Information System Security Officer (ISSO)
$115.4k - $192.3kReed Technology
Are you passionate about driving security compliance in complex cloud environments and helping organizations maintain trusted relationships with government stakeholders?
Do you enjoy collaborating across engineering, security, and operations teams to deliver secure, compliant solutions that make a meaningful impact?
About the Business
LexisNexis® Risk Solutions provides customers with solutions and decision tools that combine public and industry specific content with advanced technology and analytics to assist them in evaluating and predicting risk and enhancing operational efficiency. We use the power of data and advanced analytics to help our customers make better, timelier decisions. By bringing clarity to information, we ultimately help make communities safer, insurance rates more accurate, commerce more transparent, business decisions easier and processes more efficient.
You can learn more about LexisNexis Risk at
About our team
Our team is composed of highly technical professionals who thrive on solving complex security, cloud, and compliance challenges. We foster a collaborative, engineering-focused culture where team members are empowered to lead difficult initiatives, drive innovation, and deliver outcomes in highly regulated environments.
About the Role
We are seeking an experienced Information System Security Officer (ISSO) to lead and maintain the security and compliance posture of our recently obtained FedRAMP-authorized cloud environment. The ISSO will serve as the primary security compliance lead responsible for ensuring ongoing adherence to FedRAMP, NIST 800-53, FISMA, and organizational security requirements. This role will partner with Engineering, Cloud Operations, DevOps, Product, and Compliance teams to maintain authorization, manage continuous monitoring activities, support audits and assessments, and drive security improvements across the platform. The ideal candidate combines strong cybersecurity knowledge with hands-on experience managing FedRAMP-authorized systems in cloud environments such as Azure, AWS, or GCP.
Key Responsibilities
FedRAMP Program Management
- Serve as the designated ISSO for FedRAMP-authorized systems.
- Maintain the organization's Authority to Operate (ATO) and support ongoing compliance activities.
- Lead FedRAMP continuous monitoring activities, including monthly, quarterly, and annual reporting requirements.
- Coordinate annual assessments, independent audits, penetration testing, and security reviews with Third Party Assessment Organizations (3PAOs).
- Manage security-related communications with federal agencies, sponsoring organizations, and stakeholders.
Risk & Security Management
- Conduct security risk assessments and vulnerability analyses.
- Review, assess, and monitor Plan of Action & Milestones (POA&M) items through remediation.
- Evaluate security impacts of system changes and support Significant Change Request (SCR) submissions.
- Ensure proper implementation and effectiveness of NIST 800-53 security controls.
- Facilitate security reviews for architecture changes, new technologies, and cloud deployments.
Compliance & Documentation
- Maintain FedRAMP security documentation including:
- System Security Plan (SSP),
- Security Assessment Reports (SAR)
- POA&M
- Configuration Management Plan
- Incident Response Plan
- Continuous Monitoring Strategy
- Contingency Planning Documentation
- Review and approve security documentation updates resulting from system changes.
- Ensure evidence collection and compliance artifacts are complete and audit-ready.
Continuous Monitoring
- Manage POA&M deliverables for the sponsor.
- Monitor security events, incidents, and compliance metrics.
- Validate remediation efforts for identified security findings.
- Ensure required security assessments are completed according to established schedules.
- Track compliance KPIs and report status to leadership.
Security Operations & Incident Response
- Participate in security incident investigations and response efforts.
- Coordinate with security operations teams to ensure timely identification and remediation of threats.
- Support root cause analysis and corrective action planning following incidents.
- Review security monitoring tools and processes to improve detection and response capabilities.
Cross-Functional Collaboration
- Partner with Engineering and DevOps teams to integrate compliance into system development and deployment processes.
- Provide security guidance throughout the SDLC.
- Support cloud migration, modernization, and technology transformation initiatives.
- Ensure compliance and security awareness training meet FedRAMP requirements.
- Matrix manage resources participating in the FedRAMP Program.
Required Qualifications
Education
- Bachelor's degree in Cybersecurity, Information Systems, Computer Science, Engineering, or related field.
- Equivalent work experience may be considered in lieu of degree requirements.
Experience
- 5+ years of information security, cybersecurity, or compliance experience.
- 3+ years supporting FedRAMP, FISMA, or federal compliance programs.
- Experience maintaining FedRAMP Moderate or High authorized environments.
- Experience supporting security assessments, audits, and continuous monitoring activities.
- Experience with cloud platforms such as AWS, Azure, or Google Cloud.
Technical Knowledge
- Strong understanding of:
- FedRAMP requirements
- NIST SP 800-53
- NIST 800-37 Risk Management Framework (RMF)
- FISMA
- NIST 800-171
- Zero Trust Architecture principles
- Vulnerability management processes
- Security operations and incident response
- Familiarity with security technologies including:
- SIEM platforms
- Vulnerability scanners
- Endpoint detection and response (EDR)
- Identity and Access Management (IAM)
- Cloud-native security services
Preferred Qualifications
- CISSP, CISM, GSLC, CAP, or equivalent cybersecurity certification.
- FedRAMP-specific experience acting as:
- ISSO
- Security Compliance Manager
- FedRAMP Program Manager
- Experience supporting federal agencies or government contractors.
- Knowledge of automated compliance platforms and Governance, Risk, and Compliance (GRC) tools.
- Experience leveraging AI and automation to streamline compliance reporting, evidence collection, and POA&M management.
- Experience with AWS GovCloud or Azure Government environments.
Risk benefit statement
Learn more about the LexisNexis Risk team and how we work
U.S. National Base Pay Range: $115,400 - $192,300. Geographic differentials may apply in some locations to better reflect local market rates. This job is eligible for an annual incentive bonus.We know your well-being and happiness are key to a long and successful career. We are delighted to offer country specific benefits. Click here to access benefits specific to your location.
We are committed to providing a fair and accessible hiring process. If you have a disability or other need that requires accommodation or adjustment, please let us know by completing our Applicant Request Support Form or please contact View phone number on aiapply.co.
Criminals may pose as recruiters asking for money or personal information. We never request money or banking details from job applicants. Learn more about spotting and avoiding scams here .
Please read our Candidate Privacy Policy.
We are an equal opportunity employer: qualified applicants are considered for and treated during employment without regard to race, color, creed, religion, sex, national origin, citizenship status, disability status, protected veteran status, age, marital status, sexual orientation, gender identity, genetic information, or any other characteristic protected by law.
USA Job Seekers:
EEO Know Your Rights.
$115.4k - $192.3k
...Are you passionate about driving security compliance in complex cloud environments... ...decisions. By bringing clarity to information, we ultimately help make communities... ...seeking an experienced Information System Security Officer (ISSO) to lead and maintain the security and...SuggestedFull timeFor contractorsWork experience placementLocal area- ...Chief Information Security Officer (CISO)DLA Piper is, at its core, bold, exceptional, collaborative and supportive. Our people are the backbone... ...direction for the firm's Information Security Management System, security governance, risk management, incident response,...SuggestedWork at office
- ...Business Information Security Officer (BISO)Embark on a transformative journey as a Business Information Security Officer (BISO). At Barclays, our... ...and monitoring of security controls across the banks IT systems to ensure the effectiveness of controls and mitigation of...SuggestedTemporary workWork at office
- ...vulnerability testing. Strong understanding of OWASP top 10 and strong experience with at least 3 Pen Testing and application security testing Supporting bi-weekly code releases, primarily doing Penetration Testing, testing security controls, web / mobile...Suggested
- ...Cybersecurity Assessments And Exercises Vice President Drive the security of critical banking applications and platforms through hands-on... ...relevant standards. ~ Ability to identify and articulate systemic security issues related to threats, vulnerabilities, and risks,...Suggested
$100k - $120k
...practice full time in Newark, DE. We offer a variety of services to our patients and while Chiropractic is our focus, we also offer in office physical therapy, rehab therapy, and massage therapy. We utilize primarily a Diversified, hands-on adjusting style with...Full timeWork at officeRelocation package$105.15k - $193.26k
...leadership to strengthen technology governance, security and control environments across all... ..., cloud, data, access governance and system implementations; design risk assessments... ...: Maintains professional proficiency in information systems, cybersecurity, auditing standards...Full timeTemporary workLocal area$80k - $90k
...role involves driving Passing of all pre-employment requirements (MVR, Background Check, Drug Screen) The compensation and benefits information is accurate as of the date of this posting. The Company reserves the right to modify this information at any time, with or...Weekly payFull timeFor contractorsLocal areaFlexible hours- ...Logistics A Day in the Life: Chief Technology Officer (CTO) Trinity Logistics is searching for... ...thinking who is ready to modernize systems, scale infrastructure, and drive AI-... ...Employment type Full-time Job function Information Technology Industries Transportation, Logistics...Full timeRemote work
- ...needs of our business to deliver adaptable, secure solutions while providing an unmatched... ...CTEM functionImplement continuous, threat-informed prioritization of exposuresAlign findings... ..., deployment, and operation of systems and solutionsAssess current environment and...
- ...readiness and handover. Understanding of cyber security principles, data security, identity and... ..., integrity and availability of information, and support the mitigation of security... ...of security controls across the banks IT systems to ensure the effectiveness of controls...
- ...as well as ensuring that you have the financial stability and security to think long term. Underpinning all of this is a clear set of... ...rays, as indicated. Evaluate patients' neuromusculoskeletal systems and the spine using chiropractic diagnosis to determine neuromusculoskeletal...Full timePart time
- Job-ID27070122Reference26-00049Vendors will be able to submit questions about the posting until 1/9/26 at 10am. We will compile those questions and send to the state for responses so we can provide consolidated feedback Do not resubmit any candidates from posting 8392. ...
$115k - $150k
...leading emergency management and homeland security consulting firm. Known for its public... ...experts). Strong proficiency with MS Office products, databases, and other software... ...marital status, military status, genetic information, or any other status, characteristic or...Permanent employmentTemporary workLocal areaImmediate startRemote workFlexible hours- ...Initial phone screen / In‑Person Skills: Bachelor’s degree in Information Technology, Computer Science, or a related technical field (... ...experience leading technical teams, with direct responsibility for systems, platforms, or infrastructure. Minimum 5 years in a senior...Contract work
$127.68k - $199.5k
...establish reference architectures, and ensure security, compliance, and scalability across all... ...integrations between SAP and non-SAP systems using API-led, event-driven, and hybrid... ...’s degree in Computer Science, Information Systems, Software Engineering, or a related...Full timeLocal area$125.76k - $188.64k
...for establishing and implementing new or revised application systems and programs in coordination with the Technology team. The overall... .../University degree in Computer Science, Computer Engineering, Information Systems or equivalent experienceLSA Certified with 8.8 or...Full time$125k - $160k
...operations and infrastructure for our New York office. You will own everything from day-to-day... ...management to vendor relationships, security compliance, and IT strategy. You will report... ...IT infrastructure, systems, and support for the New York office on a...For contractorsWork at officeRemote work$107.5k - $179.1k
Wilmington Trust is seeking an experienced IT Audit Manager responsible for leading IT assurance activities across its technology environment. You will manage audit processes, mentor team members, and enhance audit methodologies. The ideal candidate will have 7+ years of...$107.5k - $179.1k
...role will be expected to regularly consult with Audit Leadership responsible for the Cybersecurity and Technology domains to stay informed of the Bank’s overall IT strategy and the audit results in these domains, to influence and strengthen their work product. As a member...Full timeRemote workRelocation$111k - $216k
...a Cloud/DevOps (Development, Security, and Operations) Engineer to... ...environments supporting production systems, modernization initiatives,... ...Science, Engineering, Information Systems, or equivalent practical... ...five continents in more than 40 offices. We have experienced dramatic...Full timeTemporary workLocal areaRemote work- ...Development strategy into scalable, data-informed operations and enables a seamless, user-... ...ecosystem, including LMS, performance systems, analytics, governance, and integrations... ...audiences, with awareness of data privacy, security, and compliance standards such as GDPR....
$50k - $120k
(Hiring) Cyber Security Specialist$50000-$120000 + BenefitsWe are seeking a Cyber Security... ...the protection of computer networks and information.Responsibilities:Implement and monitor... ...auditsProvide strategies for improving system securityQualifications:Previous experience...- ...records and files relating to HR (including payroll and pension information); Provide the strategic and professional leadership of HR... ...to ensure member records are updated, maintained and accurate. Systems And Processes Produce a regular HR data dashboard for the Trust...Permanent employmentFull timeContract workLocal areaTrial periodFlexible hours
$169.5k
...operating model, decisioning systems, and technology products that... ...CONDITIONS Position Type ~ Office-Basedor RemotePosition... ...employees may have access to covered information, cardholder data, or other... ...as well as all data security guidelines established within...For contractorsWork at officeLocal area- Tata Consultancy Services is seeking an Information Security Analyst to support enterprise security operations with a focus on vulnerability management, patching, and risk remediation. You will collaborate with engineering and infrastructure teams to identify, analyze,...
$92.87k - $152.57k
...responsible for ensuring that established information technology related controls are designed... ...company assets, and improving its systems of financial and operational controls. This... ...automated workpapers Proficient in all MS Office products Ability to effectively...Local areaFlexible hours- WSFS Bank seeks an IT Audit Supervisor to partner with the IT Audit Manager in directing technology-focused audits within the Internal Audit Plan. You will ensure IT controls are designed and operated effectively and support integrated audits with downstream financial, ...
- ...infrastructure, and e-commerce platform are secure, resilient, and fully compliant with all... ...all digital checkout touchpoints, POS systems, and multi-channel payment integrations.... ..., and manage the lifecycle of corporate information security policies aligned with the NIST...Full time
$128k - $249k
...responsible for delivering reliable, secure, and scalable application... ...as iManage, ServiceNow, CRM systems, SharePoint, litigation... ...five continents in more than 40 offices. We have experienced dramatic... ...all our professionals.For more information or to view other job...Full timeContract workTemporary workLocal areaRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information System Security Officer (ISSO). Be the first to apply!
- information security lead Delaware State
- information systems security officer sso
- business information security officer
- chief information security officer ciso
- remote ciso
- business information security officer biso
- information systems security officer
- information security officer iso
- information security officer
- chief information security officer

