Information System Security Officer (Cybersecurity Assessment & Authorization)
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
We are seeking an Information System Security Officer (Cybersecurity Assessment & Authorization). You will support security assessments for diverse application domains, including cloud computing environments. This critical role serves as the primary Subject Matter Expert (SME) for the A&A process, managing large-scale, high-risk security compliance and architecture initiatives., * Lead Risk Assessments: Conduct security assessments and document compliance using NIST RMF and ISO frameworks.
- Manage A&A Processes: Oversee validation, accreditation, and documentation utilizing Governance, Risk, and Compliance (GRC) tools.
- Design Secure Architecture: Support blueprints, standards, and guidelines for secure enterprise IT infrastructures.
- Conduct Vulnerability Scanning: Interrogate systems for configuration status using network and vulnerability scanning tools.
- Act as A&A SME: Guide stakeholders, cross-functional business units, and new A&A resources through the USPS validation process.
- Brief Leadership: Build action plans, manage schedules, and brief executives on cross-functional IT risk and assurance.
Requirements
- Framework Expertise: Proven proficiency with NIST Risk Management Framework (RMF) and ISO standards.
- Technical Skills: Strong background in GRC systems, security architecture principles, and network scanning technologies.
- Project Management: Track record of driving large, complex, and high-risk IT initiatives.
- Soft Skills: Excellent organizational skills alongside senior-level executive briefing capabilities., * Experience: Minimum 5+ years of direct experience in Cybersecurity Assessment & Authorization (A&A), Information Assurance, or Risk Management Framework (RMF) environments.
- Education: Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field (relevant senior-level experience may substitute for a degree).
- Certifications: a current high-level security certification such as ICS2 CISSP (IAM Level III standard), ISACA CISM, or CGRC (Certified in Governance Risk and Compliance) preferred.
Opened to U.S. Citizen and/or Green card holders only.
**Candidates must be able to obtain a Postal Sensitive Clearance (US Citizenship or Green Card required). Additionally, candidates must not have traveled outside of the USA for a combined period not to exceed 6 months within the last 3 years.*
About the company
NikSoft Systems Corporation is a recognized Information Technology solutions provider. Founded in 1998 and based in Reston, Virginia, NikSoft is a CMMI Level 3 Certified company with an established reputation for excellence and on-time delivery with a consistently high customer satisfaction rating from its Federal Government and private consulting contracts.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Dev Digest 134 - Where pixels sing?
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Best Paying Jobs in Technology
The Overflow: Security and Privacy