Pyramid Systems, Inc.-posted 3 months ago
$113,769 - $170,653/Yr
Mid Level
101-250 employees

Pyramid Systems is looking for an Information Security Officer who is passionate about bringing top security to Federal clients. The role involves supporting security activities associated with evaluating, implementing, managing security practices, and continued operations of new and existing technologies.

  • Communicate regularly with DHS customers and internal engineering teams to lead required RMF process/steps to assess and authorize a system obtaining and maintaining a full ATO (Authority to operate).
  • Perform monthly continuous monitoring reporting to include analysis of scans, logs, accounts, etc.
  • Assist the customer with authorizing assessment and authorization (A&A) documentation.
  • Support writing and reviewing of Risk Management Framework (RMF) documentation packages to support risk assessments.
  • Design and execute the security testing plan of all requirements and analysis required to complete a RMF package document for submittal and approval.
  • Knowledge of web, databases, containers, and application security scanning and reporting for RMF processes, procedures, and governance.
  • Knowledge of Cybersecurity, Network, Systems, and Software Engineering best practices.
  • Experience with CSAM, STIGs, and SRGs.
  • Be proficient with vulnerability scanning tools and frameworks to evaluate the security posture of a system.
  • Assist the customer in preparing training and table top exercises for contingency planning, incident response and disaster recovery.
  • Have technical understanding of cloud technologies (i.e., AWS, microservices, zero trust, data streaming, data pipelines, containers, etc.) and their implementation within the customer’s network environments.
  • Shall complete ISSO USCIS provided training as required.
  • 5+ years of experience in the ISSO field, focusing on supporting the security activities associated with evaluating, implementing, managing security practices, and continued operations of new and existing technologies.
  • Experience with requirements analysis, architect, design, and documentation development of cybersecurity and information security solutions.
  • Experience leading RMF for IATT/ATO activities involving custom on-prem and cloud solutions is a bonus.
  • Experience performing vulnerability risk analysis on the deficiencies found during RMF control testing.
  • Experience with cybersecurity tools and scanners used to evaluate the security posture of the system/enclave (preferred tool experience: Palo Alto Prisma Cloud, BurpSuite, Checkmarx, NexusIQ, SonarQube).
  • Experience with Jira, Confluence, Splunk.
  • Expertise in Agile and DevSecOps approaches.
  • MUST BE US CITIZEN and OBTAIN A PUBLIC TRUST.
  • Understanding of CI/CD pipeline and enterprise DevSecOps implementation is preferred.
  • Artificial Intelligence / Machine Learning experience a bonus.
  • Competitive compensation.
  • Employee Stock Ownership Program.
  • FlexPTO.
  • Learning and development opportunities.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service