Назад
Company hidden
3 дня назад

Geospatial ISSO (Cybersecurity)

Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Geospatial ISSO (Cybersecurity): Managing cybersecurity compliance, risk, and authorization for geospatial systems supporting the Department of Homeland Security with an accent on NIST RMF and FISMA frameworks. Focus on maintaining System Security Plans (SSP), executing continuous monitoring (ISCM), and securing AWS cloud environments for ArcGIS Enterprise.

Location: Remote (Must be able to satisfy DHS suitability and Public Trust Clearance requirements)

Company

hirify.global provides technical services and software solutions supporting federal agencies, including the Department of Homeland Security.

What you will do

  • Serve as the principal advisor to the GII System Owner on cybersecurity requirements, risk, compliance, and authorization posture.
  • Interpret and apply DHS MD 4300A, FISMA, OMB, and NIST requirements throughout the Systems Engineering Life Cycle.
  • Maintain the System Security Plan (SSP) and coordinate authorization artifacts for ATO/ATC activities.
  • Execute the Information Security Continuous Monitoring (ISCM) program and adjudicate vulnerability scan findings.
  • Collaborate with engineers, cloud teams, and DHS security organizations to identify and remediate control gaps.
  • Manage security controls for ESRI Portal, ArcGIS Online, AWS-hosted infrastructure, and custom geospatial applications.

Requirements

  • Must hold or be able to obtain a Public Trust Clearance and satisfy DHS suitability and background investigation requirements.
  • Bachelor’s or Master’s degree in IT, Computer Science, Geography, or a related field.
  • 6+ years of cybersecurity experience, including 5+ years performing ISSO, RMF, or federal compliance responsibilities.
  • Active certification in CISSP, CISM, GSLC, CAP/CGRC, or CASP+.
  • Expertise in implementing NIST SP 800-53 security controls and maintaining POA&Ms.
  • Working knowledge of ArcGIS Enterprise, ESRI Portal, and securing AWS cloud environments.

Nice to have

  • Experience with DHS ISVM processes and Swimlane or similar vulnerability workflow platforms.
  • Knowledge of privacy compliance, interconnection agreements, Section 508, IPv6, or DevSecOps.
  • Experience with mission-critical FISMA Moderate/High systems.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →