Information System Security Officer – ISSO

Job not on LinkedIn

🔥 0 minutes ago

🦌 Connecticut, Florida, +11 more states – Remote

infoinfo

💵 $115.4k - $192.3k / year

⏰ Full Time

🟡 Mid-level

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

🦅 H1B Visa Sponsor

infoinfo

👻 Ghost score 0%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of LexisNexis

LexisNexis

10,000+ employees

Founded 1970

⚖️ Legal

💼 Consulting

🏥 Healthcare

💰 Corporate Round on 2021-06

Legal • Consulting • Healthcare

LexisNexis is a provider of professional solutions tailored for law firms, corporations, government agencies, and academic institutions. It offers legal solutions, news, and business insights. LexisNexis also provides risk solutions for companies and government agencies, focusing on data analytics for compliance, customer acquisition, fraud detection, health outcomes, identity solutions, investigations, receivables management, risk decisioning, and workflow optimization. As part of the RELX Group, LexisNexis is committed to enhancing digital experience through data and analytics.

📋 Description

• Serve as the designated ISSO for FedRAMP-authorized systems • Maintain the organization's Authority to Operate (ATO) and support ongoing compliance activities • Lead FedRAMP continuous monitoring, including monthly, quarterly, and annual reporting • Coordinate annual assessments, independent audits, penetration testing, and security reviews with Third Party Assessment Organizations (3PAOs) • Manage security-related communications with federal agencies, sponsoring organizations, and stakeholders • Conduct security risk assessments and vulnerability analyses • Review, assess, and monitor POA&M items through remediation • Evaluate security impacts of system changes and support Significant Change Request (SCR) submissions • Ensure implementation and effectiveness of NIST 800-53 security controls • Facilitate security reviews for architecture changes, new technologies, and cloud deployments • Maintain FedRAMP security documentation and approve updates resulting from system changes • Ensure evidence collection and compliance artifacts are complete and audit-ready • Monitor security events, incidents, and compliance metrics • Validate remediation efforts and track compliance KPIs for leadership • Participate in security incident investigations and response efforts • Coordinate with security operations teams on threat identification and remediation • Support root cause analysis and corrective action planning • Improve security monitoring tools and processes • Partner with Engineering and DevOps to integrate compliance into development and deployment • Provide security guidance throughout the SDLC • Support cloud migration, modernization, and technology transformation initiatives • Ensure compliance and security awareness training meet FedRAMP requirements • Matrix manage resources participating in the FedRAMP Program

🎯 Requirements

• Bachelor's degree in Cybersecurity, Information Systems, Computer Science, Engineering, or related field • Equivalent work experience may be considered in lieu of degree requirements • 5+ years of information security, cybersecurity, or compliance experience • 3+ years supporting FedRAMP, FISMA, or federal compliance programs • Experience maintaining FedRAMP Moderate or High authorized environments • Experience supporting security assessments, audits, and continuous monitoring activities • Experience with cloud platforms such as AWS, Azure, or Google Cloud • Strong understanding of FedRAMP requirements, NIST SP 800-53, NIST 800-37 Risk Management Framework (RMF), FISMA, NIST 800-171, Zero Trust Architecture principles, vulnerability management processes, security operations, and incident response • Familiarity with SIEM platforms, vulnerability scanners, endpoint detection and response (EDR), Identity and Access Management (IAM), and cloud-native security services • Preferred: CISSP, CISM, GSLC, CAP, or equivalent cybersecurity certification • Preferred: FedRAMP-specific experience acting as ISSO, Security Compliance Manager, or FedRAMP Program Manager • Preferred: Experience supporting federal agencies or government contractors • Preferred: Knowledge of automated compliance platforms and Governance, Risk, and Compliance (GRC) tools • Preferred: Experience leveraging AI and automation to streamline compliance reporting, evidence collection, and POA&M management • Preferred: Experience with AWS GovCloud or Azure Government environments

🏖️ Benefits

• Annual incentive bonus • Country specific benefits • Disability accommodation/support during the hiring process

Apply Now

Similar Jobs

🔥 33 minutes ago

GE Vernova

10,000+ employees

💼 Consulting

📦 Logistics

🏭 Manufacturing

Lead cybersecurity engineer designing and testing substation automation networks for GE Vernova’s energy-grid business. Supporting OT security, customer solutions, and project delivery.

🔥 8 hours ago

ASRC Federal

5001 - 10000

🏛️ Government

🎖️ Defense

🔒 Cybersecurity

Senior cybersecurity compliance SME ensuring DoW and Army audit readiness for ASRC Federal’s Vantage system. Applying NIST controls, FIAR requirements, and financial management overlays.

🔥 12 hours ago

Soteria - Security Solutions & Advisory

11 - 50

💼 Consulting

🏥 Healthcare

🎖️ Defense

Senior Security Advisor leading GRC assessments, SSP development, and compliance engagements. Advising Soteria cybersecurity clients on stronger security programs and risk postures.

🔥 12 hours ago

Soteria - Security Solutions & Advisory

11 - 50

💼 Consulting

🏥 Healthcare

🎖️ Defense

Lead NIST 800-53 cybersecurity control assessments for Soteria’s clients. Oversee assessors, validate evidence, and present findings to executive and board-level stakeholders.

🔥 12 hours ago

Soteria - Security Solutions & Advisory

11 - 50

💼 Consulting

🏥 Healthcare

🎖️ Defense

GRC Security Advisor helping Soteria clients assess risks, controls, and regulatory compliance. Developing remediation plans, security reports, and executive recommendations for stronger cybersecurity postures.

🇺🇸 United States – Remote

💵 $80k - $135k / year

💰 $2.5M Venture Round on 2018-04

⏰ Full Time

🟡 Mid-level

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer