Security Control Assessor (SCA) — Level II RividiumSecurity Control Assessor (SCA) — Level IIWashington, District of ColumbiaThe Security Control Assessor provides expert guidance on security control implementation, risk management, continuous monitoring, and authorization package development while working closely with System Owners, Information System Security Officers (ISSOs), Information System Security Managers (ISSMs), Security Engineers, Government Authorizing Officials (AOs), Security Control Assessor Representatives (SCARs), Branch Chiefs, and the DHS I&A Chief Information Security Officer (CISO). This position conducts comprehensive security control assessments for classified and unclassified information systems, cloud environments, Cross Domain Solutions (CDS), and C-LAN extension sites in support of the NIST Risk Management Framework (RMF) and DHS/Intelligence Community (IC) cybersecurity requirements.
Security Control Assessor (SCA) LV8D SolutionsSecurity Control Assessor (SCA)Chantilly, VAThe documentation will be contained in the Security Assessment Package, including, but not limited to, the Concept of Operations (CONOP), SSP, Systems Requirements Traceability Matrix, Risk Management Matrix, Test Results, interface control documents, requests for changes, test plans, and other related program security documentation. Provides ISs security advice and guidance Joint Analytical Workstation (JAW) applicable IC, DoW, and NDs and guidance to Government and industry partners for the protection of data at all classification levels including Sensitive Compartmented Information (SCI).
Systems Security Manager (ISSM) Life Cycle EngineeringSystems Security Manager (ISSM)Springfield, VA$120,000–$130,000 / yearBachelor's degree or higher from an accredited college or university (Prefer an accredited Computer Science, Cyber Security, Information Technology, Software Engineering, Information Systems, or Computer Engineering degree, or a degree in a Mathematics or Engineering field.). • Interface with external organizations (e.g., public affairs, law enforcement, Command or Component Inspector General) to ensure appropriate and accurate dissemination of incident and other Computer Network Defense information.
Senior Security Operations Analyst Otoe Missouria GroupSenior Security Operations AnalystWashington, DC, DCOtoe Missouria Group (OMG) is a tribally owned business dedicated to delivering high-quality solutions across a range of industries. Our team operates at the intersection of innovation and national security, providing professionals the opportunity to work on impactful programs in a collaborative and growth-oriented environment.
IT Security Director Phaxis LLCIT Security DirectorWashington, DC$200,000–$225,000 / yearThe IT Security Director will partner closely with executive leadership, Legal, Compliance, Infrastructure, and Operations teams to ensure the organization maintains a strong security posture and is prepared to respond effectively to evolving cyber threats. Salary is 200k to 220 + bonus We are seeking an experienced and strategic IT Security Director to lead the organization's cybersecurity program, risk management initiatives, and information security operations.
Computer Security System Specialist - Level III On-Site JASINTComputer Security System Specialist - Level III On-SiteWashington D.C., DCJASINT participates in E-Verify and will provide the federal government with I-9 information to confirm that all new hires are authorized to work in the U.S. To learn more about E-Verify, please visit dhs.gov/e-verify. Knowledgeable of Federal, DHS and IC cybersecurity policy and guidance; experienced with cloud and on-premise environments and with translating policy into implementable plans and overseeing their execution.
ZERO TRUST (ZT) APPLICATION DEVELOPMENT SECURITY SME (VIRTUALIZATION AND APPLICATION DEVELOPMENT SME) Hiring Our HeroesZERO TRUST (ZT) APPLICATION DEVELOPMENT SECURITY SME (VIRTUALIZATION AND APPLICATION DEVELOPMENT SME)Arlington, VAFull timeSUBJECT MATTER EXPERTISE SME Area #1 – Application Security, Cloud Workload Protection & DevSecOps AdvisoryExpert-level mastery of application security architecture including ZT application access control design, API security strategy, authorization gateway architecture, and DevSecOps integration demonstrated through operational implementation or senior advisory engagement in a federal or large enterprise environment. ZERO TRUST (ZT) APPLICATION DEVELOPMENT SECURITY SME POSITION OVERVIEWThe Zero Trust Virtualization / Application Development Technical SME exists to serve as the agency's primary technical advisor for the CISA ZTMM v2.0 Applications & Workloads pillar - the pillar responsible for extending ZT enforcement to the application layer across the agency's enterprise software portfolio.
NewSecurity Compliance Analyst II H4 EnterprisesSecurity Compliance Analyst IIWashington, DCFull timeCitizenship requiredEducationBachelor's degree in an IT fieldMust possess the following current certifications:Certified Information Systems Security Professional (CISSP)Certified in Risk and Information Systems Control (CRISC)Certified Information Security Manager (CISM)Cybersecurity and Infrastructure Security Agency (CISA)Certified Ethical Hacker (CEH)OrDoD 8570 Information Assurance Management (IAM) II equivalent certificationsExperienceOver ten (10) years of hands-on IT experiencePreferred: Department of State experienceTechnical background and ability to review complex configurations for validationExperience with the Risk Management Framework (RMF) process from both a package preparation and assessor perspectiveExperience in the use of the XACTA, ACAS, and HBSS security toolsExperience with federal policies and procedures to acquire and maintain an Information System's Authority to Operate (ATO) under FISMA Act following NIST 800-53 guidelines and NIST- 800-53a security controls assessment practicesExcellent written and oral communication skills and the ability to work independently or as a member of a teamExperience with the RFM, POA&Ms, Security Authorization and AssessmentsExperience conducting and documenting vulnerability assessmentsKnowledge of and experience with NIST SP 800-53, 800-53A, and 800-37Understanding of FISMA complianceExperience with maintenance, installation, and use of WebInspect, Nessus scans, or similar toolsCLEARANCE REQUIREMENTPosition will be subject to a U.S. Government Security Investigation. RELATIONSHIPSThe Security Compliance Analyst II will receive direct government oversight, assignments, and directions from the assigned Government Office/ Program Director or Division Chief, through an assigned team leader.
Security Software Engineer/Developer Software Guidance & AssistanceSecurity Software Engineer/DeveloperRockville, MD$64–$67 / hourPreferred Skills: Experience with AWS services such as Lambda, Step Functions, CloudFormation, SNS, SQS, ECS, EC2 and Infrastructure-as-Code tools. Evaluate AWS services, open-source tools, and commercial security products through technical testing and proof-of-concept development.
Network Security Engineer Synergy ECPNetwork Security EngineerAnnapolis Junction, MarylandMust meet DoD approved 8570 Baseline Ce1tification for IAT Level II and possess at least 2 of the following vendor certifications: Palo Alto Networks Certified Network Security Administrator (PCNSA), Sonicwall Network Security Administrator (SNSA), Sonicwall Network Security Professional (SNSP), Symantec ProxySG 6.7 Technical Specialist or Cisco CCNA or higher. Great Corporate Facilities : Come by our corporate office and enjoy a weekly happy hour, take a drive to nearby restaurants, grab a snack or coffee in our café, or utilize our collaborative office space and conference rooms.
AI Security & LLM Engineer AnaVationAI Security & LLM EngineerReston, VAThe following individual certifications cover both certification requirements for this program: CompTIA Cybersecurity Analyst, CySA+; EC-Council Certified Network Defender (CND); GlAC Global Industrial Cyber Security Professional, GICSP; (ISC)2 System Security Certified Practitioner (SCCP). You will build resilient multi-agent systems while actively defending against emerging vulnerabilities like prompt injection, data exfiltration, and model manipulation.
Network Security Engineer - long-Term Contract (Government) Position AHU TechnologiesNetwork Security Engineer - long-Term Contract (Government) PositionWashington, District of Columbia$50–$60 / hourTITLE: Network Security Engineer LOCATION: Washington DC/ Hybrid (on-site 3x/week) MINIMUM EDUCATION: Bachelor’s degree in IT, related field, or equivalent experience. Complete Description: Senior Network Security Engineer II supports the ongoing design, implementation, operation and security of the Client network and the supporting security infrastructure.
Security Endpoint Engineer/Admin - Long-Term Contract (Government) AHU TechnologiesSecurity Endpoint Engineer/Admin - Long-Term Contract (Government)Washington, District of Columbia$60–$70 / hourComplete Description: The Endpoint Engineer/Administrator will be intimately familiar with next generation Endpoint management/protection platforms including but not limited to Microsoft Intune, Tanium, and SCCM provisioning and patching management, Jamf macOS device management and CrowdStrike security. Hands on experience with implementing and managing the following technologies like Device Provisioning, Windows Autopilot, Creation and Configuration of device policies, Software Packaging & distribution, Windows OS and software patching, reporting in Intune using Graph explorer and API.
Personnel Security Specialist I Adjudicator AmentumPersonnel Security Specialist I AdjudicatorSpringfield, VirginiaWhile performing the duties of this job, the employee is occasionally required to stand; walk; sit; use hands and fingers to handle, or feel objects, tools or controls; use fingers and hands to type or write; reach with hands and arms; talk or hear; taste or smell. The Personnel Security Specialist (PSS) completes personnel security suitability intake tasks in support of DHS Federal Protective Services (FPS), Personnel Security Division (PSD).
Personnel Security Specialist I Intake AmentumPersonnel Security Specialist I IntakeSpringfield, VirginiaWhile performing the duties of this job, the employee is occasionally required to stand; walk; sit; use hands and fingers to handle, or feel objects, tools or controls; use fingers and hands to type or write; reach with hands and arms; talk or hear; taste or smell. The Personnel Security Specialist (PSS) completes personnel security suitability intake tasks in support of DHS Federal Protective Services (FPS), Personnel Security Division (PSD).
Cyber Security Specialist Marathon TSCyber Security SpecialistTysons, VAStrongly preferred: Meet the Department of Defense Directive (DoDD) 8570.01 "Information Assurance Training, Certification, and Workforce Management” and DoD 8570-M "Information Assurance Workforce Improvement Program” requirements for IAM (Information Assurance Manager) Level 3, IAT (Information Assurance Technical) Level 3, OR IASAE (Information Assurance System Architect and Engineer) Level 3. · Familiarity with various industry ICS products. Additional Preferred Qualifications: · 5+ years of experience working with industry and government agencies on the design of ICS platforms and integrated ICS systems.
Cloud Security Engineer SteampunkCloud Security EngineerMcLean, Virginia$110,000–$155,000 / yearOverview: As a Cloud Security Engineer, you will work within our growing DevSecOps practice delivering features to support developing, testing, and monitoring secure cloud architectures for cloud migration, cloud optimization and cloud deployment. Support enterprise cloud security through infrastructure as code including any activities around automated server or network configurations, large-scale software deployments, and monitoring and testing.
NewSecurity Assessment and Continuous Monitoring Analyst A-TEKSecurity Assessment and Continuous Monitoring AnalystRockville, Maryland$110,000–$120,000 / yearThe Security Assessment and Continuous Monitoring Analyst supports annual security assessments, continuous monitoring, POA&M management, cybersecurity documentation, vulnerability and risk tracking, GRC platform updates, and authorization sustainment for an HHS-affiliated agency. This individual collects and validates evidence, maintains accurate records, tracks findings, and keeps authorization packages ready for Government and independent assessor review.
Security Engineer Mitchell MartinSecurity EngineerMerrifield, VARemote$78–$83 / hourBy applying for this job, you agree to receive AI-generated calls, text messages, and/or emails from Mitchell Martin Inc and its affiliates and contracted partners at various frequency through traditional and automated methods. The candidate will utilize general technology knowledge in network engineering and security to support connected devices and IoT systems.
Security Analyst II First Division ConsultingSecurity Analyst IIWashington, DCSupport a broad range of security programs, including: Personnel Security, Information Security, Physical Security, Operations Security (OPSEC), Controlled Unclassified Information (CUI), Security Education and Awareness, Insider Threat Awareness, Mission Assurance (MA), Continuity of Operations (COOP). First Division Consulting (FirstDiv) provides program management, acquisition, logistics, field service representative, explosive ordnance disposal, and personnel support services to Department of War and Federal Government Agencies.