How to Land an ISSO Job with Zero Experience - podcast episode cover

How to Land an ISSO Job with Zero Experience

Aug 16, 202527 min
--:--
--:--
Download Metacast podcast app
Listen to this episode in Metacast mobile app
Don't just listen to podcasts. Learn from them with transcripts, summaries, and chapters for every episode. Skim, search, and bookmark insights. Learn more

Episode description

Tech Woke LinkedIn: https://www.linkedin.com/in/christopher-okpala-413565158/  


Check out the Patreon: patreon.com/TechWoke


RMF Academy: https://www.rmfacademy.io/


Merch:https://3c25a2-b9.myshopify.com/?_ab=0&_fd=0&_sc=1  


Please Rate the Podcast: https://ratethispodcast.com/techwoke


Description: 


Breaking into cybersecurity isn’t about luck, it’s about having a proven formula.

If you want to become an Information System Security Officer (ISSO), you need to understand the Risk Management Framework (RMF) and how it’s applied on the job.


In this video, I walk you through the RMF formula step by step so you can position yourself for your first or next ISSO role even with zero experience.


What you’ll learn:


The proven formula for understanding RMF from start to finish


How to think like an ISSO or RMF analyst


Why POA&Ms, control testing, and documentation are your bread and butter


How this approach can help you land your first ISSO job with no prior experience


Whether you’re:


Trying to get your first cybersecurity role


Transitioning from IT into compliance


Already in the field and want to sharpen your RMF skills

…this video is for you.

Transcript

[SPEAKER_00]: We are now live, started a little bit late, a little bit four minutes after. [SPEAKER_00]: But we're on, so we're gonna do this LinkedIn live, and to kind of explain how to become an information system security officer from scratch, to kind of really break it down for people, because the thing about it is a lot of people always had this question. [SPEAKER_00]: How do you become it? [SPEAKER_00]: So how do you do this? [SPEAKER_00]: How do you do that?

[SPEAKER_00]: And I just really wanted to kind of create a kind of a roadmap, or how to become an ESO, with no experience. [SPEAKER_00]: Well, with the times change, and I'm trying to do one every year. [SPEAKER_00]: So this is the twenty twenty five version. [SPEAKER_00]: How to become an SL with no experience and just to get straight into it. [SPEAKER_00]: I'm a currently an information system security officer. [SPEAKER_00]: I'm doing it for five years.

[SPEAKER_00]: Been in the government contract to speak for eight years or longer. [SPEAKER_00]: So just wanted to kind of break that down. [SPEAKER_00]: So that's what I've been doing. [SPEAKER_00]: I didn't start off an IT. [SPEAKER_00]: I started off getting into becoming an information system security officer. [SPEAKER_00]: So I didn't go straight to IT. [SPEAKER_00]: So this one to kind of break it down how I did it and how a lot of people can do it.

[SPEAKER_00]: And it's steps that I've done. [SPEAKER_00]: So this is kind of my roadmap and again, Chris, I call on the founder of TechWoke podcast that helps a lot of people get into tech and kind of breaks it down. [SPEAKER_00]: I'm also the founder of our company and basically I will kind of explain like some of the skills of training and the steps. [SPEAKER_00]: To become ISO in a federal contracting space, so we're going to really break that down from the bottoms up.

[SPEAKER_00]: If you're on live, just say something in the comments to make sure I know you dare, just say something to say hi. [SPEAKER_00]: Let me know who you are. [SPEAKER_00]: Just say something as we go through, but if you're watching, just say something throughout the live. [SPEAKER_00]: So the first thing we're going to go over is what is ASO? [SPEAKER_00]: A lot of people ask me all the time, what is the information system security officer?

[SPEAKER_00]: We work in the federal space, we work in the tech space, they use a lot of acronyms. [SPEAKER_00]: So that's what it means. [SPEAKER_00]: Information system security officer means ASO. [SPEAKER_00]: So the primary agent here. [SPEAKER_00]: So the primary role of information system security officer is to mitigate risk. [SPEAKER_00]: It makes sure things are secured to use in the government contracting space.

[SPEAKER_00]: So for example, say, if you have a software, I'm going to make up a fix off where you got the, you got an apple. [SPEAKER_00]: Say you're trying to bring it into the government space. [SPEAKER_00]: It has to be secured. [SPEAKER_00]: You've got to go through the seven steps of our math. [SPEAKER_00]: You've got to make sure you make sure that pack that thing is secure so that they can use it inside of federal.

[SPEAKER_00]: Because the difference between private sector and government, if using the private sector, they don't have a lot of regulations. [SPEAKER_00]: And the government has to make, it has to hit specific regulation and probably risk, there's risk that's going to be involved, but mitigate the risk so they can use it in the government space. [SPEAKER_00]: So systems won't be hacked. [SPEAKER_00]: What's up, Mitch? [SPEAKER_00]: What's up, Jamer? [SPEAKER_00]: Andrew.

[SPEAKER_00]: They could be on if you're on the live say something so I can know that people are listening and people are getting all this information so if you're on the live just let me know. [SPEAKER_00]: So that's what an information system security officer is. [SPEAKER_00]: So a lot of their job is to continue to see monitoring the program follow seven steps or more a map. [SPEAKER_00]: ATO pocket packages, risk assessments. [SPEAKER_00]: You're you're working with different stakeholders.

[SPEAKER_00]: You're the liaison from different technical teams. [SPEAKER_00]: You're talking to this person, trying to understand what they're saying to get it to another person. [SPEAKER_00]: You're bringing a lot of these people together. [SPEAKER_00]: So you're kind of like a manager in a way. [SPEAKER_00]: And it helps prepare you to be a manager and to take other roles in the future.

[SPEAKER_00]: So it's so kind of deals with all of this and you're kind of this is all the things that you're doing. [SPEAKER_00]: It was of Adrian. [SPEAKER_00]: Welcome, is it greetings from North Carolina? [SPEAKER_00]: I'll see you there, see North Carolina out here. [SPEAKER_00]: So that's kind of what you're doing as an information system camera offer. [SPEAKER_00]: Does anybody understand that? [SPEAKER_00]: Do you get the purpose of information system security officer?

[SPEAKER_00]: Do you got it? [SPEAKER_00]: You got it? [SPEAKER_00]: Put a thumbs up, say something. [SPEAKER_00]: Say you got it, you good. [SPEAKER_00]: We're going to move on to the next slide. [SPEAKER_00]: That's one, somebody say something. [SPEAKER_00]: You got this, you got it. [SPEAKER_00]: So that's what you're doing as an information system officer. [SPEAKER_00]: You also create documentation and things like that. [SPEAKER_00]: So we're going to move on.

[SPEAKER_00]: to the next thing you need to know when you're trying to get into this row. [SPEAKER_00]: So I got steps. [SPEAKER_00]: So this is the first step you need to do. [SPEAKER_00]: You need to look up with an information system security officer is, what do they do? [SPEAKER_00]: What is the job? [SPEAKER_00]: Is it required or you gotta do remote? [SPEAKER_00]: Are you gotta be inside? [SPEAKER_00]: Can you work with teams? [SPEAKER_00]: Are you able to talk to different people?

[SPEAKER_00]: Are you able to navigate [SPEAKER_00]: time management. [SPEAKER_00]: This road's not for a lot of people. [SPEAKER_00]: A lot of technical people sometimes can get into the road and then they end up in transition now because this road requires a lot of talk. [SPEAKER_00]: You can't just sit in your laptop and just, hey, I don't know what's going on. [SPEAKER_00]: So when you're doing this road, you gotta make sure you know what you're doing.

[SPEAKER_00]: You know, so you gotta understand like, with the road does, do you need a clearance? [SPEAKER_00]: You gotta cut yourself that. [SPEAKER_00]: Do you have a clearance? [SPEAKER_00]: Do you got a public trust? [SPEAKER_00]: I think the minimum you can have is a public trust. [SPEAKER_00]: Um, do you have a secret clearance? [SPEAKER_00]: Do you have a clearance to even do the role?

[SPEAKER_00]: You know, there's some roles that are titled information systems to carry the officer that are for the private sector that can be called different names. [SPEAKER_00]: I have a security engineer, a cyber auditor. [SPEAKER_00]: It's the same thing, but you might not have a clearance. [SPEAKER_00]: So you got to really consider, like, is that for you? [SPEAKER_00]: Do you even want to get a clearance? [SPEAKER_00]: A clearance of a lot of people don't want to get back on check.

[SPEAKER_00]: So you've got to really consider all these things if you really want to do this role. [SPEAKER_00]: You've got to be good with the government standards, strict deadlines. [SPEAKER_00]: You've got to be knowing you had to know how to talk to different people. [SPEAKER_00]: So if you've got a really thing about it, so can you do that? [SPEAKER_00]: Does that fit you? [SPEAKER_00]: Um, do you even have a clean background for the sort of background investigator?

[SPEAKER_00]: You know, can you, can you create documents? [SPEAKER_00]: Can you know technical knowledge? [SPEAKER_00]: Can you continuously learn on a regular basis? [SPEAKER_00]: If you can't do none of that, doing this role is not for you. [SPEAKER_00]: I wouldn't do the role because you're going to have to do all that to be able to maintain this role. [SPEAKER_00]: Okay. [SPEAKER_00]: So for everybody, this is the step one figure out as the role for you. [SPEAKER_00]: Is everybody tracking?

[SPEAKER_00]: Everybody tracking, I saw a shot is tracking the last one. [SPEAKER_00]: Is everybody tracking this? [SPEAKER_00]: If you tracking, just give me a thumbs up, give me a shout out. [SPEAKER_00]: We're going to move on to the next one. [SPEAKER_00]: Okay. [SPEAKER_00]: Okay. [SPEAKER_00]: So the next thing you need to do, you need to start.

[SPEAKER_00]: So we understand, okay, this information system security, the image game that thumbs up, information system security officer is so this role is for me. [SPEAKER_00]: This role, I can do this for the rest for the next three to four years, probably three to five years. [SPEAKER_00]: I can do this for the next three to five years. [SPEAKER_00]: So if you track in that, you say, okay, I can do this role, you're going to step two. [SPEAKER_00]: You need to review your current skills.

[SPEAKER_00]: What skills do you have that can translate over to this role? [SPEAKER_00]: You gotta keep in mind, you gotta have transversal skills, most job, most careers, how transversal skills, but you gotta make sure your skills align to this job. [SPEAKER_00]: Do you talk to different stakeholders? [SPEAKER_00]: Do you email? [SPEAKER_00]: Do you track your time? [SPEAKER_00]: Do you manage compliance already? [SPEAKER_00]: Sometimes the role you can do on compliance.

[SPEAKER_00]: Are you using software to manage things? [SPEAKER_00]: All that stuff can be used to transition over. [SPEAKER_00]: I don't, yeah, let me look at the slides. [SPEAKER_00]: I don't really look under the gallery, no, with what it requires. [SPEAKER_00]: You got to assess what you already know about how to translate the ISO, like I just said, transversible skills, project management, again, timelines, network knowledge, understanding system architecture.

[SPEAKER_00]: You're definitely going to need no access to architecture as an ISO. [SPEAKER_00]: The report writing, can you create documentation to SSP? [SPEAKER_00]: Are you good at testing controlled validating? [SPEAKER_00]: That's another thing that translates over. [SPEAKER_00]: Can you create, can you create skills and matrix to compare it to current capabilities? [SPEAKER_00]: So that's basically the nutshell.

[SPEAKER_00]: You got to see what things you have already that can transition to as a role. [SPEAKER_00]: Everybody has some experience, but there's something that can help you be better. [SPEAKER_00]: When I transitioned over, I was a project manager. [SPEAKER_00]: So a lot of those skills transferred over, but you still need to learn the technical stuff on the back end. [SPEAKER_00]: But that stuff can get you to the next step. [SPEAKER_00]: Okay, so is everybody tracking?

[SPEAKER_00]: Can't get some thumbs up. [SPEAKER_00]: Can I get some, I got it? [SPEAKER_00]: Hey, I understand that transversible skills are matter. [SPEAKER_00]: Does anybody else on that can, if the UBR just give me a like a thumbs up? [SPEAKER_00]: Say something to test, so I can know you there. [SPEAKER_00]: Okay? [SPEAKER_00]: Anybody there? [SPEAKER_00]: Everybody there? [SPEAKER_00]: Okay. [SPEAKER_00]: So we're gonna go to the next one.

[SPEAKER_00]: Step three, you gotta understand the roles and requirements. [SPEAKER_00]: You can't do this role if you don't understand the roles and requirements. [SPEAKER_00]: You gotta understand what it's fistma. [SPEAKER_00]: What is our math? [SPEAKER_00]: How is it created? [SPEAKER_00]: You got to know the beginning before you can know the end. [SPEAKER_00]: Start reading some of the documentation. [SPEAKER_00]: Some of the main documentation is you're working as a ISO.

[SPEAKER_00]: You're going to need this eight hundred thirty seven. [SPEAKER_00]: You're going to need this eight hundred fifty three. [SPEAKER_00]: You're going to need fips. [SPEAKER_00]: All these documents. [SPEAKER_00]: You can go look up on yourself. [SPEAKER_00]: Just read the documents. [SPEAKER_00]: Literally Google. [SPEAKER_00]: Go Google. [SPEAKER_00]: Type in this eight hundred thirty seven. [SPEAKER_00]: Google it. [SPEAKER_00]: This eight hundred fifty three.

[SPEAKER_00]: Google it. [SPEAKER_00]: Fips one nine nine. [SPEAKER_00]: Fips two hundred. [SPEAKER_00]: Google it and review it. [SPEAKER_00]: You know, it's good. [SPEAKER_00]: This is to know where they are. [SPEAKER_00]: You know, so just review it. [SPEAKER_00]: Just understand what it is. [SPEAKER_00]: Understand what this means. [SPEAKER_00]: Understand the data data test of it. [SPEAKER_00]: So I know people that follow me on LinkedIn. [SPEAKER_00]: I talk about it all this all the time.

[SPEAKER_00]: You're going to need the test controls. [SPEAKER_00]: You're going to need the poems. [SPEAKER_00]: You're going to need the ATOs. [SPEAKER_00]: You're going to need documentation. [SPEAKER_00]: You're going to need to know every one of those things to become an ESO. [SPEAKER_00]: So you need to understand what it is to do the job. [SPEAKER_00]: You can't understand what is to do the job. [SPEAKER_00]: You will never be great at the job.

[SPEAKER_00]: You know, because it takes time to learn these skills. [SPEAKER_00]: I mean, it sounds simple, but when you're dealing with different stakeholders, you have to get things done within a week, maybe a month, and you're navigating, you've got to make sure you know what you're doing. [SPEAKER_00]: uh, as strong and strong. [SPEAKER_00]: McLean. [SPEAKER_00]: Yeah, I have a course in the in the is so course. [SPEAKER_00]: Um, the is so, the is so course. [SPEAKER_00]: I have an arm.

[SPEAKER_00]: F Academy and the live course in the seven weeks. [SPEAKER_00]: We give homework. [SPEAKER_00]: We go through all the courses. [SPEAKER_00]: We go through everything you need to know and I give homework. [SPEAKER_00]: And I have you do it. [SPEAKER_00]: And we have different templates to practice. [SPEAKER_00]: So yeah, check our arm. [SPEAKER_00]: F Academy. [SPEAKER_00]: Uh, for that.

[SPEAKER_00]: And then also we have a poem course to kind of understand what poems are so you can break it down. [SPEAKER_00]: It has templates in there so you can practice on your own. [SPEAKER_00]: So like, that's what you need to do as an ISO. [SPEAKER_00]: So, you know, you don't need to know all these things. [SPEAKER_00]: You need to know how to coordinate with system owners.

[SPEAKER_00]: You're going to need to know that how to talk to different people because, you know, different people in agencies. [SPEAKER_00]: So that's kind of what the role requirements is. [SPEAKER_00]: So if you need to know that, if you know that, you got the job, right? [SPEAKER_00]: So make sure you know what the requirements are. [SPEAKER_00]: And if you need training, you know what it go to. [SPEAKER_00]: Okay, everybody there.

[SPEAKER_00]: Everybody understand everything on step three. [SPEAKER_00]: Understand the rules of requirements. [SPEAKER_00]: Everybody understand what's on step three. [SPEAKER_00]: Give me a thumbs up. [SPEAKER_00]: Give me something. [SPEAKER_00]: I just want to make sure you there. [SPEAKER_00]: I'm giving you all the energy and it's giving me a little bit energy back. [SPEAKER_00]: Make sure you say something. [SPEAKER_00]: You got it. [SPEAKER_00]: Everybody got it.

[SPEAKER_00]: Okay, to mirror. [SPEAKER_00]: Gotcha. [SPEAKER_00]: And to mirror. [SPEAKER_00]: Give me a salute. [SPEAKER_00]: So thank you. [SPEAKER_00]: So we're on step four. [SPEAKER_00]: You got to get the training and knowledge. [SPEAKER_00]: You can go on YouTube. [SPEAKER_00]: You can go on YouTube to see if you can find a lot of the knowledge. [SPEAKER_00]: It's very rare information on YouTube. [SPEAKER_00]: And I know because in the past I didn't have that much information.

[SPEAKER_00]: When I was a new year, so I was trying to find as much information as possible. [SPEAKER_00]: So going on YouTube, you can try YouTube. [SPEAKER_00]: It's not that much information. [SPEAKER_00]: They'll get a basic definition, but they're not going to go into death on it. [SPEAKER_00]: But try YouTube. [SPEAKER_00]: Make sure you reviewed it.

[SPEAKER_00]: You can just try reviewing some of the stuff on this on the this website and this has information, but it's not going to be as in death. [SPEAKER_00]: You know, so just definitely check out this. [SPEAKER_00]: You can try even just googling some things to see what pops up. [SPEAKER_00]: So those are the different things that you can do to training. [SPEAKER_00]: You can you can also, again, I told you check out our method academy that I know we have a lot of training on there.

[SPEAKER_00]: We have a seven week class coming up so then so make sure you

[SPEAKER_00]: Check out our math academy because we have a lot of that stuff on there and it's in a lot of that stuff prepares you to get into the field so that it's from because I actually still worked the job so a lot of that stuff prepares you to get in the job so make sure you check out our math academy got a training August twenty seven so it's going to be live and everybody can be on it so make sure you check that out like I said you can do the stakes you can also get certifications in the DOD you need a security plus

[SPEAKER_00]: So it doesn't make sure you you can check it to security plus you can get certificates, but the security plus will get you a job's requirement in the deal. [SPEAKER_00]: So you have to get to security plus. [SPEAKER_00]: And then also you can do self-launch. [SPEAKER_00]: You can review this mistake viewer on cyber.mail, which is a free thing. [SPEAKER_00]: You can look up. [SPEAKER_00]: You can look at the freebrain website.

[SPEAKER_00]: You can look up next on the next explains it. [SPEAKER_00]: But yeah, you can definitely check it out. [SPEAKER_00]: There's a lot of free information out there. [SPEAKER_00]: And as strong as he said, yeah, I'm in for Academy that I will prepare as you put a job because I do the job, so I know it's required. [SPEAKER_00]: So yeah, it prepares you to how to get into it. [SPEAKER_00]: And then we have also, I'm a first year student.

[SPEAKER_00]: If he said I'm a first year student is a is so so could I do something to work to Yeah, you can do something to work to like I said the things I mentioned you can practice lot of stuff and the main thing seen us to job is for you try to say if you can get a class and just see if later on if this role is for you as for you, but I would recommend people to have a class people that are our area in the gov text gov covers kind of gov space or gov text space to do the role

[SPEAKER_00]: So that's what I would recommend to y'all, you know, because you gotta have that first before you can do roll. [SPEAKER_00]: Sometimes you can get it like I say without a clearance, like an order or something like that, but I was specifically talking about federal space. [SPEAKER_00]: Okay, so we're on step five, right? [SPEAKER_00]: So Adrian Long said, this mistake viewer just going cyber.mail, you can download this mistake viewer, you can also download those sticks.

[SPEAKER_00]: So you're going to cyber.mail, I'm sorry, cyber exchange. [SPEAKER_00]: Cyber exchange, I'm sorry, cyber exchange. [SPEAKER_00]: Or just go, let me just Google Stigs. [SPEAKER_00]: Google Stigs, Google Stigs, Google Stigs, you should pop up on cyber exchange. [SPEAKER_00]: Yep. [SPEAKER_00]: So we are building your resume. [SPEAKER_00]: So when you build your resume, a lot of the time you don't have experience, right? [SPEAKER_00]: Again, you can do some transversible skills.

[SPEAKER_00]: You can put as many things as possible. [SPEAKER_00]: But the one thing I would recommend for people is when you learn a lot of this stuff on your home, never allow your resume. [SPEAKER_00]: Don't put nothing on there that can mislead or anything. [SPEAKER_00]: But you can just speak from experience that things that you work on. [SPEAKER_00]: You can put a lot of the key words that you practice with. [SPEAKER_00]: Only if you know what it is, you can put nests.

[SPEAKER_00]: You can do poems. [SPEAKER_00]: You can do testing controls. [SPEAKER_00]: You just got to list them as projects or you can list it as a training you did and just explain a lot of the things that you did in the training. [SPEAKER_00]: to relate to the road that you're doing.

[SPEAKER_00]: So, never allow your resume, no mislead anything on your resume, but there's training you can do to help you with getting a road that you need to do and adding the keywords that you need to know to get these type of roles and also have a clearing. [SPEAKER_00]: Those are some of the things that you need to highlight when you're trying to transfer your creature resume to get it as a role. [SPEAKER_00]: And I've seen that a lot with a lot of resumes.

[SPEAKER_00]: I see they said they were the isso, they did this, they did that. [SPEAKER_00]: But some people didn't do the roles. [SPEAKER_00]: So you got to just kind of be honest, but still put things that you have done. [SPEAKER_00]: So those can help you get a job and put a lot of those keywords in there. [SPEAKER_00]: In highlight different transferable skills, the clearance that is and focus on some of the achievements that you've done in general.

[SPEAKER_00]: He said, my question is the first job or something to work towards to get my first job. [SPEAKER_00]: I'm not sure, Sean, you can hit me up on LinkedIn and I can kind of break it down too little bit better to help you out. [SPEAKER_00]: But that's kind of some of the things you're doing to help get you your role as an SO. [SPEAKER_00]: But yeah, you can hit me up if you need some better clarification.

[SPEAKER_00]: This is if you don't have it clearance and that is the only reason the company is declining your you could suggest the company to take the calls and get in clearance. [SPEAKER_00]: How do your first year of salary? [SPEAKER_00]: I don't know anything about that. [SPEAKER_00]: All I would say to you is, you know, you can apply to these roles. [SPEAKER_00]: Sometimes they sponsor you. [SPEAKER_00]: Sometimes they won't, but it's not wrong with applying for different roles.

[SPEAKER_00]: It doesn't even have to be, it's so job. [SPEAKER_00]: You can apply to security guard things like that to get a clearance and just, you know, thug it out for a year, you know, do whatever they require. [SPEAKER_00]: And then get your clearance, but you can also apply for roles, but I don't know anything about what you talked about. [SPEAKER_00]: Yeah, so I hope that hope on that portion. [SPEAKER_00]: Yeah, so that's that five.

[SPEAKER_00]: So you're kind of building your resume up. [SPEAKER_00]: So is anybody tracking on that for the resumes? [SPEAKER_00]: Can I get like a thumbs up, salute, something in the chat, so I can make sure you're still there. [SPEAKER_00]: Just to make sure we gotta go to the next size. [SPEAKER_00]: Anybody want anybody have anything on the build your resume portion? [SPEAKER_00]: Okay, anybody? [SPEAKER_00]: Okay, I've got to go to the next slide.

[SPEAKER_00]: Okay. [SPEAKER_00]: Okay, so for step six, this is the biggest step for being a ISO for step six.

[SPEAKER_00]: You got to answer some of the common questions of being our, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh, uh

[SPEAKER_00]: You got to use the star method, situation tasks, action, resolve for structure answers. [SPEAKER_00]: And when you're SO, for example, I can always come up with an example. [SPEAKER_00]: Every time I talk about being an SS, I got so many examples of things. [SPEAKER_00]: Make sure you got two or three real examples to demonstrate your ability to perform the tasks. [SPEAKER_00]: So just make sure that you always have [SPEAKER_00]: a task ready when you become an ESO.

[SPEAKER_00]: So just make sure you have different scenarios, different things. [SPEAKER_00]: And a lot of the times, if you're doing some things on your own to practice to get into the role and you're doing it on your own, you understand it on a detailed level, they'll take a risk on you. [SPEAKER_00]: Maybe like, hey, I might give you a risk, but this person knows what they're doing. [SPEAKER_00]: So that's what I would do.

[SPEAKER_00]: Just do a lot of interview questions, hit up some professionals on LinkedIn, see if they got some time, or can give you questions to practice on and send them back to them. [SPEAKER_00]: Cause I know a lot of people are busy. [SPEAKER_00]: So that's what I would do. [SPEAKER_00]: So this, you know, that's another way I won't prepare for interviews, especially in a federal space.

[SPEAKER_00]: is this event you're holding next way and more or specifically those are already in the gym? [SPEAKER_00]: Anybody can go. [SPEAKER_00]: It's just a event we're doing to kind of talk about GRC engineering just to do a meeting grid and things like that. [SPEAKER_00]: So anybody can come into space if you're on cybersecurity or not or you can come through each other but it's going to be focused mainly on our map.

[SPEAKER_00]: It's going to be focused mainly on GRC engineering just talking. [SPEAKER_00]: This is the meeting grid for everybody to kind of in a compliance community to kind of get together and talk. [SPEAKER_00]: I hope that helps. [SPEAKER_00]: So come through if you want, come through. [SPEAKER_00]: We're going to be here. [SPEAKER_00]: Says if we don't have security clearance with jobs, can we apply for over the SO skillset? [SPEAKER_00]: You got auditor.

[SPEAKER_00]: There's a couple, auditor, they got a couple GRC positions, but mainly what I teach is mainly put a federal space. [SPEAKER_00]: Some of it trends this is over just certain employers, but [SPEAKER_00]: Yeah, I focus mainly on the federal space and federal contracts, but there's some roles. [SPEAKER_00]: Hit me up later. [SPEAKER_00]: I think then I can kind of give some. [SPEAKER_00]: I can't think of them all on top of my head, but that's kind of what I do.

[SPEAKER_00]: Okay. [SPEAKER_00]: Okay, step seven, you got to start applying for jobs. [SPEAKER_00]: There's a lot of jobs in the RMS space. [SPEAKER_00]: Again, they called cybersecurity engineer. [SPEAKER_00]: Sometimes they even called a cloud auditor or sometimes auditor. [SPEAKER_00]: There's so many roles that that name RMS. [SPEAKER_00]: So you can, you can apply to a lot of those roles. [SPEAKER_00]: They're not always going to say RMS specialists.

[SPEAKER_00]: They're not always going to say [SPEAKER_00]: GRC. [SPEAKER_00]: But you got a really read the description. [SPEAKER_00]: When you read the description and tells you, hey, you do poems. [SPEAKER_00]: Hey, you do this. [SPEAKER_00]: Hey, you do that. [SPEAKER_00]: You know, you test controls. [SPEAKER_00]: Hey, you do a ATO. [SPEAKER_00]: Those are the things you look for when you apply for the role. [SPEAKER_00]: And then again, a different company's apply.

[SPEAKER_00]: You got the big companies like Boo's Islands. [SPEAKER_00]: A sci-ic, light-o's, khaki, general dynamic. [SPEAKER_00]: He also got smaller companies. [SPEAKER_00]: You only have to work for the bigger companies. [SPEAKER_00]: You got a lot of smaller companies, things like that. [SPEAKER_00]: And you also can go on USA Jobs. [SPEAKER_00]: USA Jobs has a lot of government positions. [SPEAKER_00]: You also just looked on LinkedIn. [SPEAKER_00]: It just applied for jobs on LinkedIn.

[SPEAKER_00]: Then you got clearance jobs.com. [SPEAKER_00]: And again, USA Jobs. [SPEAKER_00]: So a lot of those roles help you out. [SPEAKER_00]: Um, thank you for the information. [SPEAKER_00]: I still are planning jobs. [SPEAKER_00]: I was trying to add to the course. [SPEAKER_00]: Um, Marcus, uh, let's talk and I got to kind of see what you at first. [SPEAKER_00]: You know, so kind of let's talk first. [SPEAKER_00]: Just hit me up and link them. [SPEAKER_00]: We can talk.

[SPEAKER_00]: You know, so we can talk about that to see where is going. [SPEAKER_00]: So hit me up out there with talk. [SPEAKER_00]: Okay. [SPEAKER_00]: Okay. [SPEAKER_00]: Okay, this is something a lot of issues. [SPEAKER_00]: They'll get the role, right? [SPEAKER_00]: So the only issue about getting the role, you've got to still keep up to all the RMF changes, FedRAM changes. [SPEAKER_00]: You've got to network with people, growth opportunities.

[SPEAKER_00]: There's a lot of growth opportunities. [SPEAKER_00]: You've got to continue network. [SPEAKER_00]: And we have it in network and event next week. [SPEAKER_00]: in Laurel. [SPEAKER_00]: So this go to those. [SPEAKER_00]: I'm having one in Laurel. [SPEAKER_00]: I'm also having a live podcast in September. [SPEAKER_00]: So go to that a lot of learn. [SPEAKER_00]: Learn about the career progression. [SPEAKER_00]: So you got serious.

[SPEAKER_00]: So you got SM, you got Scar, you got AO program manager. [SPEAKER_00]: Those are some of the roles you can take. [SPEAKER_00]: And again, what A, I come into the government space pay attention to that. [SPEAKER_00]: For example, pay attention to procurement opportunities. [SPEAKER_00]: Like for example, J, W, C, C is a cloud procurement opportunity.

[SPEAKER_00]: So make sure you're paying attention to what's happening in the government so you can know how to adapt your skills as an RMS specialist. [SPEAKER_00]: I don't think it's going to be adapted automated zone, but you need to know about the tools that's automating it. [SPEAKER_00]: Automation tools, things like that. [SPEAKER_00]: So you need to make sure you're up the date on an RMS process.

[SPEAKER_00]: So those are things you can help you succeed in landing a row and keep a row because even with me, I'm more into the cloud. [SPEAKER_00]: I'm getting my CSSP. [SPEAKER_00]: I'm getting the things that I need to last in the career because when you're in this row, you need to know a lot. [SPEAKER_00]: You need to study a lot. [SPEAKER_00]: You got to know sometimes more than most engineers. [SPEAKER_00]: So I hope that helped.

[SPEAKER_00]: Okay. [SPEAKER_00]: So just to close it out, if anybody have any questions, make sure you get your questions out, get your questions out and then close everything out. [SPEAKER_00]: And I hope this has really helped out a lot of people. [SPEAKER_00]: If they helped you out, just say, hey, this is some good information. [SPEAKER_00]: It's helped me out. [SPEAKER_00]: Just say something. [SPEAKER_00]: And we can talk.

[SPEAKER_00]: Okay. [SPEAKER_00]: If anybody is saying that, so becoming an SO in cars or a right mindset becomes a different step you've got to take and it's strategic when you apply for different applications. [SPEAKER_00]: Most professionals already have the relevant skills. [SPEAKER_00]: and filling in the knowledge gap. [SPEAKER_00]: So just so anybody's trying to get any more information on how to become our MS specialist or become an information system security offer.

[SPEAKER_00]: Check out our MFA Academy on that Academy. [SPEAKER_00]: We do a lot of the training. [SPEAKER_00]: I know I mentioned many, many times we're doing a training in August, twenty-seven. [SPEAKER_00]: So I'm rolling that. [SPEAKER_00]: We're going to definitely go through all this all the steps of our MFA. [SPEAKER_00]: We're going to talk about what you need to do. [SPEAKER_00]: You're going to talk about [SPEAKER_00]: how to even become, get into our map.

[SPEAKER_00]: We're going to literally talk about actual hands on skills that you need to know, and you can play with yourself. [SPEAKER_00]: And it'll actually bring everything down. [SPEAKER_00]: So when the interview comes, you'll be good. [SPEAKER_00]: You know, it'll give you the actual training that you need to know. [SPEAKER_00]: And a lot of courses don't do that. [SPEAKER_00]: So make sure you check our our map academy, sign up for the course, whatever it's charged right now.

[SPEAKER_00]: It's going to stay that way to the week up and for that course it's a steal because most courses charge a thousand two thousand but this course is at a good price where's affordable where you can do it and get all the information you know that is worth it. [SPEAKER_00]: So make sure you check out our [SPEAKER_00]: Okay, and remember our Memphis demand is high. [SPEAKER_00]: So no matter what when you're doing this bill, it's high. [SPEAKER_00]: I don't care if nobody's telling you.

[SPEAKER_00]: There's so many systems that just especially in the VC community is a lot of them that's trying to get into the state, trying to get something passed inside the government. [SPEAKER_00]: So if you need to get it passed, you got to get it at ATO. [SPEAKER_00]: You got to maintain ATO. [SPEAKER_00]: So just make sure you check it out. [SPEAKER_00]: Okay, where can we find details about the event next week? [SPEAKER_00]: So I have events on my LinkedIn.

[SPEAKER_00]: I can send it to you. [SPEAKER_00]: We have our event next week at my places to get our get together for compliance professionals. [SPEAKER_00]: And then also on the LinkedIn, I have the event that we're doing September in Baltimore, just a live podcast. [SPEAKER_00]: So I send it to you if you don't see it. [SPEAKER_00]: Does anybody have any final questions or concerns? [SPEAKER_00]: Cause we're about to close it out.

[SPEAKER_00]: Okay. [SPEAKER_00]: For the federal space, you got to be a citizen. [SPEAKER_00]: So for the federal space to get a country, you got to be a citizen. [SPEAKER_00]: So does anybody have any other questions or concerns? [SPEAKER_00]: Anybody want any anything they want to answer? [SPEAKER_00]: Okay, well, if anybody had any more questions, you can hit me up on LinkedIn. [SPEAKER_00]: We can talk.

[SPEAKER_00]: If you need more information about doing the course or joining the course, go armfacademy.io. [SPEAKER_00]: Remember, everybody get better every single day. [SPEAKER_00]: Always work hard and do what you gotta do. [SPEAKER_00]: And if you had any more questions, hit me up on LinkedIn. [SPEAKER_00]: Thank you, everybody. [SPEAKER_00]: Now, I hope you enjoyed this live.

Transcript source: Provided by creator in RSS feed: download file
For the best experience, listen in Metacast app for iOS or Android