Information System Security Officer

Remote, USA Full-time
Job Description: • Acquire and manage all necessary documentation/artifacts, including cybersecurity support and resources, to support IT cybersecurity goals and objectives from a risk management perspective. • Advise senior management on system risk levels and cybersecurity posture for cloud-based environments • Assist in the deployment, architecture and configuration of security controls of deployed systems with Cloud Architects • Ensure that developed systems and architectures are consistent with all applicable DHS cybersecurity policies and guidelines. • Perform Assessment and Authorization (A&A) cybersecurity reviews, identify gaps, and support risk management plans for cybersecurity personnel to execute. • Provide input on cybersecurity requirements and collect and maintain data needed to meet system cybersecurity compliance reporting. • Provide subject matter expertise for Risk Management Framework (RMF) activities and related documentation to support system accreditation / Authority to Operate (ATO) requirements. • Interpret noncompliance to determine the impact on levels of risk and/or overall effectiveness of the enterprise's cybersecurity program. • Track audit findings and recommendations to ensure that appropriate mitigation actions are taken. • Support necessary compliance activities (e.g., ensure that system security configuration guidelines are followed, compliance monitoring occurs). • Coordinate with geographically-distributed, multi-discipline teams to ensure compliance with all applicable requirements for cybersecurity are addressed. • Ensure that plans of action and milestones (POAM) or remediation plans are in place for vulnerabilities identified during risk assessments, audits, inspections, etc. and support necessary remediation/compliance activities. • Participate in recurring cybersecurity working group meetings. • Oversee and manage A&A activities to support their respective systems and security activities. • Work with program ISSOs and ISSMs to effectively aggregate technical details for government leadership including the cybersecurity lead, project managers, program managers to facilitate succinct and effective risk discussions and provide understanding of respective program risks. • Provide security support and evaluation to development teams to integrate information assurance/cyber security and remediate vulnerabilities throughout the System Life Cycle Development. • Lead the development, review and management of system Assess and Authorize documentation to ensure it is compliant with RMF standards. • Develop guidance and assists associates through the RMF phases. • Participate in ATT and ATO activities • Support the organization's program that implements information systems security technology and procedures. • Review DHS policy and develop local policy and procedures that implement the DHS Cybersecurity subprograms and initiatives. • Create and submit Plan of Actions & Milestones (POA&M) for review and approval by the Authorizing Official (AO) Requirements: • Bachelor's degree in a related field or equivalent experience • 8+ years demonstrated SP 800-37 RMF, NIST 800.53 experience • Familiarity with cybersecurity tools such as Aquasec and Sonar Qube • Must possess a Security + certification • Experience developing or ensuring development adheres to cybersecurity requirements and best practices (e.g., NIST controls) • Familiarity with commercial off-the-shelf solutions for specific security capabilities • DHS/CBP background investigation highly preferred • Exposure to AWS, Azure and Google Cloud • Host Base Security System (HBSS), Tenable Nessus Vulnerability Assessment, EMASS Benefits: • Equal Opportunity Employer Apply tot his job
Apply Now

Similar Jobs

Chief Information Security Officer | Benevity | Remote (United States)

Remote, USA Full-time

Information Systems Security Officer / Information Systems Security Manager – RS3 Program & Data Analytics

Remote, USA Full-time

Information Systems Security Officer (ISSO) - Socorro, New Mexico

Remote, USA Full-time

[Remote] Infrastructure Engineer(12+ years need)

Remote, USA Full-time

Experienced Infrastructure Engineer - (100% Remote)

Remote, USA Full-time

Infrastructure Engineer (Remote From Anywhere In CO) (OIT Only)

Remote, USA Full-time

Blockchain Infrastructure Engineer - Remote at Sova Labs

Remote, USA Full-time

Network Infrastructure Engineer; Wireless - Remote

Remote, USA Full-time

Senior Infrastructure Engineer - Observability - Remote from Spain

Remote, USA Full-time

Virtual Infrastructure Engineer – Advanced Cyber Training Environments

Remote, USA Full-time

**Experienced Data Entry Clerk – Entry-Level Opportunity for Career Growth at blithequark**

Remote, USA Full-time

Full-Cycle Technical Staffing Recruiter Remote

Remote, USA Full-time

Privacy Assurance Specialist I

Remote, USA Full-time

**Experienced Data Entry Specialist – Remote Opportunity at arenaflex**

Remote, USA Full-time

Cybersecurity Solution Architect (Pre-Sales & Delivery)

Remote, USA Full-time

Corporate Attorney Healthcare M&A (Physician Groups) | Remote

Remote, USA Full-time

SWE Intern (Trading)

Remote, USA Full-time

**Experienced Virtual Research Participant – Flexible Remote Work Opportunities at arenaflex**

Remote, USA Full-time

[Remote] Data Entry Specialist

Remote, USA Full-time

**Experienced Full Stack Customer Service Manager – Airline Operations and Client Experience**

Remote, USA Full-time
Back to Home