Defense Information Systems Security Officer – Cloud

Posted 5hrs ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

Cloud ISSO securing U.S. Marine Corps modernization through RMF, Azure, containers, and AI security. Developing ATO artifacts and monitoring compliance for mission-critical workloads.

Responsibilities:

  • Lead and support RMF activities through categorization, control selection, implementation, assessment, authorization, and continuous monitoring
  • Provide guidance on DoW cloud security policies, NIST SP 800-53 controls, CNSS policies, Cloud Computing SRG, and AI-specific guidance
  • Conduct security architecture reviews and security engineering analysis for cloud-native and containerized Azure workloads
  • Evaluate security controls for Kubernetes, Docker, and container orchestration platforms in Azure
  • Assess risks related to generative AI, LLMs, and AI/ML workloads
  • Develop and maintain SSPs, SARs, POA&Ms, and related RMF documentation
  • Perform threat modeling, vulnerability assessments, and cloud/AI risk analysis
  • Collaborate with architects, developers, and DevSecOps teams to integrate security throughout the SDLC
  • Support security control assessments and coordinate with third-party assessors
  • Monitor, track, and report security compliance posture through Continuous Monitoring processes

Requirements:

  • Active Secret security clearance
  • Bachelor’s degree in Cybersecurity, Computer Science, or Information Technology
  • 5+ years of cybersecurity experience, including RMF activities for Department of War systems
  • Security certification such as CompTIA Security+, CISSP, or CISM
  • Practical knowledge of cloud platforms, preferably Azure or Google Cloud Platform, including IAM, VPC, GKE, and security services
  • Strong knowledge of Docker, Kubernetes, containerized environments, and container security best practices
  • Familiarity with generative AI, LLMs, and AI/ML security considerations
  • Deep understanding of NIST SP 800-53, DoD RMF, FedRAMP, and related cybersecurity frameworks
  • Experience writing and maintaining SSPs, POA&Ms, and SARs
  • Experience with security risk assessments in DoW environments
  • Strong communication and collaboration skills
  • U.S. citizenship or lawful permanent residency required for employment

Benefits:

  • Fully remote work
  • Minimal travel
  • Equal Opportunity Employer