
Principal Cybersecurity ISSE
Posted Aug 7

Posted Aug 7
This is a fully remote position, open to applicants in Ohio.
• Provide cybersecurity support as a PMO/Capability Development Manager in accordance with DoWI 8500.01
• Evaluate and constantly monitor cybersecurity risks following RMF, CSF, NIST, and the AO’s ISCM strategy
• Apply security controls using methodologies from software engineering, principles of system/security engineering, secure design, secure architecture, and secure coding techniques
• Collaborate on security initiatives with the information security architect, ISSM, ISSO, ISO, and common control provider
• Complete necessary training and maintain required cybersecurity certifications
• Keep AF IT cybersecurity documentation current and accessible
• Assist in the authorization to operate, approval to connect, and corrective actions in plans of actions and milestones
• Formulate ISCM strategies and monitor changes in systems or environments
• Continuously observe IT environments for security-relevant events
• Evaluate configuration changes and the quality of security-control implementation
• Report cybersecurity incidents and configuration changes that impact authorization or security posture
• Ensure ISSOs and privileged users receive technical training and retain certifications and clearances
• Confirm that AF IT is properly acquired, documented, operated, utilized, maintained, and disposed of
• Validate and analyze findings from automated security testing and developer adjudications
• Record cybersecurity deficiencies, vulnerabilities, and change requests in DoW tracking systems
• U.S. Citizenship
• Bachelor’s degree in a relevant field
• 10 years of experience in the corresponding technical/professional discipline
• Experience providing expertise in access control, configuration management, system and communications protection, contingency planning, incident handling, system and information integrity, security and privacy training, and software development cybersecurity activities
• Experience executing cybersecurity tasks in compliance with DoWI 8500.01, AFI 17-130, and AFI 17-1301
• Experience in validating, evaluating, and analyzing findings and developer adjudications using tools such as Fortify, Checkmarx, SonarQube, or AppScan
• Familiarity with DoW tracking systems like Jira, HP ALM, and eMASS
• Experience in conducting information security continuous monitoring (ISCM)
• Must fulfill and maintain DCWF Information Systems Security Developer work role 631 advanced/principal certification requirements
• FITSI FITSP-D required
• GIAC GCSA, or (ISC)2 CISSP-ISSEP
• Must possess and maintain an active T3/Secret security clearance
• Certified Scrum Master is preferred
• Other Agile certifications are preferred
• Working knowledge of Agile Development methodology is preferred
• Experience with Checkmarx, SonarQube, Maven, Fortify, Jira, Confluence, and Bitbucket is desired
• Schedule: Monday–Friday, 8:00–5:00
• Available for 0–10% travel
• Relocation assistance is not available
• 100% employee-owned company / ESOP participation
• 401(k) match
• Medical insurance
• Dental insurance
• Vision insurance
• Life insurance
• Short-term disability
• Long-term disability
• Flexible spending accounts
• Health Savings Accounts
• Health Reimbursement Accounts
• Employee Assistance Program (EAP)
• Education assistance
• Paid time off
• Holidays
• Competitive salary
• Stable and professional work environment
• Travel: 0–10%
OCHIN, Inc.
Dynanet Corporation
Solutions for Information Design, Inc.
Fuze Health
Get handpicked remote jobs straight to your inbox weekly.