Want to know if you’re a fit? Upload your resume and let our AI show you.
Skills
Amazon Web Services (AWS)unmatched
Best Practicesunmatched
CISSP - Certified Information Systems Security Professionalunmatched
Change Managementunmatched
Cloud Computingunmatched
CompTIA Security+unmatched
Computer Scienceunmatched
Computer Securityunmatched
Contingency Plansunmatched
Defense Information Systems Agency (DISA)unmatched
Disaster Recoveryunmatched
Documentationunmatched
Incident Responseunmatched
Information Technology & Information Systemsunmatched
Information/Data Security (InfoSec)unmatched
Internet Securityunmatched
Maintain Complianceunmatched
Nessusunmatched
Network Securityunmatched
Problem Solving Skillsunmatched
Risk Analysisunmatched
Risk Management Framework (RMF)unmatched
Security Analysisunmatched
Security Monitoringunmatched
Software Developmentunmatched
Systems Engineeringunmatched
Technical Leadershipunmatched
Technical Writingunmatched
Test Automationunmatched
U.S. National Institute of Standards and Technology (NIST)unmatched
United States Department of Defense (DoD)unmatched
Writing Skillsunmatched
Description
Location: Washington, DCClearance Level: TopSecretWorkplace Type: OnsiteOverviewADS is seeking a Senior Information Security (INFOSEC) Specialist to support enterprise cybersecurity, Risk Management Framework (RMF), cloud security, and Information Assurance (IA) activities across secure and unclassified environments. This role is responsible for maintaining secure, compliant information systems, supporting cloud Authorizations to Operate (ATOs), implementing cybersecurity best practices, and ensuring compliance with DoD and NIST security requirements. The position also supports cloud modernization, continuous monitoring, vulnerability management, and DevSecOps initiatives.Responsibilities
Lead RMF implementation and support system Authorizations to Operate (ATOs).
Develop and maintain RMF documentation, including SSPs, POA&Ms, SARs, network diagrams, and security procedures.
Support cloud security, cloud migrations, and cloud ATO compliance.
Perform vulnerability assessments, security scanning, and risk analysis.
Monitor security findings, coordinate remediation efforts, and support continuous monitoring activities.
Maintain compliance with DoD, DISA, and NIST cybersecurity requirements.
Support DevSecOps, secure application development, and automated security testing.
Coordinate cybersecurity activities with enterprise IT teams, cloud providers, and other stakeholders.
Support incident response, change management, disaster recovery, and contingency planning.
Provide technical guidance on cybersecurity, RMF, and security engineering best practices.
Qualifications- Required
Bachelor’s degree in information systems engineering, computer science, engineering, business or other related fields, and at least 12 year of experience (with 10 years of related, specialized technical experience)
Experience implementing DoD Risk Management Framework (RMF) and supporting ATOs.
Knowledge of NIST RMF, NIST SP 800-53, DISA STIGs, and DoD cybersecurity policies.
Experience with cloud security, vulnerability management, and continuous monitoring.
Familiarity with AWS or other cloud environments.
Strong technical writing, communications, and problem-solving skills.
DoD Top Secret Clearance or ability to obtain and maintain a DoD Top Secret Clearance.
Qualifications- Desired
CISSP, CAP, Security+, CASP+, AWS Security Specialty, or equivalent certification.
Experience with AWS GovCloud.
Experience using Burg Suite, Checkmarx, Nessus, or similar security tools.
Experience with DevSecOps and secure software development.
Knowledge of Zero Trust Architecture and Continuous ATO (cATO).
Experience supporting federal DoD enterprise IT environments.