Information System Security Officer

Location

Maryland

Posted

53 days ago

Salary

0

Seniority

Lead

Postgraduate Degree8 yrs expEnglishCyber Security

Job Description

Information System Security Officer

Private Label Staff

• Provide expert-level technical guidance and analysis to support cybersecurity and risk assessment initiatives, including supply chain risk management. • Develop, enhance, and maintain standard operating procedures (SOPs) to support assessment execution and implementation. • Conduct security assessments and hands-on testing, analyze results, document risks, and recommend appropriate countermeasures. • Identify, evaluate, and report on system vulnerabilities, threats, and security gaps. • Review and provide recommendations on program-level documentation, including: o Requirements specifications o System architecture and design documents o Test plans and security plans • Develop and document security evaluation test plans and procedures. • Support the development and implementation of information security policies, standards, and guidance. • Ensure compliance with applicable frameworks and regulations (e.g., FISMA, NIST, OMB). • Perform risk assessments, including analyzing threats, vulnerabilities, and potential impacts. • Coordinate with cross-functional teams and stakeholders to support security testing and program objectives. • Lead or participate in technical exchange meetings, documenting outcomes and action items. • Prepare and deliver briefings to leadership on project status, risks, and key findings. • Analyze and synthesize data from multiple sources to produce clear, actionable insights for both technical and non-technical audiences. • Provide oversight for the design, development, and implementation of security support systems. • Collaborate with stakeholders to map system functionality to security controls and compliance requirements.

Job Requirements

  • Master’s degree (MS/MA) in Cybersecurity, Information Technology, Computer Science, or a related field
  • Minimum of 8+ years of relevant experience in cybersecurity, risk management, or assessment operations
  • Experience supporting federal or highly regulated environments preferred
  • Strong knowledge of cybersecurity frameworks and standards (FISMA, NIST, OMB, etc.)
  • Experience with risk assessments, vulnerability analysis, and security testing methodologies
  • Ability to translate complex technical concepts into clear documentation and briefings
  • Familiarity with security documentation development, including risk assessments, contingency plans, and test reports
  • Strong analytical, problem-solving, and communication skills
  • Ability to work independently and collaboratively in a fast-paced environment.

Related Categories

Related Job Pages

More Security Engineer Jobs

• Provide expert-level technical guidance and analysis to support cybersecurity and risk assessment initiatives, including supply chain risk management. • Develop, enhance, and maintain standard operating procedures (SOPs) to support assessment execution and implementation. • Conduct security assessments and hands-on testing, analyze results, document risks, and recommend appropriate countermeasures. • Identify, evaluate, and report on system vulnerabilities, threats, and security gaps. • Review and provide recommendations on program-level documentation, including: o Requirements specifications o System architecture and design documents o Test plans and security plans • Develop and document security evaluation test plans and procedures. • Support the development and implementation of information security policies, standards, and guidance. • Ensure compliance with applicable frameworks and regulations (e.g., FISMA, NIST, OMB). • Perform risk assessments, including analyzing threats, vulnerabilities, and potential impacts. • Coordinate with cross-functional teams and stakeholders to support security testing and program objectives. • Lead or participate in technical exchange meetings, documenting outcomes and action items. • Prepare and deliver briefings to leadership on project status, risks, and key findings. • Analyze and synthesize data from multiple sources to produce clear, actionable insights for both technical and non-technical audiences. • Provide oversight for the design, development, and implementation of security support systems. • Collaborate with stakeholders to map system functionality to security controls and compliance requirements.

District Of Columbia + 1 moreAll locations: District Of Columbia | Washington
Job Closed

• Provide expert-level technical guidance and analysis to support cybersecurity and risk assessment initiatives, including supply chain risk management. • Develop, enhance, and maintain standard operating procedures (SOPs) to support assessment execution and implementation. • Conduct security assessments and hands-on testing, analyze results, document risks, and recommend appropriate countermeasures. • Identify, evaluate, and report on system vulnerabilities, threats, and security gaps. • Review and provide recommendations on program-level documentation, including: o Requirements specifications o System architecture and design documents o Test plans and security plans • Develop and document security evaluation test plans and procedures. • Support the development and implementation of information security policies, standards, and guidance. • Ensure compliance with applicable frameworks and regulations (e.g., FISMA, NIST, OMB). • Perform risk assessments, including analyzing threats, vulnerabilities, and potential impacts. • Coordinate with cross-functional teams and stakeholders to support security testing and program objectives. • Lead or participate in technical exchange meetings, documenting outcomes and action items. • Prepare and deliver briefings to leadership on project status, risks, and key findings. • Analyze and synthesize data from multiple sources to produce clear, actionable insights for both technical and non-technical audiences. • Provide oversight for the design, development, and implementation of security support systems. • Collaborate with stakeholders to map system functionality to security controls and compliance requirements.

Virginia
Inmar Intelligence logo

Director, Security Engineering

Inmar Intelligence

We make businesses smarter to improve consumers' lives.

Full TimeRemoteTeam 1,001-5,000Since 1983H1B No Sponsor

Job Description Position Summary: The Director, Security Engineering is responsible for leading and advancing Inmar’s enterprise security engineering capabilities across infrastructure, application security, vulnerability management, and emerging security domains. This role provides strategic direction, operational leadership, and technical oversight to ensure security is embedded into the design, development, and operation of systems across the organization. This leader partners closely with IT, engineering, product, and business teams to deliver scalable, resilient, and secure solutions that protect Inmar’s assets while enabling innovation and growth. The Director drives alignment to industry frameworks (e.g., NIST, CIS, OWASP) and reinforces a culture of accountability, continuous improvement, and customer first thinking.Job Description Position Summary: This position can be located on site at the headquarters in Winston Salem, NC or remote within the continental US. Primary Accountabilities: Major Responsibilities/Essential Functions: Strategic Leadership & Execution - Define and execute the security engineering strategy aligned to enterprise risk, business priorities, and regulatory expectations - Lead multiple domains including Infrastructure Security, Application Security, Vulnerability Management, and Security Assessment/Research - Establish clear roadmaps, priorities, and measurable outcomes tied to organizational goals and SMART targets - Drive a “prevent, detect, respond” mindset across all engineering functions Team Leadership & Development - Lead and develop high-performing managers and engineering teams across global locations - Establish clear accountability, ownership, and performance expectations - Coach leaders to drive consistent execution, transparency, and continuous improvement - Foster a culture aligned to Inmar values: truth-seeking, empowerment, and high accountability Security Engineering & Architecture Oversight - Ensure secure design and implementation across: - Cloud and infrastructure security (network, endpoint, IAM, SaaS) - Application and API security (secure SDLC, WAF, code analysis, DevSecOps) - Vulnerability management and remediation programs - Security tooling including SIEM, automation, and AI security capabilities - Drive standardization, automation, and efficiency in security controls and processes - Partner with architecture and engineering teams to embed security into platforms and services Risk Reduction & Operational Excellence - Continuously assess and improve security posture across enterprise environments - Oversee vulnerability identification, prioritization, and remediation strategies - Ensure effective use of metrics, KPIs, and reporting to track risk reduction and program maturity - Support incident response readiness through strong engineering and detection capabilities Cross-Functional Partnership - Partner with IT, Software Engineering, Product, Legal, Compliance, and business leaders to align security with business outcomes - Support regulatory and audit requirements (e.g., HIPAA, PCI, NYDFS, DEA, personal data protection standards) - Collaborate with third-party vendors and service providers to ensure secure service delivery Innovation & Emerging Capabilities - Lead assessment and adoption of emerging technologies including AI security and advanced threat detection - Drive research and evaluation of new tools and techniques to enhance security effectiveness - Ensure scalability of security capabilities to support business growth and global operations Required Qualifications: - Bachelor’s degree in Computer Science, Information Technology or related field or equivalent work experience required. Masters degree preferred - 10+ years of experience cybersecurity with strong focus on security engineering and infrastructure; or any equivalent combination of experience and training that provides the required knowledge, skills, and abilities needed to complete the major responsibilities/essential functions of the position - 5+ years of leadership experience managing multiple teams and managers - Deep expertise across infrastructure, cloud, application security, and vulnerability management - Experience aligning security programs to frameworks such as NIST, CIS, OWASP - Proven ability to lead large-scale initiatives and drive measurable outcomes Preferred Qualifications: - Experience in regulated environments (promotion services, healthcare, or similar) - Familiarity with modern security tooling (SIEM, EDR, IAM, SAST/DAST, CI/CD security) - Experience with cloud platforms (AWS, Azure, GCP) and containerized environments - Strong understanding of AppSec practices Key Competencies - Strategic thinking with strong execution discipline - Ability to simplify complexity and drive clarity across teams - Strong partnership and communication skills with executive leadership - Data driven decision making and accountability for outcomes - Commitment to continuous improvement and operational excellence Success Measures - Measurable reduction in enterprise risk and vulnerability exposure - Successful delivery of security engineering roadmap and key initiatives - Strong alignment and partnership with IT and business leaders - High-performing, engaged, and accountable engineering teams - Improved security maturity across infrastructure, applications, and emerging domains The physical demands described here are representative of those that must be met by an associate to successfully perform the major job responsibilities (essential functions) of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the major job responsibilities. This job description is not intended to be an exhaustive list of all duties, responsibilities, or qualifications associated with the job. Duties responsibilities and activities may change, or new ones may be assigned at any time with or without notice. While performing the duties of this job, the associate is: - Regularly required to use hands to finger, handle or feel objects, tools or controls, and reach with hands or arms. - Regularly required to talk or hear and read instructions on a computer monitor and/or printed on paper. - Occasionally required to stand, kneel or stoop, and lift and/or move up to ## pounds. - Regularly required to view items at an extremely close range and must be able to adjust and readjust focus. - Regularly required to remain in a stationary position. Occasionally: Job requires this activity up to 33% of the time Frequently: Job requires this activity between 33% - 66% of the time Regularly: Job requires this activity more than 66% of the time As an Inmar Associate, you: - Put clients first and consistently display a positive attitude and behaviors that demonstrate an awareness and willingness to listen and respond to clients in order to meet their short-term and long-term needs, requirements and exceed their expectations. - Treat clients and teammates with courtesy, consideration and tact; you also can perceive the needs of internal and external clients and communicate effectively with the objective of delighting and retaining the client. - Build collaborative relationships and work cooperatively with others, inside and outside the organization, to accomplish objectives, develop and maintain mutually beneficial partnerships, leverage information and achieve results. - Set and attain achievable, yet aggressive, goals with a sense of urgency and accountability. - Understand that results are important and focus on turning mission into action to achieve results following the principles of agile, dynamic execution while consistently complying with quality, service and productivity standards to meet deadlines and exceed expectations by giving our clients the best possible outcome. - Support a safe work environment by following safety rules and regulations and reporting all safety hazards. At Inmar, we put people first and that means empowering our associates to thrive at every stage of life and career. Our comprehensive and competitive benefits package is thoughtfully designed to support a wide range of lifestyles and life stages. Eligible associates have access to: - Medical, Dental, and Vision insurance - Basic and Supplemental Life Insurance options - 401(k) retirement plans with company match - Health Spending Accounts (HSA/FSA) We also offer: - Flexible time off and 11 paid holidays - Family-building benefits, including Maternity, Adoption, and Parental Leave - Tuition Reimbursement and certification support, reflecting our commitment to lifelong learning - Wellness and Mental Health counseling services - Concierge and work/life support resources - Adoption Assistance Reimbursement - Perks and discount programs Please note that eligibility for some benefits may depend on your job classification and length of employment. Benefits are subject to change and may be governed by specific plan or program terms. We are an Equal Opportunity Employer, including disability/vets. Recruitment Fraud Notice: Recruitment fraud is an increasingly common scam where individuals pose as employers to offer fictitious job opportunities. Scammers sometimes impersonate Inmar recruiters on LinkedIn and other channels. We will never ask for payment or sensitive personal information during the hiring process. Verify any role on our official Workday Careers site and learn how to spot scams in our full notice. This position is not eligible for student visa sponsorship, including F-1 OPT or CPT. Candidates must have authorization to work in the U.S. without the need for employer sponsorship now or in the future.

United States
Lakeview Loan Servicing logo

Principal Special Loans

Lakeview Loan Servicing

Lakeview is an Equal Employment Opportunity employer. All aspects of consideration for employment and employment with the Company are governed on the basis of merit, competence and qualifications without regard to race, color, religion, sex, national origin, age, disability, veteran status, sexual orientation, or any other category protected by federal, state, or local law.

Full TimeRemoteTeam 501-1,000

Overview The Principal, Special Loans is a senior individual contributor role embedded within the product organization. This is not a line operations or people management role. Instead, this position is designed for a deeply experienced servicing subject matter expert who understands, in detail, how complex and non-standard loan products operate, and can translate that expertise into scalable product capabilities. This role is responsible for supporting the end-to-end definition, product translation, and operational readiness of special loan servicing workflows, including modifications, adjustable-rate mortgages (ARMs), and non-standard payment structures. The Principal ensures that all calculations, schedules, and borrower impacts are accurate, compliant, and consistently applied across the servicing lifecycle. Reporting to the Director of Servicing Product, this role partners closely with Product and Engineering to ensure that platform functionality accurately reflects real-world servicing complexity, regulatory requirements, and investor expectations. Within the broader servicing product organization, this role serves as the primary domain subject matter expert and is responsible for translating special loan servicing expertise into clear requirements, workflows, controls, and testing input for Product and Engineering. The Principal plays a critical role in validating that business rules, financial logic, workflows, and edge cases are intentionally designed and not implicitly assumed. Responsibilities Product and Operational Alignment - Ensure product design reflects real servicing behavior for complex and non-standard loan products. - Translate operational processes and product nuances into clear product requirements, business rules, controls, and system logic. - Ensure special loan workflows operate with appropriate controls, traceability, and auditability. End-to-End Workflow Definition and Validation - Define and validate end-to-end (E2E) workflows across special loan servicing scenarios. - Document workflows across happy paths and edge cases, ensuring intentional handling of exceptions. - Validate completeness and consistency of calculation logic, schedules, and dependencies across upstream and downstream systems. Product Translation & Requirements Definition - Translate domain expertise into product requirements, business rules, and system logic, and advise Product and Engineering on the operational implications of design and prioritization decisions. - Ensure requirements are sufficiently detailed and unambiguous to support scalable, repeatable system behavior. - Evaluate trade-offs across compliance, scalability, operational complexity, and speed to market. - Surface risks early, particularly related to calculation accuracy, borrower impact, and regulatory compliance. Engineering Partnership and Delivery Support - Partner closely with engineering teams to refine requirements, clarify financial logic, and support implementation. - Partner with Product and Engineering during backlog refinement and implementation planning to clarify requirements, validate business rules, and support functional decision-making. Testing, Validation, & Automation Contribution - Contribute to the development of known-answer and scenario-based test cases for special loans calculations and workflows. - Validate system behavior and outputs against expected amortization, payment, and rate outcomes. - Support UAT execution, defect triage, regression testing, and release readiness validation. - Partner with QA and engineering to design and implement an automated test suite informed by special loan domain logic. Functional Ownership: Special Loans - Establish control frameworks for special loan processing, including validation, calculation accuracy, approvals, and audit evidence standards. - Define requirements for loan modification booking, including capitalization, re-amortization, and borrower impact. - Specify amortization logic across standard and non-standard scenarios, including recast events and schedule recalculations. - Define requirements for non-standard loan products, including interest-only, balloon, step-rate, and other custom structures. - Specify index update processes, including sourcing, timing, and validation of rate indices. - Define rate change calculation logic, including margin application, rounding rules, and frequency. - Specify lookback periods and timing logic for rate determination. - Define ARM servicing requirements, including payment changes, borrower notices, and audit expectations. - Define payment recalculation logic across rate changes, modifications, and recast events. - Define requirements for error correction, borrower impact remediation, and audit traceability related to calculation or payment discrepancies. - Specify complex payment structures, including bi-weekly payments, daily simple interest (DSI), and non-standard amortization schedules. - Define monitoring and validation routines for calculation accuracy, payment correctness, and borrower impact. Flexible Domain Contribution - Support adjacent servicing domains as needed based on program priorities and evolving platform needs. - Partner across domains to ensure alignment of workflows, data, and operational dependencies throughout the servicing lifecycle. - Contribute to resolution of cross-domain issues, gaps, and edge cases to ensure cohesive end-to-end platform behavior. - Apply financial and servicing expertise to broader platform design decisions beyond primary area of ownership. Qualifications - 8+ years in mortgage servicing with deep expertise in special loans, ARM products, or complex loan servicing scenarios (AVP preferred; VP considered). - Strong understanding of amortization, rate calculations, and non-standard loan structures. - Experience with loan modifications, recasting, and ARM servicing requirements. - Familiarity with regulatory and investor requirements related to ARM disclosures and loan modifications. - Demonstrated ability to translate complex financial logic and special loan servicing processes into clear business requirements, controls, workflows, and test scenarios for Product, Engineering, and QA teams. - Proven functional leadership across cross-functional teams, including Technology, Operations, Product, Finance, and external partners. MSR Portfolio Services is an Equal Employment Opportunity employer. All aspects of consideration for employment and employment with the Company are governed on the basis of merit, competence and qualifications without regard to race, color, religion, sex, national origin, age, disability, veteran status, sexual orientation, or any other category protected by federal, state, or local law. #LI-Remote

United States