Information Security Analyst IV CbInformation Security Analyst IVColumbia, MarylandKnowledge of cryptographic encryption algorithms, key exchange algorithms, hashing/message authentication algorithms, PKI, random number generators, etc. In case you are not interested in this position, or this is not the right fit for you, please feel free to share this opportunity with your friends/networks or anyone you know who may be interested in this position.
Information Systems Security Manager (ISSM) RANDInformation Systems Security Manager (ISSM)Washington, District of ColumbiaSupports the Manager, Accreditation Services in maintaining detailed records of security department functions and activities for monthly reports to RAND management with regard to classified systems; conducts investigations and provides incident reports. RAND considers a variety of factors when formulating an offer, including but not limited to, the specific role and associated responsibilities; a candidate’s work experience, education/training, skills, expertise; and internal equity.
Information System Security Engineer Fusion TechnologyInformation System Security EngineerWashington, DCFull timeExperience: Familiarity with the use and operation of security tools including Tenable Nessus and/or Security Center, IBM Guardium, HP WebInspect, Network Mapper (NMAP), and/or similar applicationsCertifications - Required to hold at least one of the following certifications:Certified Information Systems Security Professional (CISSP) (or Associate),CompTIA Advanced Security Practitioner (CASP) CASP CE, Certified Secure Software Lifecycle Professional (CSSLP), CISSP- Information System Security Engineering Professional (ISSEP), or CISSP- Information System Security Architecture Professional (ISSAP)What you'll do:Services to support IS Security performed by the Information System Security Engineer (ISSE) at a minimum, shall consist of the following activities:Identify information protection needs for an IS and Network EnvironmentDefine IS and Network Environment security requirements in accordance with applicable cybersecurity requirementsDesign security architectures for use within the IS and Network EnvironmentDesign and develop cybersecurity-enabled products for use within an IS and Network EnvironmentIntegrate and/or implement security with Cross Domain Solutions (CDS) for use within an IS and Network EnvironmentDevelop and implement security designs for new or existing network system(s)Ensure that the design of hardware, operating systems, and software applications adequately address cybersecurity requirements for the IS and Network EnvironmentDesign, develop, and implement network security measures that provide confidentiality, integrity, availability, authentication, and non-repudiationDesign, develop, and implement specific cybersecurity countermeasures for the IS and Network EnvironmentDevelop interface specifications for the IS and Network EnvironmentDevelop approaches to mitigate IS and Network Environment vulnerabilities and recommend changes to network or network system components as neededEnsure that network system(s) designs support the incorporation of directed cybersecurity vulnerability solutionsWhat matters to you matters to us. Fusion Technology is a performance-driven HUBZone Small Business concern residing in the heart of the beautiful mountainsides of West Virginia, steps away from the Federal Bureau of Investigation's Criminal Justice Information Services Division's Headquarters.
NewPS/IA - Physical Security/Information Assurance Specialist Watermark Risk Management InternationalPS/IA - Physical Security/Information Assurance SpecialistCamp Springs, MDMultiple considerations are taken into account when determining the final salary/hourly rate, including but not limited to, Contract Wage Determination, education and certifications, relevant work experience, related skills and competencies, as well as Federal Government Contract Labor Categories. Watermark provides salary ranges with job postings in states where it is legally required; any other salary ranges associated with our postings are third party estimates and may not be an accurate reflection of Watermark’s total compensation package.
Subject Matter Expert III - Information Systems Security Engineer SentarSubject Matter Expert III - Information Systems Security EngineerArlington, VAThe role is the lead technical authority for designing, building, and sustaining DSCA's layered security automation architecture in AWS infrastructure provisioning, configuration management, Policy-as-Code compliance validation, and orchestration and for translating DoW regulatory requirements into functional, automated, operational code. Certifications : AWS Certified DevOps Engineer – Professional; AWS Certified Solutions Architect – Professional; AWS Certified Security – Specialty; or (ISC)2 CISSP, preferably with an engineering or architecture concentration (ISSEP/ISSAP).
Information Systems Security Officer Cognitio CorpInformation Systems Security OfficerMc Lean, Mc LeanThe successful candidate will have requisite cyber security experience with methods and tools used to improve the security posture of critical systems such as identifying risks, vulnerabilities, anomalies, patching, auditing, automation, security hardening, best practices, and evaluating system changes. Applied experience with open-source and commercial tools and systems such as nmap, Nessus, Rapid7, Splunk, Nipper, Elasticsearch, Jira, Confluence, Cisco, VMware, Citrix, or Trellix, as well as GOTS tools used by the customer.
Information Systems Security Manager (ISSM) - TS/SCI w/Polygraph GD Information TechnologyInformation Systems Security Manager (ISSM) - TS/SCI w/PolygraphMcLean, VirginiaTo ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave.
Information Systems Security Officer (ISSO) Mount IndieInformation Systems Security Officer (ISSO)Annapolis Junction, MarylandStrong background in communication, with a track record of effectively engaging with customer, program leads, leadership teams, and engineers to convey complex cybersecurity concepts and strategies. Experience with implementing and maintaining system security documentation, including SSPs, SAPs, POA&Ms, and security assessment artifacts, coordinating closely with ISSMs, ISSEs, system owners, and authorizing officials.
Information Systems Security Officer (FORECASTED) Columbia Technology PartnersInformation Systems Security Officer (FORECASTED)Annapolis Junction, MD$7,000–$20,000 / yearFull timeExperience in at least two (2) of the following areas:Security tools and technologiesHardware and software security implementationCommunication protocolsEncryption techniques and technologiesAdditional Qualifications - ISSO Level 3: Fifteen (15) years of experience as an Information Systems Security Officer supporting programs and contracts of similar scope, type, and complexity. With a proven track record in information security, project management, systems/network engineering, security risk management, vulnerability assessments, and mobile security implementation; our employees have the experience, expertise, and innovative thinking our customers need for results that exceed expectations.
Director, Information Security Office AI/ML Capital OneDirector, Information Security Office AI/MLMcLean, VirginiaYou are comfortable with technologies like Cloud services, Containers, Docker, Microservices, Serverless, APIs, DevOps, micro-segmentation, Customer Servicing platforms and technologies security, generative AI security, PCI and other business and regulatory cybersecurity compliance frameworks. We are looking for an experienced Director ISO to support the AIML Division objective to Accelerate AI Innovation and build and maintain Enterprise-grade Agentic Capabilities.you will help consult on initiatives, programs, and projects to raise their game in Information Security and Risk Management.
Project Manager - Team Lead / Information Security Analyst - SME (Remote) ZantechProject Manager - Team Lead / Information Security Analyst - SME (Remote)Camp Springs, MDRemoteAt Zantech, we are a dynamic Woman Owned Small Business focused on providing complex, mission-focused solutions with a proven track record of outstanding customer performance and high employee satisfaction. Our corporate motto represents our commitment to build long-term relationships with both our clients and our employees by providing the highest quality service in everything we do.
Information Systems Security Officer, Senior EverwatchInformation Systems Security Officer, SeniorAnnapolis Junction, Maryland$76.93–$91.35 / hourCompensation at EverWatch is determined by various factors, including but not limited to location, the individual’s particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. Perform risk and vulnerability assessments in network, system, and application areas; leverage big data analytics and traditional security event types to identify advanced threats or indicators of compromise. .
SECURITY & COMPLIANCE ENGINEER (SCE) Zermount, IncSECURITY & COMPLIANCE ENGINEER (SCE)Arlington, VAFull timeAt least one of the following security certifications is required:Certified Authorization Professional (CAP)Certified Information Security Auditor (CISA)Certified Information Security Manager (CISM)Certified Information Systems Security Professional (CISSP), or Certified Chief Information Security Officer (CCISO)Governance Risk & Compliance Certification (CGRC)Or alternatively approved certificationsClearance LevelMinimum of active Secret Clearance and ability to obtain and maintain DHS suitabilityWORK LOCATIONThe position is primarily remote - Continental U.S onlyPrimary location when on site: Arlington, VA, and Springfield, VA Must be willing to travel - Not to exceed 10% of the time HOURS OF OPERATION8:00 am EST - 4:30 pm EST Times may fluctuate based on client and business requirements REPORTING STRUCTURE Reports To: Security Compliance Engineering Team Lead Direct Reports: N/A reported complianceTranslate NIST, EO 14028, OMB, and TIC 3.0 requirements into specific technical remediation actions Validate remediation actions with repeatable verification methods (not documentation review) Produce executive-quality outputs (risk findings, remediation plans, executive summaries) Maintain system artifacts and documentation only as a byproduct of validated technical workSUBJECT MATTER EXPERTISE (SME) SME Area #1 - Primary Expertise: Technical Risk Validation (Modern GRC Execution)Expert-level means:Ability to independently assess systems using direct technical inspection techniques, leveraging logs, configs, architecture documents, etc.
Sr. Security Engineer HalvikSr. Security EngineerAlexandria, VAFull timeThis is a Hybrid position requiring work at the customer location in Alexandria, VA.Core ResponsibilitiesStrategic Execution: Lead the architecture and phased rollout of enterprise data discovery, classification, and AI governance capabilities, prioritizing high-risk repositories and expanding coverage across cloud, on-premises, SaaS, and developer environments. This role leads the design, implementation, and operationalization of enterprise-scale data discovery and classification, AI governance and protection controls, and detection capabilities for emerging AI-native development artifacts (e.g., Markdown-based prompt files, cursor rules, GitHub Copilot instructions, and Model Context Protocol configuration files).
Mid-Level Security Engineer HalvikMid-Level Security EngineerAlexandria, VAFull timeThis is a hybrid position based at the customer location in Alexandria, VA.Core ResponsibilitiesOperational Support: Configure and maintain data discovery and classification policies across assigned cloud, on-premises, SaaS, and developer repositories, supporting prioritized rollout to high-risk systems. Working under the direction of the Lead Senior Security Engineer and Program Manager, the Mid-Level Security Engineer helps operationalize policy controls, maintain compliance dashboards, and support remediation activities that protect sensitive agency and stakeholder information.
Project Manager- Cyber Security ConsultNetProject Manager- Cyber SecurityRockville, MDFor over 25 years, we have connected thousands of consultants with meaningful roles through a personal, communication-driven approach, partnering with a diverse client base to build high-performing teams and create lasting impact. The ideal candidate is an organized, proactive project manager who thrives in fast-paced environments, excels at managing cross-functional teams, and has experience delivering technology or cybersecurity programs.
SECURITY & RISK ENGINEER (SRE) Zermount, IncSECURITY & RISK ENGINEER (SRE)Arlington, VAFull timeAt least one of the following security certifications is required:Certified Authorization Professional (CAP)Certified Information Security Auditor (CISA)Certified Information Security Manager (CISM)Certified Information Systems Security Professional (CISSP), or Certified Chief Information Security Officer (CCISO)Governance Risk & Compliance Certification (CGRC)Or alternatively approved certificationsClearance LevelMinimum of active Secret Clearance and ability to obtain and maintain DHS suitabilityWORK LOCATIONThe position is primarily remote - Continental U.S onlyPrimary location when on site: Arlington, VA, and Springfield, VA Must be willing to travel - Not to exceed 10% of the time HOURS OF OPERATION8:00 am EST - 4:30 pm ESTTimes may fluctuate based on client and business requirementsREPORTING STRUCTUREReports To: Security Risk Engineering Team LeadDirect Reports: N/A The SRE is a core enabler of Zermount's Modern GRC mindset, which emphasizes:Continuous, real-time risk identification during compliance assessmentsRisk prioritization based on exploitability, exposure, and mission impactDirect integration with engineering and operations teams to drive remediationElimination of "check-the-box" compliance in favor of validated security outcomesYou will be directly responsible for supporting system authorization and mission assurance by producing objective, defensible, and technically accurate findings that enable Authorizing Officials, ISSOs, and system owners to make informed risk decisions.
Security Program Manager (INFOSEC) Watermark Risk Management InternationalSecurity Program Manager (INFOSEC)Washington, DC$60,000–$130,000 / yearYou’ll work across teams and integrate with other disciplines and teams for mission protection and success and serve as an expert for Classified National Security Information (CNSI), Controlled Unclassified Information (CUI), and Sensitive but Unclassified (SBU) information security programs, while supporting USCG-wide information security policy development, compliance, and training activities. Multiple considerations are taken into account when determining the final salary/hour rate, including but not limited to, Contract Wage Determination, education and certifications, relevant work experience, related skills and competencies, as well as Federal Government Contract Labor categories.
Information Security Analyst - SME (Remote) ZantechInformation Security Analyst - SME (Remote)Camp Springs, MDRemoteZantech is looking for a talented Information Security Analyst - SME to provide specialized cybersecurity expertise supporting risk management operations, conduct security assessments, implement continuous monitoring solutions, and develop training programs for an upcoming Hybrid role supporting USCIS based out of Camp Springs, MD. The SME will provide Continuous Process Improvement (CPI), Risk Management Operations Support, Continuous Monitoring and Internal Control Testing Support, Information Systems Security Officer (ISSO) Development, and Agile Security Services Surge Support.
Information System Security Officer (Isso) KBRInformation System Security Officer (Isso)Alexandria, VARemote$130,000–$170,000 / yearThe successful candidate will provide support to the Test Resource Management Center's (TRMC) All Domain Test Range (ADTR) and INDOPACOM Pacific-Rim Multi-Domain Training and Experimentation Capability Team, Joint Mission Environment Test Capability (JMETC) Secret Network (JSN) Node, JMETC Multiple Independent Levels of Security Network (JMN) Node, Secret Defense Research and Engineering Network (SDREN), Defense Research and Engineering Network (DREN). DoD Network experience: Experience working with DoD Wide Area Networks and familiarity with various network architectures and common protocols to include: Experience working with Defense Research and Engineering Network (DREN).