Information Systems Security Officer (ISSO) CymertekInformation Systems Security Officer (ISSO)Chantilly, VirginiaInformation Security Officer, Cybersecurity Officer, Security Analyst, Information Assurance Officer, Security Architect, Security Engineer, IT Security Manager, Risk Management Officer, Network Security Engineer, Security Compliance Analyst, ect. Cybersecurity, Information Technology, Computer Science, Information Systems, Network Engineering, Systems Engineering, Digital Forensics, Risk Management, Computer Engineering, Data Privacy, ect.
ZERO TRUST (ZT) APPLICATION DEVELOPMENT SECURITY SME (VIRTUALIZATION AND APPLICATION DEVELOPMENT SME) Zermount, IncZERO TRUST (ZT) APPLICATION DEVELOPMENT SECURITY SME (VIRTUALIZATION AND APPLICATION DEVELOPMENT SME)Arlington, VAFull timeSUBJECT MATTER EXPERTISE SME Area #1 – Application Security, Cloud Workload Protection & DevSecOps AdvisoryExpert-level mastery of application security architecture including ZT application access control design, API security strategy, authorization gateway architecture, and DevSecOps integration demonstrated through operational implementation or senior advisory engagement in a federal or large enterprise environment. ZERO TRUST (ZT) APPLICATION DEVELOPMENT SECURITY SME POSITION OVERVIEWThe Zero Trust Virtualization / Application Development Technical SME exists to serve as the agency's primary technical advisor for the CISA ZTMM v2.0 Applications & Workloads pillar - the pillar responsible for extending ZT enforcement to the application layer across the agency's enterprise software portfolio.
Security Software Engineer/Developer SGA Inc.Security Software Engineer/DeveloperRockville, MD$64–$67 / hourPreferred Skills: Experience with AWS services such as Lambda, Step Functions, CloudFormation, SNS, SQS, ECS, EC2 and Infrastructure-as-Code tools. Evaluate AWS services, open-source tools, and commercial security products through technical testing and proof-of-concept development.
Information Systems Security Engineer (ISSE) CymertekInformation Systems Security Engineer (ISSE)Annapolis Junction, MarylandInformation Security Engineer, Security Systems Engineer, Cybersecurity Engineer, Security Architect, Network Security Engineer, Information Assurance Engineer, Security Operations Engineer, IT Security Engineer, Systems Security Analyst, Cloud Security Engineer, ect. Cybersecurity, Information Technology, Computer Science, Information Systems, Network Engineering, Systems Engineering, Computer Engineering, Digital Forensics, Software Engineering, Electrical Engineering, ect.
Information System Security Engineer (ISSE) TLA-LLCInformation System Security Engineer (ISSE)McLean, VAExperience: A minimum of 5-8 years of experience in information security engineering, system administration, and/or cybersecurity, with hands-on experience in implementing security controls and supporting authorization processes. · Collaboration and Guidance: Serve as a subject matter expert, providing guidance to development, engineering, and program teams on secure design, development, and secure coding techniques.
Cyber Security Systems Engineer Emergent Technologies IncCyber Security Systems EngineerReston, VAFull timeEmergent Technologies Inc. is actively seeking experienced Cybersecurity Engineers with a minimum of eleven (11) years of relevant experience supporting secure, mission-critical environments. Industry-recognized certifications such as CISSP, CISM, Security+, CEH, GSEC , or cloud security certifications (e.g., AWS Security, Azure Security Engineer ).
Information Systems Security Officer Spear AIInformation Systems Security OfficerBolling AFB, District of ColumbiaWe are seeking an Information Systems Security Officer to provide senior-level cybersecurity leadership and oversight across all information systems supporting the program, serving as the authoritative subject matter expert on security policy, risk management, and compliance within the Intelligence Community. We’re a small team wearing many hats, and you’d have a wide variety of responsibilities that include: Serve as the senior security authority for all program information systems, providing oversight to ISSOs and security staff.
ZERO TRUST (ZT) APPLICATION DEVELOPMENT SECURITY SME (VIRTUALIZATION AND APPLICATION DEVELOPMENT SME) Hiring Our HeroesZERO TRUST (ZT) APPLICATION DEVELOPMENT SECURITY SME (VIRTUALIZATION AND APPLICATION DEVELOPMENT SME)Arlington, VAFull timeSUBJECT MATTER EXPERTISE SME Area #1 – Application Security, Cloud Workload Protection & DevSecOps AdvisoryExpert-level mastery of application security architecture including ZT application access control design, API security strategy, authorization gateway architecture, and DevSecOps integration demonstrated through operational implementation or senior advisory engagement in a federal or large enterprise environment. ZERO TRUST (ZT) APPLICATION DEVELOPMENT SECURITY SME POSITION OVERVIEWThe Zero Trust Virtualization / Application Development Technical SME exists to serve as the agency's primary technical advisor for the CISA ZTMM v2.0 Applications & Workloads pillar - the pillar responsible for extending ZT enforcement to the application layer across the agency's enterprise software portfolio.
Information System Security Engineer (Isse) TLA-LLCInformation System Security Engineer (Isse)McLean, VAExperience: A minimum of 5-8 years of experience in information security engineering, system administration, and/or cybersecurity, with hands-on experience in implementing security controls and supporting authorization processes. · Collaboration and Guidance: Serve as a subject matter expert, providing guidance to development, engineering, and program teams on secure design, development, and secure coding techniques.
Enterprise Cloud Security Architect GuidePoint SecurityEnterprise Cloud Security ArchitectReston, VABy taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation’s top organizations, such as Fortune 500 companies and U.S. government agencies, to identify threats, optimize resources and integrate best-fit solutions that mitigate risk. With more than 800 vetted technology vendor partnerships and deep practitioner expertise across every major cybersecurity domain, GuidePoint serves more than half of the U.S. Government’s cabinet-level agencies across Civilian, DoD, and Intelligence Community segments, as well as Federal System Integrators and major defense prime contractors.
Information Security Systems Engineer (RHEL Focus) UltraViolet CyberInformation Security Systems Engineer (RHEL Focus)Herndon, VirginiaFounded and operated by security practitioners with decades of experience, the UltraViolet Cyber security-as-code platform combines technology innovation and human expertise to make advanced real-time cybersecurity accessible for all organizations by eliminating risks of separate red and blue teams. UltraViolet Cyber is seeking a Security Engineer who will provide Security Operations Center (SOC) engineering support and guidance to the teams and the client that improve the client’s cybersecurity posture, to include the confidentiality, integrity, and availability of information systems by identifying, verifying, and understanding cyber events.
Senior Cyber Security Analyst Ampcus IncorporatedSenior Cyber Security AnalystWashington, DC$60–$75 / hourThe role coordinates with both the Information Technology (IT) team and Operational Team (OT) to ensure individuals have the appropriate access to resources, monitor vulnerabilities and threats, collects intelligence, assists in disaster recovery operations, and in updating cyber controls with intelligence obtained from third-party providers. Analyzes security events and incidents within the Computing and Network environment, investigating root causes, assessing impact, and coordinate and document response actions to mitigate risks and minimize operational disruptions.
NewSecurity Compliance Analyst II H4 EnterprisesSecurity Compliance Analyst IIWashington, DCFull timeCitizenship requiredEducationBachelor's degree in an IT fieldMust possess the following current certifications:Certified Information Systems Security Professional (CISSP)Certified in Risk and Information Systems Control (CRISC)Certified Information Security Manager (CISM)Cybersecurity and Infrastructure Security Agency (CISA)Certified Ethical Hacker (CEH)OrDoD 8570 Information Assurance Management (IAM) II equivalent certificationsExperienceOver ten (10) years of hands-on IT experiencePreferred: Department of State experienceTechnical background and ability to review complex configurations for validationExperience with the Risk Management Framework (RMF) process from both a package preparation and assessor perspectiveExperience in the use of the XACTA, ACAS, and HBSS security toolsExperience with federal policies and procedures to acquire and maintain an Information System's Authority to Operate (ATO) under FISMA Act following NIST 800-53 guidelines and NIST- 800-53a security controls assessment practicesExcellent written and oral communication skills and the ability to work independently or as a member of a teamExperience with the RFM, POA&Ms, Security Authorization and AssessmentsExperience conducting and documenting vulnerability assessmentsKnowledge of and experience with NIST SP 800-53, 800-53A, and 800-37Understanding of FISMA complianceExperience with maintenance, installation, and use of WebInspect, Nessus scans, or similar toolsCLEARANCE REQUIREMENTPosition will be subject to a U.S. Government Security Investigation. RELATIONSHIPSThe Security Compliance Analyst II will receive direct government oversight, assignments, and directions from the assigned Government Office/ Program Director or Division Chief, through an assigned team leader.
Lead Cyber Security Engineer Capital BankLead Cyber Security EngineerRockville, MarylandRemote$115,000–$125,000 / yearWe offer commercial and consumer banking services to clients primarily in Maryland, DC, and Northern Virginia, alongside two nation-wide lending brands; Capital Bank Home Loans and OpenSky, a credit card division that offers and services credit cards across all states. As such, the Lead Information Security Engineer is responsible for designing, implementing, and continuously improving security controls, leading incident response activities, and serving as a key technical advisor to IT leadership and business stakeholders.
NewSenior Information Systems Security Officer Bamboo SolutionsSenior Information Systems Security OfficerWashington, DCInstead, the Senior ISSO leverages prior experience as a Systems Administrator, Cloud Engineer, Infrastructure Engineer, Network Engineer, Security Engineer, or similar technical role to independently validate security implementations, assess technical risk, and ensure authorization decisions are supported by accurate technical evidence. Prior hands-on experience in a technical role such as Systems Administrator, Cloud Engineer, Infrastructure Engineer, Network Engineer, or Security Engineer, with the ability to evaluate technical implementations, validate controls, assess evidence, and challenge unsupported assumptions.
Senior Security Risk Management SME One Federal SolutionSenior Security Risk Management SMEWashington, DCWe are pioneers, builders, thought leaders, and pride ourselves on thinking outside the box to co-create with our customers, helping them achieve exceptional enterprise-wide outcomes. As a certified Service-Disabled Veteran-Owned Small Business (SDVOSB), OFS is committed to providing high-performance professionals who deliver excellence to our government partners.
Cyber Security Assessment & Authorization SME ESMCyber Security Assessment & Authorization SMEVienna, VARemoteFull timeRequired Knowledge, Skills and Abilities (KSA)Expert knowledge of the Department of Defense (DoD) Risk Management Framework (RMF), Assessment and Authorization (A&A) processes, and applicable DoD, DLA, and NIST cybersecurity policies and guidance, including NIST SP 800-53 security controls. Job Description and ResponsibilitiesThe successful candidate serves as a Cybersecurity Subject Matter Expert (SME) for the Assessment and Authorization (A&A) of information systems, ensuring compliance with Department of Defense (DoD) and Defense Logistics Agency (DLA) cybersecurity policies, procedures, and the Risk Management Framework (RMF).
Cloud Security Engineer ESMCloud Security EngineerWashington, DCFull timeRequired Knowledge, Skills and Abilities (KSA)Experience with cloud-native architectures and AWS services, including VPCs, Security Groups, IAM, Docker, KMS, S3 and RDS encryption, HTTPS/SSL certificates, API Gateway, Lambda, CloudFormation, CloudFront, Cloudflare, egress proxies, data lake security, application security, domain segmentation, authentication, data protection, and process automation. Job Description and ResponsibilitiesThe successful candidate will design, implement, and secure cloud-native AWS environments using technologies and services including VPC, IAM, Security Groups, Docker, Lambda, API Gateway, CloudFormation, CloudFront, CloudFlare, encryption technologies, and data protection controls.
Cyber Security Analyst R&P Technologies, LLCCyber Security AnalystWashington, DC, Washington, DCFull timeProcess daily requirements in eMASS to include POA&Ms, IAVAs, Control Test Results (Control Correlation Identifiers [CCIs]), Categorization forms, PPSMs, SAPs, SLCMs and Inheritance updates. Experience with DoD processes and procedures, U.S. Navy surface ship systems, AWS/ Azure Government cloud implementation, IATO/ATO testing, documentation preferred.
Security Analyst II First Division ConsultingSecurity Analyst IIWashington, DCSupport a broad range of security programs, including: Personnel Security, Information Security, Physical Security, Operations Security (OPSEC), Controlled Unclassified Information (CUI), Security Education and Awareness, Insider Threat Awareness, Mission Assurance (MA), Continuity of Operations (COOP). First Division Consulting (FirstDiv) provides program management, acquisition, logistics, field service representative, explosive ordnance disposal, and personnel support services to Department of War and Federal Government Agencies.