Information System Security Officer (ISSO)

LexisNexis Risk Solutions

Boca Raton (FL)

On-site

USD 115,000 - 192,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Annual incentive bonus
Country-specific benefits
Disability accommodations

Job summary

LexisNexis Risk Solutions in Boca Raton, FL is seeking an experienced Information System Security Officer to lead FedRAMP security and compliance for our cloud environment. You will partner with Engineering, Cloud Operations, DevOps, Product, and Compliance to maintain ATO, coordinate assessments, and drive continuous monitoring, remediation, and audit readiness.

The role requires strong NIST and RMF knowledge, hands-on cloud security experience, and the ability to communicate with federal

Qualifications

  • 5+ years information security or compliance experience
  • 3+ years supporting FedRAMP, FISMA, or federal compliance programs
  • Experience maintaining FedRAMP Moderate or High authorized environments
  • Experience with cloud platforms (AWS, Azure, or Google Cloud)

Responsibilities

  • Lead FedRAMP program management and maintain ATO
  • Coordinate annual assessments, 3PAO engagements, and security reviews
  • Manage POA&M items and remediation tracking
  • Collaborate with Engineering, Cloud Operations, DevOps, Product, and Compliance

Skills

FedRAMP
NIST 800-53
RMF
FISMA
Zero Trust
Vulnerability Mgmt
SIEM
IAM
Cloud Security

Education

Bachelor's degree in Cybersecurity/IS/CS/Engineering

Tools

AWS
Azure
Google Cloud

Job description

Are you passionate about driving security compliance in complex cloud environments and helping organizations maintain trusted relationships with government stakeholders?Do you enjoy collaborating across engineering, security, and operations teams to deliver secure, compliant solutions that make a meaningful impact?About the BusinessLexisNexis Risk Solutions provides customers with solutions and decision tools that combine public and industry specific content with advanced technology and analytics to assist them in evaluating and predicting risk and enhancing operational efficiency. We use the power of data and advanced analytics to help our customers make better, timelier decisions. By bringing clarity to information, we ultimately help make communities safer, insurance rates more accurate, commerce more transparent, business decisions easier and processes more efficient.You can learn more about LexisNexis Risk athttps://risk.lexisnexis.com/About our teamOur team is composed of highly technical professionals who thrive on solving complex security, cloud, and compliance challenges. We foster a collaborative, engineering-focused culture where team members are empowered to lead difficult initiatives, drive innovation, and deliver outcomes in highly regulated environments.About the RoleWe are seeking an experienced Information System Security Officer (ISSO) to lead and maintain the security and compliance posture of our recently obtained FedRAMP-authorized cloud environment. The ISSO will serve as the primary security compliance lead responsible for ensuring ongoing adherence to FedRAMP, NIST 800-53, FISMA, and organizational security requirements. This role will partner with Engineering, Cloud Operations, DevOps, Product, and Compliance teams to maintain authorization, manage continuous monitoring activities, support audits and assessments, and drive security improvements across the platform. The ideal candidate combines strong cybersecurity knowledge with hands-on experience managing FedRAMP-authorized systems in cloud environments such as Azure, AWS, or GCP.Key ResponsibilitiesFedRAMP Program ManagementServe as the designated ISSO for FedRAMP-authorized systems.Maintain the organization's Authority to Operate (ATO) and support ongoing compliance activities.Lead FedRAMP continuous monitoring activities, including monthly, quarterly, and annual reporting requirements.Coordinate annual assessments, independent audits, penetration testing, and security reviews with Third Party Assessment Organizations (3PAOs).Manage security-related communications with federal agencies, sponsoring organizations, and stakeholders.Risk & Security ManagementConduct security risk assessments and vulnerability analyses.Review, assess, and monitor Plan of Action & Milestones (POA&M) items through remediation.Evaluate security impacts of system changes and support Significant Change Request (SCR) submissions.Ensure proper implementation and effectiveness of NIST 800-53 security controls.Facilitate security reviews for architecture changes, new technologies, and cloud deployments.Compliance & DocumentationMaintain FedRAMP security documentation including:System Security Plan (SSP),Security Assessment Reports (SAR)POA&MConfiguration Management PlanIncident Response PlanContinuous Monitoring StrategyContingency Planning DocumentationReview and approve security documentation updates resulting from system changes.Ensure evidence collection and compliance artifacts are complete and audit-ready.Continuous MonitoringManage POA&M deliverables for the sponsor.Monitor security events, incidents, and compliance metrics.Validate remediation efforts for identified security findings.Ensure required security assessments are completed according to established schedules.Track compliance KPIs and report status to leadership.Security Operations & Incident ResponseParticipate in security incident investigations and response efforts.Coordinate with security operations teams to ensure timely identification and remediation of threats.Support root cause analysis and corrective action planning following incidents.Review security monitoring tools and processes to improve detection and response capabilities.Cross-Functional CollaborationPartner with Engineering and DevOps teams to integrate compliance into system development and deployment processes.Provide security guidance throughout the SDLC.Support cloud migration, modernization, and technology transformation initiatives.Ensure compliance and security awareness training meet FedRAMP requirements.Matrix manage resources participating in the FedRAMP Program.Required QualificationsEducationBachelor's degree in Cybersecurity, Information Systems, Computer Science, Engineering, or related field.Equivalent work experience may be considered in lieu of degree requirements.Experience5+ years of information security, cybersecurity, or compliance experience.3+ years supporting FedRAMP, FISMA, or federal compliance programs.Experience maintaining FedRAMP Moderate or High authorized environments.Experience supporting security assessments, audits, and continuous monitoring activities.Experience with cloud platforms such as AWS, Azure, or Google Cloud.Technical KnowledgeStrong understanding of:FedRAMP requirementsNIST SP 800-53NIST 800-37 Risk Management Framework (RMF)FISMANIST 800-171Zero Trust Architecture principlesVulnerability management processesSecurity operations and incident responseFamiliarity with security technologies including:SIEM platformsVulnerability scannersEndpoint detection and response (EDR)Identity and Access Management (IAM)Cloud-native security servicesPreferred QualificationsCISSP, CISM, GSLC, CAP, or equivalent cybersecurity certification.FedRAMP-specific experience acting as:ISSOSecurity Compliance ManagerFedRAMP Program ManagerExperience supporting federal agencies or government contractors.Knowledge of automated compliance platforms and Governance, Risk, and Compliance (GRC) tools.Experience leveraging AI and automation to streamline compliance reporting, evidence collection, and POA&M management.Experience with AWS GovCloud or Azure Government environments.Risk benefit statementLearn more about the LexisNexis Risk team and how we work https://relx.wd3.myworkdayjobs.com/RiskSolutions/page/21c296c982531000b79663f3194b0000U.S. National Base Pay Range: $115,400 - $192,300. Geographic differentials may apply in some locations to better reflect local market rates.This job is eligible for an annual incentive bonus.We know your well-being and happiness are key to a long and successful career. We are delighted to offer country specific benefits. Click here to access benefits specific to your location.We are committed to providing a fair and accessible hiring process. If you have a disability or other need that requires accommodation or adjustment, please let us know by completing our Applicant Request Support Form or please contact 1-855-833-5120.Criminals may pose as recruiters asking for money or personal information. We never request money or banking details from job applicants. Learn more about spotting and avoiding scams here .Please read our Candidate Privacy Policy .We are an equal opportunity employer: qualified applicants are considered for and treated during employment without regard to race, color, creed, religion, sex, national origin, citizenship status, disability status, protected veteran status, age, marital status, sexual orientation, gender identity, genetic information, or any other characteristic protected by law.USA Job Seekers:EEO Know Your Rights .
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Systems Engineer II
Senior Systems Engineer II

LexisNexis Risk Solutions • Alpharetta (GA), Northern (KY)

Hybrid
USD 95,000 - 159,000
Annual incentive bonus
Benefits by location
Software Engineer III
Software Engineer III

LexisNexis Risk Solutions • Miamisburg (OH)

On-site
USD 79,000 - 131,000
Site Reliability Engineer III
Site Reliability Engineer III

LexisNexis Risk Solutions • Alpharetta (GA)

On-site
USD 87,000 - 144,000
Site Reliability Engineer II
Site Reliability Engineer II

LexisNexis Risk Solutions • Pittsburgh

Hybrid
USD 71,000 - 120,000
Health benefits
401(k) with match
Employee stock purchase plan
Site Reliability Engineer II
Site Reliability Engineer II

LexisNexis Risk Solutions • Northern (KY)

Hybrid
USD 72,000 - 119,000
Health benefits
401(k) with match
Wellbeing program
+3
Business Consultant Specialist
Business Consultant Specialist

LexisNexis Risk Solutions • Boca Raton (FL)

On-site
USD 86,000 - 145,000
Medical Insurance
Life Insurance
Flexible Benefits Plan
+3
Information Security Systems Officer (ISSO) - Senior Consultant
Information Security Systems Officer (ISSO) - Senior Consultant

Guidehouse • Springfield (VA)

On-site
USD 120,000 - 160,000
Mobility Stipend
Tuition Reimbursement
Parental Leave & Adoption Assistance
+1
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

Illumination Works LLC. • Northern (KY)

Hybrid
USD 110,000 - 160,000
Senior Site Reliability Engineer II
Senior Site Reliability Engineer II

LexisNexis Risk Solutions • Town of Florida (NY), Northern (KY)

Hybrid
USD 105,000 - 175,000
Information System Security Officer (ISSO)
Information System Security Officer (ISSO)

Via Logic LLC • Oklahoma City (OK)

On-site
USD 90,000 - 120,000