Senior Information Systems Security Officer

Telophase Corporation
  • Lanham, MD
    30+ days ago

    Job Description

    Telophase Corporation is seeking a motivated, career and customer-oriented senior Information Systems Security Officer (ISSO) to join our team.The ISSO shall ensure the implementation and maintenance of security controls in accordance with the System Security Plan (SSP) in preparation for NIST RMF and 800-53 based independent security assessments and provide strong leadership in the development of a cyber security validation program for mission systems.Responsibilities:
    • Support adoption and implementation of NIST-based standards across the organization in support of multiple mission system authorization boundaries including Cloud-based workloads
    • Support all steps of NIST RMF with strong background in NIST SP 800-53 Revision 5 and 800-53A
    • Participate in the selection of the organization's common security controls and in determining their suitability for use in the information system
    • Review the 800-53 security and privacy controls regarding their adequacy in protecting the planned or operational information system
    • Prepare and review documentation to include System Security Plans (SSPs), Risk Assessment Reports, Assessment and Authorization(A&A) packages, and support system authorization activities
    • Implement and enforcing organizational information systems security policies, standards, and methodologies
    • Evaluate security solutions to ensure they meet security requirements for processing unclassified/classified information; perform vulnerability/risk assessment analysis to support certification and accreditation. Red Team operations background such as penetration testing is bonus.
    • Manage changes to the information system and assess the security impact of those changes.
    Required Skills & Experience:
    • Education: Bachelor's or higher in computer science/ technical discipline preferred or equivalent work experience
    • Years of related experience: 8+ years of experience is required as an ISSO/ ISSM including experience implementing, and enforcing information systems security policies, standards, and methodologies; creating security plans, policies & procedures, SSPs, and Risk Assessment Reports
    • Technical Skills: FISMA, FedRAMP, NIST RMF (Risk Management Framework), NIST 800-53 Revision 5 controls, and strong understanding Security Control Assessment (SCA) processes. Good understanding of Windows and Linux operating systems and architecture.
    • Good knowledge of public cloud providers such as Azure, AWS, and GCP highly desirable
    • Experience with applications for Amazon AWS, Microsoft Azure, GCP or other cloud platforms for large-scale, multi-tenant, SaaS systems highly desirable
    • Experience with security assessments of AWS/Azure/GCP environments preferred
    • Experience with AWS/Azure/GCP service offerings preferred
    • Skills and ideally certifications in public cloud providers (AWS, Azure, GCP) highly desirable
    • Cloud Security experience (AWS/Azure/GCP), including both IaaS and PaaS models preferred
    • Hands-on experience with public cloud services (AWS, Azure, GCP) preferred
    • Hands-on experience in PaaS, SaaS, CI/CD, Docker, Jenkins, Puppet Chef, Ansible, Kubernetes preferred
    • Strong understanding of and experience in AWS / Azure / GCP cloud architecture
    • Experience developing applications for Microsoft Azure, Amazon AWS, Google or other cloud platforms for large-scale, multi-tenant, SaaS systems a bonus
    • Clearance: Must have or be able to attain Public Trust or higher
    Desired Skills & Experience:Certifications: Cybersecurity certifications, such as CISSP, CISA, CISM, CISA, CEH, GCIH, GCIA, GCFA, GCFE, CDMP, OSCP, OSCE, CDP-DG or similarWork Type:Onsite location on a regular basis with some hybrid telework options.Note for staffing agencies: We are not accepting unsolicited resumes for this position. All inquiries must go through the Telophase teamAs an Equal Opportunity Employer, it is Telophase’s policy to recruit, hire, and provide opportunities for advancement in all job classifications without regard to race, color, religion, sex, national origin, age, citizenship, marital status, sexual preference, parental status, or disability.

    Powered by JazzHR

    Numbers & Facts

    LocationLanham, MD

    Skills

    • Amazon Web Services (AWS)unmatched
    • Analysis Skillsunmatched
    • Ansibleunmatched
    • CISA - Certified Information Systems Auditorunmatched
    • CISM - Certified Information Security Managerunmatched
    • CISSP - Certified Information Systems Security Professionalunmatched
    • Certification & Accreditation Process (C&A)unmatched
    • Change Managementunmatched
    • Chef (Configuration Management)unmatched
    • Cloud Architectureunmatched
    • Cloud Computingunmatched
    • Computer Scienceunmatched
    • Computer Securityunmatched
    • Continuous Deployment/Deliveryunmatched
    • Continuous Integrationunmatched
    • Customer Relationsunmatched
    • Dockerunmatched
    • Documentation Reviewunmatched
    • FISMA - Federal Information Security Management Actunmatched
    • GCFA - GIAC Certified Forensic Analystunmatched
    • GCIA - GIAC Certified Intrusion Analystunmatched
    • GCIH - GIAC Certified Incident Handlerunmatched
    • GCP (Good Clinical Practices)unmatched
    • Information Technology & Information Systemsunmatched
    • Infrastructure as a Service (IaaS)unmatched
    • Internet Securityunmatched
    • Jenkinsunmatched
    • Leadershipunmatched
    • Linux Operating Systemunmatched
    • Microsoft Windows Azureunmatched
    • Microsoft Windows Operating Systemunmatched
    • Operations Planningunmatched
    • Penetration Testingunmatched
    • Platform as a Service (PaaS)unmatched
    • Privacy Controlsunmatched
    • Public Cloudunmatched
    • Puppet (Configuration Management)unmatched
    • Recruiting/Staffing Agencyunmatched
    • Risk Analysisunmatched
    • Risk Management Framework (RMF)unmatched
    • Security Analysisunmatched
    • Software Developmentunmatched
    • Software as a Service (SaaS)unmatched
    • System Architectureunmatched
    • System Validationunmatched
    • Systems Analysisunmatched
    • U.S. National Institute of Standards and Technology (NIST)unmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder