A leading IT consulting firm in Herndon, VA is seeking a Mid-Senior level Information Systems Security Officer (ISSO) to develop and implement security architectures. The ideal candidate will have extensive experience with cloud technologies, FedRAMP processes, and knowledge of various security compliance frameworks. This full-time role requires excellent communication skills and the ability to work independently in a fast-paced environment.
Qualifications
Experience with Cloud technologies, especially AWS, Azure, and/or Google Cloud.
Familiarity with Testing, Development, Staging, and pre-production environments requiring cybersecurity support.
Demonstrated ability to coordinate multiple tasks.
Responsibilities
Develop and implement information security architectures and standards.
Write and execute security documentation and authorization packages.
Make presentations on complex technical topics.
Skills
Experience with Cloud technologies
Excellent communication skills
Knowledge of Privacy Act and GDPR
Ability to coordinate multiple tasks
Tools
FedRAMP documentation
NIST risk management framework
Security documentation
Job description
Information Systems Security Officer (ISSO)
Washington, DC
Experience with Cloud technologies, especially AWS, Azure, and/or Goggle Cloud, desirable
Experience with FedRAMP and/or other authorization processes and NIST risk management framework
Experience in developing, evaluating, and implementing information security architectures, technologies, standards, and practices to secure applications and IT systems, desirable
Experience in development of security documentation such as SSP, policies, procedures, etc.
Flexible, self-motivated, and able to work independently in a fast paced environment
Excellent communication skills and the proven ability to work effectively with all levels of IT and business management.
Familiarity with Testing, Development, Staging, and pre-production environment requiring cyber security support.
Knowledge of Privacy Act, GDPR, and other data privacy frameworks.
Experience in writing or executing system security documentation, authorization to operate packages, POA&Ms, and policies.
Experience in reviewing/editing/writing technical documents
Skill in preparing and making written and oral presentations of complex technical nature.
Demonstrated ability to coordinate multiple tasks
Professional industry certifications in area of expertise.
Knowledge of Best Practice and security guides (ex. NIST 800-53 rev 4, NIST 800-53, FedRAMP)
Knowledge of security frameworks to include RMF, ISO, HIPAA, FedRAMP and HIPAA
ISC CISSP or ISACA CISM or equivalent certification