← 返回岗位列表美国Information-Systems-Security-Officerfulltime

DoW Sr. Information Systems Security Officer - Cloud

雇主

Tetrad Digital Integrity

地点

Remote · 美国

待遇

$USD 130,000 - USD 160,000 / annual

工作模式

远程

🤖 AI 简历匹配评估

检测你的简历与该岗位的匹配度,免费

免费评估

岗位摘要

Tetrad Digital Integrity (TDI) is a leading-edge cybersecurity firm with a mission to safeguard and protect our customers from increasing threats and vulnerabilities in this digital age.

岗位职责

Tetrad Digital Integrity(TDI) is a leading-edge cybersecurity firm with a mission to safeguard and protect our customers from increasing threats and vulnerabilities in this digital age.TDI is seeking a hands-on Senior Information Systems Security Officer (ISSO) to support U.S. Marine Corps cloud modernization in a fully remote role. You’ll help application teams securely onboard mission-critical workloads to modern cloud environments while supporting ATO efforts and translating RMF, NIST SP 800-53, and Cloud SRG requirements into actionable security deliverables.
This is a fully remote position supporting mission-critical U.S. Marine Corps programs. An active Secret clearance is required.
RESPONSIBILITIES:
Lead and support RMF activities throughout all phases (categorization, control selection, implementation, assessment, authorization, and continuous monitoring).
Provide expert guidance on DoW cloud security policies, NIST SP 800-53 controls, CNSS policies, and DoD-specific frameworks such as Cloud Computing SRG and AI-specific guidance.
Conduct security architecture reviews and security engineering analysis for cloud-native and containerized workloads hosted in Azure.
Evaluate security controls associated with Kubernetes, Docker, and container orchestration platforms within Azure.
Assess security risks related to generative AI components, including large language models (LLMs) and AI/ML workloads, ensuring responsible and compliant use.
Develop and maintain System Security Plans (SSPs), Security Assessment Reports (SARs), Plan of Action and Milestones (POA&Ms), and related RMF documentation.
Perform threat modeling, vulnerability assessments, and risk analysis tailored to cloud environments and AI technologies.
Interface with system architects, developers, and DevSecOps teams to integrate security throughout the Software Development Lifecycle (SDLC).
Support security control assessments (SCAs) and coordinate with third-party assessors.
Monitor, track, and report on security compliance posture through Continuous Monitoring (ConMon) processes.
Minimal travel will be required.
QUALIFICATIONS:
Active Secretsecurity clearance.
A current Certified Information Systems Security Professional (CISSP) or Certified Information Security Manager (CISM) certification is required.
Bachelor’s degree in Cybersecurity, Computer Science, or Information Technology, and 8+ years of cybersecurity experience, including demonstrated experience supporting Risk Management Framework (RMF) activities for Department of War (DoW) systems.
Candidates must have practical, hands-on experience with at least one cloud platform, including AWS, Microsoft Azure, or Google Cloud Platform (GCP), with demonstrated experience in IAM, VPC/networking, Kubernetes, and cloud security services.
Strong knowledge of containerized environments (e.g., Docker, Kubernetes) and container security best practices.
Familiarity with Generative AI technologies, including LLMs and AI/ML security considerations.
Deep understanding of NIST SP 800-53, DoD RMF, FedRAMP, and other relevant cybersecurity frameworks.
Experience writing and maintaining RMF artifacts such as SSPs, POA&Ms, and SARs.
Strong communication skills and ability to collaborate effectively with technical and non-technical stakeholders.
Experience with security risk assessments in DoW environments
PREFERRED QUALIFICATIONS:
Advanced cloud security certifications, such as Google Professional Cloud Security Engineer, Cloud Certified Security Professional or Azure equivalent.
Experience integrating DevSecOps pipelines with RMF compliance processes.
Familiarity with automation tools for RMF documentation and control testing (e.g., Xacta, eMASS, OpenRMF).
PAY RANGE:
The anticipated salary range for this position is $130,000 - $160,000. This range is a good-faith estimate and not a guarantee of compensation. Final compensation will be based on factors including experience, education, skills, geographic location, internal equity, market data and applicable contract requirements, and may fall outside the posted range.TDI does business with the federal government, which restricts employment to individuals who are either US citizens or lawful permanent residents of the United States.
“TDI is an Equal Opportunity Employer. Employment decisions are made based on individual qualifications, merit, and business needs. We do not discriminate in employment opportunities or practices based on race, color, religion, sex, or national origin, in accordance with applicable federal laws.”
Originally posted on Himalayas

申请条件

- Active Secret clearance required
- Hands-on experience as an Information Systems Security Officer (ISSO) or similar role
- Strong knowledge of RMF lifecycle (categorization through continuous monitoring)
- Expertise in NIST SP 800-53 controls and DoD Cloud Computing SRG
- Familiarity with CNSS policies and DoD-specific frameworks (including AI-specific guidance)
- Experience with cloud security architecture and engineering, specifically Azure
- Knowledge of security controls for Kubernetes, Docker, and container orchestration platforms
- Ability to assess risks related to generative AI, LLMs, and AI/ML workloads
- Experience developing and maintaining SSPs, SARs, POA&Ms, and RMF documentation
- Proficiency in threat modeling, vulnerability assessments, and risk analysis for cloud and AI environments
- Ability to collaborate with architects, developers, and DevSecOps teams to integrate security into SDLC
- Experience supporting security control assessments (SCAs) and coordinating with third-party assessors
- Strong written and verbal communication skills for translating security requirements into actionable deliverables
- Ability to work fully remote while supporting mission-critical U.S. Marine Corps programs

雇主简介

Tetrad Digital Integrity (TDI) is a cybersecurity firm focused on safeguarding customers from digital threats, providing services such as security engineering and compliance support for cloud environments.

对这个岗位感兴趣?

该岗位暂未开放在线申请,顾问可为您推荐同类岗位或申请指导

咨询不收取任何费用,顾问将为您推荐合适的岗位与申请方式

申请海外岗位,英文简历符合当地格式规范吗?

AI 自动评估你与该岗位的匹配度,3 分钟出结果

免费评估简历匹配度

数据来源:Himalayas

岗位信息来源于公开渠道,版权归原作者所有