Information Security Governance, Risk and Compliance (GRC) Analyst Cyquent, IncInformation Security Governance, Risk and Compliance (GRC) AnalystRockville, MDCyquent is a CMMI & ISO Certified Technology Enabler providing end-to-end IT solutions and services to organizations in both the public and private sectors since 2001. Our client is seeking an Information Security Risk Analyst to support policy exception administration, risk analysis, and enterprise risk management activities.
Information Security Analyst Armada LtdInformation Security AnalystWashington, DCFull timeThe analyst serves as a subject matter expert in the protection of classified and sensitive information and supports the implementation, oversight, and continuous improvement of information security programs in accordance with federal regulations, executive orders, Department of Homeland Security (DHS), and U.S. Coast Guard (USCG) requirements. Provide subject matter expertise regarding the safeguarding, handling, marking, storage, transmission, and destruction of Classified National Security Information (CNSI), Controlled Unclassified Information (CUI), and Sensitive but Unclassified (SBU) information.
SECURITY & COMPLIANCE ENGINEER (SCE) Zermount, IncSECURITY & COMPLIANCE ENGINEER (SCE)Arlington, VAFull timeAt least one of the following security certifications is required:Certified Authorization Professional (CAP)Certified Information Security Auditor (CISA)Certified Information Security Manager (CISM)Certified Information Systems Security Professional (CISSP), or Certified Chief Information Security Officer (CCISO)Governance Risk & Compliance Certification (CGRC)Or alternatively approved certificationsClearance LevelMinimum of active Secret Clearance and ability to obtain and maintain DHS suitabilityWORK LOCATIONThe position is primarily remote - Continental U.S onlyPrimary location when on site: Arlington, VA, and Springfield, VA Must be willing to travel - Not to exceed 10% of the time HOURS OF OPERATION8:00 am EST - 4:30 pm EST Times may fluctuate based on client and business requirements REPORTING STRUCTURE Reports To: Security Compliance Engineering Team Lead Direct Reports: N/A reported complianceTranslate NIST, EO 14028, OMB, and TIC 3.0 requirements into specific technical remediation actions Validate remediation actions with repeatable verification methods (not documentation review) Produce executive-quality outputs (risk findings, remediation plans, executive summaries) Maintain system artifacts and documentation only as a byproduct of validated technical workSUBJECT MATTER EXPERTISE (SME) SME Area #1 - Primary Expertise: Technical Risk Validation (Modern GRC Execution)Expert-level means:Ability to independently assess systems using direct technical inspection techniques, leveraging logs, configs, architecture documents, etc.
NewInformation System Security Officer (ISSO) - TS Clearance MartinFedInformation System Security Officer (ISSO) - TS ClearanceArlington, VAFull timeContinuous Monitoring:Utilize security tools and technologies to monitor network traffic, detect anomalies, and investigate potential security incidents to ensure continuous secure operations. COMPANY OVERVIEWFounded in 2007 in Huntsville, AL, MartinFed provides the U.S. government with customer-focused, performance-based solutions using technology and an empowered workforce as an engine to drive its customers' missions.
Information System Security Manager Oxenham Group LLCInformation System Security ManagerLorton, VA$180,000–$205,000 / yearA credential such as AZ-500 (Azure Security Engineer Associate), SC-100 (Cybersecurity Architect Expert), AZ-305 (Azure Solutions Architect Expert), or an equivalent. Sit as a voting participant on the Configuration Control Board (CCB) or Risk Executive Board, empowered to halt any proposed change judged a security concern.
Senior Information System Security Officer (ISSO) E LogicSenior Information System Security Officer (ISSO)Washington D.C., DCYou will be responsible for performing complex ISSO duties across a portfolio of FISMA-moderate systems, leading critical workstreams in RMF, continuous monitoring, and vulnerability management. Incident & Audit Support: Provide critical ISSO support during cybersecurity incidents and audits by retrieving system context, coordinating with the SOC, and documenting corrective actions.
Information Security Manager III Argo Cyber SystemsInformation Security Manager IIIArlington, VAFull timeEmployment with Argo Cyber Systems is contingent upon successful completion of all required background investigations and pre-employment screenings, which may include, but are not limited to:Criminal background checks (federal, state, and local)Employment and education verificationReference checksDrug screening (in compliance with federal and state law)Security clearance verification (as applicable for classified positions)Candidates selected for employment in positions requiring access to sensitive or classified information may also be subject to additional U.S. Government background investigations and security adjudication processes, including DHS Entry on Duty (EOD) suitability or equivalent federal clearance requirements. Information Security Manager IIILocation: Arlington, VA (On-Site)/ HybridCitizenship: US onlyClearance: Active TS/SCI (DHS EOD Suitability required)Company: Argo Cyber Systems, LLC - Service-Disabled Veteran-Owned Small Business (SDVOSB)About Argo Cyber SystemsArgo Cyber Systems provides mission-critical cybersecurity support to U.S. Government agencies and critical infrastructure owners nationwide.
Information Security Specialist Counterpart BrandInformation Security SpecialistArlington, VirginiaApplicants should have a strong technical background in information technology and a firm understanding of internet security issues, including familiarity with methods of encryption for data during storage and transmission, circumvention of censorship, patch management, business continuity principles, social media security/privacy, mobile device security, and secure web hosting. Counterpart International is currently seeking Information Security Specialist for an “Internet Freedom” project focused on supporting civil society organizations, human rights activists, and independent media in Africa.
Lead Information Assurance (IA)/ Security Specialist - Ft. Meade Semper Valens SolutionsLead Information Assurance (IA)/ Security Specialist - Ft. MeadeFort Meade, MDFull timeKey Responsibilities: Lead the development, implementation, and enforcement of Information Assurance (IA) and cybersecurity policies, procedures, and controlsServe as the primary security authority supporting Risk Management Framework (RMF) activities, including system authorization (ATO), control selection, and continuous monitoringOversee and mentor IA/cybersecurity staff, ensuring alignment with program and organizational objectivesConduct and coordinate security assessments, vulnerability analyses, and risk mitigation strategiesEnsure compliance with NIST 800-53, NIST RMF, DoDI 8510.01, Familiarity with Agile/Scrum program executionRelevant certifications such as:CISSP (preferred)CISM, CASP+, Security+, or GSLCAbout Semper Valens Solutions:Semper Valens Solutions, Inc. (SVS) is a Service-Disabled Veteran Owned Small Business (SDVOSB) providing Cost Effective Software and Systems Engineering, Field Support, Training and Full Life cycle Support Management to the DOD and VA community.
Sr. Security Engineer HalvikSr. Security EngineerAlexandria, VAFull timeThis is a Hybrid position requiring work at the customer location in Alexandria, VA.Core ResponsibilitiesStrategic Execution: Lead the architecture and phased rollout of enterprise data discovery, classification, and AI governance capabilities, prioritizing high-risk repositories and expanding coverage across cloud, on-premises, SaaS, and developer environments. This role leads the design, implementation, and operationalization of enterprise-scale data discovery and classification, AI governance and protection controls, and detection capabilities for emerging AI-native development artifacts (e.g., Markdown-based prompt files, cursor rules, GitHub Copilot instructions, and Model Context Protocol configuration files).
Mid-Level Security Engineer HalvikMid-Level Security EngineerAlexandria, VAFull timeThis is a hybrid position based at the customer location in Alexandria, VA.Core ResponsibilitiesOperational Support: Configure and maintain data discovery and classification policies across assigned cloud, on-premises, SaaS, and developer repositories, supporting prioritized rollout to high-risk systems. Working under the direction of the Lead Senior Security Engineer and Program Manager, the Mid-Level Security Engineer helps operationalize policy controls, maintain compliance dashboards, and support remediation activities that protect sensitive agency and stakeholder information.
Information Technology - Engineer, Cyber Security Sr Ampcus IncorporatedInformation Technology - Engineer, Cyber Security SrWashington, DC$75–$79 / hourMust be able to effectively communicate and provide positive customer service to every internal and external customer, including customers who may be demanding or otherwise challenging. Must be able to meet established deadlines and handle multiple customer service demands from internal and external customers, within set expectations for service excellence.
Lead Information System Security Officer (ISSO) E LogicLead Information System Security Officer (ISSO)Washington D.C., DCIn this key leadership role, you will serve as the single point of accountability for all technical cybersecurity support services, managing a team of ISSOs and acting as the primary interface with senior federal officials, including the Information System Security Manager (ISSM), Chief Information Security Officer (CISO), and Authorizing Officials (AO). Strategic Oversight: Chair internal quality reviews, manage the contractor risk/issue register, and represent the team in high-level DFC governance forums (e.g., Change Control Board, Enterprise Review Board).
Security & Compliance Specialist E LogicSecurity & Compliance SpecialistWashington D.C., DCRemoteThis role is responsible for monitoring security compliance, supporting risk management activities, and ensuring adherence to federal cybersecurity and privacy requirements throughout the project lifecycle. E-Logic is seeking a Security & Compliance Specialist to support the U.S. Department of Education's Impact Aid Grant System (IAGS).
Security Architect (RFP) Ampcus IncorporatedSecurity Architect (RFP)Washington, DC$70–$80 / hourAmpcus Inc. is a certified global provider of a broad range of Technology and Business consulting services. We are in search of a highly motivated candidate to join our talented Team.
SECURITY & RISK ENGINEER (SRE) Zermount, IncSECURITY & RISK ENGINEER (SRE)Arlington, VAFull timeAt least one of the following security certifications is required:Certified Authorization Professional (CAP)Certified Information Security Auditor (CISA)Certified Information Security Manager (CISM)Certified Information Systems Security Professional (CISSP), or Certified Chief Information Security Officer (CCISO)Governance Risk & Compliance Certification (CGRC)Or alternatively approved certificationsClearance LevelMinimum of active Secret Clearance and ability to obtain and maintain DHS suitabilityWORK LOCATIONThe position is primarily remote - Continental U.S onlyPrimary location when on site: Arlington, VA, and Springfield, VA Must be willing to travel - Not to exceed 10% of the time HOURS OF OPERATION8:00 am EST - 4:30 pm ESTTimes may fluctuate based on client and business requirementsREPORTING STRUCTUREReports To: Security Risk Engineering Team LeadDirect Reports: N/A The SRE is a core enabler of Zermount's Modern GRC mindset, which emphasizes:Continuous, real-time risk identification during compliance assessmentsRisk prioritization based on exploitability, exposure, and mission impactDirect integration with engineering and operations teams to drive remediationElimination of "check-the-box" compliance in favor of validated security outcomesYou will be directly responsible for supporting system authorization and mission assurance by producing objective, defensible, and technically accurate findings that enable Authorizing Officials, ISSOs, and system owners to make informed risk decisions.
Security Manager Armada LtdSecurity ManagerFalls Church, VAFull timeFacilitate development of enterprise procedures to conduct full criminal history checks on staff also known as Childcare Background Checks (CBC) from initiation to adjudication including due process. Minimum Education:Bachelor's degree in a relevant field (Emergency Management, Security Studies, Public Policy, Information Security, or related discipline).
Information Systems Security Engineer (ISSE) LV8D SolutionsInformation Systems Security Engineer (ISSE)Chantilly, VAInterested candidates must be knowledgeable of best practices when implementing security controls including software engineering methodologies, security engineering methodologies, security engineering principles, and secure coding techniques and coordinate activities with Assessment and Authorization (A&A) stakeholders. LV8D Solutions is an elite Systems Engineering and Technical Advisory (SETA) company that delivers advanced systems engineering, integration, acquisition, mission operations, network communications, and cybersecurity support to our defense and intelligence customers.
IT Security Analyst (FedRAMP/RMF) Information Consulting ServicesIT Security Analyst (FedRAMP/RMF)Herndon, VAThe position partners closely with Cloud Operations to identify, prioritize, and remediate vulnerabilities (including container security) while applying frameworks such as NIST RMF and FISMA to ensure sustained authorization and control compliance. You will develop and maintain FedRAMP-required security documentation and artifacts, drive Continuous Compliance Monitoring (CCM), manage POA&Ms, and advise stakeholders on evolving regulatory and cloud security policies.
NewLead/Senior Information Security Analyst - Active TS/SCI Clearance Macpower Digital Assets Edge Private LimitedLead/Senior Information Security Analyst - Active TS/SCI ClearanceArlington, VA$115,000–$145,000 / yearContractor shall create draft-training materials and draft training syllabi on the proper exercise of classification and declassification authority policy and guidance. Conduct monthly Automatic Declassification Reviews (ADR) and recommend non-routine questions involving possible exempted material and other Government agency equities.