hirly

HPE

Federal Cloud Information Systems Security Officer (ISSO) – Tenable / Air-Gapped Environment -- (Clearance Required, Secret) MD, OK, UT, PA, AL

All, Oklahoma, United States of America · All, Alabama, United States of America · All, Utah, United States of America · All, Pennsylvania, United States of America · All, Maryland, United States of America

See how you match this job — and similar ones. Free.

Upload your resume and hirly scores it against this role at HPE first, then against similar open jobs, and shows where you fit and why.

PDF or DOCX, up to 12MB. No sign-up to see your matches.

Get past the screening software and onto a recruiter's desk

hirly rewrites your resume for this job — matching the keywords and skills in the posting, moving your most relevant experience to the top, and writing a cover letter to fit. About 30 seconds.

  • Keywords matched to this posting
  • Fit score before you apply
  • Cover letter included

Matched against 2.3M live jobs from 200,000+ employers in 200+ countries.

Tailor my resume for this job →

hirly's read of this role

Seniority
Mid level
Country
US
Work mode
On-site / unstated
First seen by hirly
27 Sept 2026

Derived automatically from the posting. Upload your resume above to see how the role scores against it.

the posting

Federal Cloud Information Systems Security Officer (ISSO) – Tenable / Air-Gapped Environment -- (Clearance Required, Secret) MD, OK, UT, PA, AL

This role has been designated as ‘Remote/Teleworker’, which means you will primarily work from home.

Who We Are:

Hewlett Packard Enterprise is the global edge-to-cloud company advancing the way people live and work. We help companies connect, protect, analyze, and act on their data and applications wherever they live, from edge to cloud, so they can turn insights into outcomes at the speed required to thrive in today’s complex world. Our culture thrives on finding new and better ways to accelerate what’s next. We know varied backgrounds are valued and succeed here. We have the flexibility to manage our work and personal needs. We make bold moves, together, and are a force for good. If you are looking to stretch and grow your career our culture will embrace you. Open up opportunities with HPE.

Job Description:

Job Description

Works with a cross-functional team to solve complex technical and cybersecurity challenges across a broad range of technologies (Servers, Storage, Network, and SAN) while delivering secure Cloud Services solutions to federal customers.

The Federal Cloud ISSO will serve as a key member of the SecOps Engineering function, responsible for ensuring the security, compliance, and operational effectiveness of classified cloud environments. This role has direct responsibility for Tenable (Tenable.sc / Nessus) vulnerability scanning operations within an air-gapped architecture , supporting ATO/RMF compliance, continuous monitoring, and audit readiness.

The ideal candidate brings a strong combination of ISSO oversight, hands-on vulnerability management, and secure cloud engineering experience , with the ability to operate in classified, disconnected environments where updates, scanning, and reporting processes must be managed manually and securely.

This role requires deep knowledge of federal security frameworks, a strong automation mindset, and the ability to operate in a fast-paced, mission-critical environment.

US Citizenship required

Clearance Required: Secret or Top Secret

Location: MD, OK, PA, UT, AL

This is a hybrid teleworker role. Employee will be required to travel to the customer site as needed, usually 2 or 3 times a week.

Schedule: M-F, 9am to 5pm. Candidate must be flexible to work evenings and weekends if required

Responsibilities include:

Security Operations & ISSO Functions

  • Serve as primary ISSO supporting ATO, RMF, and continuous monitoring activities
  • Develop and maintain ATO artifacts (SSP, POA&M, SAR, control narratives) aligned to NIST 800-53
  • Ensure compliance with DISA STIGs and federal security standards
  • Support audits and assessments, including evidence collection and vulnerability closure validation

Tenable / Vulnerability Management (Primary Focus)

  • Own and operate Tenable platform and distributed Nessus scanners in an air-gapped environment
  • Configure scan policies, audit files, credentials, repositories, and scan zones
  • Execute and manage:
  • Credentialed vulnerability scans
  • STIG compliance scans
  • Port and discovery scans
  • Manage offline plugin and audit content updates in accordance with air-gapped constraints
  • Ensure full asset coverage, scan accuracy, and remediation tracking across all environments
  • Generate and deliver vulnerability reports supporting ATO and DISA reporting requirements
  • Analyze scan results to identify false positives, credential failures, and scan gaps
  • Translate scan findings into POA&M entries and track remediation to closure

Air-Gapped Security Operations

  • Maintain secure operations within a disconnected/isolated environment (no outbound connectivity)
  • Manage manual update processes for plugins, definitions, and audit content
  • Ensure proper segmentation, scanner placement, and network reachability for scan execution
  • Support data export, sanitization, and reporting workflows for external consumption

Threat Detection & Incident Response

  • Monitor logs, alerts, and scan outputs to detect security events
  • Support incident response lifecycle: detection, containment, eradication, recovery
  • Correlate vulnerability data with active threats and mission risk

Collaboration & Engineering Integration

  • Work with Cloud, Network, and Platform Engineering teams to:
  • Integrate security into system design
  • Remediate vulnerabilities
  • Improve hardening baselines

Provide technical guidance on secure configurations and STIG implementation

Automation & Optimization

  • Automate vulnerability management, reporting, and compliance processes
  • Improve efficiency in scan execution, data parsing, and remediation workflows
  • Contribute to continuous improvement of security posture

Knowledge and Skills:

Technical Knowledge

  • Networking: TCP/IP, DNS, firewalls, segmentation, secure enclaves
  • Operating Systems: Windows Server, Linux (RHEL, Ubuntu), system hardening
  • Security Tools:
  • Tenable.sc / Nessus (expert-level required)
  • SIEM (Splunk, Elastic, QRadar)
  • Endpoint security (CrowdStrike, SentinelOne)
  • Cloud & Hybrid Security: AWS GovCloud, Azure Government, hybrid cloud architectures
  • Strong knowledge of:
  • NIST RMF / 800-53 controls
  • DISA STIGs and SRGs
  • ATO lifecycle processes

Vulnerability Management Expertise

  • Scan policy development and tuning
  • Credentialed vs non-credentialed scanning
  • STIG audit file management and compliance validation [DINO PCED...Procedures | Word]
  • Risk prioritization based on mission impact (not just CVSS)
  • POA&M lifecycle management

Practical Skills:

  • Incident Response & forensic analysis
  • Vulnerability assessment and remediation tracking
  • Security hardening across OS, applications, and network devices
  • Log analysis, event correlation, and threat intelligence integration
  • Strong troubleshooting and root cause analysis

Preferred Skills

  • Scripting (Python, Bash, PowerShell)
  • Experience operating in classified or air-gapped environments
  • Experience supporting DISA or other DoD customers
  • Familiarity with eMASS and ATO documentation systems

Education and Experience Required:

  • US Citizen, Secret Clearance Required
  • Certifications Required
  • DD8750 -Security Plus or higher Security Certification (CISSP, CASP, etc)
  • One or more of the following:
  • AWS Certified Solution Architect
  • Microsoft Certified Azure Solution Architect
  • Google Certified Professional Cloud Architect

Operating systems Level certifications are a plus

Bachelor's degree preferred or Associate degree holder (technical field) with 6- 8years working experience in related fields desired.

#unitedstates

#federalcleared

What We Can Offer You:

Health & Wellbeing

We strive to provide our team members and their loved ones with a comprehensive suite of benefits that supports their physical, financial and emotional wellbeing.

Personal & Professional Development

We also invest in your career because the better you are, the better we all are. We have specific programs catered to helping you reach any career goals you have — whether you want to become a knowledge expert in your field or apply your skills to another division.

Unconditional Inclusion

We are unconditionally inclusive in the way we work and celebrate individual uniqueness. We know varied backgrounds are valued and succeed here. We have the flexibility to manage our work and personal needs. We make bold moves, together, and are a force for good.

Let's Stay Connected:

Follow @HPECareers on Instagram to see the latest on people, culture and tech at HPE.

#unitedstates

#operations

Job:

Services Job Level:

TCP_05

  • "The expected salary/wage range for this position is provided below. Actual offer may vary from this range based upon geographic location, work experience, education/training, and/or skill level.
  • – United States of America: Annual Salary USD 105,500 - 243,000 in Alabama & Maryland & Oklahoma & Pennsylvania &
Original posting on HPE's site ↗

Want this one?

Upload your resume and hirly rewrites it for this job and writes the cover letter — in about thirty seconds, before you sign up.

Tailor my resume for this job