
Cyber Security Lead
Posted Aug 6

Posted Aug 6
This is a fully remote position, open to applicants in United States.
• Develop, execute, enhance, and consistently assess security protocols for networks, systems, data, and cloud infrastructure within the Cloud One OCI authorization boundary.
• Act as the contractor ISSO and manage the lifecycle of the DoD RMF package.
• Ensure security controls and compliance with NIST SP 800-53, DISA STIGs, and Cloud One requirements are maintained.
• Lead and facilitate the ATO process in collaboration with the AO, SCA, and ISSM.
• Keep the SSP, POA&M, and related RMF artifacts up to date.
• Identify, address, and document cybersecurity incidents, breaches, and vulnerabilities.
• Oversee incident reporting and remediation efforts in conjunction with DISA, Cloud One, and the Government ISSM.
• Assist with SOC 1 Type 2 audit compliance by supplying control evidence, audit artifacts, and serving as a liaison for auditors.
• Integrate security scanning and RMF control validation into CI/CD pipelines.
• Perform vulnerability assessments, analyze ACAS/SCAP scan results, and ensure remediation is completed.
• Supervise security controls and configurations to ensure compliance with STIG, CCI, and Cloud One policies.
• Provide guidance to program leadership on cybersecurity risks, control deficiencies, and OCI security architecture decisions.
• Contribute to security-related deliverables, disaster recovery/business continuity security documentation, and posture reports.
• Verify that Production-to-DR/COOP replication and failover configurations align with security and data protection standards.
• Manage FOCI considerations and COI disclosures.
• Promote cybersecurity awareness, training, and security-related onboarding initiatives.
• Must be a US Citizen.
• Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a comparable technical field.
• A minimum of 5 years of progressive experience in information security within a DoD or Federal setting.
• Direct experience as an ISSO or in a similar capacity.
• An active CISSP or a higher relevant certification is required at the time of hire.
• Practical experience managing the DoD RMF lifecycle, including SSP development, control assessment, POA&M management, and ATO upkeep.
• Experience in implementing, upgrading, and monitoring security measures for computer networks and information systems.
• Experience in responding to security breaches, vulnerabilities, and incidents in a DoD or Federal context.
• Knowledge of NIST SP 800-53, DISA STIGs, SCAP/ACAS scanning tools, and FedRAMP/DoD cloud security controls.
• An active DoD Secret clearance is required to start and must be maintained throughout the program.
• Preferred: active Top Secret clearance.
• Preferred: experience as a DISA-managed or Cloud One ISSO and familiarity with IL4/IL5 authorizations.
• Preferred: expertise in OCI Cloud Guard, Security Zones, OCI Vault, NSGs, and Bastion.
• Preferred: experience supporting SOC 1 Type 2 audits and familiarity with FISCAM/FFMIA.
• Preferred: knowledge of Oracle eBusiness Suite, Oracle Fusion Middleware, or Oracle database security.
• Preferred: experience with Oracle STIG implementation and automated compliance scanning.
• Preferred: DoD 8140/8570 IAM- or IAT-level certifications.
• Preferred: familiarity with DESMF.
• Preferred: experience with AFLCMC, BES Directorate, or DoD ERP programs.
• Competitive compensation.
• Comprehensive health insurance coverage.
• Dental insurance.
• Vision insurance.
• Paid life insurance.
• Paid time off.
• 11 paid holidays.
• Performance bonuses.
• Tuition reimbursement.
• Unlimited training opportunities.
• A collaborative, flexible, and innovative work environment.
OCHIN, Inc.
Dynanet Corporation
Solutions for Information Design, Inc.
Fuze Health
Get handpicked remote jobs straight to your inbox weekly.