Lead ISSO Analyst jobs in United States
info-icon
This job has closed.
company-logo

Meritore Technologies · 1 day ago

Lead ISSO Analyst

Meritore Technologies is seeking a Lead ISSO Analyst to manage the overall security posture of assigned projects. This role involves ensuring compliance with security requirements, conducting risk assessments, and managing stakeholder relationships.

Information ServicesInformation TechnologyIT InfrastructureSoftware
badNo H1Bnote

Responsibilities

Responsible for ensuring information security for an assigned area of Business/Project focusing on key areas of risk, as outlined in the Information Security policy, under the direction of the Information Security management team
Conduct Information Security risk assessments and compliance evaluations for infrastructure and application assets within required timeframes and to industry standards and regulatory specifications
Ensure controls are properly and fully implemented to address identified Information Security risks for assigned area of responsibility
Define, create and maintain the documentation for certification and accreditation of each information system in accordance with regulatory requirements
Lead and support audits and client reviews of security posture; coordinate the collection, review and submission of Information Security deliverables and track the remediation of audit findings and exceptions
Manage expectations with multiple stakeholders on projects and programs in conjunction with the Information Security team
Promotion of Information Security awareness through various communication channels within the organization
Collaborate with the Information Security team members on process improvements, secure design and recertification of our clients assets
Identify potential security control gaps by reviewing evidence provided by stakeholders, system generated reports and/or control implementation statements
Perform risk assessments using vulnerability management and application security testing reports
Initiate formal security exception process, when required
Develop Plan of Action and Milestones (POA&M) as necessary

Qualification

CISSPNIST 800-53Cloud providersHIPAACISACISMIRS 1075CMS MARS-E/ARC-AMPEPCI-DSSCustomer serviceMicrosoft OfficeSmartSheetInterpersonal skillsPresentation skillsCommunication skills

Required

Bachelor's degree and 7+ years of relevant professional experience required, or equivalent combination of education and experience
At least one of the following certifications is REQUIRED: CISSP (preferred), CISA or CISM
Experience with NIST 800-53 is REQUIRED
Ability to travel nationally up to 10% is REQUIRED
HIPAA experience is preferred
Experience with Cloud providers, such as Azure and AWS
Demonstrates excellent interpersonal, presentation and verbal/written communication skills
Demonstrates strong customer service skills
Ability to communicate technical information to non-technical staff
Ability to work collaboratively with a broad range of staff (including analysts, engineers and leadership)
Proficiency with Microsoft Office
Ability to perform comfortably in a fast-paced, deadline-oriented work environment
Ability to organize and execute complex tasks
Ability to work as a team member as well as independently

Preferred

HIPAA experience is preferred
Experience with Cloud providers, such as Azure and AWS
Knowledge of any of the following security frameworks is preferred: IRS 1075, CMS MARS-E/ARC-AMPE, PCI-DS
SmartSheet experience is a plus

Company

Meritore Technologies

twittertwitter
company-logo
Meritore Technologies is an e-verify consulting firm.

Funding

Current Stage
Early Stage
Company data provided by crunchbase