creed, age, national origin, citizenship status, disability, pregnancy, medical condition, military and veteran status, marital status, sexual orientation or perceived sexual orientation, gender, gender identity, and gender expression, familial status or responsibilities, reproductive health decisions, political affiliation, genetic information, height, weight, or any other legally protected status or characteristics to the extent required by applicable federal, state, and/or local laws where we do business.

CGI provides reasonable accommodations to qualified individuals with disabilities. If you need an accommodation to apply for a job in the U.S., please email the CGI U.S. Employment Compliance mailbox at US_Employment_Compliance@cgi.com . You will need to reference the Position ID of the position in which you are interested. Your message will be routed to the appropriate recruiter who will assist you. Please note, this email address is only to be used for those individuals who need an accommodation to apply for a job. Emails for any other reason or those that do not include a Position ID will not be returned.

We make it easy to translate military experience and skills! Click here to be directed to our site that is dedicated to veterans and transitioning service members.

All CGI offers of employment in the U.S. are contingent upon the ability to successfully complete a background investigation. Background investigation components can vary dependent upon specific assignment and/or level of US government security clearance held. Dependent upon role and/or federal government security clearance requirements, and in accordance with applicable laws, some background investigations may include a credit check. CGI will consider for employment qualified applicants with arrests and conviction records in accordance with all local regulations and ordinances.

CGI will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with CGIs legal duty to furnish information.
CGI Glassdoor Company Review
3.9 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star icon
CGI DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of CGI
CGI CEO photo
George D. Schindler
Approve of CEO

Average salary estimate

$125950 / YEARLY (est.)
min
max
$78400K
$173500K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Information Assurance Cyber Lead (ISSO), CGI

At CGI Federal, we are excited to announce an opportunity for an Information Assurance Cyber Lead (ISSO) based in Newport News, VA. If you’re passionate about cybersecurity and want to make a tangible impact, this is the perfect role for you! As the Cyber Security Lead, you'll play a central role in developing and implementing cybersecurity strategies that keep our client's information assets secure. You will manage and coordinate the essential activities associated with security frameworks like NIST 800-37 and maintain operational authority for our systems. In this fast-paced environment, collaboration is key; you’ll work alongside the Program Manager and Technical Leads to address vulnerabilities and create an effective incident response plan. You'll also oversee vulnerability scans and ensure timely resolution of security incidents. A significant part of your role will be leading a team of dedicated cybersecurity professionals, encouraging a culture of continuous improvement, and preparing insightful reports for senior leadership. We’re looking for someone with a strong background in cybersecurity, including familiarity with various security tools and technologies, as well as an active Top-Secret clearance due to the nature of our work. If you thrive in a supportive and innovative atmosphere and are eager to be part of a team that values your contributions, CGI Federal could be your next great career move!

Frequently Asked Questions (FAQs) for Information Assurance Cyber Lead (ISSO) Role at CGI
What are the primary responsibilities of an Information Assurance Cyber Lead at CGI Federal?

As an Information Assurance Cyber Lead (ISSO) at CGI Federal, your primary responsibilities will include developing and maintaining comprehensive cybersecurity strategies, collaborating with key stakeholders, and managing security frameworks like NIST 800-37. You will also be responsible for incident response management, conducting regular security assessments, and mentoring a team of cybersecurity professionals.

Join Rise to see the full answer
What qualifications do I need to become an Information Assurance Cyber Lead at CGI Federal?

To become an Information Assurance Cyber Lead at CGI Federal, you are required to have a Bachelor's Degree in Cyber Security, IT, Computer Science, or a related field. Additionally, you should have a minimum of 8-10 years of experience in cybersecurity, with at least 3 years in a leadership role, along with an active Top-Secret clearance.

Join Rise to see the full answer
What is the work environment like for the Information Assurance Cyber Lead at CGI Federal?

The work environment for the Information Assurance Cyber Lead at CGI Federal in Newport News, VA, is dynamic and collaborative. You'll be part of a team that leverages Agile methodologies, allowing for quick adaptation to customer requirements and fostering a culture of innovation and continuous learning.

Join Rise to see the full answer
Are there opportunities for professional development as an Information Assurance Cyber Lead at CGI Federal?

Yes, as an Information Assurance Cyber Lead at CGI Federal, you will have access to ample opportunities for professional development, including training programs, mentorship, and tuition assistance. The company values growth and encourages employees to pursue learning opportunities.

Join Rise to see the full answer
How does CGI Federal support its Information Assurance Cyber Lead in terms of work-life balance?

CGI Federal understands the importance of work-life balance and offers flexible work arrangements and paid time off, which allows Information Assurance Cyber Leads to manage their professional and personal commitments effectively.

Join Rise to see the full answer
Common Interview Questions for Information Assurance Cyber Lead (ISSO)
Can you explain the NIST 800-37 Risk Management Framework?

Sure! The NIST 800-37 Risk Management Framework is essential for managing risk in federal information systems. It involves steps such as categorizing information systems, selecting security controls, implementing them, assessing their effectiveness, authorizing system operation, and continuously monitoring security controls.

Join Rise to see the full answer
What experience do you have in leading a cybersecurity team?

In my previous role, I successfully led a team of cybersecurity professionals by fostering an environment of open communication and collaboration. I focused on mentoring team members, empowering them to take ownership of tasks, and encouraging continuous improvement through regular training and team-building exercises.

Join Rise to see the full answer
How do you handle incident response in cybersecurity?

I approach incident response with a structured methodology, ensuring that incidents are promptly detected, evaluated, and escalated if necessary. I prioritize communication with key stakeholders, documenting the incident thoroughly and reviewing response effectiveness to improve future protocols.

Join Rise to see the full answer
What strategies do you use to assess and mitigate cyber security risks?

I use a combination of qualitative and quantitative risk assessment methods, identifying vulnerabilities through regular security assessments and penetration testing. I prioritize risks based on their potential impact and probability, updating mitigation measures continuously as threats evolve.

Join Rise to see the full answer
What role does continuous monitoring play in your cybersecurity strategy?

Continuous monitoring is vital in my cybersecurity strategy, as it allows for real-time detection of anomalies and policy violations. Leveraging advanced tools, I analyze alerts and incidents, ensuring our cybersecurity measures adapt to new threats and vulnerabilities as they arise.

Join Rise to see the full answer
Can you describe a successful security policy you developed in a previous role?

At my last company, I developed a comprehensive data protection policy that introduced encryption standards, user access controls, and protocols for data disposal. This policy significantly reduced data breach incidents and enhanced our compliance with industry regulations.

Join Rise to see the full answer
How familiar are you with cloud security principles?

I possess extensive knowledge of cloud security principles, having worked with various cloud platforms such as Azure and AWS. I understand not just the security controls necessary to protect data in the cloud, but also the regulatory frameworks, such as FedRAMP, that govern their use.

Join Rise to see the full answer
What are your preferred tools for vulnerability scanning?

I favor using tools like Nessus and Qualys for vulnerability scanning. They provide comprehensive coverage of known vulnerabilities and allow for customizable reporting, making it easier to prioritize remediation based on the organization’s risk profile.

Join Rise to see the full answer
How do you ensure compliance with cybersecurity regulations?

To ensure compliance, I implement a robust governance framework that includes regular audits, security assessments, and policy reviews. I keep myself updated on relevant regulations and standards, applying necessary changes to our processes to remain compliant.

Join Rise to see the full answer
What are your thoughts on the importance of user training in cybersecurity?

User training is crucial in cybersecurity, as human error is often a weak point in security measures. I advocate for regular security awareness training sessions to educate users about potential threats, social engineering tactics, and best practices for safe internet behavior.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 2 days ago
Photo of the Rise User
Posted 2 days ago
Photo of the Rise User
Posted 6 days ago

Join Biffa as an Azure Delivery Specialist and help transform waste into sustainable power while optimizing Azure services.

Robusta Remote No location specified
Posted 11 days ago

Lead the technological vision at Octopus by RTG as their Blockchain CTO, driving innovation in blockchain and decentralized finance.

Photo of the Rise User
KPN Remote Teleportboulevard, 1043 Amsterdam, Nederland
Posted 10 days ago

KPN is on the lookout for a skilled Security Risk Manager to enhance their risk management framework and ensure compliance within a collaborative team environment.

Photo of the Rise User

The Business Information Security Officer (BISO) will spearhead cybersecurity strategies aligned with business objectives at AbbVie.

Posted 7 days ago

Elevate your career as a Lead Cyber Threat Detection Engineer at M&T Bank, where you'll play a crucial role in securing our digital landscape through innovative threat detection strategies.

Photo of the Rise User
Posted yesterday

AbbVie is looking for a skilled Salesforce Platform Engineer to design and implement innovative Salesforce solutions to enhance their business operations.

To serve as trusted advisors to our clients, delivering insights they can act on to achieve meaningful and sustainable outcomes.

154 jobs
MATCH
VIEW MATCH
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
April 8, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
Someone from OH, Cleveland just viewed Operations Associate (Part-Time) - Pinecrest at Alo Yoga
Photo of the Rise User
Someone from OH, Dayton just viewed Medical Receptionist at LifeStance Health
Photo of the Rise User
Someone from OH, Coldwater just viewed Engineering Design Checker Jobs at Lockheed Martin
Photo of the Rise User
Someone from OH, Loveland just viewed SEO Admin & Business Support at Outliant
Photo of the Rise User
45 people applied to IT Intern at USAA
Photo of the Rise User
Someone from OH, Columbus just viewed Casting: Cedar Lake - Pilot Episode at Backstage
Photo of the Rise User
Someone from OH, Mount Orab just viewed Software Development Manager at Assured Guaranty
H
Someone from OH, Mansfield just viewed Medical Appointment Setter (Remote LatAm) at HireHawk
Photo of the Rise User
79 people applied to Jr SOC Analyst at IBM
S
15 people applied to SOC Intern at SHEIN
Photo of the Rise User
Someone from OH, Lewis Center just viewed Third Party Risk Analyst at Experian
Photo of the Rise User
Someone from OH, Columbus just viewed Lead Preschool Teacher at Guidepost Montessori
A
Someone from OH, Cincinnati just viewed Global Supply Manager - Taiwan at Also
Photo of the Rise User
Someone from OH, Cincinnati just viewed Global Supply Manager (Raptor Machining) at SpaceX
Photo of the Rise User
Someone from OH, Reynoldsburg just viewed Summer 2025 Financial Services Internship at Nationwide
Photo of the Rise User
Someone from OH, Brunswick just viewed Staff Software Engineer C++ / Computer Vision at ABBYY
Photo of the Rise User
Someone from OH, Columbus just viewed Label Machine Operator I - 2nd Shift at Avery Dennison
Photo of the Rise User
Someone from OH, North Ridgeville just viewed Java, Javascript, Python, NodeJS Software Engineer at Walmart
R
Someone from OH, Dublin just viewed Supply Chain Lead (Clinical Supply) at Resultance
Photo of the Rise User
Someone from OH, Columbus just viewed Scrum Master at Sysco Costa Rica
Photo of the Rise User
54 people applied to Cybersecurity Intern at Dewberry