Federal Cloud Information Systems Security Officer (ISSO) – Tenable / Air-Gapped Environment -- (Clearance Required, Secret) MD, OK, UT, PA, AL

Posted 3 Days Ago
Be an Early Applicant
5 Locations
In-Office or Remote
106K-243K Annually
Senior level
Artificial Intelligence • Cloud • Information Technology • Consulting
The Role
Serves as the primary ISSO for classified, air-gapped federal cloud environments. Manages ATO/RMF documentation, NIST 800-53 controls, DISA STIG compliance, Tenable.sc and Nessus vulnerability scanning, offline content updates, remediation tracking, audit readiness, incident response, and continuous monitoring. Partners with cloud and infrastructure teams to improve secure configurations and automate vulnerability and compliance workflows.
Summary Generated by Built In
Federal Cloud Information Systems Security Officer (ISSO) – Tenable / Air-Gapped Environment -- (Clearance Required, Secret) MD, OK, UT, PA, AL

  

This role has been designated as ‘Remote/Teleworker’, which means you will primarily work from home.

Who We Are:

Hewlett Packard Enterprise is the global edge-to-cloud company advancing the way people live and work. We help companies connect, protect, analyze, and act on their data and applications wherever they live, from edge to cloud, so they can turn insights into outcomes at the speed required to thrive in today’s complex world. Our culture thrives on finding new and better ways to accelerate what’s next. We know varied backgrounds are valued and succeed here. We have the flexibility to manage our work and personal needs. We make bold moves, together, and are a force for good. If you are looking to stretch and grow your career our culture will embrace you. Open up opportunities with HPE.

Job Description:

   

Job Description

Works with a cross-functional team to solve complex technical and cybersecurity challenges across a broad range of technologies (Servers, Storage, Network, and SAN) while delivering secure Cloud Services solutions to federal customers.

The Federal Cloud ISSO will serve as a key member of the SecOps Engineering function, responsible for ensuring the security, compliance, and operational effectiveness of classified cloud environments. This role has direct responsibility for Tenable (Tenable.sc / Nessus) vulnerability scanning operations within an air-gapped architecture, supporting ATO/RMF compliance, continuous monitoring, and audit readiness.

The ideal candidate brings a strong combination of ISSO oversight, hands-on vulnerability management, and secure cloud engineering experience, with the ability to operate in classified, disconnected environments where updates, scanning, and reporting processes must be managed manually and securely.

This role requires deep knowledge of federal security frameworks, a strong automation mindset, and the ability to operate in a fast-paced, mission-critical environment.

US Citizenship required

Clearance Required: Secret or Top Secret

Location: MD, OK, PA, UT, AL

This is a hybrid teleworker role. Employee will be required to travel to the customer site as needed, usually 2 or 3 times a week.

Schedule: M-F, 9am to 5pm. Candidate must be flexible to work evenings and weekends if required

      Responsibilities include:

      Security Operations & ISSO Functions

      • Serve as primary ISSO supporting ATO, RMF, and continuous monitoring activities
      • Develop and maintain ATO artifacts (SSP, POA&M, SAR, control narratives) aligned to NIST 800-53
      • Ensure compliance with DISA STIGs and federal security standards
      • Support audits and assessments, including evidence collection and vulnerability closure validation

      Tenable / Vulnerability Management (Primary Focus)

      • Own and operate Tenable platform and distributed Nessus scanners in an air-gapped environment
      • Configure scan policies, audit files, credentials, repositories, and scan zones
      • Execute and manage:
        • Credentialed vulnerability scans
        • STIG compliance scans
        • Port and discovery scans
      • Manage offline plugin and audit content updates in accordance with air-gapped constraints
      • Ensure full asset coverage, scan accuracy, and remediation tracking across all environments
      • Generate and deliver vulnerability reports supporting ATO and DISA reporting requirements
      • Analyze scan results to identify false positives, credential failures, and scan gaps
      • Translate scan findings into POA&M entries and track remediation to closure

      Air-Gapped Security Operations

      • Maintain secure operations within a disconnected/isolated environment (no outbound connectivity)
      • Manage manual update processes for plugins, definitions, and audit content
      • Ensure proper segmentation, scanner placement, and network reachability for scan execution
      • Support data export, sanitization, and reporting workflows for external consumption

      Threat Detection & Incident Response

      • Monitor logs, alerts, and scan outputs to detect security events
      • Support incident response lifecycle: detection, containment, eradication, recovery
      • Correlate vulnerability data with active threats and mission risk

      Collaboration & Engineering Integration

      • Work with Cloud, Network, and Platform Engineering teams to:
        • Integrate security into system design
        • Remediate vulnerabilities
        • Improve hardening baselines
      • Provide technical guidance on secure configurations and STIG implementation

      Automation & Optimization

      • Automate vulnerability management, reporting, and compliance processes
      • Improve efficiency in scan execution, data parsing, and remediation workflows
      • Contribute to continuous improvement of security posture

      Knowledge and Skills:

      Technical Knowledge

      • Networking: TCP/IP, DNS, firewalls, segmentation, secure enclaves
      • Operating Systems: Windows Server, Linux (RHEL, Ubuntu), system hardening
      • Security Tools:
        • Tenable.sc / Nessus (expert-level required)
        • SIEM (Splunk, Elastic, QRadar)
        • Endpoint security (CrowdStrike, SentinelOne)
      • Cloud & Hybrid Security: AWS GovCloud, Azure Government, hybrid cloud architectures
      • Strong knowledge of:
        • NIST RMF / 800-53 controls
        • DISA STIGs and SRGs
        • ATO lifecycle processes

      Vulnerability Management Expertise

      • Scan policy development and tuning
      • Credentialed vs non-credentialed scanning
      • STIG audit file management and compliance validation [DINO PCED...Procedures | Word]
      • Risk prioritization based on mission impact (not just CVSS)
      • POA&M lifecycle management

      Practical Skills:

      • Incident Response & forensic analysis
      • Vulnerability assessment and remediation tracking
      • Security hardening across OS, applications, and network devices
      • Log analysis, event correlation, and threat intelligence integration
      • Strong troubleshooting and root cause analysis

      Preferred Skills

      • Scripting (Python, Bash, PowerShell)
      • Experience operating in classified or air-gapped environments
      • Experience supporting DISA or other DoD customers
      • Familiarity with eMASS and ATO documentation systems

      Education and Experience Required:

      • US Citizen, Secret Clearance Required
      • Certifications Required
        • DD8750 -Security Plus or higher Security Certification (CISSP, CASP, etc)
        • One or more of the following:
          • AWS Certified Solution Architect
          • Microsoft Certified Azure Solution Architect
          • Google Certified Professional Cloud Architect
        • Operating systems Level certifications are a plus
      • Bachelor's degree preferred or Associate degree holder (technical field) with 6- 8years working experience in related fields desired.

      #unitedstates

      #federalcleared

      What We Can Offer You:

      Health & Wellbeing

      We strive to provide our team members and their loved ones with a comprehensive suite of benefits that supports their physical, financial and emotional wellbeing.

      Personal & Professional Development

      We also invest in your career because the better you are, the better we all are. We have specific programs catered to helping you reach any career goals you have — whether you want to become a knowledge expert in your field or apply your skills to another division.

      Unconditional Inclusion

      We are unconditionally inclusive in the way we work and celebrate individual uniqueness. We know varied backgrounds are valued and succeed here. We have the flexibility to manage our work and personal needs. We make bold moves, together, and are a force for good.

      Let's Stay Connected:

      Follow @HPECareers on Instagram to see the latest on people, culture and tech at HPE.

      #unitedstates#operations

      Job:

      Services

      Job Level:

      TCP_05

          

      "The expected salary/wage range for this position is provided below. Actual offer may vary from this range based upon geographic location, work experience, education/training, and/or skill level.
      – United States of America: Annual Salary USD 105,500 - 243,000 in Alabama & Maryland & Oklahoma & Pennsylvania & Utah
      The listed salary range reflects base salary. Variable incentives may also be offered." "The expected salary/wage range for this position is provided below. Actual offer may vary from this range based upon geographic location, work experience, education/training, and/or skill level.

      Information about employee benefits offered in the US can be found at https://myhperewards.com/main/new-hire-enrollment.html

      HPE is an Equal Employment Opportunity/ Veterans/Disabled/LGBT employer. We do not discriminate on the basis of race, gender, or any other protected category, and all decisions we make are made on the basis of qualifications, merit, and business need. Our goal is to be one global team that is representative of our customers, in an inclusive environment where we can continue to innovate and grow together. Please click here: Equal Employment Opportunity.

      Hewlett Packard Enterprise is EEO Protected Veteran/ Individual with Disabilities.

         

      HPE will comply with all applicable laws related to employer use of arrest and conviction records, including laws requiring employers to consider for employment qualified applicants with criminal histories.

         

      Recruitment Fraud Alert

      We have become aware of an increase in fraudulent recruitment activities in which individuals impersonate our company or authorized recruitment agencies to offer fake employment opportunities. These scams may occur through false websites, emails, social media, or chat-based applications and often aim to obtain personal information or money. Please note that Hewlett Packard Enterprise (HPE), its direct and indirect subsidiaries and affiliated companies, and its authorized recruitment agencies/vendors will never charge a candidate a registration fee, hiring fee, or any other fee in connection with its recruitment and hiring process. We also never request personal information such as back account details, Social Security numbers, or national IDs via social media or chat applications.

      All legitimate job opportunities will come through official company channels, and candidates are responsible for verifying the credentials of any third party claiming to represent the company. Any reliance on fraudulent communication is at the individual’s own risk, and HPE disclaims legal liability for any resulting damages. If you suspect recruitment fraud, do not share personal information or make any payments and report the incident to your local authorities immediately.

      Skills Required

      • US citizenship
      • Secret or Top Secret security clearance
      • Security+ or higher security certification, such as CISSP or CASP
      • One or more cloud architecture certifications: AWS Certified Solutions Architect, Microsoft Certified Azure Solutions Architect, or Google Certified Professional Cloud Architect
      • Expert-level experience with Tenable.sc and Nessus vulnerability scanning
      • Knowledge of NIST RMF, NIST 800-53 controls, DISA STIGs, SRGs, and ATO lifecycle processes
      • Experience with vulnerability assessment, remediation tracking, security hardening, incident response, forensic analysis, and log analysis
      • Bachelor's degree preferred, or an associate degree in a technical field with 6 to 8 years of related experience
      • Experience operating in classified or air-gapped environments
      • Experience supporting DISA or other Department of Defense customers
      • Scripting experience with Python, Bash, or PowerShell
      • Familiarity with eMASS and ATO documentation systems

      Hewlett Packard Enterprise Compensation & Benefits Highlights

      • Parental & Family Support Parental leave is frequently highlighted as a standout, with extended fully paid time off and transition support for new parents. Additional offerings like backup childcare and family-care programs strengthen the family-friendly profile.
      • Retirement Support Retirement programs, including employer-supported 401(k) matching, are consistently cited as solid components of the package. Feedback suggests these offerings contribute meaningful long-term financial support.
      • Wellbeing & Lifestyle Benefits Work-life and wellness features such as Wellness Fridays, flexible/hybrid work, and volunteer time off are commonly emphasized. Feedback suggests these elements enhance balance and day-to-day experience.

      Hewlett Packard Enterprise Insights

      Am I A Good Fit?
      beta
      Get Personalized Job Insights.
      Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

      The Company
      HQ: Houston, TX
      85,422 Employees
      Year Founded: 2015

      What We Do

      In 1939, Bill Hewlett and Dave Packard, college friends turned business partners, started the original Silicon Valley startup in the space of a rented Palo Alto garage. Starting with audio oscillators, the friends built the foundation for a company that would grow to become a global leader in enterprise technology. More than 75 years later, our success is exemplified through our employees’ drive to advance ideas that bring meaningful innovations to life for our customers and partners around the globe. We are guided by our mission to help customers use technology to turn ideas into value, and empower them to transform industries, markets and lives. We simplify Hybrid IT, power the Intelligent Edge and provide the expertise to make it all happen.

      Hewlett Packard Enterprise Offices

      OnSite Workspace

      Typical time on-site: None
      HQHouston, TX
      Heredia
      SG
      Alpharetta, US
      Bangalore, Bangalore
      Bengaluru, IN
      Berkshire, GB
      Durham, US
      Fort Collins, US
      Frisco, US
      Galway, IE
      Guadalajara, MX
      Gurugram, Haryana
      Kolkata, West Bengal
      London, GB
      Madrid, ES
      New York, US
      Puteaux, FR
      Reading, GB
      Riyadh, SA
      Roseville, US
      San Jose, US
      Singapore, SG
      Spring, US
      Tokyo, JP
      Learn more

      Similar Jobs

      In-Office or Remote
      2 Locations
      85422 Employees
      120K-275K Annually

      Hewlett Packard Enterprise Logo Hewlett Packard Enterprise

      Consultant

      Artificial Intelligence • Cloud • Information Technology • Consulting
      In-Office or Remote
      2 Locations
      85422 Employees
      120K-275K Annually

      Hewlett Packard Enterprise Logo Hewlett Packard Enterprise

      Consultant

      Artificial Intelligence • Cloud • Information Technology • Consulting
      In-Office or Remote
      7 Locations
      85422 Employees
      106K-243K Annually

      Hewlett Packard Enterprise Logo Hewlett Packard Enterprise

      Consultant

      Artificial Intelligence • Cloud • Information Technology • Consulting
      In-Office or Remote
      2 Locations
      85422 Employees
      120K-275K Annually

      Sign up now Access later

      Create Free Account

      Please log in or sign up to report this job.

      Create Free Account