Information Security Officer

Check with seller
Security Guard Jobs
1 month
United States
Maryland
0 views
ID: 691131
Published 1 month ago by Jobs via Dice
Check with seller
Columbia, Maryland, United States
Get directions →
0 item views
Job highlights
Identified by Google from the original job post
Qualifications
3+ years of experience with NIST and Federal security documentation
Active CISSP or equivalent security related certification
Capable of obtaining Level Five: Public Trust security clearance
Proven experience with FISCAM and FedRAMP requirements
Experience writing and maintaining security related documents, including the System Security Plan (SSP), Contingency Plan and Test (CP), Information System Risk Assessment (ISRA), Security Assessment Plan/Report (SAP/SAR) and the Privacy Impact Assessment (PIA)
Ability to resolve complex support issues by leveraging user forums, support forums, or opening support cases with vendors and following them to closure
Strong ability to find mitigation and alternative approaches
Knowledge of current as well as emerging security threats
Understanding of and experience with Agile Development and DevSecOps/DevOps
Proven experience with Cloud Technologies (AWS)
Proven experience with Microsoft Office Tools (Outlook, Word, Excel, PowerPoint)
Must be a US and have lived in the United States at least three (3) out of the last five (5) years
Responsibilities
The Information Security Officer (ISO) will work closely with Project and Technical management to plan, design and implement Dynamic Application Security Testing (DAST) and/or Static Application Security Testing (SAST) security methodologies into the technical solution of a program within the Centers for Medicare and Medicaid Services (CMS)
The ISO will be responsible for assuring all CMS security and privacy considerations and requirements are assessed, addressed and documented for the given application, designing the solution so that it passes the required Annual Security Assessment Testing (within CMS referred to ACT or Adaptive Capabilities Testing) and maintains the system Authority to Operate (ATO)
Promote a professional work ethic with the ability to meet commitments, scheduled timelines and take ownership of problems
Lead, support and document all security incident response activities
Perform annual security assessment audits (such as ACT, PenTest, etc.)
Perform Web Application Penetration and Continuous Diagnostic Monitoring (CDM) testing
Mitigate and/or address the security specific vulnerabilities and document via Plan of Action and Milestones (POAM)
Support ad hoc security requests from the customer and program management
Conduct security impact assessments for new or existing architecture changes
Job description
Dice is the leading career destination for tech experts at every stage of their careers. Our client, Chags Health Information Technology LLC (C-HIT), is seeking the following. Apply via Dice today!

Job Description:

The Information Security Officer (ISO) will work closely with Project and Technical management to plan, design and implement Dynamic Application Security Testing (DAST) and/or Static Application Security Testing (SAST) security methodologies into the technical solution of a program within the Centers for Medicare and Medicaid Services (CMS). The ISO will be responsible for assuring all CMS security and privacy considerations and requirements are assessed, addressed and documented for the given application, designing the solution so that it passes the required Annual Security Assessment Testing (within CMS referred to ACT or Adaptive Capabilities Testing) and maintains the system Authority to Operate (ATO).

The primary responsibilities of the position include but are not limited to:
• Promote a professional work ethic with the ability to meet commitments, scheduled timelines and take ownership of problems.
• Lead, support and document all security incident response activities.
• Perform annual security assessment audits (such as ACT, PenTest, etc.).
• Perform Web Application Penetration and Continuous Diagnostic Monitoring (CDM) testing.
• Mitigate and/or address the security specific vulnerabilities and document via Plan of Action and Milestones (POAM).
• Support ad hoc security requests from the customer and program management.
• Conduct security impact assessments for new or existing architecture changes.

Required Skills:
• 3+ years of experience with NIST and Federal security documentation.
• Active CISSP or equivalent security related certification.
• Capable of obtaining Level Five: Public Trust security clearance.
• Proven experience with FISCAM and FedRAMP requirements.
• Experience writing and maintaining security related documents, including the System Security Plan (SSP), Contingency Plan and Test (CP), Information System Risk Assessment (ISRA), Security Assessment Plan/Report (SAP/SAR) and the Privacy Impact Assessment (PIA).
• Ability to resolve complex support issues by leveraging user forums, support forums, or opening support cases with vendors and following them to closure. Strong ability to find mitigation and alternative approaches.
• Knowledge of current as well as emerging security threats.
• Understanding of and experience with Agile Development and DevSecOps/DevOps.
• Proven experience with Cloud Technologies (AWS)
• Proven experience with Microsoft Office Tools (Outlook, Word, Excel, PowerPoint).

Desired Skills and Certifications:
• Working experience within CMS including with CMS Information Systems Security and Privacy Policy (IS2P2), NIST 800-53, NIST 800-63, CMS Acceptable Risk Safeguards (ARS), CMS Risk Management Handbook (RMH) and CMS Federal Information Security Management Act (FISMA) Controls Tracking System (CFACTS).
• Proven experience with Security tools such as Burp, SonarQube, AWS Security Tools
• Proven experience with networking concepts, such as, DHCP, DNS, VLANs, Routing and VPNs

Must be a US and have lived in the United States at least three (3) out of the last five (5) years.

"C-HIT is an EOE, including disability and veterans." Read more

Published on 2025/09/10. Modified on 2025/09/10.

Description

Job highlights
Identified by Google from the original job post
Qualifications
3+ years of experience with NIST and Federal security documentation
Active CISSP or equivalent security related certification
Capable of obtaining Level Five: Public Trust security clearance
Proven experience with FISCAM and FedRAMP requirements
Experience writing and maintaining security related documents, including the System Security Plan (SSP), Contingency Plan and Test (CP), Information System Risk Assessment (ISRA), Security Assessment Plan/Report (SAP/SAR) and the Privacy Impact Assessment (PIA)
Ability to resolve complex support issues by leveraging user forums, support forums, or opening support cases with vendors and following them to closure
Strong ability to find mitigation and alternative approaches
Knowledge of current as well as emerging security threats
Understanding of and experience with Agile Development and DevSecOps/DevOps
Proven experience with Cloud Technologies (AWS)
Proven experience with Microsoft Office Tools (Outlook, Word, Excel, PowerPoint)
Must be a US and have lived in the United States at least three (3) out of the last five (5) years
Responsibilities
The Information Security Officer (ISO) will work closely with Project and Technical management to plan, design and implement Dynamic Application Security Testing (DAST) and/or Static Application Security Testing (SAST) security methodologies into the technical solution of a program within the Centers for Medicare and Medicaid Services (CMS)
The ISO will be responsible for assuring all CMS security and privacy considerations and requirements are assessed, addressed and documented for the given application, designing the solution so that it passes the required Annual Security Assessment Testing (within CMS referred to ACT or Adaptive Capabilities Testing) and maintains the system Authority to Operate (ATO)
Promote a professional work ethic with the ability to meet commitments, scheduled timelines and take ownership of problems
Lead, support and document all security incident response activities
Perform annual security assessment audits (such as ACT, PenTest, etc.)
Perform Web Application Penetration and Continuous Diagnostic Monitoring (CDM) testing
Mitigate and/or address the security specific vulnerabilities and document via Plan of Action and Milestones (POAM)
Support ad hoc security requests from the customer and program management
Conduct security impact assessments for new or existing architecture changes
Job description
Dice is the leading career destination for tech experts at every stage of their careers. Our client, Chags Health Information Technology LLC (C-HIT), is seeking the following. Apply via Dice today!

Job Description:

The Information Security Officer (ISO) will work closely with Project and Technical management to plan, design and implement Dynamic Application Security Testing (DAST) and/or Static Application Security Testing (SAST) security methodologies into the technical solution of a program within the Centers for Medicare and Medicaid Services (CMS). The ISO will be responsible for assuring all CMS security and privacy considerations and requirements are assessed, addressed and documented for the given application, designing the solution so that it passes the required Annual Security Assessment Testing (within CMS referred to ACT or Adaptive Capabilities Testing) and maintains the system Authority to Operate (ATO).

The primary responsibilities of the position include but are not limited to:
• Promote a professional work ethic with the ability to meet commitments, scheduled timelines and take ownership of problems.
• Lead, support and document all security incident response activities.
• Perform annual security assessment audits (such as ACT, PenTest, etc.).
• Perform Web Application Penetration and Continuous Diagnostic Monitoring (CDM) testing.
• Mitigate and/or address the security specific vulnerabilities and document via Plan of Action and Milestones (POAM).
• Support ad hoc security requests from the customer and program management.
• Conduct security impact assessments for new or existing architecture changes.

Required Skills:
• 3+ years of experience with NIST and Federal security documentation.
• Active CISSP or equivalent security related certification.
• Capable of obtaining Level Five: Public Trust security clearance.
• Proven experience with FISCAM and FedRAMP requirements.
• Experience writing and maintaining security related documents, including the System Security Plan (SSP), Contingency Plan and Test (CP), Information System Risk Assessment (ISRA), Security Assessment Plan/Report (SAP/SAR) and the Privacy Impact Assessment (PIA).
• Ability to resolve complex support issues by leveraging user forums, support forums, or opening support cases with vendors and following them to closure. Strong ability to find mitigation and alternative approaches.
• Knowledge of current as well as emerging security threats.
• Understanding of and experience with Agile Development and DevSecOps/DevOps.
• Proven experience with Cloud Technologies (AWS)
• Proven experience with Microsoft Office Tools (Outlook, Word, Excel, PowerPoint).

Desired Skills and Certifications:
• Working experience within CMS including with CMS Information Systems Security and Privacy Policy (IS2P2), NIST 800-53, NIST 800-63, CMS Acceptable Risk Safeguards (ARS), CMS Risk Management Handbook (RMH) and CMS Federal Information Security Management Act (FISMA) Controls Tracking System (CFACTS).
• Proven experience with Security tools such as Burp, SonarQube, AWS Security Tools
• Proven experience with networking concepts, such as, DHCP, DNS, VLANs, Routing and VPNs

Must be a US and have lived in the United States at least three (3) out of the last five (5) years.

"C-HIT is an EOE, including disability and veterans."
Jobs via Dice
Jobs via Dice
3144 active listings

Recently viewed

Viraje Enterprises Viraje Enterprises 1 month
Helper Jobs 1 month
Helper Operator
Check with seller
Helper Operator
Salary Range : Rs. 10000 - Rs. 30000 , based on skills, experience, and interview performance Educational Requirement : Tenth Pass Work Arrangement : Work From Office Gender Preference : Both male and female can apply Skills Requirement : No predefined skills necessary Experience Requirement : Fresher Location : Kadabagere Working Hours : +:00 AM - 5:30 PM |...
1 month Helper Jobs views
Check with seller
Deutsche Bank Deutsche Bank 1 month
Bank Jobs 1 month
Crdu Rdc V Avp
Check with seller
Crdu Rdc V Avp
Job description Company: Deutsche India Pvt. Ltd Role: Assistant Vice President Division: Group Finance Team: Credit Risk Data Unit - Relationship Management Role Description Credit Risk Data Unit (CRDU) The Credit Risk Data Unit (CRDU) was created to bring together Credit Operations and Risk Close Analysis functions with the aim to standardize data taxonomy...
1 month Bank Jobs views
Check with seller
Confidential Confidential 1 month
12th pass
Check with seller
12th pass
Answering customer inquiries and listen to their problems/asksTroubleshooting customer reported problems – Remote support and On-site support.Identifying root causes for the problems and taking corrective and preventive steps.Installation of OS and software.Providing training to the customer on software and solutions.Product demonstration to customers.Genera...
1 month 12th Pass Jobs views
Check with seller
Westpac Westpac 1 month
Bank Jobs 1 month
Personal Banking Advisor
Check with seller
Personal Banking Advisor
Job details Job type Part-time Shift and schedule Monday to Friday   Location Bairnsdale VIC   Full job description Create your best future and join Westpac Bairnsdale Branch as a Personal Banking Advisor. What's the role? A Personal Banking Advisor at Westpac is a professional who assists customers with their banking needs, offering tailored advice and solu...
1 month Bank Jobs views
Check with seller
Are you a professional Recruiter? Create an account