Information Systems Security Officer managing information assurance for federal clients in Suitland, MD. Overseeing security assessments and guiding compliance in cloud environments.
Responsibilities
Serve as an Information Assurance SME for systems development projects in a cloud-based environment.
Review proposed systems, networks, and software for potential security risks and advise on secure product selection and implementation.
Define system scope and required level of detail for security plans and documentation.
Manage and analyze Change Requests (CRs), assessing security impact and required updates to system posture.
Provide Security Assessment & Authorization (SA&A) support for new and existing systems.
Identify, develop, and maintain required security artifacts for authorization packages.
Prepare and review System Security Plans (SSPs), including FIPS 199, FIPS 200, and E-Authentication documentation.
Coordinate and participate in Security Test & Evaluation (ST&E) activities and review ST&E reports.
Perform vulnerability assessment reviews and generate reports for System Owners and key stakeholders.
Validate system hardening, patching, and compliance with applicable security requirements and checklists.
Report status, findings, and risk posture to the Program Manager and Deputy Program Manager.
Requirements
Active Secret clearance (REQUIRED).
U.S. Citizenship required.
Bachelor's degree in a technical field (e.g., Engineering, Computer Science) or 10 years of experience in IT systems engineering or IT security architecture.
6+ years of hands-on experience in information assurance or information security.
Demonstrated ISSO experience supporting FISMA systems.
Strong expertise in cloud architecture, cloud engineering, and cloud compliance.
Ability to work in a hybrid environment (on-site and telework).
Excellent interpersonal skills with demonstrated ability to collaborate across teams and organizations.
Strong verbal and written communication skills in English.
Certifications (Required) CISSP or equivalent security certification.
Job title
Information Systems Security Officer – SECRET CLEARANCE
Security Engineer at Hawk - Eye responsible for application and cloud security reviews and audits. Collaborating with cross - functional teams to enhance security practices across products and infrastructure.
Técnico Superior de Segurança no Trabalho na Bureau Veritas, elaborando e avaliando planos de prevenção. Responsável por formação, estudos de risco e ações de emergência.
Professional managing a development team for cryptographic key management in payment terminals. Overseeing software security and product functions at Gertec, a tech solutions company.
Cloud Security Manager developing client relationships and engaging in cybersecurity projects. Focused on Microsoft technologies, managing client needs and project delivery for NVISO.
Application Security Specialist focused on securing applications in a Swiss critical infrastructure company. Involves risk assessment, security enhancement, and collaboration with cyber security teams.
Senior Manager in Software Engineering focusing on Cyber Security. Leading security architecture and application security for Caterpillar while mentoring teams.
Compliance Program Manager responsible for day - to - day execution of compliance programs at healthcare data company. Managing SOC 2, ISO 27001, and HITRUST compliance operations with cross - functional coordination.
Loss Prevention Store Security Agent at TJX Canada ensuring safety and security in stores. Involving theft prevention, surveillance, and collaboration with investigators in retail settings.