About the company
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an Information Systems Security Specialist based in United States.
Responsibilities
- Support day-to-day information security operations and help maintain a strong operational security posture across the platform.
- Develop, maintain, and regularly update the System Security Plan and other cybersecurity documentation required for security authorization and compliance.
- Support FedRAMP High and DoD IL5 compliance activities, including continuous monitoring, audits, assessments, evidence collection, and remediation efforts.
- Conduct and support security and risk assessments to identify potential vulnerabilities, compliance gaps, and other information security risks.
- Assist with developing, implementing, and enforcing information security policies, standards, procedures, and controls aligned with federal regulations and cybersecurity best practices.
- Partner with engineering, operations, compliance, and other cross-functional teams to ensure security requirements are incorporated into platform design, development, deployment, and operations.
- Support security incident management activities, including detection, response, investigation, documentation, and follow-up remediation.
- Track compliance metrics, security findings, remediation activities, and authorization milestones, providing clear reporting and updates to senior stakeholders.
- Contribute to security authorization and Authority to Operate processes by maintaining accurate documentation and supporting required assessments and reviews.
- Help identify opportunities to strengthen security processes, controls, monitoring capabilities, and overall compliance readiness.
Requirements
- 5–8 years of combined professional experience in IT, cybersecurity, information systems security, or security authorization.
- Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, Engineering, or a related field; four additional years of relevant professional experience may substitute for the degree.
- IAM Level I certification.
- Working knowledge of current cybersecurity and information security tools, including hardware and software security implementations.
- Understanding of communication protocols, encryption tools, encryption techniques, and information security technologies.
- Familiarity with commercial security products, security authorization techniques, security incident management, PKI, and authorization services.
- Experience supporting risk assessments, security controls, compliance activities, and cybersecurity documentation.
- Strong analytical, organizational, documentation, communication, and problem-solving skills.
- Ability to collaborate effectively with technical and non-technical stakeholders across engineering, operations, compliance, and leadership functions.
- Hands-on experience supporting FedRAMP High and/or DoD IL5 compliance initiatives is highly desirable.
- Experience with continuous monitoring, System Security Plan maintenance, and security authorization or ATO processes is preferred.
- Familiarity with cloud-based SaaS environments and modern security operations is a strong advantage.
- Must be eligible to obtain and maintain a DoD security clearance.
Conditions
- Opportunity to work on modern, AI-enabled technology supporting government and commercial use cases.
- Exposure to high-priority cybersecurity, cloud security, compliance, and security authorization initiatives.
- Experience supporting FedRAMP High and DoD IL5 environments.
- Opportunity to collaborate with engineering, operations, compliance, and security professionals.
- Professional environment focused on innovation, security, and mission-critical technology.
- Equal opportunity workplace committed to considering qualified candidates from all backgrounds, including protected veterans and individuals with disabilities.