Information System Security Officer (ISSO)
WFA Digital Insight
As remote work continues to rise, the demand for skilled cybersecurity professionals has grown exponentially, with a 25% increase in job postings in the last year alone. The Information System Security Officer role at Peraton stands out for its focus on operational compliance and risk management, requiring a unique blend of technical expertise and collaborative skills. With the current landscape of cybersecurity threats, companies are willing to invest in top talent, and candidates with experience in cloud security, NIST, and FISMA are in high demand. Before applying, candidates should be aware of the importance of staying up-to-date with the latest security protocols and technologies, as well as the need for effective communication and teamwork in this critical role.
Job Description
About the Role
The Information System Security Officer (ISSO) plays a critical role in Peraton's cybersecurity operations, working closely with the Cybersecurity Manager and other security personnel to ensure the implementation of operational security measures. As a key member of the team, the ISSO will be responsible for performing end-to-end Governance Risk and Compliance (GRC) functions, including security control implementation, continuous monitoring, and federal Assessment and Authorization (A&A) activities. This role requires a deep understanding of cybersecurity principles, as well as excellent communication and collaboration skills, to effectively work with various stakeholders and ensure the security and compliance of Peraton's systems.The ISSO will be part of the PERATON DHS' Security team, working within the Citizen Security and Public Services Sector (CS&PS). This role offers the opportunity to work on high-impact projects, collaborating with senior management to understand operational issues and plan next steps from an information security viewpoint. The ideal candidate will have a strong background in cybersecurity, with experience working with government systems and a thorough understanding of security governance, risk, and compliance.
Peraton is committed to providing a supportive and inclusive work environment, with opportunities for professional growth and development. As a remote job, this role offers the flexibility to work from anywhere, with a comprehensive benefits package and competitive compensation.
What You Will Do
- Perform as a named ISSO for a Government System, assisting other ISSOs with GRC functions
- Assess and mitigate system security risks, determining and analyzing security requirements for implementation and testing
- Review and continuously monitor implemented security controls, creating and maintaining security checklists and templates
- Perform security control assessments using Agency guidelines and NIST guidance, as well as continuous monitoring requirements
- Proactively review Vulnerability Scans and recommend compensating controls
- Prepare supporting materials for the security authorization package in accordance with client contractual requirements
- Develop core documents, such as System Security Plan, Contingency Plan, Incident Response Plan, and Standard Operating Procedures
- Maintain client-specific Plan of Action and Milestones (POA&Ms) and support remediation activities using Information Assurance (IA) and Risk Management tools
- Develop, test, and train on Contingency and Incident Response planning
- Maintain an inventory of hardware and software for the information system
What We Are Looking For
- US Citizenship required
- Ability to pass US Government Clearance processes – DHS Public Trust with EOD and Secret or higher clearance
- Bachelor's degree in a technical field and 8 years of experience, or high school diploma/equivalent and 12 years of experience
- Good understanding of computer network security
- Experience working with NIST and FISMA requirements and reporting
- Experience managing security Assessment and Authorization activities utilizing common control frameworks
- Experience with risk mitigation and selecting or designing appropriate security controls for implementation
- Experience applying cloud security concepts, requirements, design development, implementation, and integration for existing and new technology product offerings
- Experience with performing security risk and compliance activities in FedRAMP cloud-enabled environments
Nice to Have
- Experience working with cloud security platforms, such as Microsoft Azure or Amazon AWS
- Knowledge of IT service management frameworks, such as ITIL
- Certification in cybersecurity, such as CompTIA Security+ or CISSP
Benefits and Perks
- Competitive compensation package
- Comprehensive benefits, including health, dental, and vision insurance
- 401(k) matching program
- Paid time off and holidays
- Remote work stipend and flexible work arrangements
- Opportunities for professional growth and development
- Access to cutting-edge technologies and tools
- Collaborative and inclusive work environment
How to Stand Out
- Familiarize yourself with the latest cybersecurity protocols and technologies, including NIST and FISMA requirements
- Develop a strong understanding of cloud security concepts and risk management principles
- Highlight your experience working with government systems and security compliance in your application
- Be prepared to provide examples of your collaborative skills and ability to work with senior management
- Research Peraton's company culture and values to demonstrate your enthusiasm for the role and the company
- Consider obtaining certifications in cybersecurity, such as CompTIA Security+ or CISSP, to increase your chances of standing out as a candidate
This is a remote position listed on WFA Digital, the platform for professionals who work from anywhere. Browse more remote jobs across all categories.