Information System Security Officer

Remote Full-time
Job Description: • Acquire and manage all necessary documentation/artifacts, including cybersecurity support and resources, to support IT cybersecurity goals and objectives from a risk management perspective. • Advise senior management on system risk levels and cybersecurity posture for cloud-based environments • Assist in the deployment, architecture and configuration of security controls of deployed systems with Cloud Architects • Ensure that developed systems and architectures are consistent with all applicable DHS cybersecurity policies and guidelines. • Perform Assessment and Authorization (A&A) cybersecurity reviews, identify gaps, and support risk management plans for cybersecurity personnel to execute. • Provide input on cybersecurity requirements and collect and maintain data needed to meet system cybersecurity compliance reporting. • Provide subject matter expertise for Risk Management Framework (RMF) activities and related documentation to support system accreditation / Authority to Operate (ATO) requirements. • Interpret noncompliance to determine the impact on levels of risk and/or overall effectiveness of the enterprise's cybersecurity program. • Track audit findings and recommendations to ensure that appropriate mitigation actions are taken. • Support necessary compliance activities (e.g., ensure that system security configuration guidelines are followed, compliance monitoring occurs). • Coordinate with geographically-distributed, multi-discipline teams to ensure compliance with all applicable requirements for cybersecurity are addressed. • Ensure that plans of action and milestones (POAM) or remediation plans are in place for vulnerabilities identified during risk assessments, audits, inspections, etc. and support necessary remediation/compliance activities. • Participate in recurring cybersecurity working group meetings. • Oversee and manage A&A activities to support their respective systems and security activities. • Work with program ISSOs and ISSMs to effectively aggregate technical details for government leadership including the cybersecurity lead, project managers, program managers to facilitate succinct and effective risk discussions and provide understanding of respective program risks. • Provide security support and evaluation to development teams to integrate information assurance/cyber security and remediate vulnerabilities throughout the System Life Cycle Development. • Lead the development, review and management of system Assess and Authorize documentation to ensure it is compliant with RMF standards. • Develop guidance and assists associates through the RMF phases. • Participate in ATT and ATO activities • Support the organization's program that implements information systems security technology and procedures. • Review DHS policy and develop local policy and procedures that implement the DHS Cybersecurity subprograms and initiatives. • Create and submit Plan of Actions & Milestones (POA&M) for review and approval by the Authorizing Official (AO) Requirements: • Bachelor's degree in a related field or equivalent experience • 8+ years demonstrated SP 800-37 RMF, NIST 800.53 experience • Familiarity with cybersecurity tools such as Aquasec and Sonar Qube • Must possess a Security + certification • Experience developing or ensuring development adheres to cybersecurity requirements and best practices (e.g., NIST controls) • Familiarity with commercial off-the-shelf solutions for specific security capabilities • DHS/CBP background investigation highly preferred • Exposure to AWS, Azure and Google Cloud • Host Base Security System (HBSS), Tenable Nessus Vulnerability Assessment, EMASS Benefits: • Equal Opportunity Employer Apply tot his job
Apply Now

Similar Opportunities

Chief Information Security Officer | Benevity | Remote (United States)

Remote

Information Systems Security Officer / Information Systems Security Manager – RS3 Program & Data Analytics

Remote

Information Systems Security Officer (ISSO) - Socorro, New Mexico

Remote

[Remote] Infrastructure Engineer(12+ years need)

Remote

Experienced Infrastructure Engineer - (100% Remote)

Remote

Infrastructure Engineer (Remote From Anywhere In CO) (OIT Only)

Remote

Blockchain Infrastructure Engineer - Remote at Sova Labs

Remote

Network Infrastructure Engineer; Wireless - Remote

Remote

Senior Infrastructure Engineer - Observability - Remote from Spain

Remote

Virtual Infrastructure Engineer – Advanced Cyber Training Environments

Remote

Director, Financial and Issues Communication job at CoreWeave in Bellevue, WA

Remote

Office Administrator/Legal Assistant in Hanover, NH

Remote

Experienced Manager, Cybersecurity Risk & Compliance – Web Application Security and Compliance Expert for Remote Work Environment

Remote

Experienced Customer Service Representative – Chat Support Specialist for E-commerce and Digital Services at blithequark

Remote

Experienced Remote Customer Service and Technical Support Representative – Delivering Exceptional Customer Experiences through Technical Expertise and Compassionate Support

Remote

Experienced Data Entry Specialist for Development and Construction Industry – Career Growth and Professional Development Opportunities

Remote

**Experienced IT Security Executive - Coca Cola Operations in Colombia: Leading Cybersecurity Projects and Operations**

Remote

Experienced Customer Support QA and Chatbot Specialist for Innovative Fintech Solutions

Remote

Mathematics Expert

Remote

**Experienced Remote Data Entry Specialist – Flexible Work Arrangements for College Students at arenaflex**

Remote
← Back to Home