Cybersecurity Specialists, ISSOs, Others– TSA GRCSS Program
- Hiring from
- United States
- Work type
- Remote
- Posted
- Oct 2, 2026
Job Description
This is a remote position.
Cybersecurity Specialist, ISSO, Others– TSA GRCSS Program
Location: Remote
Clearance Requirement: Secret clearance and will need to get a DHS suitability
Employment Type: Full-Time
About Company
Disruptive Solutions, a Service-Disabled Veteran-Owned Small Business (SDVOSB) delivering mission-focused cybersecurity and technology solutions for federal and commercial clients. We specialize in advanced cybersecurity operations, AI/ML integration, cloud modernization, data governance, and risk management. With a proven track record supporting agencies like the Department of Defense (DoD), Department of Homeland Security (DHS), Cybersecurity and Infrastructure Security Agency (CISA), and the Department of Treasury, we deliver innovative solutions that maximize efficiency and strengthen cyber resilience. At our core, we are dedicated partners committed to securing the mission with innovation, integrity, and measurable impact.
Job Summary
Disruptive Solutions is seeking cybersecurity professionals at multiple experience levels to support current and upcoming requirements on the TSA Governance, Risk, Compliance, and Security Services (GRCSS) program. These positions will support TSA's enterprise cybersecurity mission across a broad range of security disciplines, including Zero Trust, Security Control Assessment (SCA), Governance, Risk and Compliance (GRC), ISSO support, cybersecurity engineering, vulnerability assessment, and penetration testing.
Key Responsibilities
- Support TSA cybersecurity governance, risk management, compliance, assessment, and security engineering activities across enterprise systems and environments.
- Support implementation and maturation of Zero Trust Architecture (ZTA) principles across identity, devices, networks, applications, workloads, and data.
- Conduct Security Control Assessments (SCA) and evaluate the implementation and effectiveness of security controls.
- Support the Risk Management Framework (RMF) lifecycle, including system authorization, continuous monitoring, security documentation, and remediation activities.
- Develop, review, and maintain cybersecurity documentation including System Security Plans (SSPs), Security Assessment Plans (SAPs), Security Assessment Reports (SARs), Plans of Action and Milestones (POA&Ms), risk assessments, and security policies and procedures.
- Provide ISSO support to system owners and technical teams throughout system development, authorization, operation, and continuous monitoring.
- Evaluate systems and architectures against applicable federal cybersecurity requirements, standards, and security controls.
- Perform cybersecurity engineering and architecture analysis to identify vulnerabilities, security gaps, and opportunities to strengthen system security.
- Conduct or support vulnerability assessments, penetration testing, security testing, and technical security evaluations of applications, systems, networks, and cloud environments.
- Analyze vulnerabilities and security findings, assess associated risk, and work with technical teams to develop appropriate remediation strategies.
- Support Governance, Risk and Compliance (GRC) activities, including risk tracking, compliance reporting, control validation, audit support, and cybersecurity metrics.
- Collaborate with security engineers, system administrators, developers, cloud engineers, ISSOs, assessors, and government stakeholders to integrate cybersecurity throughout the system lifecycle.
- Support continuous monitoring and ongoing authorization activities to ensure systems maintain an acceptable security posture.
- Provide cybersecurity recommendations and technical guidance to TSA stakeholders and leadership.
Required Qualifications
- Experience in one or more of the following areas: Zero Trust Architecture and implementation, Security Control Assessment (SCA), Governance, Risk and Compliance (GRC), Risk Management Framework (RMF), ISSO support, cybersecurity engineering, security architecture, vulnerability management, penetration testing, security assessment, cloud security, Identity and Access Management (IAM), continuous monitoring, security authorization and assessment, federal cybersecurity compliance.
- Experience working with federal cybersecurity standards and frameworks such as NIST SP 800-53, NIST RMF, FISMA, and applicable DHS/TSA cybersecurity policies and standards is highly desirable.
- Strong written and verbal communication skills and the ability to communicate cybersecurity risks and technical findings to both technical and non-technical stakeholders.
Preferred Qualifications
- Not specified
Equal Opportunity Statement
Disruptive Solutions, LLC is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, veteran status, sexual orientation, gender identity, or any other characteristic protected by law.