Madamedon User
@madamedonuser
I’m an Information System Security Officer securing healthcare systems through RMF, ATO, and continuous monitoring.
What I'm looking for
I’m an Information System Security Officer with 7 years of experience securing healthcare, federal, and enterprise information systems through NIST RMF, ATO package development, continuous monitoring, and vulnerability management.
I implement HIPAA, HITECH, CMS, FISMA, and NIST 800-53 security requirements across cloud, network, and application environments, and I’m known for strong analytical thinking and technical depth. I develop SSPs, POA&Ms, SARs, and full RMF documentation, applying DISA STIGs and SCAP/ACAS baselines while translating complex scan results into actionable remediation strategies.
In my current role at Texas Health and Human Services Commission, I support C&A/A&A activities and perform RMF steps in accordance with NIST SP 800-37, updating SSPs and building risk assessments and POA&Ms for systems handling PHI. Previously at Ambit Management INC, I led ATO package development, managed SIEM/endpoint alerts, validated DISA STIG compliance, and supported continuous monitoring, IAM, and DevSecOps pipeline evaluations.
Experience
Work history, roles, and key accomplishments
Information System Security Officer
Jul 2024 - Present (2 years)
Serves as an Information System Security Officer supporting healthcare systems handling PHI. Updates SSPs and RMF documentation, performs risk and vulnerability assessments, supports C&A/A&A, and translates scan findings into HIPAA/HITECH/NIST 800-53 remediation actions while maintaining ATO readiness.
Information System Security Officer
Ambit Management Inc
Sep 2020 - Aug 2023 (2 years 11 months)
Serves as an Information System Security Officer for enterprise systems, ensuring compliance with NIST RMF and multiple healthcare and federal security requirements. Leads ATO package development, performs STIG/SCAP compliance, vulnerability assessments, SIEM/EDR monitoring, IAM and cloud security operations, and supports incident response and continuous monitoring.
Conducts FISMA-based security risk assessments for federal clients and performs security assurance activities, including ST&E and evidence-based control compliance reviews. Supports system categorization documentation and produces Security Assessment Reports while recommending risk mitigations to strengthen client system security.
Education
Degrees, certifications, and relevant coursework
Texas A&M University–Commerce
Bachelor of Science, Computer Science
Earned a Bachelor of Science in Computer Science from Texas A&M University–Commerce.
Eastfield College
Associate of Applied Science, Substance Abuse Counseling
Earned an Associate of Applied Science in Substance Abuse Counseling from Eastfield College.
Availability
Location
Authorized to work in
Job categories
Skills
Interested in hiring Madamedon?
You can contact Madamedon and 90k+ other talented remote workers on Himalayas.
Message MadamedonGet matched with your dream remote job
Sign up now and join over 250,000+ remote workers who receive personalized job alerts, curated job matches, and more for free!
