Назад
Company hidden
5 дней назад

Senior Information Systems Security Officer (ISSO) (Cybersecurity)

123 206 - 255 319$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Information Systems Security Officer (ISSO) (Cybersecurity): Leading RMF activities and preparing accreditation packages for a digital evidence platform with an accent on NIST SP 800-53 Rev. 5 controls, security documentation, and continuous monitoring. Focus on assessing system changes, coordinating audits and penetration tests, managing POA&M remediation, and guiding engineering teams through federal security requirements.

Location: Remote within the United States, with occasional travel to Washington, DC as needed

Salary: $123,206.06–$255,318.53 per year

Company

hirify.global delivers software and systems engineering solutions for the U.S. Federal Intelligence Community and Federal Government clients.

What you will do

  • Lead all Risk Management Framework activities for a newly awarded digital evidence platform, from categorization through authorization and continuous monitoring.
  • Design, implement, validate, and document NIST SP 800-53 Rev. 5 security and privacy controls.
  • Develop and maintain SSPs, SARs, POA&Ms, incident response plans, and continuous monitoring strategies.
  • Coordinate security control assessments, penetration tests, vulnerability scans, compliance audits, and remediation tracking.
  • Evaluate system changes, architecture updates, and integrations for security impact and control modifications.
  • Act as the primary security liaison for system owners, engineers, assessors, authorizing officials, and other stakeholders while mentoring junior ISSOs and analysts.

Requirements

  • Bachelor’s degree in cybersecurity, information assurance, or a related field.
  • 10+ years of hands-on ISSO or security compliance experience.
  • U.S. citizenship and Public Trust clearance required.
  • Deep knowledge of NIST SP 800-53 Rev. 5, RMF packages, ongoing authorization, and federal cybersecurity guidance.
  • Experience with enterprise IT systems, networks, operating systems, identity platforms, cloud environments, and security tools such as SIEMs and vulnerability scanners.
  • Strong communication skills and the ability to translate control requirements into technical implementations.

Nice to have

  • CISSP, CISM, CAP, CCSP, or equivalent certification.
  • Experience supporting federal agencies, regulated industries, or FedRAMP systems.
  • Knowledge of NIST SP 800-30, 800-37, 800-53A, and 800-137.
  • Experience with hybrid or cloud-native environments, security control inheritance, DevSecOps, or automated compliance tooling.

Culture & Benefits

  • Medical insurance with company cost sharing for employees and dependents.
  • Company-paid dental, vision, short-term disability, and long-term disability insurance.
  • 401(k) plan with a company match and immediate vesting.
  • Paid leave, holidays, life and AD&D insurance.
  • Tuition and training reimbursement.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →