Information Systems Security Officer managing security assessments and A&A activities for government systems. Seeking a candidate with strong security documentation expertise and DIACAP/RMF experience.
Responsibilities
Conduct security assessment, and information system security oversight activities in accordance with NIST 800.53 that support systems from the perspective RMF requirements.
Review systems to identify potential security weaknesses and recommend improvements to amend vulnerabilities, implement changes, and document upgrades.
Maintain responsibility for managing cybersecurity risk from an organizational perspective.
Identify organizational risks, prioritize those risks, and maintain a risk registry for escalating and presenting those risks to senior leadership.
Provide security guidance and IS validation using the National Institute of Standards and Technology (NIST) RMF, DoC, and local security policies.
Provide subject matter expertise for cyber security and trusted system technology.
Apply advanced technical knowledge and analysis of specialized functional areas in task requirements to develop solutions to complex problems.
Research, write, review, disposition feedback, and finalize recommendations regarding cyber security policy, assessment and authorization assessments (A&As), security test and evaluation reports, and security engineering practices and processes.
Support security authorization activities, including transitioning from the legacy Information Assurance Certification and Accreditation Process (DIACAP) to compliance with the DoC RMF.
Requirements
Bachelor’s Degree.
A minimum of five (5) years experience as an Information Assurance (IA) Analyst, ISSE, ISSO, or similar role in ATO package development, including generating security documentation for requirements, security control assessment, STIG and IAVA compliance, Standard Operating Procedures, test results, etc.
eMASS experience.
Professional security certification such as: CCNA Security, CySA+, GICSP, GSEC, CompTIA Security+ CE, SSCP, or higher.
Strong desktop publishing skills using Microsoft Word and Excel.
Experience with industry writing styles such as grammar, sentence form, and structure.
Ability to multi-task in a deadline-oriented environment.
Benefits
Health, Dental, and Vision
Life Insurance
401k
Flexible Spending Account (Health, Dependent Care, and Commuter)
Paid Time Off and Observance of State/Federal Holidays
Principal Technology Risk & Control Officer managing technology risk assessments and controls at Northern Trust, a leading financial institution. Collaborating across multiple technology domains to ensure alignment with business objectives and regulatory expectations.
Senior Mobile Developer focused on Information Security developing mobile applications for Android and iOS using Flutter. Ensuring adherence to best security practices and developing secure solutions.
Application Security Architect with software development and application security experience needed for WEX. Responsible for securing applications by guiding and assessing security solutions.
Network Engineer specialized in Security managing systems for Arauco, based in Santiago. Overseeing security protocols and configuration of security equipment in a corporate setting.
Security Administrator managing USAF unit - level security policies and procedures at Offutt AFB. Performing various administrative tasks in support of senior staff and commanders.
OT Cybersecurity Engineer ensuring secure operations of production environment at Mercedes - Benz Türk. Overseeing cybersecurity measures and collaborating with IT and planning teams.
OT Cybersecurity Engineer ensuring secure operation of industrial production environments for Mercedes - Benz Türk in Istanbul and Aksaray. Collaborating with cross - functional teams to uphold cybersecurity standards.
Data Center Security Engineer focusing on securing infrastructure for AI systems. Collaborating with teams on OT and IT security architecture and incident response.
Security Engineer managing end - to - end security for Pylon's mortgage API platform. Locking down sensitive customer data and drafting best practices for security policies.
Account Manager developing strategic customer relationships in the Cybersecurity and Insurance sector. Collaborating with insurers and partners to enhance service offerings.