Назад
Company hidden
6 дней назад

ISSO (Mid-Level) (Cybersecurity)

Формат работы
onsite
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
ISSO (Mid-Level) (Cybersecurity) (NIST/FISMA): Supporting federal customers by assessing and monitoring systems, networks, applications, and cloud environments while maintaining compliance with cybersecurity requirements with an accent on vulnerability management, security documentation, and continuous monitoring. Focus on validating remediation, preparing NIST RMF artifacts, and coordinating risk and compliance activities for government systems.

Location: Washington, DC, USA

Company

Provides digital services, advanced analytics, artificial intelligence and machine learning, cybersecurity, and technology services to U.S. federal agencies.

What you will do

  • Perform security assessments of networks, systems, applications, and cloud environments.
  • Support incident response planning and conduct security training sessions.
  • Monitor compliance with federal security standards, regulations, and agency policies.
  • Conduct continuous monitoring, including vulnerability scanning, log analysis, and remediation tracking.
  • Prepare security assessment documentation, including SAPs, SARs, and POA&Ms, under the NIST RMF.
  • Validate remediation effectiveness through retesting, evidence review, and compliance verification.

Requirements

  • Bachelor's degree in Information Technology or Business, or an associate degree or equivalent relevant experience combined with a professional certification.
  • At least two years of information technology experience; two years of ISSO experience is preferred.
  • Experience planning and performing audits, reviewing or developing system security plans, interpreting vulnerability scans, and tracking mitigation activities.
  • Knowledge of NIST, FISMA, NIST SP 800-53 controls, FedRAMP baselines, and federal cybersecurity policies.
  • Active Secret clearance required.
  • Strong analytical, written, verbal communication, and stakeholder coordination skills.

Nice to have

  • CISSP or an equivalent cybersecurity certification, such as Security+.
  • Experience supporting federal contracts.
  • Experience coordinating with system owners, ISSOs, architecture teams, and cybersecurity leadership.

Culture & Benefits

  • Full benefits package including medical, dental, vision, life, short-term disability, and long-term disability insurance.
  • Eleven federal holidays and paid time off.
  • Performance-based incentives may be available.
  • 401(k) with company matching.
  • Flexible spending accounts, tuition assistance, and charitable contribution matching.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →