Source Job

$129,813–$172,500/yr
US 3w PTO 3w maternity 3w paternity

  • Lead and maintain ATO documentation and coordinate with security, engineering, and project teams to ensure compliance.
  • Monitor security events, investigate threats, and assess vulnerabilities across cloud and enterprise environments.
  • Develop and implement security policies, conduct risk analysis, and provide cybersecurity guidance to stakeholders.

AWS Cybersecurity Cloud Security NIST

20 jobs similar to Information Systems Security Officer

Jobs ranked by similarity.

UK

  • Improve and maintain AWS security configurations including IAM, GuardDuty, and CloudTrail.
  • Manage security tooling across the organization including EDR, MDM, DLP, and respond to SOC alerts.
  • Lead vulnerability management activities, coordinate patching, and support compliance assessments.

This company is a fully remote, international technology firm specializing in cloud and operational security. It has a diverse team of over 40 nationalities and a culture that values curiosity, ownership, and continuous improvement.

$166,600–$208,300/yr
North America

  • Design and implement cloud security posture and automation to protect customer trust.
  • Enable cyber resilience and lead zero trust initiatives across the infrastructure.
  • Collaborate with engineering teams to enhance reliability and security of cloud systems.

Mercury is a fintech company providing banking and financial services for startups, focusing on simplicity and security. With a team of around 500 employees, the culture is collaborative, innovative, and values diversity.

$191,250–$258,750/yr
US

  • Architect and automate security workflows across CI/CD and compliance operations.
  • Integrate and monitor security tooling within automated pipelines.
  • Build automation for compliance and ATO artifacts.

Our partner is a technology company that builds secure, automated cloud environments for mission-critical programs. They offer a fully remote work model with a focus on autonomy and work-life balance.

US

  • Serve as the Information Systems Security Officer for assigned systems, maintaining security documentation and supporting authorization activities.
  • Coordinate security control implementation with Engineering, DevOps, and IT teams, managing Plans of Action and Milestones.
  • Support continuous monitoring, vulnerability management, and incident response for FedRAMP and GovRAMP environments.

Keeper Security is a cybersecurity software company that protects organizations and individuals globally with zero-trust and zero-knowledge solutions. It is a fast-growing company with FedRAMP and GovRAMP high authorizations, recognized in the Gartner Magic Quadrant for PAM.

US 3w PTO

  • Designs, engineers, and automates secure enterprise cloud environments supporting mission-critical government workloads.
  • Provides technical leadership across AWS GovCloud, cloud architecture, infrastructure automation, container platforms, and CI/CD.
  • Develops standardized hosting models and integrates AWS IaaS, PaaS, and SaaS capabilities with enterprise applications.

True Zero Technologies is a veteran-owned small business that enables people and technology to drive quality outcomes. With a people-first culture, it has been recognized as a Best Place to Work in 2023 and 2025, and made the Inc. 5000 list of fastest-growing companies in America in 2022, 2023, and 2025.

US

  • Act as a trusted consultant guiding clients through complex security and compliance challenges.
  • Develop security strategies aligned with frameworks like CMMC, NIST 800-171, and NIST 800-53.
  • Design and implement AWS and/or GCP security tools with deep expertise in cloud security.

Aprio is a Top 20 CPA and advisory firm that provides compliance and advisory services to fast-growing industries. With over 3,200 team members across 40 US and international offices, they foster a top-rated culture and collaborative environment.

$140,000–$165,000/yr
US

  • Own cloud security posture across AWS environment using Wiz and AWS-native services.
  • Harden CI/CD pipelines, manage vulnerability intake, prioritization, and remediation.
  • Build automation, instrument telemetry, and operate WAF for cloud and application security.

Beyond Finance helps everyday Americans escape debt through compassionate, individualized care and supportive technology. They are a rapidly growing organization with over 1 million clients served and a culture focused on compliance and ethics.

Europe

  • Identify, implement, and integrate security tools to strengthen AWS and Kubernetes security posture and support threat modeling.
  • Identify and mitigate security issues and misconfigurations across infrastructure and microservices.
  • Support audits, compliance initiatives, and security certifications such as ISO 27001 and SOC 2.

Ecosio is a fast-growing provider of B2B integration solutions, specializing in EDI, Web EDI, and e-invoicing. As part of Vertex, Inc., they foster an inclusive, technology-driven culture with a focus on innovation and strong connections.

$110,000–$145,000/yr
US

  • Partner with application development teams to integrate security requirements into design, development, and deployment workflows.
  • Support ATO efforts including development of System Security Plans (SSPs), POA&Ms, and control documentation.
  • Conduct risk assessments, vulnerability scans, and threat modeling aligned with NIST SP 800-53 and VA security standards.

Oddball builds quality software for the federal space, focusing on improving the daily lives of millions of people. They are a small company that values learning, growth, and making a big impact.

$129,500–$144,300/yr
Canada Unlimited PTO

  • Lead security architecture across AWS and colocation, defining secure patterns and controls.
  • Partner with engineering teams to threat model, review designs, and promote secure-by-design.
  • Develop automated security tooling and guardrails using infrastructure-as-code and AI-assisted workflows.

NMI enables partners with choice, challenging the one-size-fits-all approach to payments. We're a global company with a remote-first culture, fostering diversity and inclusion through initiatives like affinity groups and DEI action teams.

US

  • Design and implement security controls across AWS GovCloud environments.
  • Integrate security into CI/CD pipelines using Terraform and GitLab.
  • Ensure compliance with FedRAMP and DoD IL-4/5 standards.

Horizon3.ai is a fast-growing, remote cybersecurity company dedicated to enabling organizations to proactively find and fix and verify exploitable attack vectors before criminals exploit them. We are a fusion of former U.S. Special Operations cyber operators and startup engineers, committed to a culture of respect, collaboration, ownership, and results.

United States

  • Partner with Engineering to design, implement, and improve security controls across software, application architecture, and AWS infrastructure.
  • Strengthen security monitoring, detection, incident response, and integrate security into CI/CD pipelines.
  • Support compliance efforts including SOC 2 and ISO audits, and lead customer security reviews.

AlertMedia helps organizations protect their people, operations, and brand with a modern Risk Intelligence and Response platform. It is a high-growth, PE-backed SaaS company with more than 4,000 clients and a 10-year award-winning culture.

$140,000–$160,000/yr
US

  • Drive cloud-centric architecture approach for managed services, ensuring security and operational efficiency.
  • Collaborate with stakeholders to design, implement, and automate infrastructure services on Azure/AWS.
  • Document standardized patterns, conduct proof of concepts, and lead executive presentations.

Smile Digital Health provides a FHIR-based data liberation platform for healthcare stakeholders to collect and exchange data. They were #19 on Deloitte's Technology Fast 50 Ranking for 2024 and foster a diverse, inclusive culture.

Europe 5w PTO

  • Lead security compliance initiatives across ISO 27001, SOC 2, GDPR, and more.
  • Conduct internal audits and mentor junior specialists.
  • Collaborate with product teams to integrate compliance requirements.

Our partner is a fast-growing technology company specializing in security compliance and automation for European businesses. They have a startup culture with a focus on innovation and collaboration.

Europe 5w PTO

  • Define and execute short- and long-term security strategy, governance, and operations across the organization.
  • Lead security initiatives covering monitoring, incident response, cloud protection, and application security.
  • Collaborate with engineering, compliance, and leadership teams to balance strong protection with seamless experiences.

A fast-growing global technology organization in the fintech sector. The company fosters a collaborative international environment with talented teams across multiple regions.

$80,000–$130,000/yr
US

  • You will own end-to-end compliance audits (SOC 1, SOC 2, HITRUST) and manage compliance automation platforms.
  • You will run the vulnerability management program and remediate security findings across AWS.
  • You will support security incident response, fraud investigations, and third-party risk assessments.

We are transforming post-acute care as the leading digital ordering platform for medical equipment and supplies. We connect major health systems, health plans, and suppliers to help patients get life-saving products at home, with a network of 300,000+ clinicians and 3,000+ supplier locations across all 50 states.

$89,000–$149,000/yr
US

  • Design and implement security capabilities to satisfy FedRAMP KSIs within your team's specialty domains.
  • Build automated, repeatable deployments using infrastructure-as-code and CI/CD pipelines.
  • Deploy into client environments as a subject-matter expert, integrating and hardening capabilities.

Coalfire is a cybersecurity firm that helps clients navigate the ever-changing cybersecurity landscape through advisory, assessment, and automation. The company is headquartered in Chicago with offices across the U.S. and U.K., and fosters a collaborative team culture of passionate problem-solvers.

Europe 5w PTO

  • Lead and grow a team of security specialists to manage day-to-day security operations, incident response, and threat intelligence.
  • Own the security strategy, policy framework, and controls while partnering with engineering on cloud and application security.
  • Drive security awareness across the organization and report on risks to senior leadership and governance forums.

Wayflyer provides fast, technology-driven financing to small businesses, assessing them in minutes and deploying capital within 24 hours. With over $6 billion deployed and backing from Tier 1 banks, the company has a global team across offices in Dublin, London, New York, Charlotte, Berlin, and Sydney, fostering an ambitious and collaborative culture.

$190,000–$220,000/yr
US Unlimited PTO 12w maternity 12w paternity

  • Write, tune, and maintain detections in a modern SIEM across cloud, container, and SaaS log sources.
  • Run cloud security operations in AWS, triage alerts, and help execute incident-response playbooks.
  • Build and extend security-automation tooling with code fluency in Python or TypeScript.

SmarterDx uses clinical AI to help health systems capture the full value of patient care. They are a remote-first team with a mission to make healthcare more accurate and sustainable.

$104,000–$166,000/yr
US

  • Serve as Tier 3 escalation point for complex incidents and outages in the AWS GovCloud environment.
  • Lead proactive identification and mitigation of infrastructure risks using monitoring tools like CloudWatch and Dynatrace.
  • Manage AWS GovCloud infrastructure across 70+ tenant environments ensuring FedRAMP compliance and optimization.

Peraton is a next-generation national security company that drives missions of consequence globally. As a leading mission capability integrator and IT provider, they deliver trusted solutions to protect the nation and allies, with a large workforce supporting government agencies.