
Information System Security Officer – ISSO
Dragonfli Group
full-time
Posted on:
Location Type: Remote
Location: Remote • 🇺🇸 United States
Visit company websiteJob Level
Junior
Tech Stack
Cloud
About the role
- Manage responsibility for security assessments of various applications or domains, including cloud computing.
- Implement security controls and conduct risk assessments based on NIST RMF and ISO standards.
- Support documentation, validation, and accreditation processes to meet information assurance and security requirements.
- Ensure appropriate treatment of risk, compliance, and assurance from internal and external perspectives.
- Develop actionable security blueprints, principles, models, designs, standards, and guidelines.
- Utilize network and vulnerability scanning tools to interrogate systems for configuration and status.
- Design, implement, and maintain secure IT infrastructures in alignment with A&A policies.
- Utilize GRC tools for managing Assessment & Authorization (A&A) processes.
- Serve as subject matter expert for the A&A process, providing guidance to stakeholders and business units.
- Build and maintain schedules and step-by-step action plans.
- Communicate and collaborate with cross-functional teams, business units, stakeholders, and IT professionals.
Requirements
- Proficiency in security assessments and management of large projects/initiatives.
- Experience implementing security controls and conducting risk assessments.
- Knowledge of NIST RMF and ISO standards.
- Experience with network and vulnerability scanning tools.
- Proficiency in utilizing GRC tools for A&A processes.
- Strong organizational skills.
- Effective communication and collaboration skills.
- U.S. Citizenship or Permanent Residency.
Benefits
- Insurance – health, dental, and vision
- Paid Time Off (PTO) and 11 Federal Holidays
- 401(k) employer match
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
security assessmentsrisk assessmentssecurity controlsNIST RMFISO standardsnetwork scanning toolsvulnerability scanning toolsGRC toolsAssessment & Authorization (A&A)IT infrastructure design
Soft skills
organizational skillscommunication skillscollaboration skills