Security Authorization Specialist

🕒 il y a 7 jours

🗣️🇺🇸🇬🇧 Anglais requis

Postuler Maintenant
Trouver des Emplois à Distance Similaires

📊 Vérifiez votre score de CV pour ce poste

Améliorez vos chances d'obtenir un entretien en vérifiant votre score de CV avant de postuler.

Logo of Second Front Systems

Second Front Systems

51 - 200 employés

☁️ SaaS

🎖️ Défense

🏛️ Gouvernement

SaaS • Defense • Government

Second Front Systems est une entreprise d'utilité publique soutenue par des sociétés de capital-risque, proposant des solutions logicielles essentielles principalement aux démocraties du monde entier. Leur suite de produits, comprenant le 2F Suite, 2F Workshop, 2F Game Warden et 2F Frontier, simplifie et accélère le processus de développement et de livraison de logiciels. L'entreprise est reconnue par des fournisseurs de logiciels de premier plan et des agences gouvernementales pour ses solutions sécurisées DevSecOps, permettant un déploiement sécurisé de logiciels sur des réseaux classifiés et non-classifiés. Leurs offres incluent des outils pour le développement sécurisé, l'accréditation logicielle, l'hébergement cloud gouvernemental et le déploiement en périphérie, avec un accent particulier sur le soutien aux secteurs gouvernementaux et de la défense. Second Front Systems collabore avec des partenaires pour rendre les technologies émergentes plus accessibles, accélérant les processus d'accréditation et de conformité et offrant des solutions pouvant fonctionner dans des environnements distants ou déconnectés, tels que les drones et les véhicules.

Description

• Lead Authorization Work streams: Independently drive the end-to-end authorization lifecycle for Game Warden across FedRAMP and US agency ATO packages • Artifact Ownership: Author, refine, and maintain high-quality System Security Plans (SSPs), control implementation narratives, Plans of Action & Milestones (POA&Ms), and supporting authorization artifacts • Proactive Continuous Monitoring: Manage day-to-day continuous monitoring activities, including monthly POA&M updates, vulnerability and patch reporting, significant change reviews, and annual control assessments • Technical Point of Contact: Serve as the primary front-line technical point of contact for 3PAOs, agency reviewers, and sponsor authorization officials during assessments, readiness reviews, and audits • Engineering Partnership: Partner closely with Product, Engineering, Security Operations, and Cybersecurity Assessment teams to map complex cloud-native controls to FedRAMP and NIST 800-53 requirements • Translate Policy to Tech: Act as a bridge between compliance and engineering • Leverage GRC Automation: Utilize and help optimize our GRC and evidence automation tooling to streamline control mapping and evidence collection • Process Evolution: Contribute to the continuous improvement of 2F’s authorization processes, tooling, and evidence workflows as we scale our portfolio across frameworks and environments

🎯 Exigences

• 7+ years of experience in security compliance, cybersecurity authorization, or GRC work • Strong, practical working knowledge of NIST 800-53 (Rev 4/5), NIST 800-37 (RMF), and FedRAMP-specific guidance and templates • Solid understanding of modern cloud environments and how cloud-native patterns (AWS services, containers, Kubernetes, CI/CD pipelines) map to technical controls • Proven success supporting 3PAO assessments, annual reviews, or agency ATO efforts from the vendor or integrator side • Exceptional written communication skills; a proven ability to produce assessor-ready technical documentation and clear control narratives • Active U.S. Top Secret (TS) security clearance required; eligibility for access to Sensitive Compartmented Information (SCI) required • Active professional security certification such as CISSP, CISM, or Security+

🏖️ Avantages

• Competitive Salary • 100% Healthcare, vision and dental coverage • 401(k) + 3% company contribution • Additional benefit perks (One Medical membership, mental health resources and family planning assistance) • Equity incentive plan • Tech + office supplies stipend • Annual professional development stipend • Flexible paid time off + federal holidays off • Parental leave • Work virtually, near one of our hub locations • Referral Bonus

Postuler Maintenant

Emplois Similaires

🕒 il y a 7 jours

CDW

10 000+ employés

💼 Conseil

🏥 Santé

📚 Éducation

Senior Consulting Engineer at CDW managing the planning and implementation of physical security systems. Collaborating with account managers and technical teams to ensure successful project delivery.

🇺🇸 États-Unis – Télétravail

💵 $107 300 - $150 180 / an

💰 Post-IPO Equity en 2015-07

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🦅 Parrain de Visa H1B

info

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 7 jours

SERVISS - HUBZone Certified

2 - 10

🔒 Cybersecurity

🤖 Intelligence artificielle

🏛️ Gouvernement

Elastic Security Engineer supporting a Federal DoD SIEM program. Hands-on engineering role to design, build, secure, maintain, optimize, and document Elastic Stack solutions in a federal environment.

🇺🇸 États-Unis – Télétravail

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

Ansible

ElasticSearch

Logstash

🕒 il y a 7 jours

SunStream Business Services

51 - 200

🤝 B2B

🏦 Banque

🏢 Entreprise

Infrastructure Security Platform Engineer at SunStream responsible for engineering and administering core security platforms while enhancing security measures. Collaborating across teams to ensure compliance and secure configuration.

🇺🇸 États-Unis – Télétravail

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

Cloud

Firewalls

🕒 il y a 7 jours

Baptist Health

10 000+ employés

🏥 Santé

🤝 À but non lucratif

Director of Enterprise Security Architecture overseeing diverse technology domains for Baptist Health. Leading security architecture standards and collaborating with cross-functional partners in technology.

🇺🇸 États-Unis – Télétravail

💵 $203 661 - $264 760 / an

⏰ Temps Plein

🔴 Expert

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 7 jours

E-Verify Program

501 - 1000

🏛️ Gouvernement

👥 RH Tech

📋 Conformité

Lead Penetration Testing engagements across FSA systems for SkyePoint Decisions' cybersecurity support services. Overseeing planning, execution, and mentoring junior testers to ensure compliance with security standards.

🇺🇸 États-Unis – Télétravail

💵 $130 000 - $160 000 / an

⏰ Temps Plein

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis