Назад
Company hidden
7 дней назад

Information Systems Security Officer (RMF/Cybersecurity)

Формат работы
onsite
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Information Systems Security Officer (RMF/Cybersecurity): Managing authorization lifecycles and cybersecurity operations for classified and unclassified information systems with an accent on RMF compliance, security documentation, continuous monitoring, and vulnerability management. Focus on maintaining SSPs, SCTMs, POA&Ms, and eMASS records, coordinating assessments, and resolving security findings across classified network enclaves.

Location: Reston, VA, United States

Company

hirify.global is an employee-owned company delivering advanced mathematics, computer science, physics, and engineering solutions for challenging national security and research problems.

What you will do

  • Manage the Assessment and Authorization lifecycle for classified and unclassified systems under RMF, JSIG, NIST SP 800-53, DISA STIG, and DoD/DCSA policies.
  • Develop and maintain SSPs, SCTMs, STIG packages, POA&Ms, risk assessments, and eMASS records.
  • Evaluate system changes and prepare environments for internal reviews, customer assessments, inspections, and recurring authorization activities.
  • Execute continuous monitoring and vulnerability management across classified network enclaves, tracking findings through remediation and closure.
  • Administer access, removable media, data transfers, classified information handling, and secure equipment movement according to security requirements.
  • Coordinate with the ISSM, CISO, program leadership, vendors, government representatives, SCAs, and AOs on cybersecurity risk and compliance.

Requirements

  • Active Top Secret clearance with a current SSBI or Tier 5 investigation.
  • At least three years of cybersecurity, system administration, or information assurance experience supporting classified systems under DoD RMF.
  • Hands-on administration of Windows server and desktop environments in classified domains.
  • Experience contributing to RMF authorization artifacts, including SSPs, SCTMs, POA&Ms, and eMASS records.
  • Active DoD 8140 IAM Level II certification or higher, such as CASP+ CE, CAP, CISM, or CISSP.
  • Working knowledge of NIST SP 800-53 controls and experience with continuous monitoring, vulnerability management, or cybersecurity hygiene across classified enclaves.

Nice to have

  • Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, or a related field.
  • Dedicated ISSO experience or independent ownership of RMF authorization packages.
  • Experience with DCSA authorization processes and direct interaction with SCAs or AOs in DCSA or DARPA contexts.
  • Experience with multiple authorization packages, SCI or SAP environments, Linux, system hardening, STIG compliance, NISPOM, DFARS 252.204-7012, FISMA, or Cisco network administration.

Culture & Benefits

  • Work on mission-critical national security and advanced research programs.
  • Collaborate with cybersecurity, engineering, program, and government stakeholders.
  • Medical, dental, and vision insurance with FSA and HSA options.
  • Paid time off, nine observed holidays, two floating holidays, and paid parental leave.
  • Tuition and professional development reimbursement, annual salary reviews, profit sharing, and traditional and Roth 401(k) options.
  • Gym and fitness reimbursement, employee assistance, and employee referral programs.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →