Cybersecurity Compliance Specialist

JCS Solutions LLC
  • Bethesda, MD
  • $110,000–$130,000 Per Year
  • Autofill and Review
4 days ago

Job Description

Grow, innovate, and generate progress: Harness your expertise to solve challenges and celebrate success! Job SummaryJCS Solutions is seeking a Cybersecurity Compliance Specialist to support the National Institute of Child Health and Human Development (NICHD) in Bethesda, Maryland. This role combines federal cybersecurity compliance, risk management, and hands-on cyber operations to support FISMA security authorization activities, continuous monitoring, vulnerability management, incident response, and audit readiness. The successful candidate will work closely with Information System Security Officers (ISSOs), system owners, technical teams, and stakeholders to maintain authorization packages, assess security controls, manage cybersecurity risks, and support the ongoing security posture of NICHD systems.Location: Bethesda, MDClearance: Ability to obtain or hold a Public Trust Tier IISalary: $95,000.00 - $130,000.00What’s in it for you: 
  • Join a premier technology firm specializing in innovative solutions.  
  • Be part of a collaborative, inclusive, and innovative work culture.  
  • Enjoy tremendous growth potential in a high-performing team environment.  
  • A robust benefits package: 
    • Health, dental, and vision insurance  
    • Life insurance  
    • Short-and-long term disability  
    • Paid time off (PTO)  
    • 401k retirement plan with employer match 
    • Annual Professional Development Reimbursement Program  
    • And more! 
What you will do:
  • Support FISMA Security Authorization, Assessment & Authorization (A&A), Risk Management Framework (RMF), Authority to Operate (ATO), annual reviews, and NIST SP 800-53 Rev. 5 control assessment activities.
  • Develop, update, and maintain authorization artifacts including:
    • System Security Plans (SSPs)
    • FIPS 199 Security Categorization documents
    • Privacy Impact Assessments (PIAs)
    • Risk Assessments
    • Security Assessment Plans (SAPs)
    • Security Assessment Reports (SARs)
    • Plans of Action & Milestones (POA&Ms)
    • Contingency Plans
    • Interconnection Security Agreements (ISAs)
  • Maintain security documentation, control evidence, and CSAM records in support of system authorization efforts.
  • Conduct or support vulnerability scanning, continuous monitoring, security reporting, patch validation, system hardening verification, and remediation tracking using Tenable and other approved tools.
  • Analyze and track security findings to ensure timely remediation and risk reduction.
  • Investigate and triage security alerts and incidents, document findings, support containment and recovery activities, and maintain operational evidence.
  • Translate operational security findings into risk-management actions, compliance updates, and authorization package artifacts.
  • Coordinate with ISSOs, system owners, infrastructure teams, program managers, and external stakeholders to collect evidence, resolve findings, and communicate cybersecurity risks and compliance status.
  • Support audit readiness efforts and provide reporting for leadership and compliance reviews.
What you will bring: 
  • Direct experience supporting FISMA Security Authorization activities, A&A/RMF processes, ATOs, NIST SP 800-53 control assessments, and authorization package development or maintenance.
  • Experience developing, reviewing, or maintaining federal cybersecurity authorization documentation and artifacts.
  • Hands-on experience with vulnerability management and/or security monitoring activities, including scan review, validation, prioritization, remediation coordination, and status reporting.
  • Experience supporting incident response activities including alert triage, documentation, escalation, containment support, recovery coordination, and lessons learned.
  • Experience documenting findings, risks, corrective actions, control evidence, and POA&M activities in an audit-ready environment.
  • Ability to communicate cybersecurity and compliance requirements effectively to both technical and non-technical stakeholders.
  • Ability to obtain or maintain an HHS Public Trust Tier II background investigation.
How you will wow us:
  • Experience with Tenable, Absolute, BigFix, Splunk, Tripwire, Microsoft Defender, Cylance, or comparable vulnerability management, endpoint security, EDR, SIEM, logging, or continuous monitoring platforms.
  • Experience with CSAM and NIH cybersecurity processes, security documentation, and privacy resources.
  • Experience supporting low- and moderate-impact federal information systems.
  • Experience working with cloud and/or on-premises authorization packages.
  • Familiarity with security baselines, vulnerability remediation programs, and federal compliance requirements.
  • One or more cybersecurity certifications such as:
    • CISSP
    • CISA
    • CISM
    • SSCP
    • Security+
    • CySA+
  • Equivalent industry-recognized cybersecurity certifications
JCS Solutions (JCS) is a premier technology firm providing innovative solutions and high-quality services in defense, national security, and civilian sectors. JCS offers enterprise-wide solutions including cloud computing, software development, cybersecurity, digital modernization, and management consulting for the federal government. At JCS, we elevate our customers’ mission through the application of technology and professional services. Our commitment to investing in our workforce drives innovation and progress for our clients, employees, and communities.JCS is both a Great Place to Work and a Top Places to Work certified company.Our employees embody our core values, and we are looking for others who do too!
  • Customer Experience: Strive for excellence and delight our clients 
  • Innovation: Embrace creative thinking to enable continual growth and powerful solutions 
  • Accountability: Take ownership of and pride in our actions and service delivery 
  • Inspire: Be inspired to be your best self and have fun in the process 
  • Integrity: Do the right thing, the right way, every time! 
  • Stewardship: The careful and responsible management of something entrusted to our care. 
 At JCS Solutions, compensation is based on a number of factors such as location, qualifications, and applicable contract terms. The general salary range for this position is as follows: $110,000.00 - $130,000.00Commitment to Non-DiscriminationAll qualified applicants will receive consideration for employment without regard to any protected status protected by applicable federal, state, or local laws.

NOTICE: Please be aware that all JCS Solutions communications related to job interviews and offers from our recruiting team will only come from @JCSSolutions.com. We want to emphasize that we do not conduct any interviews over Discord, Slack, Skype, Zoom, or any chat app.

Powered by JazzHR

Numbers & Facts

LocationBethesda, MD
Salary$110,000–$130,000 Per Year

Skills

  • Access Authorizationunmatched
  • Background Investigationunmatched
  • CISA - Certified Information Systems Auditorunmatched
  • CISM - Certified Information Security Managerunmatched
  • CISSP - Certified Information Systems Security Professionalunmatched
  • Cloud Computingunmatched
  • Communication Skillsunmatched
  • CompTIA Security+unmatched
  • Computer Securityunmatched
  • Computer Softwareunmatched
  • Contingency Plansunmatched
  • Customer Experienceunmatched
  • Dental Insuranceunmatched
  • Department of Health and Human Servicesunmatched
  • Documentationunmatched
  • Endpoint Securityunmatched
  • Establish Prioritiesunmatched
  • FIPS (Federal Information Processing Standards) 199unmatched
  • FISMA - Federal Information Security Management Actunmatched
  • Federal Compliance Regulationsunmatched
  • Federal Governmentunmatched
  • Human Healthunmatched
  • Incident Responseunmatched
  • Information Technology & Information Systemsunmatched
  • Internet Securityunmatched
  • Interviewing Skillsunmatched
  • Leadershipunmatched
  • Life Insuranceunmatched
  • Management Consultingunmatched
  • Microsoft Product Familyunmatched
  • National Institutes of Health (NIH)unmatched
  • Operational Supportunmatched
  • Operations Security (OPSEC)unmatched
  • Privacy Controlsunmatched
  • Professional Servicesunmatched
  • Project/Program Managementunmatched
  • Regulatory Complianceunmatched
  • Reimbursementunmatched
  • Reporting Skillsunmatched
  • Risk Analysisunmatched
  • Risk Managementunmatched
  • Risk Management Framework (RMF)unmatched
  • SSCP - Systems Security Certified Practitionerunmatched
  • Security Analysisunmatched
  • Security Information and Event Management (SIEM)unmatched
  • Security Monitoringunmatched
  • Security Patchesunmatched
  • Service Deliveryunmatched
  • Skypeunmatched
  • Slackunmatched
  • Software Developmentunmatched
  • Splunkunmatched
  • Stewardshipunmatched
  • Support Documentationunmatched
  • Team Playerunmatched
  • Time Managementunmatched
  • U.S. National Institute of Standards and Technology (NIST)unmatched
  • Vision Planunmatched
  • Vulnerability Scannersunmatched

Be found by employers

5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

Level up your application

Professional resume templates

Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

Free resume templates

Free resume builder

Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

Free resume builder