Unknown Company

Federal Cloud Information Systems Security Officer (ISSO) – Tenable / Air-Gapped Environment -- (Clearance Required, Secret) MD, OK, UT, PA, AL

ut • Posted 5 days ago
Remote Full Time General

Federal Cloud Information Systems Security Officer (ISSO)This role has been designated as 'Remote/Teleworker', which means you will primarily work from home.Hewlett Packard Enterprise is the global edge-to-cloud company advancing the way people live and work. We help companies connect, protect, analyze, and act on their data and applications wherever they live, from edge to cloud, so they can turn insights into outcomes at the speed required to thrive in today's complex world. Our culture thrives on finding new and better ways to accelerate what's next.

We know varied backgrounds are valued and succeed here. We have the flexibility to manage our work and personal needs. We make bold moves, together, and are a force for good.

If you are looking to stretch and grow your career our culture will embrace you. Open up opportunities with HPE.Job DescriptionWorks with a cross-functional team to solve complex technical and cybersecurity challenges across a broad range of technologies (Servers, Storage, Network, and SAN) while delivering secure Cloud Services solutions to federal customers.The Federal Cloud ISSO will serve as a key member of the SecOps Engineering function, responsible for ensuring the security, compliance, and operational effectiveness of classified cloud environments. This role has direct responsibility for Tenable (Tenable.sc / Nessus) vulnerability scanning operations within an air-gapped architecture, supporting ATO/RMF compliance, continuous monitoring, and audit readiness.The ideal candidate brings a strong combination of ISSO oversight, hands-on vulnerability management, and secure cloud engineering experience, with the ability to operate in classified, disconnected environments where updates, scanning, and reporting processes must be managed manually and securely.This role requires deep knowledge of federal security frameworks, a strong automation mindset, and the ability to operate in a fast-paced, mission-critical environment.US Citizenship requiredClearance Required: Secret or Top SecretLocation: MD, OK, PA, UT, ALThis is a hybrid teleworker role.

Employee will be required to travel to the customer site as needed, usually 2 or 3 times a week.Schedule: M-F, 9am to 5pm. Candidate must be flexible to work evenings and weekends if requiredResponsibilities Include:Security Operations & ISSO FunctionsServe as primary ISSO supporting ATO, RMF, and continuous monitoring activitiesDevelop and maintain ATO artifacts (SSP, POA&M, SAR, control narratives) aligned to NIST 800-53Ensure compliance with DISA STIGs and federal security standardsSupport audits and assessments, including evidence collection and vulnerability closure validationTenable / Vulnerability Management (Primary Focus)Own and operate Tenable platform and distributed Nessus scanners in an air-gapped environmentConfigure scan policies, audit files, credentials, repositories, and scan zonesExecute and manage:Credentialed vulnerability scansSTIG compliance scansPort and discovery scansManage offline plugin and audit content updates in accordance with air-gapped constraintsEnsure full asset coverage, scan accuracy, and remediation tracking across all environmentsGenerate and deliver vulnerability reports supporting ATO and DISA reporting requirementsAnalyze scan results to identify false positives, credential failures, and scan gapsTranslate scan findings into POA&M entries and track remediation to closureAir-Gapped Security OperationsMaintain secure operations within a disconnected/isolated environment (no outbound connectivity)Manage manual update processes for plugins, definitions, and audit contentEnsure proper segmentation, scanner placement, and network reachability for scan executionSupport data export, sanitization, and reporting workflows for external consumptionThreat Detection & Incident ResponseMonitor logs, alerts, and scan outputs to detect security eventsSupport incident response lifecycle: detection, containment, eradication, recoveryCorrelate vulnerability data with active threats and mission riskCollaboration & Engineering IntegrationWork with Cloud, Network, and Platform Engineering teams to:Integrate security into system designRemediate vulnerabilitiesImprove hardening baselinesProvide technical guidance on secure configurations and STIG implementationAutomation & OptimizationAutomate vulnerability management, reporting, and compliance processesImprove efficiency in scan execution, data parsing, and remediation workflowsContribute to continuous improvement of security postureKnowledge and Skills:Technical KnowledgeNetworking: TCP/IP, DNS, firewalls, segmentation, secure enclavesOperating Systems: Windows Server, Linux (RHEL, Ubuntu), system hardeningSecurity Tools:Tenable.sc / Nessus (expert-level required)SIEM (Splunk, Elastic, QRadar)Endpoint security (CrowdStrike, SentinelOne)Cloud & Hybrid Security: AWS GovCloud, Azure Government, hybrid cloud architecturesStrong knowledge of:NIST RMF / 800-53 controlsDISA STIGs and SRGsATO lifecycle processesVulnerability Management ExpertiseScan policy development and tuningCredentialed vs non-credentialed scanningSTIG audit file management and compliance validation (DINO PCED...Procedures | Word)Risk prioritization based on mission impact (not just CVSS)POA&M lifecycle managementPractical Skills:Incident Response & forensic analysisVulnerability assessment and remediation trackingSecurity hardening across OS, applications, and network devicesLog analysis, event correlation, and threat intelligence integrationStrong troubleshooting and root cause analysisPreferred SkillsScripting (Python, Bash, PowerShell)Experience operating in classified or air-gapped environmentsExperience supporting DISA or other DoD customersFamiliarity with eMASS and ATO documentation systemsEducation and Experience Required:US Citizen, Secret Clearance RequiredCertifications Required:DD8750 -Security Plus or higher Security Certification (CISSP, CASP, etc)One or more of the following:AWS Certified Solution ArchitectMicrosoft Certified Azure Solution ArchitectGoogle Certified Professional Cloud ArchitectOperating systems Level certifications are a plusBachelor's degree preferred or Associate degree holder (technical field) with 6- 8years working experience in related fields desired.

Back to Job Search