Job Closed

This listing is no longer active.

Simple Technology Solutions logo
Simple Technology Solutions

8(a) HUBZone IT consultancy w/ advanced partnerships w/ Amazon Web Services, Microsoft Azure & Google Cloud Platform

Senior ISSO/Security Operations Lead

Security OperationsSecurity OperationsOtherRemoteSeniorTeam 51-200H1B No SponsorCompany SiteLinkedIn

Location

United States

Posted

112 days ago

Salary

0

Seniority

Senior

Bachelor Degree10 yrs expEnglish

Job Description

Senior ISSO/Security Operations Lead

Simple Technology Solutions

• Serve as the technical authority for CMASS IV security operations and authorization support • Lead ongoing authorization (OA/cATO), continuous monitoring execution, RMF artifact quality, and compliance alignment with DHS and USCIS security requirements • Designated Key Personnel due to its critical role in operational security execution and audit readiness • Lead continuous monitoring and OA/cATO execution across USCIS systems • Oversee development and maintenance of SSPs, SAPs, SARs, POA&Ms, and supporting evidence • Ensure control validation and security posture consistency across supported directorates • Coordinate with system owners, Authorizing Officials (AOs), ISSOs, and engineering teams • Ensure alignment with DHS 4300A, ISPP, and USCIS security policies • Support audits, assessments, and leadership briefings related to security posture

Job Requirements

  • US Citizenship is required
  • Bachelor's Degree is required
  • minimum of 10 years' position related experience is required
  • Bachelor’s degree in Information Technology, Cybersecurity, or a related field (or equivalent experience)
  • 10+ years of federal ISSO or senior cybersecurity engineering experience
  • Demonstrated hands-on leadership of RMF, OA, and continuous monitoring programs
  • Strong understanding of federal security authorization processes and artifacts

Benefits

  • flexibility to help them thrive personally and professionally
  • collaboration
  • continuous learning
  • excellence
  • recognized as a “Best Place to Work”
  • incentives for team members living in qualified HUBZones

Related Categories

Related Job Pages

More Security Operations Jobs

GuidePoint Security logo

SecOps Engineer – North Central region

GuidePoint Security

We help organizations make smarter cybersecurity decisions that minimize risk.

OtherRemoteTeam 201-500H1B Sponsor

• Ability to autonomously prioritize and successfully deliver across a portfolio of projects. • Learn and keep up with current cyber threats, attack methodology, active campaigns, and detection techniques using a wide variety of capabilities and sources (GOTS, COTS, and Open Source). • Understand and utilize cyber threat intelligence sources. • Familiarity with key security events on common IT platforms. • Experience authoring security runbooks, policy, and best practice documentation. • Preferred experience in the areas of SecOps, Security Analytics, SIEM/SOAR, etc. • Proficiency in developing log ingestion and aggregation strategies. • Expertise developing security-focused content for one or more SIEM platforms (Splunk, CrowdStrike NG-SIEM, Elastic Security or Palo Alto XSIAM), including creation of complex threat detection logic and operational dashboards. • Understand and articulate complex technical information to both technical and non-technical audiences. • Demonstrated experience in the identification and assessment of the relevance and effectiveness of signatures and indicators of compromise based on intelligence. • Experience developing and providing regular and ad hoc briefs, documents, diagrams and other products.

United States
Job Closed
GuidePoint Security logo

SecOps Observability Engineer

GuidePoint Security

We help organizations make smarter cybersecurity decisions that minimize risk.

OtherRemoteTeam 201-500H1B Sponsor

• Provide trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. • Evaluate security posture and ecosystems. • Optimize resources and integrate best-fit solutions that mitigate risk.

United States
Job Closed
athenahealth logo

Cyber Security Operations Center (CSOC) Analyst – Tier 3

athenahealth

We provide network-enabled services, mobile apps, and data-driven insights to hospitals and medical organizations.

OtherRemoteTeam 5,001-10,000Since 1997H1B Sponsor

• Understand that as the Tier 3 (highest level) engineer, you’re expected to handle potential incidents and act as the as a subject matter expert for all security-related tickets that come into the team's various queues (including triage, containment, and remediation when necessary). • Receive incident escalations from Tier 1 and 2 analysts, assisting with real-time advanced analysis, response, and reporting. • Mentor and assist in training Tier 1 and 2 analysts to aid in their skills development and analytical capabilities. • Proactively hunt for threats and enacting identification, containment, and eradication measures while supporting recovery efforts. • Serve as a point person for coordination with appropriate parties during a security incident – client, management, legal, security, operations, etc. • Create thorough reports and documentation of all incidents and procedures, presenting findings to team and leadership on a routine basis. • Incident Response: remote remediation when possible and working with onsite teams when necessary. • Detailed documentation of events and remediation steps taken. • Root Cause Analysis: initiation and follow-through to ensure quality forensic materials are captured, writing reports with details and timelines of events with recommendations to avoid future occurrences. • Assist in the general maintenance and improvement of procedures, processes and playbooks. • Conduct research regarding the latest methods, tools, and trends in digital forensics analysis. • Conduct analysis using logs, previous alerts, etc. to identify trends to identify and prevent potential incidents. • Follow standard operating procedures (SOPs) to ensure tickets are triaged appropriately and in a timely manner, according to SLAs. • Excel at documentation and detailed notetaking, including SOP writing, incident reporting, e-mail and instant messaging etiquette, and most importantly, documenting incident actions in tickets. • This role is responsible for completing incident reports and forensic reports, when appropriate, so competent writing skills are necessary. • Ability to know when to appropriately escalate a potential issue to peers and/or leadership. • Desire to learn new concepts and technologies to grow and take on more responsibility over time. • Ability to communicate risk, prioritize incident response actions, and keep a cool head under pressure. • Advanced experience with security tools like Splunk, CrowdStrike EDR, Carbon Black EDR, Proofpoint tools, Microsoft Defender components, Cyberhaven DLP, Axiom Cyber and open-source forensic tools, Cylance Protect, Office 365 tools, PowerShell, and various network tools, etc. • Understanding the various stages of incident response, the importance and critical factors of an investigation, and how to contain as soon as possible. • Have experience with the incident response lifecycle, the Lockheed Martin Cyber Kill Chain, the MITRE framework, and the forensic workflows as outlined by NIST. • Work with development teams to ensure they're using best practices and company processes in their daily activities. • Drive self-organization; help determine how the team functions in collaboration with your peers. • Build strong relationships with cross-functional team members between the three tiers of the CSOC. • Participate in off-hours on-call incident handler rotation, which is a requirement for this role, as incidents may be escalated outside of normal business hours by our 24/7/365 Tier 2 team. Tier 3 teammates rotate on-call responsibilities which requires each teammate to be formally on-call roughly one week a month.

Massachusetts
$121K - $207K / year
Job Closed
ContractRemoteTeam 1-10Since 2015

• Oversee all active executive protection deployments • Coordinate agent scheduling and assignment logistics • Develop operational plans for residential and travel protection • Lead pre-mission briefings and post-mission reviews • Ensure proper documentation for every assignment • Recruit, vet, and onboard contractors • Maintain a strong national roster of vetted agents • Evaluate performance and enforce standards • Ensure all deployments comply with state licensing requirements • Maintain clean operational records • Act as the operational point of contact once clients are onboarded

Arizona
$125K - $180K / year
Job Closed