ISSO Program Manager
Core
Lead system security, risk management, and infrastructure oversight for the Centers for Medicare & Medicaid Services (CMS) to maintain Authorization to Operate (ATO) and ensure compliance with federal security standards.
Role type
Senior ISSO Program Manager
Builds
Secure, reliable digital services for CMS systems
Domain
Federal government / Cybersecurity / Risk Management
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Risk Management Framework (RMF) management, Authorization to Operate (ATO) oversight, federal security compliance, security assessment leadership, POA&M management, continuous monitoring, incident response, cloud infrastructure security, custom software security
Preferred skills
CISSP, CISM, CompTIA Security+, experience with state/local government agencies, leading agile teams of 50+ staff
Technologies
Cloud-based environments, managed service environments, security event logging tools, vulnerability scanning tools, configuration management systems
Responsibilities
Serve as ISSO for assigned OEDA systems, provide security engineering support for CMS-authorized platforms, support Authorizing Official in risk-based authorization decisions, conduct continuous monitoring activities, serve as principal advisor on security and privacy, ensure implementation of security controls per federal policies, guide development of security documents
Seniority
Senior, hands-on IC