freehire launches on Product Hunt on 26 August.

Follow →

Information System Security Officer (Cybersecurity Assessment & Authorization)

Summary

Lead cybersecurity assessments and authorization for government IT systems using NIST RMF and ISO frameworks, design secure architectures, and manage GRC tools.

Opened to U.S. Citizen and/or Green card holders only.

NikSoft Systems Corporation is a recognized Information Technology solutions provider. Founded in 1998 and based in Reston, Virginia, NikSoft is a CMMI Level 3 Certified company with an established reputation for excellence and on-time delivery with a consistently high customer satisfaction rating from its Federal Government and private consulting contracts.

Position Overview

We are seeking an Information System Security Officer (Cybersecurity Assessment & Authorization). You will support security assessments for diverse application domains, including cloud computing environments. This critical role serves as the primary Subject Matter Expert (SME) for the A&A process, managing large-scale, high-risk security compliance and architecture initiatives.

Key Responsibilities

  • Lead Risk Assessments: Conduct security assessments and document compliance using NIST RMF and ISO frameworks.
  • Manage A&A Processes: Oversee validation, accreditation, and documentation utilizing Governance, Risk, and Compliance (GRC) tools.
  • Design Secure Architecture: Support blueprints, standards, and guidelines for secure enterprise IT infrastructures.
  • Conduct Vulnerability Scanning: Interrogate systems for configuration status using network and vulnerability scanning tools.
  • Act as A&A SME: Guide stakeholders, cross-functional business units, and new A&A resources through the USPS validation process.
  • Brief Leadership: Build action plans, manage schedules, and brief executives on cross-functional IT risk and assurance.

Required Qualifications

  • Framework Expertise: Proven proficiency with NIST Risk Management Framework (RMF) and ISO standards.
  • Technical Skills: Strong background in GRC systems, security architecture principles, and network scanning technologies.
  • Project Management: Track record of driving large, complex, and high-risk IT initiatives.
  • Soft Skills: Excellent organizational skills alongside senior-level executive briefing capabilities.

Experience, Education & Certifications

  • Experience: Minimum 5+ years of direct experience in Cybersecurity Assessment & Authorization (A&A), Information Assurance, or Risk Management Framework (RMF) environments.
  • Education: Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field (relevant senior-level experience may substitute for a degree).
  • Certifications: a current high-level security certification such as ICS2 CISSP (IAM Level III standard), ISACA CISM, or CGRC (Certified in Governance Risk and Compliance) preferred.

Opened to U.S. Citizen and/or Green card holders only.

****Candidates must be able to obtain a Postal Sensitive Clearance (US Citizenship or Green Card required). Additionally, candidates must not have traveled outside of the USA for a combined period not to exceed 6 months within the last 3 years.***

See also