Senior Information Systems Security Officer – ISSO

Job not on LinkedIn

🔥 2 minutes ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Keeper Security, Inc.

Keeper Security, Inc.

501 - 1000 employees

Founded 2011

🔒 Cybersecurity

☁️ SaaS

🏢 Enterprise

💰 Private Equity Round - Keeper Security on 2023-05

Cybersecurity • SaaS • Enterprise

Keeper Security, Inc. is a cybersecurity company that delivers cloud-first, zero-trust privileged access management (PAM) and password management solutions. Its KeeperPAM platform, secrets manager, endpoint privilege manager, and related products secure credentials, sessions, and remote access for enterprises, MSPs, and public-sector organizations using end-to-end encryption and a zero-knowledge architecture. Keeper operates primarily as a SaaS provider, emphasizes stringent compliance (FedRAMP, ISO, SOC 2, FIPS, PCI DSS, HIPAA), and is focused on preventing data breaches and managing privileged access across large-scale environments.

📋 Description

• Serve as the Information Systems Security Officer for assigned systems and environments • Maintain understanding of system architecture, data flows, boundaries, dependencies and security controls • Develop, review and maintain System Security Plans, control implementation statements, policies, procedures and supporting evidence • Support authorization activities including FedRAMP High, GovRAMP High, DoD Impact Level 5 and related government security requirements • Coordinate security control implementation and validation with Engineering, DevOps, IT, Security and system owners • Manage Plans of Action and Milestones, including findings, ownership, remediation tracking and closure evidence • Support continuous monitoring, including vulnerabilities, configuration compliance, control evidence, system changes and risk exceptions • Review system, infrastructure and application changes for security and compliance impacts • Coordinate responses to third-party assessors, auditors, government stakeholders and internal compliance reviews • Evaluate security findings and determine risk, impact, corrective actions and escalation • Support incident response, contingency planning, disaster recovery and tabletop exercises • Maintain accurate, current and assessment-ready audit evidence and documentation • Track security metrics, risks, findings and remediation progress and communicate status to GRC and technical leadership • Ensure compliance with data classification, access control, logging, encryption, configuration and vulnerability management requirements • Use permitted AI-enabled tools such as Claude or ChatGPT to support control analysis, documentation, evidence review, research and workflow efficiency

🎯 Requirements

• 5+ years of experience in information security, information assurance, cybersecurity compliance, system security or a related role • Experience serving as an ISSO, system security analyst, compliance engineer or similar role for regulated information systems • Strong knowledge of NIST SP 800-53 security controls and the Risk Management Framework • Experience supporting FedRAMP, GovRAMP, DoD Impact Level requirements or similar government authorization programs • Hands-on experience developing and maintaining System Security Plans, control narratives, Plans of Action and Milestones and assessment evidence • Experience supporting Authorization to Operate activities, continuous monitoring and recurring security assessments • Ability to understand cloud and application architectures and translate technical implementations into security control documentation • Understanding of vulnerability management, configuration management, access control, logging, encryption, incident response and system change management • Experience working with technical teams to implement and validate security requirements • Working knowledge of AWS cloud environments and cloud security concepts • Strong project management, documentation and organizational skills • Excellent written and verbal communication skills • Ability and willingness to use AI-enabled tools effectively and responsibly • Must be a U.S. Citizen • Ability to pass an enhanced security background check, including a financial vulnerability assessment • Preferred: experience with FedRAMP High, GovRAMP High or DoD Impact Level 5 environments • Preferred: experience with cloud-native SaaS products and AWS-based system architectures • Preferred: familiarity with automated compliance, evidence collection and continuous monitoring tools • Preferred: experience with NIST SP 800-37, NIST SP 800-53A, FIPS 199, FIPS 200 and related federal security guidance • Preferred: experience supporting SOC 2, ISO 27001 or other commercial compliance frameworks • Preferred: experience participating in third-party assessments or working directly with 3PAOs • Preferred: relevant certifications such as CISSP, CISM, CAP/CGRC, Security+ or CCSP • Preferred: experience in cybersecurity, identity security, privileged access management or another security-sensitive software environment

🏖️ Benefits

• Medical, Dental & Vision (inclusive of domestic partnerships) • Employer Paid Life Insurance & Employee/Spouse/Child Supplemental life • Voluntary Short/Long Term Disability Insurance • 401K (Roth/Traditional) • A generous PTO plan that celebrates your commitment and seniority (including paid Bereavement/Jury Duty, etc) • Above market annual bonuses

Apply Now

Similar Jobs

🔥 30 minutes ago

Cisco

10,000+ employees

🔧 Hardware

🔐 Security

🏢 Enterprise

Workday Security Administrator securing Cisco’s HR systems for U.S. employees. Managing access, audits, compliance, releases, and role-based security improvements.

🔥 32 minutes ago

Baptist Health

10,000+ employees

🏥 Healthcare

🤝 Non-profit

Lead cybersecurity engineer securing Baptist Health’s healthcare data, infrastructure, and cloud networks. Guiding vulnerability testing, incident response, security architecture, and penetration testing.

🔥 51 minutes ago

Beyond Finance

1001 - 5000

💸 Finance

💳 Fintech

👥 B2C

Senior Security Engineer hardening AWS infrastructure and software pipelines at Beyond Finance. Reducing cloud and application risk through Wiz, Terraform, vulnerability management, and WAF operations.

🔥 1 hour ago

Ondo Finance

51 - 200

₿ Crypto

💳 Fintech

💸 Finance

Senior Product Security Engineer securing Ondo Finance’s institutional-grade infrastructure for tokenized real-world assets. Driving threat modeling, secure code reviews, AppSec tooling, SSDLC, and bug bounty operations.

🔥 1 hour ago

Experian

10,000+ employees

💼 Consulting

📣 Marketing

📦 Logistics

Senior incident manager commanding Experian's enterprise cybersecurity response. Leading investigations, executive communications, recovery, and cyber-resilience improvements across global data and technology operations.