Transportation Security Business Analyst GuidehouseTransportation Security Business AnalystSpringfield, VirginiaWork within the delivery team to perform a comprehensive assessment of federal organization, develop an integrated plan for modernization of a geographically distributed workforce, identify operational/programmatic synergies with agencies with overlapping mission spaces, create improved methods of information-sharing governance, and reporting. Note that Guidehouse will never charge a fee or require a money transfer at any stage of the recruitment process and does not collect fees from educational institutions for participation in a recruitment event.
Defense & Security, Internal Controls, Audit Remediation, Readiness, and Risk Management Consultant GuidehouseDefense & Security, Internal Controls, Audit Remediation, Readiness, and Risk Management ConsultantTysons Corner, VirginiaDemonstrates proven thorough abilities in the following areas: Internal control assessments; Entity level controls, risk management, and fraud risk assessments; Supporting management control programs; Understanding deficiencies communicated by the auditor, tracking audit PBC requests, responding to audit requests, developing corrective action plans, and executing remediation with a focus on internal controls over financial reporting and management financial statement assertions; and, Implementing the revised OMB Circular A-123, Appendix A. Demonstrates the ability to understand client needs, participate within a team environment, and communicate throughout internal and external network in a manner that allows for successful execution of tasks. Evaluating internal controls over financial reporting (ICOFR) and internal controls over operations in line with OMB Circular A-123 for a range of financial and business process areas, to including performing end-to-end walkthroughs of business processes, documenting business processes and controls, testing the design and operating effectiveness of internal controls, and reporting on deficiencies.
Defense & Security, Internal Controls, Audit Remediation, Readiness, And Risk Management Consultant GuidehouseDefense & Security, Internal Controls, Audit Remediation, Readiness, And Risk Management ConsultantArlington, VADemonstrates proven thorough abilities in the following areas: Internal control assessments; Entity level controls, risk management, and fraud risk assessments; Supporting management control programs; Understanding deficiencies communicated by the auditor, tracking audit PBC requests, responding to audit requests, developing corrective action plans, and executing remediation with a focus on internal controls over financial reporting and management financial statement assertions; and, Implementing the revised OMB Circular A-123, Appendix A. Demonstrates the ability to understand client needs, participate within a team environment, and communicate throughout internal and external network in a manner that allows for successful execution of tasks. Evaluating internal controls over financial reporting (ICOFR) and internal controls over operations in line with OMB Circular A-123 for a range of financial and business process areas, to including performing end-to-end walkthroughs of business processes, documenting business processes and controls, testing the design and operating effectiveness of internal controls, and reporting on deficiencies.
Information Technology Program Manager - SME (Remote) ZantechInformation Technology Program Manager - SME (Remote)Camp Springs, MDRemoteProvide Program Management services as required to effectively manage the staffing, capability, and appropriate plans to deliver the defined support services on schedule and within budget. At Zantech, we are a dynamic Woman Owned Small Business focused on providing complex, mission-focused solutions with a proven track record of outstanding customer performance and high employee satisfaction.
Cyber Security Engineering SME Abacus TechnologyCyber Security Engineering SMEWashington, Washington, DCMust hold at least one of the following certifications: Certified Information Systems Security Professional (CISSP); Certified Information Security Manager (CISM); Certified Information Systems Auditor (CISA); CompTIA Advanced Security Practitioner (CASP+); Offensive Security Certified Professional (OSCP); Global Information Assurance Certifications (GIAC); and/or Certified Cloud Security Professional (CCSP). Author, review, certify, and/or maintain IA and security management plans to include RMF Implementation Plans, System Security Management Plans, Information Support Plans, PPPs, Security Risk Analyses, Security Vulnerability and Countermeasure Analyses, Security Concepts of Operations, OPSEC Plans, and other system/network security related documents.
Senior Lead Information Security Consultant (AI) Capital OneSenior Lead Information Security Consultant (AI)McLean, VirginiaYou have experience in securing large-scale e-commerce platforms, with deep understanding of payments systems, customer data protection across high transaction environments ensuring protection of user data across internal and partner ecosystems. 2+ years of experience evaluating AI technologies and integrations for security, privacy, and compliance risks, with knowledge of common AI attack vectors, model vulnerabilities, prompt injection, data leakage, model abuse, and supply chain risks.
Manager Information Security Office (ISO), Enterprise Data Capital OneManager Information Security Office (ISO), Enterprise DataMcLean, VirginiaCoordinate and execute proactive Information Security consulting to the business and technology teams covering API Security, File Transfer, Infrastructure Security, Resiliency, Data Security, Network Architecture and Design, Datalake Architecture, BI, and consumption tools, and User Access Management. Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate’s offer letter.
Information Security Engineer TechDigitalInformation Security EngineerDC, DCParticipate in audits, as needed, producing necessary documentation, reports, and explanations, and Implement corrective and preventive action plans approved by unit managers Support for security tools such as Trend Micro Deep Security Host Based firewall (or similar host-based firewall tool) and CyberArk (or similar tool). Information Security Engineering Manage AWS Security tools (such as GuardDuty, Trusted Advisor, Secret Manager, Parameter Store, Inspector) Create AWS CloudFormation and manage AWS Security Groups.
NewPS/IA - Physical Security/Information Assurance Specialist Watermark Risk Management InternationalPS/IA - Physical Security/Information Assurance SpecialistCamp Springs, MDMultiple considerations are taken into account when determining the final salary/hourly rate, including but not limited to, Contract Wage Determination, education and certifications, relevant work experience, related skills and competencies, as well as Federal Government Contract Labor Categories. Watermark provides salary ranges with job postings in states where it is legally required; any other salary ranges associated with our postings are third party estimates and may not be an accurate reflection of Watermark’s total compensation package.
Information System Security Engineer (ISSE) OMNI Consulting SolutionsInformation System Security Engineer (ISSE)Chantilly, VirginiaOMNI Consulting Solutions is seeking for Information system Security Engineer to provide technical cybersecurity expertise supporting system design, architecture reviews, security controls implementation, risk assessments, and accreditation efforts throughout the system lifecycle. OMNI is built on the idea that change moves the world forward, and through creative and entrepreneurial leadership OMNI maintains a bold reputation within the DoD/Aerospace community and across the various other industries we support.
NewChief Information Security Officer DLA Piper LLP (US)Chief Information Security OfficerWashington, DC$550,000–$650,000 / yearExecutive-level knowledge of cybersecurity strategy, governance, risk, compliance, privacy, data protection, incident response, threat intelligence, vulnerability management, identity and access management, cloud and network security, application security, endpoint protection, email security, encryption, logging and monitoring, disaster recovery, business continuity, third-party risk, DevSecOps, modernized secure development practices including AI SDLC, and secure technology adoption. Operating as a trusted advisor to firm leadership, the Office of General Counsel, Information Technology, Information Governance, Risk Management, practice leadership, and global counterparts, the CISO ensures the confidentiality, integrity, and availability of client and firm information while enabling innovation, responsible AI adoption, operational resilience, and exceptional client service.
Information Systems Security Officer (ISSO) AMERICAN SYSTEMSInformation Systems Security Officer (ISSO)Quantico, VirginiaFull timeThis role is responsible for helping maintain system authorizations, supporting RMF activities, reviewing access requests, coordinating with stakeholders, tracking vulnerabilities and incidents, and ensuring systems remain compliant with applicable Federal, DoW, DoN, and Marine Corps cybersecurity requirements. AMERICAN SYSTEMS provides for the welfare of its employees and their dependents through a comprehensive benefits program by offering healthcare benefits, paid leave, retirement plans, insurance programs, and education and training assistance.
Information System Security Officer Military, Veterans and Diverse Job SeekersInformation System Security OfficerStafford, VirginiaCatalog, track, and virus scan all test software and data; provide a data repository and distribution center associated with the customer missions; provide quarterly and annual media audits; and interface with the customer configuration management staff, security, test directors/engineers, customers, and support staff supporting the customer mission. Experience using Commercial Off-the-Shelf (COTS) and Government Off-the-shelf (GOTS) tools to load data into databases and into disk storage tools to extract data from databases.
Cloud Information Systems Security Specialist (Active Secret) Military, Veterans and Diverse Job SeekersCloud Information Systems Security Specialist (Active Secret)Stafford, VirginiaAbility to navigate the system and cloud components to provide evidence to satisfy the controls as well as make any updates to the documentation in ultimate pursuit of the final ATO. Knowledge in the core documentation in support of the ATO (Config Management Plan, Contingency Management Plan, Audit Logging Plan, etc.).
Senior Information System Security Officer (ISSO) Independent SoftwareSenior Information System Security Officer (ISSO)Annapolis Junction, MDFull timeYou will work closely with engineering, operations, and compliance teams to monitor system security, conduct audits, manage vulnerabilities, and support accreditation efforts, including System Security Plan (SSP) compliance. Bachelor’s degree in Computer Science, Information Assurance, Cybersecurity, or a related discipline and ten (10) years of relevant experience.
Senior Information System Security Officer (Isso) Independent SoftwareSenior Information System Security Officer (Isso)Annapolis Junction, MDYou will work closely with engineering, operations, and compliance teams to monitor system security, conduct audits, manage vulnerabilities, and support accreditation efforts, including System Security Plan (SSP) compliance. Bachelor's degree in Computer Science, Information Assurance, Cybersecurity, or a related discipline and ten (10) years of relevant experience.
Information Systems Security Officer Steel Point SolutionsInformation Systems Security OfficerHanover, MarylandExperience is to include at least two (2) of the following areas: knowledge of current security tools, hardware/software security implementation; communication protocols; and encryption techniques/tools. Steel Point Solutions is an amazing SBA Certified (8a), HUBZone, Small Disadvantaged Business (SDB) and a Woman Owned Small Business (WOSB) company.
Information Systems Security Officer Level 1 GRVTYInformation Systems Security Officer Level 1Fort Meade, MD$134,000–$144,000 / yearPay Range: At GRVTY, we understand that compensation is influenced by many factors—such as geographic location, federal contract labor categories, wage rates, prior experience, skillsets, education, and certifications. Our benefits package is designed to support the well-being of our employees and their families, and includes coverage in areas such as healthcare, financial wellness, retirement planning, family assistance, continued education, and paid time off.
Information Security Compliance Coordinator Contact Discovery Services LLCInformation Security Compliance CoordinatorWashington, DC$55,000–$65,000 / yearInformation Security Compliance Coordinator Contact Discovery Services - Washington, DC Location: RemoteStart Date: NegotiableA leading eDiscovery technology and consulting firm headquartered in Washington, DC is looking for a part-time Information Security Compliance Coordinator in the eDiscovery space to support the Director of Compliance with day-to-day compliance-related activities associated with ISO 27001, SOC 2, and CMMC. This position includes working with a variety of internal & external team members including fellow Project Managers, business development team, attorneys, company or government representatives, and other legal staff.
NewSenior Security Engineer Evolver FederalSenior Security EngineerWashington, DCFull timeThe Senior Security Engineer will work closely with SOC teams, architects, and program managers to deliver robust security capabilities across cloud (AWS GovCloud, Azure Government), on-premises, and hybrid environments. This position requires deep technical expertise, hands-on experience with security tools, and the ability to lead engineering efforts for mission-critical systems in highly regulated environments.