Information System Security Officer, ISSO

Job not on LinkedIn

🔥 5 minutes ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of True Zero Technologies, LLC

True Zero Technologies, LLC

11 - 50 employees

💼 Consulting

🏥 Healthcare

📦 Logistics

Consulting • Healthcare • Logistics

True Zero Technologies, LLC is a veteran-owned company specializing in cybersecurity solutions. The company offers a range of services including security engineering and architecture, emerging technology adoption, cyber operations, cyber threat intelligence, penetration testing, and information assurance. True Zero is also recognized for its managed services and cloud security capabilities. The company partners with technology leaders such as Tanium, Splunk, Cribl, and Zscaler to deliver high-impact, high-value solutions that help organizations innovate while enhancing their security and operational programs. True Zero is committed to empowering organizations with actionable insights to secure their IT environments effectively.

📋 Description

• Support assigned information systems through all phases of the Risk Management Framework (RMF) lifecycle. • Maintain System Security Plans (SSPs), security documentation, and authorization artifacts to accurately reflect the operational environment. • Coordinate with System Owners to ensure security requirements are incorporated into system operations and lifecycle activities. • Collect, organize, and validate evidence supporting security control implementation and continuous monitoring activities. • Track vulnerabilities, POA&Ms, remediation activities, risk acceptance decisions, and corrective actions to ensure timely resolution and accurate documentation. • Coordinate with vulnerability management, penetration testing, and incident response teams to incorporate cybersecurity findings into authorization documentation and continuous monitoring activities. • Support annual assessments, Security Control Assessments (SCAs), audits, and authorization reviews by coordinating evidence collection, documentation updates, and stakeholder participation. • Monitor system changes to identify potential impacts to authorization status and coordinate required documentation updates. • Assist with contingency planning, incident response planning, interconnection security agreements, privacy documentation, and other required cybersecurity artifacts. • Prepare recurring authorization status reports, remediation updates, and security summaries for Government stakeholders. • Participate in change management, configuration management, governance meetings, and continuous monitoring activities. • Coordinate with engineering teams to ensure security controls are properly implemented and documented. • Support continuous improvement initiatives that strengthen authorization quality, improve documentation accuracy, and enhance operational efficiency.

🎯 Requirements

• Bachelor’s degree in Cybersecurity, Information Systems, Information Technology, Computer Science, or a related discipline. • Three or more years of experience supporting Federal cybersecurity, RMF, Assessment and Authorization (A&A), or information assurance programs. • Working knowledge of NIST SP 800-37, NIST SP 800-53 Rev. 5, FISMA, and Federal cybersecurity requirements. • Experience supporting authorization package development and maintenance. • Experience coordinating with System Owners, engineers, cybersecurity operations teams, and Government stakeholders. • Strong organizational, analytical, and technical writing skills. • Excellent communication skills with the ability to coordinate activities across multiple organizations. • Preferred: Experience supporting NIH, HHS, or other Federal civilian agencies. • Preferred: Experience using JCAM, eMASS, ServiceNow GRC, Archer, or similar governance platforms. • Preferred: Experience supporting continuous monitoring, vulnerability management, POA&M management, and cybersecurity assessments. • Preferred: Familiarity with cloud environments, Zero Trust initiatives, and enterprise security operations. • Preferred: Experience supporting FISMA reporting, audit preparation, and ongoing authorization programs. • Preferred certifications: Security+, CGRC, CAP, CISSP, or CISM.

🏖️ Benefits

• Competitive salary, paid twice per month • Best in class medical coverage • 100% of medical premiums covered by True Zero • Company wide new business incentive programs • Contribution Incentives (i.e. white papers, blog posts, internal webinars, etc.) • 3 weeks of PTO starting + 11 Paid Holidays Annually • 401k Program with 100% company match on the first 4% • Monthly reimbursement of Cell Phone and Home Internet costs • Paternity/Maternity Leave • Investment in training and certifications to broaden and deepen your technical skills

Apply Now

Similar Jobs

🔥 25 minutes ago

Keeper Security, Inc.

501 - 1000

🔒 Cybersecurity

☁️ SaaS

🏢 Enterprise

Information Systems Security Officer securing Keeper’s FedRAMP-authorized cybersecurity systems. Maintaining compliance documentation, authorization readiness and remediation across regulated government environments.

🔥 53 minutes ago

Cisco

10,000+ employees

🔧 Hardware

🔐 Security

🏢 Enterprise

Workday Security Administrator securing Cisco’s HR systems for U.S. employees. Managing access, audits, compliance, releases, and role-based security improvements.

🔥 55 minutes ago

Baptist Health

10,000+ employees

🏥 Healthcare

🤝 Non-profit

Lead cybersecurity engineer securing Baptist Health’s healthcare data, infrastructure, and cloud networks. Guiding vulnerability testing, incident response, security architecture, and penetration testing.

🔥 1 hour ago

Beyond Finance

1001 - 5000

💸 Finance

💳 Fintech

👥 B2C

Senior Security Engineer hardening AWS infrastructure and software pipelines at Beyond Finance. Reducing cloud and application risk through Wiz, Terraform, vulnerability management, and WAF operations.

🔥 1 hour ago

Ondo Finance

51 - 200

₿ Crypto

💳 Fintech

💸 Finance

Senior Product Security Engineer securing Ondo Finance’s institutional-grade infrastructure for tokenized real-world assets. Driving threat modeling, secure code reviews, AppSec tooling, SSDLC, and bug bounty operations.