Enable job alerts via email!

Information Systems Security Officer II

SiloSmashers

Arlington (VA)

Remote

USD 80,000 - 100,000

Full time

30+ days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An exciting opportunity awaits a dedicated Information Systems Security Officer to join a dynamic team focused on ensuring compliance with security regulations and standards. This role involves evaluating and implementing security controls, conducting risk assessments, and preparing documentation for federal audits. The ideal candidate will have a strong background in IT security within the federal government and possess excellent communication skills to engage with stakeholders effectively. Embrace the chance to contribute to vital security initiatives in a fully remote environment with occasional on-site visits, making a real impact in the field of information security.

Qualifications

  • 4+ years of IT security experience, particularly in federal government.
  • Knowledge of FISMA, RMF, and NIST Special Publications 800 series.

Responsibilities

  • Implement and evaluate security controls for compliance with federal regulations.
  • Prepare Security Authorization Packages and manage remediation efforts.

Skills

Risk Management Framework
NIST Special Publications
IT Security Risk Analysis
Federal Government Compliance
Security Authorization Packages
Communication Skills
GRC Tool (CSAM)

Education

BS/BA in Computer Science
CISSP Certification
CGRC Certification

Tools

FedRamp systems (Azure, AWS, GCP)

Job description

Summary of Position

SiloSmashers is looking for an Information Systems Security Officer (ISSO) to contribute to an exciting new opportunity. The ISSO will join a team of 8-10 ISSOs ensuring compliance with internal policies, controls, and standards, as well as client and regulatory security requirements. This includes evaluating technological, operational, and process controls to evaluate the design and implementation of security controls. The individual will be responsible for supporting risk, compliance management and reporting to include risk assessments, System Security Plans, Security Assessment Reports, Vulnerability Assessment Reports, POA&M management, ISO 27001 requirements, NIST 800 Series Special Publications, Federal Information Processing Standards (FIPS), FedRAMP Authorizations, and other regulatory compliance requirements. The individual will be responsible for assisting in federal audits that may occur during their employment.


Principle Duties and Responsibilities

  • Must have 4+ years' experience implementing Risk Management Framework in the federal government.
  • Using the NIST Risk Management Framework (RMF) of Information security controls to measure the effectiveness of controls and identify control gaps.
  • Ensure compliance to guidance, standards and regulations such as NIST Special Publications, FIPS, FedRAMP, and other federal regulations and policies.
  • Preparing Security Authorization Packages and including documentation and Security Authorizations memorandums.
  • Identify, assess, and prioritize identified risks.
  • Collect evidence, artifacts, and document findings to support conclusions.
  • Report on compliance with internal policies, controls, and standards; provide recommendations for remediation of identified deficiencies.
  • Communicate regularly with stakeholders to provide updates on project status and address any issues or concerns.
  • Track and report on Plans of Action and Milestones (POAMs) (i.e., findings/deficiencies to closure).
  • Coordinate third-party risk assessments and IT audits.
  • Manage remediation efforts and report on the status of control deficiencies.
  • Support security initiatives and global policy adherence and awareness efforts.
  • Provide security expertise to business units and key stakeholders.
  • Enforce policy adherence and manage formal policy exception requests.
  • Provide timely status updates/reporting on assessments and assigned projects.

Required Skills, Knowledge and Experience

  • BS/BA in Computer Science, Information Systems, Software Engineering or other related analytical, scientific or technical discipline.
  • CISSP or CGRC (previously Certified Authorization Professional) Certifications highly preferred.
  • 4+ years of experience in IT security, including SA&A and/or IT security risk analysis, preferably in support of the Federal Government.
  • Knowledge of Federal Government SA&A practices and policies, particularly FISMA, RMF and NIST Special Publications 800 series.
  • 3+ years of experience with FedRamp systems (Azure, AWS, GCP).
  • Ability to work independently and collaborate with application developers, engineers and others.
  • Must be motivated and results oriented.
  • Effective written and oral communication skills.
  • Previous Federal Government experience is a plus.
  • Experience with a GRC Tool (CSAM) is highly desirable.

Security Clearance

  • Minimum Secret

Work Location

  • 100% remote with occasional on-site visits as needed.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Information Systems Security Manager

Wood River Federal

Silver Spring

Remote

USD 75,000 - 110,000

Yesterday
Be an early applicant

Information System Security Officer

TIAG

Frederick

Remote

USD 70,000 - 110,000

5 days ago
Be an early applicant

Safety Manager I, II, or III

IEA Constructors

Delta

Remote

USD 60,000 - 100,000

7 days ago
Be an early applicant

Information Systems Security Officer (ISSO) III

General Dynamics - IT

Bedford

On-site

USD 98,000 - 134,000

8 days ago

Information Systems Security Officer

Kratos Defense & Rocket Support Services, Inc

Glen Burnie

On-site

USD 96,000 - 122,000

9 days ago

Information Systems Security Manager – Level 2

CACI International

Annapolis

On-site

USD 94,000 - 199,000

2 days ago
Be an early applicant

JBLM Information Systems Security Officer (ISSO)

Northrop Grumman

Washington

On-site

USD 89,000 - 135,000

15 days ago

Information Systems Security Manager

Kapili Services, LLC

Town of Texas

Hybrid

USD 70,000 - 110,000

Yesterday
Be an early applicant

Cyber Security Engineer-Information Systems Security Officer - Senior

Modern Technology Solutions, Inc.

Bedford

On-site

USD 80,000 - 110,000

11 days ago