Cyber Manager - Cloud DevSecOps Deloitte Touche Tohmatsu LtdCyber Manager - Cloud DevSecOpsMcLean, VA$134,500–$265,100 / yearGuide integration of Application Security capabilities including SAST, DAST, SCA, secrets scanning, IaC scanning, container security, API security, threat modeling, penetration testing, and vulnerability management into CI/CD pipelines and developer workflows. 2+ years of experience with CI/CD and Application Security technologies, including experience with at least 3 of the following security capabilities: SAST, DAST, SCA, secrets scanning, IaC scanning, container security, API security, threat modeling, or vulnerability management.
CNDA 2-4 Weeghman & Briggs LLCCNDA 2-4Jessup, MD$147,000–$272,000 / yearFull timeLevel Qualifications:Specific labor category determined by years of experience + educational degreesLevel 1 2 years applicable experience with a bachelor's degree, OR4 years' applicable experience with associate degreeLevel 2 2 years applicable experience with a PhD, OR3 years applicable experience with a master's degree, OR5 years applicable experience with a bachelor's degree, OR7 years' applicable experience with an associate degreeLevel 3 4 years applicable experience with a PhD, OR6 years applicable experience with a master's degree, OR8 years' applicable experience with a bachelor's degree, OR10 years' applicable experience with an associate degreeLevel 4 7 years applicable experience with a PhD, OR9 years' applicable experience with a master's degree, OR11 years applicable experience with a bachelor's degree, OR13 years' applicable experience with an associate degreeCompensation & BenefitsThe projected salary range for this position is $113,000-$265,000, dependent upon experience, qualifications, and contract requirements. Computer Network Defense Analyst 2-4Location: Annapolis Junction, MD | Onsite Clearance Required: TS/SCI with Polygraph Employment Type: Full-Time Salary Range: $147,000-$272,000Join a Growing Team at Weeghman & BriggsWeeghman & Briggs is seeking a motivated and mission-driven Computer Network Defense Analyst 2-4 to support critical government initiatives in Annapolis Junction, MD.Founded in 2016 by Anthony Jordan, Weeghman & Briggs specializes in delivering high-impact analytical services to Government Agencies and private organizations.
Senior Cybersecurity Engineer / Security Architect (MLS & High-Assurance Systems) EccalonSenior Cybersecurity Engineer / Security Architect (MLS & High-Assurance Systems)Hanover, MarylandThe Senior Cybersecurity Engineer / Security Architect is responsible for defining, implementing, and evaluating advanced cybersecurity solutions for high-assurance environments supporting sensitive and classified information. Demonstrated experience supporting or delivering cybersecurity projects aligned to: NIST Cybersecurity Framework (NIST CSF).
NewAssessment Lead Athena Technology GroupAssessment LeadDistrict of ColumbiaKey Responsibilities Lead and oversee Security Control Assessments in support of the Risk Management Framework (RMF), including RMF Step 4 – Assess, and shall ensure assessments provide the Government with an independent, objective, repeatable, and evidence-based determination of the effectiveness of implemented security and privacy controls. Athena Technology Group, Inc. (ATG) is a Service-Disabled Veteran Owned Small Business (SDVOSB) focused on Information Technology and Communications consulting, system engineering, integration, deployment and operation of state of the art command and control and information systems that deliver critical network centric solution to the warfighter.
Information System Security Engineer (ISSE) IDS InternationalInformation System Security Engineer (ISSE)Annapolis Junction, MDWe combine deep technical expertise with mission-driven focus to support government, military, nonprofit, and public-sector customers. This role focuses on collaborating with government stakeholders to ensure compliance with security requirements and maintain secure system operations.
Senior Engineer, Cloud and System Security SES SASenior Engineer, Cloud and System SecurityMcLean, VADesign, implement and automate advanced cloud, system and application security controls leveraging best of breed and cloud native state of the art security technologies, including EDR, O365 Security, data leakage prevention and rights management, identification and access management, active directory security, secure software development. You will autonomously lead and deliver complex cyber security implementation projects and design, implement and automate advanced cloud, system and application security controls leveraging best of breed and cloud native state of the art security technologies.
Microsoft Dynamics 365 Architect (CE/ CRM) AnnexaMicrosoft Dynamics 365 Architect (CE/ CRM)WashingtonAnnexa is currently supporting DC Government's Child and Family Services Agency and is seeking a a senior, hands-on Microsoft Dynamics 365 Architect (CE/ CRM) resource to serve as the technical design authority for STAAND (Stronger Together Against Abuse and Neglect in DC), the District's federally certified Comprehensive Child Welfare Information System. Design, build, evaluate, and productionize agents in Azure AI Foundry and Copilot Studio: tool and function calling, orchestration and multi-agent patterns, grounding and retrieval over Dataverse and document stores, prompt and context engineering, structured output, and human-in-the-loop checkpoints.
System Vulnerability Analyst, Level 3 Independent SoftwareSystem Vulnerability Analyst, Level 3Annapolis Junction, MDYou will conduct security assessments, analyze network activity, identify indicators of compromise, and develop assessment and mitigation reports supporting mission-critical operations. What You Will Do: As a System Vulnerability Analyst, Level 3 at Independent Software, you will identify, analyze, and help mitigate vulnerabilities across complex systems and network environments.
Principal Incident Response Analyst - 90406800 - Remote National Railroad Passenger CorpPrincipal Incident Response Analyst - 90406800 - RemoteDCRemote$124,600–$161,352 / hourIn this role, you will technically navigate critical and high-profile incidents, performing digital forensic and incident response analysis with support from threat hunting, and malware triage analysts, Support Amtrak-wide cyber incident response engagements, examine cloud, endpoint, and network-based sources of evidence. ESSENTIAL FUNCTIONS: As a Principal Cyber Threat Incident Response Analyst, you will provide industry-leading cyber incident response supporting the Cyber Fusion Center mission to effectively detect and respond to threats and reduce the overall impact of business risk before, during, and after an incident.
Cybersecurity Engineer, Product Security Chaos IncCybersecurity Engineer, Product SecurityWashington, DC$110,000–$190,000 / yearThis role will work closely with Software Engineering, Embedded Systems, Hardware Engineering, Infrastructure, and Program teams to ensure security is integrated throughout the product lifecycle - from architecture and development through deployment and operational support. Role Overview: We are seeking a Cybersecurity Engineer focused on Product Security to help design, assess, and secure our next-generation sensor platforms and supporting software ecosystems.
Mobile Architect Digital Banking & Secure Mobile ClifyX, INCMobile Architect Digital Banking & Secure MobileMcLean, VAArchitect mobile application hardening solutions including root detection, jailbreak detection, anti-tampering controls, and runtime application self-protection. Lead architecture decisions for mobile applications supporting digital banking, payments, deposits, lending, and customer servicing journeys.
AI Red Teamer, Cyber 10a LabsAI Red Teamer, CyberWashington DCRemoteOur adversarial red teaming, model evaluations, and intelligence collection enable engineering, safety, and security teams to stay ahead of evolving threats and deploy AI systems safely. We are seeking an AI Red Teamer with deep cybersecurity expertise to help evaluate the security and resilience of advanced AI systems and applications.
2027 Graduate - Cybersecurity Engineer - Constrained Cyber Solutions Johns Hopkins University Applied Physics Laboratory LLC2027 Graduate - Cybersecurity Engineer - Constrained Cyber SolutionsLaurel, MDIf you are graduating with a Bachelor's or Master's degree in Computer Science, Computer Engineering, Electrical Engineering, Cybersecurity, Space Systems Engineering, Mathematics, Physics, or a related field, and want to contribute to cyber solutions that defend constrained U.S. military and space systems, we'd love to have you join the our team! Constrained Cyber Integration, Test, Evaluation, and Deployment: Design network and physical testbeds, virtualized ranges, and evaluation workflows to rapidly integrate, test, evaluate, validate, and support deployment of cyber capabilities in constrained mission environments.
DHS Information Systems Security Officer (ISSO) Senior OneZero SolutionsDHS Information Systems Security Officer (ISSO) SeniorWashington, DCFull timeTitle: DHS Information Systems Security Officer (ISSO) SeniorLocation: NCRClearance: TS/SCIOneZero Solutions is on contract to provide division-wide support for Federal Information Security Modernization Act (FISMA) compliance, execution of the Risk Management Framework (RMF) process to achieve and maintain Authority to Operate (ATO) security authorizations, and deliver cyber security compliance for DHS operational mission systems. The result of these efforts will be that the systems meet all the requirements for ATO approval before they are officially submitted to the Office of Chief Information Officer (OCIO).Qualified Parking Allowance: Employer may provide a monthly stipend or cover the cost of parking for employees who commute to government site by car.
DHS Security Control Assessor III OneZero SolutionsDHS Security Control Assessor IIIWashington, DCFull timeTitle: DHS Security Control Assessor IIILocation: NCRClearance: TS/SCIOneZero Solutions is on contract to provide division-wide support for Federal Information Security Modernization Act (FISMA) compliance, execution of the Risk Management Framework (RMF) process to achieve and maintain Authority to Operate (ATO) security authorizations, and deliver cyber security compliance for DHS operational mission systems. The result of these efforts will be that the systems meet all the requirements for ATO approval before they are officially submitted to the Office of Chief Information Officer (OCIO).Qualified Parking Allowance: Employer may provide a monthly stipend or cover the cost of parking for employees who commute to government site by car.
Cyber RMF/ATO Engineer Integral Consulting Services IncCyber RMF/ATO EngineerTysons, VAThe Cyber RMF/ATO Engineer is responsible for maintaining cybersecurity, RMF compliance, and ATO readiness for VA products and environments for the Department of Veterans Affairs (VA), Office of Information and Technology (OIT), Product Delivery Services (PDS), Benefits and Memorials (BAM), Memorial and Benefit Services (MBS) deliver secure, reliable, and effective Information Technology (IT) solutions that support the Department's mission. Coordinate and execute required VA security scans including: Nessus, Database Scans, Web Application Security Assessment (WASA), Security Configuration Compliance Data (SCCD), Threat Modeling, Penetration Tests, Continuous Monitoring (ConMon), and Ongoing Authorization (OA).
Software Engineer (Partial Telework) GliaCell TechnologiesSoftware Engineer (Partial Telework)Annapolis Junction, MD$115,000–$190,000 / yearWe also provide customer solutions in the areas of CND, CNE, and CNO by providing our customers with assessments and solutions in Threat Mitigation, Vulnerability Exposure, Penetration Testing, Threat Hunting, and Preventing Advanced Persistent Threat. Location: Annapolis Junction, MD / Partial Telework (2 days per week is expected) Note : Telework granted for this position does not become available until after the individual has been in the position for a period of time, has acclimated to tasking/duties, and has meaningful work that can be done remotely.
Exploitation Analyst Belay TechnologiesExploitation AnalystAnnapolis Junction, MD$115,000–$240,000 / yearIf not credited toward education requirements, completion of military training in a relevant area such as JCAC (Joint Cyber Analysis Course), Undergraduate Cyber Training (UCT), Network Warfare Bridge Course (NWBC)/Intermediate Network Warfare Training (INWT), Cyber Defense Operations will be considered towards relevant experience requirement (i.e., 20-24 week courses will count as 6 months of experience, 10-14 weeks will count as 3 months of experience). Several factors influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, education, specific skills and competencies and certifications.
2027 Graduate - Cybersecurity Engineer - Constrained Cyber Solutions Johns Hopkins Applied Physics Laboratory2027 Graduate - Cybersecurity Engineer - Constrained Cyber SolutionsLaurel, MarylandFull timeIf you are graduating with a Bachelor’s or Master’s degree in Computer Science, Computer Engineering, Electrical Engineering, Cybersecurity, Space Systems Engineering, Mathematics, Physics, or a related field, and want to contribute to cyber solutions that defend constrained U.S. military and space systems, we'd love to have you join the our team! Constrained Cyber Integration, Test, Evaluation, and Deployment: Design network and physical testbeds, virtualized ranges, and evaluation workflows to rapidly integrate, test, evaluate, validate, and support deployment of cyber capabilities in constrained mission environments.
BISO - Enterprise Technology Services (ETS) AstraZeneca PlcBISO - Enterprise Technology Services (ETS)Gaithersburg, MD$190,956.80–$286,435.20 / yearNetwork security and connectivity: Partner with network engineering teams to ensure robust network security architecture across AstraZeneca's global networks, including segmentation and micro-segmentation, firewall governance, internet and proxy connectivity, DNS security, intrusion detection and prevention, traffic inspection, secure remote access, and secure integration with third-party networks, sites, data centres, and cloud service providers. Digital workplace and endpoint security: Familiarity with endpoint detection and response, device and mobile device management, patch management, data loss prevention, encryption, and secure configuration across diverse user device estates, together with security of productivity and collaboration platforms such as Microsoft 365, Teams, SharePoint, and OneDrive.