Senior Information System Security Officer – Senior ISSO

Job not on LinkedIn

🔥 5 minutes ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of True Zero Technologies, LLC

True Zero Technologies, LLC

11 - 50 employees

💼 Consulting

🏥 Healthcare

📦 Logistics

Consulting • Healthcare • Logistics

True Zero Technologies, LLC is a veteran-owned company specializing in cybersecurity solutions. The company offers a range of services including security engineering and architecture, emerging technology adoption, cyber operations, cyber threat intelligence, penetration testing, and information assurance. True Zero is also recognized for its managed services and cloud security capabilities. The company partners with technology leaders such as Tanium, Splunk, Cribl, and Zscaler to deliver high-impact, high-value solutions that help organizations innovate while enhancing their security and operational programs. True Zero is committed to empowering organizations with actionable insights to secure their IT environments effectively.

📋 Description

• Serve as the primary cybersecurity advisor for assigned information systems throughout the system lifecycle • Lead Risk Management Framework (RMF) activities supporting initial authorization, ongoing authorization, annual assessments, and continuous monitoring • Coordinate with System Owners, Authorizing Officials, business stakeholders, engineering teams, and Government personnel to maintain system authorization readiness • Develop, maintain, and continuously update System Security Plans (SSPs), security documentation, authorization artifacts, and supporting RMF documentation • Coordinate security control implementation, evidence collection, documentation updates, and authorization package development • Track vulnerabilities, POA&Ms, risk acceptance decisions, and remediation activities • Work with vulnerability management personnel to prioritize and remediate security findings • Coordinate with incident response teams and incorporate incidents, corrective actions, and lessons learned into RMF documentation and continuous monitoring • Support annual security assessments, Security Control Assessments (SCAs), independent assessments, internal audits, and external oversight activities • Review assessment findings, validate remediation activities, and coordinate corrective actions • Support security architecture, Zero Trust initiatives, and continuous monitoring strategies • Coordinate privacy, contingency planning, incident response planning, interconnection security agreements, and other required documentation • Develop recurring authorization status updates, risk summaries, and executive-level reporting • Mentor junior ISSOs and support consistent RMF processes and cybersecurity best practices • Participate in governance meetings, risk reviews, change management, and operational planning • Identify opportunities to streamline authorization activities, improve documentation quality, and strengthen operational coordination

🎯 Requirements

• Bachelor’s degree in Cybersecurity, Information Systems, Information Technology, Computer Science, or a related discipline • Five or more years of experience serving as an ISSO or supporting Federal RMF and Assessment & Authorization (A&A) programs • Experience supporting all phases of the NIST Risk Management Framework • Experience coordinating with System Owners, security engineers, vulnerability management teams, auditors, and Government stakeholders • Working knowledge of NIST SP 800-37, NIST SP 800-53 Rev. 5, NIST SP 800-53A, FISMA, and Federal cybersecurity policy • Experience preparing and maintaining SSPs, SARs, POA&Ms, security plans, contingency planning documentation, and supporting artifacts • Excellent written and verbal communication skills • Preferred: experience supporting NIH, HHS, or other Federal civilian agencies • Preferred: experience with JCAM, eMASS, ServiceNow GRC, Archer, or comparable governance platforms • Preferred: experience supporting cloud-based systems, High Value Assets, or enterprise shared services • Preferred: familiarity with vulnerability management, continuous monitoring, Zero Trust implementation, and cybersecurity engineering • Preferred: experience supporting FISMA reporting, audit response, and annual security assessments • Preferred: experience supporting CDM, continuous monitoring, or enterprise cybersecurity operations • Preferred: experience working in Agile development environments • Preferred certifications: CGRC, CISSP, CAP, CISM, Security+, or PMP

🏖️ Benefits

• Competitive salary, paid twice per month • Best in class medical coverage • 100% of medical premiums covered by True Zero • Company wide new business incentive programs • Contribution Incentives (i.e. white papers, blog posts, internal webinars, etc.) • 3 weeks of PTO starting + 11 Paid Holidays Annually • 401k Program with 100% company match on the first 4% • Monthly reimbursement of Cell Phone and Home Internet costs • Paternity/Maternity Leave • Investment in training and certifications to broaden and deepen your technical skills

Apply Now

Similar Jobs

🔥 25 minutes ago

Keeper Security, Inc.

501 - 1000

🔒 Cybersecurity

☁️ SaaS

🏢 Enterprise

Information Systems Security Officer securing Keeper’s FedRAMP-authorized cybersecurity systems. Maintaining compliance documentation, authorization readiness and remediation across regulated government environments.

🔥 53 minutes ago

Cisco

10,000+ employees

🔧 Hardware

🔐 Security

🏢 Enterprise

Workday Security Administrator securing Cisco’s HR systems for U.S. employees. Managing access, audits, compliance, releases, and role-based security improvements.

🔥 55 minutes ago

Baptist Health

10,000+ employees

🏥 Healthcare

🤝 Non-profit

Lead cybersecurity engineer securing Baptist Health’s healthcare data, infrastructure, and cloud networks. Guiding vulnerability testing, incident response, security architecture, and penetration testing.

🔥 1 hour ago

Beyond Finance

1001 - 5000

💸 Finance

💳 Fintech

👥 B2C

Senior Security Engineer hardening AWS infrastructure and software pipelines at Beyond Finance. Reducing cloud and application risk through Wiz, Terraform, vulnerability management, and WAF operations.

🔥 1 hour ago

Ondo Finance

51 - 200

₿ Crypto

💳 Fintech

💸 Finance

Senior Product Security Engineer securing Ondo Finance’s institutional-grade infrastructure for tokenized real-world assets. Driving threat modeling, secure code reviews, AppSec tooling, SSDLC, and bug bounty operations.