Lead ISSO ensuring security compliance for multi-tenant cloud and hybrid environments at Agile Defense. Responsible for vulnerability analyses and risk management decision-making expertise.
Responsibilities
Expertise in applying the Risk Management Framework (RMF) and NIST 800-series standards to protect multi-tenant cloud and hybrid-enterprise environments.
Conduct deep-dive vulnerability analyses and engineering remediation plans that satisfy rigorous FISMA requirements.
Translate technical security gaps into clear, executive-level narratives that facilitate informed risk-management decisions.
Extensive experience with security authorization processes, such as Authorization/Certification & Accreditation (A&A) and Authorization to Operate (ATO).
Strong understanding of current security tools, multi-tenant cloud environments, hardware/software security implementation, communication protocols, and encryption techniques.
Analyze security vulnerabilities, provide comprehensive assessments, and develop effective remediation instructions.
Present complex security information clearly and effectively to diverse audiences.
Requirements
Bachelor’s degree in computer science, Engineering, STEM, Information Technology, or Cybersecurity
A minimum of 8 years of experience in information security, with at least 5 years specifically in a lead ISSO or similar leadership capacity on large complex USG programs.
One or more of the following certifications required:
Active Certified Information Systems Security Professional (CISSP)
Active Certified Information Security Manager (CISM)
Other relevant certifications (e.g., CCSP, CEH) may be considered.
Active CISSP
Active Project Management Professional (PMP) certification
Active ISC2 Certified in Governance, Risk and Compliance (CGRC)
Knowledge of FedRAMP
Knowledge of A-123 audit Experience and Expertise with GRC tools such as CSAM
Embedded Security Software Architect developing secure cryptographic libraries for embedded applications at NXP Semiconductors. Collaborating with engineering teams to ensure high quality and integration.
Coordinate security governance tasks at Vivo to strengthen compliance and risk management. Focus on incident management and develop security maturity within the organization.
Safety Technician at TIM responsible for compliance with health and safety regulations and conducting inspections, training, and audits. Focused on workplace safety and managing emergency processes in Brazil.
Security Administrator providing personnel security and access control support for an Intelligence Community customer. Ensuring compliance with security regulations and managing security records in a fast - paced environment.
Industrial Security Senior Manager overseeing a team at Boeing to implement security policies and mitigate risks. Responsible for compliance, training, and liaising with security representatives.
Director of Engineering, Security in charge of Nexxen's security program and governance. Leading secure practices and collaborating with executives to ensure risk reduction and compliance.
Health and Safety Manager designing and implementing safety measures in occupational health. Collaborating with organizational areas to manage risk factors and ensure workplace safety.
Business Development Representative at xorlab driving proactive lead generation in cybersecurity market. Collaborating closely with sales and marketing team to optimize lead development processes.
Cyber Security Architect responsible for IT security compliance and cyber - risk management at a Swiss utility firm. Engaging with cross - functional teams to implement 'Secure - by - design' strategies.