remote
Cybersecurity Specialist Mid/Senior - DSS, Inc.
Security Engineer
Mid‑to‑senior Cybersecurity Specialist responsible for ensuring FedRAMP High compliance of healthcare cloud applications on AWS GovCloud, performing risk assessments, closing security gaps, and supporting authorization documentation for ISVs and government solutions.
About the role
Key Responsibilities
- Conduct security assessments of SaaS applications to verify alignment with FedRAMP High requirements.
- Identify and remediate security gaps in cloud‑based healthcare solutions hosted in AWS GovCloud.
- Develop, review, and maintain authorization documentation (SSP, POA&M, SAR) for Independent Software Vendors and government customers.
- Collaborate with development and operations teams to embed security controls throughout the application lifecycle.
- Provide guidance on risk mitigation strategies and ensure continuous compliance monitoring.
Requirements
- 5+ years of experience in cloud security, preferably with AWS GovCloud or similar government‑cloud environments.
- Hands‑on knowledge of FedRAMP High security controls and related NIST frameworks.
- Proven ability to produce and manage compliance artifacts such as System Security Plans and Plans of Action & Milestones.
- Strong analytical skills for risk assessment, vulnerability analysis, and remediation planning.
- Relevant certifications (e.g., CISSP, AWS Certified Security – Specialty, or FedRAMP Practitioner) are highly desirable.