Cybersecurity SME / ISSO- Federal Health
About the role
Driven by Innovation and built on Trust, rockITdata is a unique SDVOSB services company that partners with leading commercial healthcare/life sciences organizations on cutting edge innovations - think AI, automation and data transformation. We then bring those commercially tested solutions to government entities to deliver predictable, measurable impact for the American taxpayer and consumer. Join rockITdata as a Cybersecurity SME / Information System Security Officer (ISSO) supporting one of the nation's largest federal healthcare modernization initiatives.
Responsibilities
- Lead cybersecurity activities supporting enterprise healthcare modernization initiatives.
- Manage Risk Management Framework (RMF) activities throughout the system lifecycle.
- Develop, maintain, and coordinate Authority to Operate (ATO) documentation and authorization packages.
- Prepare and maintain System Security Plans (SSPs), Security Assessment Reports (SARs), Plan of Action & Milestones (POA&Ms), and other security documentation.
- Coordinate security control implementation, assessment, and continuous monitoring activities.
- Perform security risk assessments and recommend mitigation strategies that reduce organizational risk.
- Collaborate with engineering, cloud, infrastructure, and development teams to integrate cybersecurity throughout system design and implementation.
- Support vulnerability management, remediation activities, security testing, and audit readiness.
- Monitor compliance with NIST, FISMA, VA, and other Federal cybersecurity requirements.
- Provide cybersecurity guidance to project leadership and Government stakeholders while promoting security best practices across the program.
Qualifications
- Bachelor's degree in Cybersecurity, Information Assurance, Computer Science, Information Systems, or a related technical discipline.
- Five (5) years of experience supporting cybersecurity, information assurance, or Information System Security Officer (ISSO) responsibilities within enterprise IT environments.
- Experience implementing and maintaining the NIST Risk Management Framework (RMF).
- Experience developing and maintaining ATO packages, SSPs, POA&Ms, and other Federal cybersecurity documentation.
- Strong knowledge of NIST SP 800-53, FISMA, FedRAMP, Zero Trust principles, and Federal cybersecurity standards.
- Experience supporting AWS GovCloud, Azure Government, or other secure cloud environments is preferred.
- CISSP, CAP, Security+, CISM, or equivalent cybersecurity certification is preferred.
- Experience supporting VA, VHA, DHA, or other Federal healthcare organizations, health IT, telehealth, or Federal program management is preferred.
- Excellent analytical, leadership, communication, and problem-solving skills.
- Ability to obtain and maintain a Level 3 Public Trust clearance.
Company Culture
Here at rockITdata, we are committed to following our 10 Guiding Principles. Our Guiding Principles define our culture. They’re who we are, how we work, and what inspires us to be the best. We empower our people to be themselves and encourage an entrepreneurial way of thinking. In our challenging, fast-paced environment, no day is the same.
Our Guiding Principles include: Know the Why. Value People Above All Else. Transparency to a Fault. Progress, Not Perfection. Be Good by Doing Good. Smart People Can Disagree. Bend but Don’t Break. Represent Your Brand. Think Differently. Be Amazing, Be Fearless, Smile, Have Fun!