Post job

Information Systems Security Officer jobs at Information Management Group - 610 jobs

  • Cyber ML Engineer: Real-Time Threat Detection

    Phase2 Technology 3.9company rating

    McLean, VA jobs

    A leading technology firm is seeking a Cyber Machine Learning Engineer to build and improve machine learning models for detecting cyber threats. The ideal candidate has significant experience in cyber threat hunting and proficiency in Python and MLOps practices. This position offers a competitive compensation range of $99,000 to $225,000 annually, along with comprehensive benefits including health, life, and professional development opportunities. The job supports flexible work arrangements. #J-18808-Ljbffr
    $99k-225k yearly 4d ago
  • Job icon imageJob icon image 2

    Looking for a job?

    Let Zippia find it for you.

  • Defense ML Engineer - AI for National Security, Remote

    Phase2 Technology 3.9company rating

    McLean, VA jobs

    A leading technology firm in McLean, Virginia is seeking a Machine Learning Engineer to develop mission-critical AI solutions. You'll collaborate with data engineers and scientists to deploy models that enhance national security. The ideal candidate should have over 3 years of experience in artificial intelligence and a strong proficiency in Python and machine learning techniques. This role offers flexible work arrangements and comprehensive benefits. #J-18808-Ljbffr
    $89k-120k yearly est. 5d ago
  • Senior Security Analyst: Governance, Audit & Risk Advisor

    Capgemini 4.5company rating

    New York, NY jobs

    A global technology consulting firm is seeking a Senior Security Analyst to support governance in the enterprise security program. The role involves monitoring service provider activities, facilitating audits, and providing expertise on security issues. Ideal candidates should have strong self-management skills, familiarity with security technologies, and security certifications are preferred. This position comes with a comprehensive benefits package and competitive compensation in New York, with a compensation range between $65,586 and $121,980. #J-18808-Ljbffr
    $65.6k-122k yearly 4d ago
  • Senior Security Analyst

    Capgemini 4.5company rating

    New York, NY jobs

    Choosing Capgemini means choosing a company where you will be empowered to shape your career in the way you'd like, where you'll be supported and inspired bya collaborative community of colleagues around the world, and where you'll be able to reimagine what's possible. Join us and help the world's leading organizationsunlock the value of technology and build a more sustainable, more inclusive world. The Senior Security Analyst supports the governance of service provider activities in the enterprise security program, monitoring and escalating problems and providing information on security issues. Undertakes security assurance and audit activities to ensure compliance and to identify risks and opportunities. Provides information to senior managers and executives to ensure that they are aware of any security-related risks or opportunities. Provides subject matter expertise, consultancy and training in security-related matters. Must be able to function in a fast-paced, multi-vendor outsourced environment, facilitating conference calls among other subject matter experts and the client. Responsibilities Handles monthly reporting duties for the Information Risk Management team. Facilitates audit planning and audit remediation activities of the service providers, leading calls and documenting and reporting progress. Has familiarity with security technologies and controls; expertise not required, but the ability to escalate to more senior subject matter experts is important. Develops work plans to structure solutions and communications. Involves client and vendor staff appropriately in resolving security problems. Participates effectively within the business' security governance framework. Tracks the corrective and preventive actions being taken to improve security to closure. Possesses strong communication skills to communicate technical and security risk information to management. Experience Ability to self-manage with little interaction from other management staff. Flexible and able to adapt to manage a fast‑changing environment. Ability to solve complex issues and provide recommendations and advice regarding remediations. Experience with security architecture, security software, or security policy. Ability to organize agendas, lead conference calls, and track action items to completion. Security and Audit certifications such as SSCP, CISSP, CISA, CISM, CGEIT, CRISC, Security+ are preferred. Job Description - Grade Specific The base compensation range for this role in the posted location is: $65,586-121,980. Capgemini provides compensation range information in accordance with applicable national, state, provincial, and local pay transparency laws. The base compensation range listed for this position reflects the minimum and maximum target compensation Capgemini, in good faith, believes it may pay for the role at the time of this posting. This range may be subject to change as permitted by law. The actual compensation offered to any candidate may fall outside of the posted range and will be determined based on multiple factors legally permitted in the applicable jurisdiction. These may include, but are not limited to: Geographic location, Education and qualifications, Certifications and licenses, Relevant experience and skills, Seniority and performance, Market and business consideration, Internal pay equity. It is not typical for candidates to be hired at or near the top of the posted compensation range. In addition to base salary, this role may be eligible for additional compensation such as variable incentives, bonuses, or commissions, depending on the position and applicable laws. Capgemini offers a comprehensive, non‑negotiable benefits package to all regular, full‑time employees. In the U.S. and Canada, available benefits are determined by local policy and eligibility and may include: Paid time off based on employee grade (A-F), defined by policy: Vacation: 12‑25 days, depending on grade, Company paid holidays, Personal Days, Sick Leave Medical, dental, and vision coverage (or provincial healthcare coordination in Canada) Retirement savings plans (e.g., 401(k) in the U.S., RRSP in Canada) Life and disability insurance Employee assistance programs Other benefits as provided by local policy and eligibility Important Notice: Compensation (including bonuses, commissions, or other forms of incentive pay) is not considered earned, vested, or payable until it becomes due under the terms of applicable plans or agreements and is subject to Capgemini's discretion, consistent with applicable laws. The Company reserves the right to amend or withdraw compensation programs at any time, within the limits of applicable legislation. Disclaimers Capgemini is an Equal Opportunity Employer encouraging inclusion in the workplace. Capgemini also participates in the Partnership Accreditation in Indigenous Relations (PAIR) program which supports meaningful engagement with Indigenous communities across Canada by promoting fairness, accessibility, inclusion and respect. We value the rich cultural heritage and contributions of Indigenous Peoples and actively work to create a welcoming and respectful environment. All qualified applicants will receive consideration for employment without regard to race, national origin, gender identity/expression, age, religion, disability, sexual orientation, genetics, veteran status, marital status or any other characteristic protected by law. Physical, mental, sensory or environmental demands may be referenced in an attempt to communicate the manner in which this position traditionally is performed. Whenever necessary to provide individuals with disabilities an equal employment opportunity, Capgemini will consider reasonable accommodations that might involve varying job requirements and/or changing the way this job is performed, provided that such accommodation does not pose an undue hardship. Capgemini is committed to providing reasonable accommodation during our recruitment process. If you need assistance or accommodation, please reach out to your recruiting contact. Ref. code 385096-en_US Posted on 05 Jan 2026 Contract type Permanent Location Atlanta, Austin, Bellevue, Berwyn, Bridgewater, Brooklyn, Burlington, Chicago, Columbia, Dallas, Dayton - Sogeti US, Guaynabo, Houston, Irving, Mclean, Nashville, New York, San Francisco, Santa Clara, Seattle, Southfield, Tampa, Westerville #J-18808-Ljbffr
    $65.6k-122k yearly 4d ago
  • Information System Security Officer (ISSO)

    T-Rex Solutions 4.1company rating

    Ashburn, VA jobs

    Job Description T-Rex Solutions is seeking a results-driven Information System Security Officer (ISSO) to support our U.S. Customs and Border Protection (CBP) Network Operations Center (NOC). The program objective is to provide ongoing support for CBP's NOC and Wireless Network Operations Center (WNOC), which are critical components within the Office of Information and Technology. These centers perform real-time monitoring, proactive maintenance, incident detection and response, problem resolution, and network performance reporting across CBP's nationwide enterprise. They ensure network stability, availability, and the rapid escalation and resolution of technical issues. This is a 24x7x365 operation with work performed on-site in Ashburn, VA. Responsibilities: The ISSO shall ben assigned to one or more existing FISMA Systems of Record as well as new IT Systems that are slated as new work products to develop an Authority to Operate (ATO) and follow-on Continuous Monitored system. Develop and maintain all required FISMA system documentation. Ensure systems adhere to Technical Reference Architecture (TRA) foundational and supplemental documents as additional security specifications, when applicable (available upon request). Use approved security tools for continuous monitoring and management of security baselines. Implement audit tools or processes for auditing and reporting services that support Continuous Diagnostics and Monitoring (CDM). Provide engineering services and participation in Continuity of Operations Planning (COOP) and Disaster Recovery (DR) planning and exercises. Develop and implement Configuration Management and Change Management plans when necessary. Perform or participate in threat and vulnerability management for applicable FISMA systems. Perform POA&M management. Requirements: Bachelor's degree in related technical field such as Management Information Systems, Computer Science, Engineering, IT, Networking and Telecommunications. A minimum of ten (10) plus years of related experience Certifications, such as Network+ and Security +, CISSP and Security auditing are recommended. Proficient in network and information system security principles and best practices. In-depth knowledge of the Risk Management Framework (RMF), the NIST publications, and the DHS 4300A Policy Directive. Experience with implementing the NIST 800-53 Security Controls in an Assessment & Authorization (A&A) process. Experience reviewing Nessus scans, managing vulnerability mitigation and the information security process in an Enterprise environment. Basic understanding of Enterprise networking concepts. Ability to work well within a team environment and build reports with government and customer organizations. US citizenship required Ability to obtain and maintain a CBP public trust clearance Desired Skills: Experience directly supporting DHS, CBP or ICE Network Operations Active CBP clearance, or DOD Secret clearance or higher T-Rex Overview Established in 1999, T-Rex Solutions, LLC is a proven mid-tier business providing data-centric mission services to the Federal government as it increasingly tries to secure and leverage the power of data. We design, integrate, secure, and deploy advanced technical solutions for our customers so they can efficiently fulfill their critical objectives. T-Rex offers both IT and professional services to numerous Federal agencies and is a leader in providing high quality and innovative solutions in the areas of Cloud and Infrastructure Services, Cyber Security, and Big Data Engineering. T-Rex is constantly seeking qualified people to join our growing team. We have built a broad client base through our devotion to delivering quality products and customer service, and to do that we need quality individuals. But more than that, we at T-Rex are committed to creating a culture that supports the development of every employee's personal and professional lives. T-Rex has made a commitment to maintain the status of an industry leader in compensation packages and benefits which includes competitive salaries, performance bonuses, training and educational reimbursement, Transamerica 401(k) and Cigna healthcare benefits. T-Rex is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, sex (including pregnancy and sexual orientation), parental status, national origin, age, disability, family medical history or genetic information, political affiliation, military service, or other non-merit based factors. In compliance with pay transparency guidelines, the annual base salary range for this position is $120,000 - $160,000. Please note that the salary information is a general guideline only. T-Rex considers factors such as (but not limited to) scope and responsibilities of the position, candidate's work experience, education/training, key skills, internal peer equity, as well as market and business considerations when extending an offer. T-Rex offers a diverse and collaborative work environment, exciting opportunities for professional growth, and generous benefits, including: PTO available to use immediately upon joining (prorated based on start date), paid parental leave, individual and family health, vision, and dental benefits, annual budget for training, professional development and tuition reimbursement, and a 401(k) plan with company match fully vested after 60 days of employment among other benefits.
    $120k-160k yearly 4d ago
  • Information System Security Officer (ISSO)

    T-Rex Solutions 4.1company rating

    Ashburn, VA jobs

    T-Rex Solutions is seeking a results-driven Information System Security Officer (ISSO) to support our U.S. Customs and Border Protection (CBP) Network Operations Center (NOC). The program objective is to provide ongoing support for CBP's NOC and Wireless Network Operations Center (WNOC), which are critical components within the Office of Information and Technology. These centers perform real-time monitoring, proactive maintenance, incident detection and response, problem resolution, and network performance reporting across CBP's nationwide enterprise. They ensure network stability, availability, and the rapid escalation and resolution of technical issues. This is a 24x7x365 operation with work performed on-site in Ashburn, VA. Responsibilities: The ISSO shall ben assigned to one or more existing FISMA Systems of Record as well as new IT Systems that are slated as new work products to develop an Authority to Operate (ATO) and follow-on Continuous Monitored system. Develop and maintain all required FISMA system documentation. Ensure systems adhere to Technical Reference Architecture (TRA) foundational and supplemental documents as additional security specifications, when applicable (available upon request). Use approved security tools for continuous monitoring and management of security baselines. Implement audit tools or processes for auditing and reporting services that support Continuous Diagnostics and Monitoring (CDM). Provide engineering services and participation in Continuity of Operations Planning (COOP) and Disaster Recovery (DR) planning and exercises. Develop and implement Configuration Management and Change Management plans when necessary. Perform or participate in threat and vulnerability management for applicable FISMA systems. Perform POA&M management. Requirements: Bachelor's degree in related technical field such as Management Information Systems, Computer Science, Engineering, IT, Networking and Telecommunications. A minimum of ten (10) plus years of related experience Certifications, such as Network+ and Security +, CISSP and Security auditing are recommended. Proficient in network and information system security principles and best practices. In-depth knowledge of the Risk Management Framework (RMF), the NIST publications, and the DHS 4300A Policy Directive. Experience with implementing the NIST 800-53 Security Controls in an Assessment & Authorization (A&A) process. Experience reviewing Nessus scans, managing vulnerability mitigation and the information security process in an Enterprise environment. Basic understanding of Enterprise networking concepts. Ability to work well within a team environment and build reports with government and customer organizations. US citizenship required Ability to obtain and maintain a CBP public trust clearance Desired Skills: Experience directly supporting DHS, CBP or ICE Network Operations Active CBP clearance, or DOD Secret clearance or higher T-Rex Overview Established in 1999, T-Rex Solutions, LLC is a proven mid-tier business providing data-centric mission services to the Federal government as it increasingly tries to secure and leverage the power of data. We design, integrate, secure, and deploy advanced technical solutions for our customers so they can efficiently fulfill their critical objectives. T-Rex offers both IT and professional services to numerous Federal agencies and is a leader in providing high quality and innovative solutions in the areas of Cloud and Infrastructure Services, Cyber Security, and Big Data Engineering. T-Rex is constantly seeking qualified people to join our growing team. We have built a broad client base through our devotion to delivering quality products and customer service, and to do that we need quality individuals. But more than that, we at T-Rex are committed to creating a culture that supports the development of every employee's personal and professional lives. T-Rex has made a commitment to maintain the status of an industry leader in compensation packages and benefits which includes competitive salaries, performance bonuses, training and educational reimbursement, Transamerica 401(k) and Cigna healthcare benefits. T-Rex is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, sex (including pregnancy and sexual orientation), parental status, national origin, age, disability, family medical history or genetic information, political affiliation, military service, or other non-merit based factors. In compliance with pay transparency guidelines, the annual base salary range for this position is $120,000 - $160,000. Please note that the salary information is a general guideline only. T-Rex considers factors such as (but not limited to) scope and responsibilities of the position, candidate's work experience, education/training, key skills, internal peer equity, as well as market and business considerations when extending an offer. T-Rex offers a diverse and collaborative work environment, exciting opportunities for professional growth, and generous benefits, including: PTO available to use immediately upon joining (prorated based on start date), paid parental leave, individual and family health, vision, and dental benefits, annual budget for training, professional development and tuition reimbursement, and a 401(k) plan with company match fully vested after 60 days of employment among other benefits.
    $120k-160k yearly Auto-Apply 4d ago
  • Information System Security Officer (ISSO) - Fairfax, Virginia

    In-Depth Engineering Corporation 4.4company rating

    Fairfax, VA jobs

    Salary Range: $80,000-105,000 Generous PTO, 401k, Health Insurance Package In-Depth Engineering Corporation seeks a skilled Information System Security Officer (ISSO) to support the security posture of our on-premises systems. The ideal candidate will have strong hands-on experience with system hardening, Linux administration, and the Risk Management Framework (RMF), along with a solid understanding of network fundamentals and vulnerability management tools. This role will directly support system accreditation, continuous monitoring, and operational security compliance. We seek self-starters capable of independent effort as well as participation on a small team. This is a permanent, full-time position and the work will be performed on-site at our headquarters in Fairfax, Virginia. Candidates for consideration must be a US citizen and be able to obtain an active Department of Defense secret clearance. Duties: Perform system hardening of Linux and other platforms using DISA STIGs, ensuring compliance across all assigned systems. Use STIG Viewer and SCAP Compliance Checker (SCC) to review, validate, and document security findings. Support RMF activities, including control implementation, evidence gathering, POA&M updates, and continuous monitoring tasks. Conduct vulnerability assessments using Nessus and assist in remediation planning. Maintain and update hardware baselines, ensuring accurate tracking of system configurations and assets. Build, configure, and manage KVM-based virtual machines. Support Linux system administration tasks for Red Hat systems. Manage and document user accounts, enforcing least privilege and access control best practices. Create and maintain network diagrams, data flow diagrams, and system architecture documentation. Collaborate with system owners, engineers, and cybersecurity leadership to ensure compliance with applicable policies and requirements. Requirements: Must be US Citizen for consideration Bachelor's degree in computer science, cybersecurity, information systems, or a related technical field (or equivalent experience) 1-4 years of experience in an ISSO, cybersecurity analyst, or system administration role Hands-on experience with DISA STIGs, STIG Viewer, and SCAP tools Strong Linux experience (Red Hat Enterprise Linux or similar) Working knowledge of basic networking concepts, including subnets, routing, ports, and protocols Experience with Nessus or comparable vulnerability scanning tools Experience creating and maintaining system/network documentation Understanding of RMF and associated NIST controls Experience as a Linux administrator with familiarity managing user accounts Experience working with KVM virtualization environments Preferred Qualifications: Security+, GSEC, CYSA+, or other cybersecurity certifications Direct experience supporting DCSA, DoD, or other federal compliance requirements Experience with Ansible, Bash scripting, or other automation tools Familiarity with Windows OS hardening and STIGs (not required but beneficial) Strong written and verbal communication skills Ability to work independently and collaborate in a small team environment Detail-oriented with strong documentation habits Ability to prioritize tasks and manage competing deadlines In-Depth Engineering provides a competitive package of salary and benefits, including medical, dental, and vision coverage, a Safe Harbor 401k program, generous Paid Time Off (PTO), STD, LTD, life insurance, and tuition assistance for higher education. Prospective employees will receive consideration without discrimination because of race, creed, color, sex, age, national origin, or handicap. We are an Equal Opportunity
    $80k-105k yearly 17d ago
  • Information Systems Security Officer (ISSO) - JB

    Telos 4.6company rating

    Reston, VA jobs

    The most security-conscious organizations trust Telos Corporation to protect their vital IT assets. The reputation of our company rests on the quality of our solutions and the integrity of our people. Explore what you can bring to our solutions in the areas of cyber, cloud and enterprise security. Be a part of the Telos culture and see what sets us apart! Telos offers an excellent compensation package with benefits that include generous paid time off, medical, dental, vision, tuition reimbursement, and 401k. Our employees enjoy more than just a great work environment! This position will be based at Reston, VA Job Description: As an ISSO on our program, you'll detect, evaluate, and document the security configuration of developmental and operational tools and security impacts, and make improvement recommendations. Coordinate work with in-house teams, subcontractors, and vendors to identify the right mix of tools and techniques to translate your customers' IT needs and future goals into a plan that will enable secure and effective solutions. As an ISSO on our team, you'll advise the client, leading the discovery of their cyber risks, understanding applicable policies, and developing a mitigation plan. You'll oversee the analysis of technical, environmental, and personnel details from technical subject matter experts and engineers as your team reviews the entire threat landscape. Then, you'll guide your client through a plan of action with presentations, whitepapers, and milestones. Your client will rely on you to translate security concepts, so they can make the best decisions to secure their mission-critical systems. Requirements Basic Qualifications: 3+ years of experience as an Information System Security Officer (ISSO) or Information System Security Analyst (ISSA) Experience conducting tools assessments and configuration analysis against best practices, vendor specifications, and government security guidelines and requirements Experience with the implementation, oversight, and maintenance of the security configuration, practices, and procedures for systems Experience with implementing controls from NIST 800-53, FedRAMP, ICD 503, RMF, and DoD Information Levels, including applying them to the design and implementation of information technology solutions to achieve an authorization to operate (ATO) Experience with eMASS or Xacta IA Manager Ability to perform risk analysis Active TS/SCI clearance; willingness to take a polygraph exam Associate's degree and 5+ years of experience supporting IT projects and activities, Bachelor's degree and 3+ years of experience supporting IT projects and activities, or Master's degree and 1+ years of experience supporting IT projects and activities DoD 8570 IAT Level II Certification, including CCNA-Security, CySA+, GICSP, GSEC, Security+ CE, CND, or SSCP Certification Must obtain a DoD 8570.01-M CSSP Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND certification prior to start date on the contract Additional Qualifications: Experience with DoD security technical implementation guides (STIGs), checklists, and testing tools, including STIG Viewer, SCAP, and ACAS scanning tool Experience assessing configuration changes, such as new COTS tools or web application upgrades, to system security boundary Experience drafting tool implementation CONOPS and reviewing tool or capabilities topologies, CONOPS, and vulnerability scans to assess risk Experience with cyber-related tools such as Ansible, Terraform, Splunk, or STIG Viewer Knowledge of cloud-native security tools, including HBSS Knowledge of Zero Trust principles and concepts Ability to plan and conduct security authorization reviews and assurance case development for initial installation of systems and networks Ability to work within a collaborative team and a fast-paced dynamic environment Possession of excellent written, organizational, presentation, and verbal communication skills AWS, Azure, or GCP Certification The successful candidate must meet eligibility requirements to access sensitive information, which requires US citizenship. Telos maintains a drug-free workplace and will conduct drug testing on all applicants who have accepted an offer of employment. Telos Corporation participates in the E-Verify program. Therefore, any employment with Telos will also be contingent upon confirmation from the Social Security Administration ("SSA") and/or the Department of Homeland Security ("DHS") of your authorization to work in the United States. Telos offers excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future. Telos Corporation and its subsidiaries are committed to equal opportunity for all, without regard to race, religion, color, national origin, citizenship, sex, sexual orientation, gender identity, age, veteran status, disability, genetic information, or any other protected characteristic. Telos Corporation will make reasonable accommodations for known physical or mental limitations of otherwise qualified employees and applicants with disabilities unless the accommodation would impose an undue hardship on the operation of our business. If you are interested in applying for an employment opportunity and feel you need a reasonable accommodation pursuant to the ADA, please contact us at **************. If you require relay service assistance, please click on the following link to review information on your state's relay service: ********************************** Telos Corporation is an EEO/AA employer.
    $73k-102k yearly est. 38d ago
  • Information System Security Officer

    Telos Corporation 4.6company rating

    Tysons Corner, VA jobs

    The most security-conscious organizations trust Telos Corporation to protect their vital IT assets. The reputation of our company rests on the quality of our solutions and the integrity of our people. Explore what you can bring to our solutions in the areas of cyber, cloud and enterprise security. Be a part of the Telos culture and see what sets us apart! Telos offers an excellent compensation package with benefits that include generous paid time off, medical, dental, vision, tuition reimbursement, and 401k. Our employees enjoy more than just a great work environment! This position will be based at Tysons, VA Responsibilities: * Perform duties in tasks in support of maintaining System Security Plans (SSPs), Risk Assessment Reports (RARs), and Plans of Action and Milestones (POA&Ms). * Perform regular self-assessments and internal audits to ensure the system maintains its Authorization to Operate (ATO). * Maintain and update supporting Governance, Risk, and Compliance (GRC) assets in the customer's GRC tools. * Coordinate with technical teams to track the remediation of vulnerabilities identified in scans (e.g., Nessus, ACAS). * Help develop and deliver security awareness materials to staff, ensuring a culture of security throughout the organization. * Work with various stakeholders to ensure the systems meet their continuous monitoring requirements and metrics. * Identify "bottlenecks" in our current security workflows and propose automated or streamlined solutions. Job Requirements Qualifications: * This position requires an active TS/SCI with a Full Scope Polygraph clearance. * Bachelor's degree in computer science, engineering, information assurance, or a related discipline and has at least 5 or more years of experience in an information technology role. Additional experience may be substituted for a degree. * Is currently DOD 8140 certified or possesses certifications to be eligible for DOD 8140 certification. * Experience with cloud service providers such as AWS, Azure, GCP, etc. * Experience in information assurance and or governance risk and compliance is required. * Excellent analytical, problem-solving, and critical thinking skills. * Strong attention to detail and ability to document findings accurately. * Effective communication and interpersonal skills to collaborate with diverse stakeholders. * Ability to work independently and as part of a team. * Ability to demonstrate "self-starter" traits. * Knowledge of contract management and legal compliance principles is a plus. Job Type Full-Time Location Tysons, VA 22102 US (Primary) Telos offers an excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future. Telos and its subsidiaries are an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status.
    $73k-102k yearly est. 22d ago
  • Information Systems Security Officer (ISSO) / Information Systems Security Manager (ISSM)-RS3 Prog & Data Analytics

    People Technology and Processes 4.2company rating

    Arlington, VA jobs

    Position Title: Information Systems Security Officer (ISSO) / Information Systems Security Manager (ISSM) Clearance Level: Secret Responsibilities will include, but are not limited to: Ensure cybersecurity is integrated in all phases of the lifecycle sustainment and proactively support the Government's efforts to maintain, update and continuously monitor Chief of Staff (CoS) application's security posture, in accordance with the Risk Management Framework (RMF). Ensure cybersecurity is integrated in all phases of the lifecycle sustainment and proactively support the Government's efforts to maintain, update and continuously monitor Chief of Staff (CoS) application's security posture, in accordance with the Risk Management Framework (RMF). Identify and mitigate code vulnerabilities as measured by government provided “Fortify” tool; ensure that Development Teams prioritize findings in accordance with command priorities and provide POAM for Fortify findings. Develop Plan of Action & Milestones (POA&M) for non-compliant controls to meet assessment and authorization requirements. Qualifications Required qualifications Bachelor's Degree in related field of study or equivalent experience. Minimum of three years of experience, one within DoD. Certifications: Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), CompTia Security +, Certified in Risk and Information Systems Control (CRISC), ISO/IEC 27001 Lead Implementer or Lead Auditor, Certified Ethical Hacker (CEH).
    $79k-105k yearly est. 17d ago
  • Information System Security Officer III

    Data Intelligence 4.5company rating

    Philadelphia, PA jobs

    Data Intelligence, LLC (DI) is seeking a qualified and experienced Information Systems Security Officer III to support the Naval Surface Warfare Center (NSWC) in Philadelphia, PA. The successful candidate will be responsible for coordinating security efforts to ensure the safety and integrity of classified and unclassified information systems and assist in maintaining a secure operating environment. This position requires a strong understanding of cybersecurity protocols, as well as the ability to coordinate and implement security measures to meet the specific needs of the organization. **This position is contingent upon award of contract** Key Responsibilities: Collaborate with various levels of the organization to implement required security changes and ensure compliance with established security policies and standards. Conduct comprehensive cybersecurity vulnerability and threat assessments to identify and mitigate risks to information systems. Lead cyber-incident-response efforts, including isolating affected systems, conducting initial investigations, collecting relevant data, and providing status updates and reports to leadership. Provide guidance on best practices and recommend improvements to the organization's security posture. Perform risk assessments and develop mitigation strategies to protect sensitive data from internal and external threats. Support continuous monitoring of information systems and provide regular status reports on security compliance. Maintain up-to-date knowledge of emerging cybersecurity threats and industry best practices. Required Skills/Experience: Bachelor's degree in Computer Science, Information Technology, Communications Systems Management, or an equivalent science, technology, engineering, and mathematics (STEM) field. A minimum of 6 years of relevant experience in cybersecurity or information systems security. Prior experience supporting Navy programs. Current IAM Level II certification (or higher) in accordance with DoD 8570.01-M. At least a Secret-level security clearance is required, with the ability to obtain higher-level clearance if necessary. Proficiency in cybersecurity frameworks, risk management processes, and security controls. Strong analytical and problem-solving skills with attention to detail. Excellent communication and interpersonal skills, with the ability to work effectively with a diverse team. Preferred Qualifications: Experience with DoD security requirements and systems. Familiarity with NIST, RMF, and other relevant cybersecurity standards. Ability to work in a potentially remote environment with occasional on-site requirements. Why Work with Data Intelligence, LLC? At Data Intelligence, LLC, we are committed to delivering cutting-edge technology solutions and security expertise to our government clients. Our team members play an integral role in the development and protection of critical national security systems. Join our team and contribute to the defense of vital information assets while advancing your career in a collaborative and rewarding environment. About Us: Data Intelligence, DI is an established small business that has supported the critical missions of our government clients since 2005. We provide full life cycle system development, systems engineering, cybersecurity, and supporting analytical and logistics support to C4ISR and other complex systems. We are an equal opportunity employer that offers competitive salaries, comprehensive benefits, a team-oriented environment, and opportunities for advancement. Our excellent employee retention record reflects our employee focus. We work with Veteran's organization to proactively hire those who have served our country. We offer medical, dental and vision insurance, 401k, PTO and 11 paid holidays. Data Intelligence is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, age, color, religion, creed, sex, sexual orientation, gender identity, national origin, disability, or protected Veteran status. Data Intelligence, DI is an established small business that has supported the critical missions of our government clients since 2005. We provide full life cycle system development, systems engineering, cybersecurity, and supporting analytical and logistics support to C4ISR and other complex systems. We are an equal opportunity employer that offers competitive salaries, comprehensive benefits, a team-oriented environment, and opportunities for advancement. Our excellent employee retention record reflects our employee focus. We work with Veteran's organization to proactively hire those who have served our country. We offer medical, dental and vision insurance, 401k, PTO and 11 paid holidays. Data Intelligence is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, age, color, religion, creed, sex, sexual orientation, gender identity, national origin, disability, or protected Veteran status.
    $79k-108k yearly est. 60d+ ago
  • Senior Analyst, Information Assurance

    EAB 4.6company rating

    Richmond, VA jobs

    At EAB, our mission is to make education smarter and our communities stronger. We work with more than 2,800 institutions to drive transformative change through data-driven insights and best-in-class capabilities. From kindergarten to college to career, EAB partners with leaders and practitioners to accelerate progress and drive results across enrollment, student success, institutional strategy, data analytics, and advancement. We work with each partner differently, tailoring our portfolio of research, technology, and marketing and enrollment solutions to meet the unique needs of every leadership team, as well as the students and employees they serve. At EAB, we serve not only our partner institutions but each other-that's why we are always working to make sure our employees love their jobs and are invested in their communities. See how we've been recognized for this dedication to our employees by checking out our recent awards. For more information, visit our careers page. The Role in Brief Senior Analyst, Information Assurance The Senior Information Assurance Analyst will be responsible for assessing the risks associated with EAB technology applications and platforms and/or third-party service providers that support those platforms. The Senior Information Assurance Analyst will also support and contribute to business continuity management and planning activities, conduct and support information security audits, assess risks associated with third-party service providers, develop security awareness training content, and support the measuring and reporting of key risk indicators and metrics across the enterprise. This individual will be a valued member of the EAB Information Security team. We work to keep our partners and EAB colleagues safe from cyber-attacks and prevent the theft of data and intellectual property. We think big and strategic but aren't afraid to get into the weeds. Relationship building and stakeholder management across teams is integral to our continued success. We believe that diversity makes for better, more creative solutions to tough problems. We're easy to work with and eager to help. Most importantly, we work every day to contribute to the mission of making education smarter and our communities stronger. If this sounds like you, we'd love to talk to you. This position is located in Washington, DC or Richmond, VA. Primary Responsibilities: * Plan and execute the day-to-day activities of Information Technology (IT) audit engagements, including scope development and developing annual audit plans. * Perform IT risk assessments and audits of internal initiatives and critical third party/vendor relationships against criteria descending from industry standard information security frameworks and industry regulations, such as ISO/IEC 27001, NIST SP 800-53, FAIR, SSAE 18 SOC II Type I and Type II, DoD compliance frameworks (e.g., NIST 800-171, CMMC, FedRAMP), NIST CSF, FERPA, and privacy regulations like GDPR and CCPA * Review vendor security documentation, questionnaires, and attestations; assess risk impact and recommend risk treatment options. * Support RFPs/security questionnaires (HECVATs, CAIQ, custom questionnaires) from clients with clear SLAs and maintain upkeep of Security & Compliance Trust portals. * Support security assessments for DoD or federally funded service offerings, including understanding data classification and safeguarding requirements. * Evaluate the design and effectiveness of technology controls throughout the business cycle * Identify control gaps and risks, recommend mitigation strategies, and track remediation activities through closure. * Communicate IT audit findings and mitigation strategies to senior management, technology leaders, and the CISO * Help identify performance improvement opportunities across EAB business units * Assist in the development of risk treatment plans to address areas of strategic and tactical IT and information risks in both business operations and technology paradigms * Assist with the development and maintenance of information security policies and standards * Support development and maintenance of an information security compliance and metrics program for consistent management reporting of risks to sensitive information and technology resources across the enterprise * Help with prospective hiring and mentoring opportunities as the program scales and grows Basic Qualifications: * Bachelor's degree in Computer Science, Information Systems, or equivalent professional experience * Minimum of 3+ years of experience as an IT auditor, security analyst, or related field * Knowledge of information security and IT risk management concepts and practices including frameworks and regulatory regimes * Ability to work in a fast-paced business environment with global, geographically distributed teams * Strong understanding of cloud infrastructure and cloud-based SaaS environments * Exceptional interpersonal skills with ability to gain the confidence and respect of technology leaders and senior level executives * Excellent organizational direction, time management, problem-solving, prioritization, leadership, and interpersonal skills while proactively seeking input * Strong leadership and communication skills, technical knowledge, and the ability to write at a publication quality level to communicate findings and recommendations to the EAB's senior management team * Comfortable collaborating with IT, Product, Legal, and Commercial teams to drive sales enablement opportunities * A desire to learn new skills, research new technologies, and get better every day Ideal Qualifications: * Professional experience in conducting IT or operational risk assessments or IT auditing through examination and analysis of internal controls and business risks * Experience in supporting security compliance as the internal compliance resource of physical and cloud-based infrastructure * Experience with planning internal audit procedures and preparing final reports for senior management and the CISO * Familiarity with the usage of modern GRC tooling (i.e., Drata, Vanta, ServiceNow, RSA Archer) to facilitate development of information asset inventories, risk and compliance assessments, risk metrics collection, and risk reporting * Experience with enterprise business continuity planning and testing activities * Experience with building out and managing an organization's Security and Compliance Trust Centers * Experience developing information security policy, security awareness and training content, and supporting materials * Experience delivering information security awareness training to technical and non-technical audiences * Willingness to learn new things and take on additional responsibilities across multiple information security and privacy domains * CISSP, CISA, CRISC, CISM, AWS or GCP cloud certifications, other information security or IT auditing certifications * Experience with risk and controls frameworks including (ISO 27001, NIST CSF, NIST RMF, FAIR, COBIT, NIST SP 800-53, SSAE 18 SOC II Type I and Type II audits, DoD compliance frameworks (e.g., NIST 800-171, CMMC, FedRAMP), FERPA, and privacy regulations like GDPR and CCPA) * Familiarity and experience with the FAIR (Factor Analysis of Information Risk) model for quantifying information risk * Commitment to embracing a continual learning environment and contributing to a dynamic and welcoming culture of fairness, authenticity, and belonging in support of EAB's mission, values, and aspiration If you've reached this section of the job description and are unsure of whether to apply, please do! At EAB, we welcome new perspectives and learn from each other's unique experiences. We would encourage you to submit an application if this is a role you would be passionate about doing every day. Compensation: The anticipated starting salary range for this role is $80,000 - $97,000 per year. Actual salary varies due to factors that may include but not be limited to relevant experience, skills, and location. At EAB, it is not typical for an individual to be hired at or near the top of the starting salary range for their role. This hire will additionally be eligible for discretionary bonus or incentive compensation. Variable compensation may depend on various factors, including, without limitation, individual and organizational performance. Benefits: Consistent with our belief that our employees are our most valuable resource, EAB offers a competitive and inclusive benefits package. Our benefits currently include: * Medical, dental, and vision insurance plans; dependents and domestic partners eligible * 20+ days of PTO annually, in addition to paid firm and floating holidays * Daytime leave policy for community service and flextime for fitness activities (up to 10 hours per month each) * 401(k) retirement savings plan with annual discretionary company matching contribution * Health savings account, healthcare and dependent care flexible spending account, and pre-tax commuter plans * Employee assistance program with counseling services and resources available to all employees and immediate family * Wellness programs including gym discounts, incentives to promote healthy living, and family access to the leading app for sleep, meditation, and relaxation * Fertility treatment coverage and adoption or surrogacy assistance * Paid parental leave with phase back to work program for birthing and non-birthing parents * Access to milk shipping service to support nursing employees during business travel * Discounted pet health insurance coverage for dog and cat family members * Company-provided life, AD&D, and disability insurance * Financial wellness resources and membership in a robust employee discount program * Access to employee resource groups, merit-based advancement, and dynamic professional growth opportunities Benefits kick in day one; learn more at eab.com/careers/benefits. This opening is not eligible for visa sponsorship at this time; EAB will thus consider candidates who possess U.S. work authorization that does not require employment-based visa sponsorship now or in the future. At EAB, we believe that to fulfill our mission to "make education smarter and our communities stronger" we need team members who bring a diversity of perspectives to the table and are committed to fostering a workplace where each team member is valued, respected and heard. To that end, EAB is an Equal Opportunity Employer, and we make employment decisions on the basis of qualifications, merit and business need. We don't discriminate on the basis of race, religion, color, sex, gender identity or expression, sexual orientation, age, non-disqualifying physical or mental disability, national origin, veteran status or any other basis covered by appropriate law. #LI-DS1
    $80k-97k yearly 6d ago
  • Security Researcher

    Accenture Federal Services 4.7company rating

    Herndon, VA jobs

    At Accenture Federal Services, nothing matters more than helping the US federal government make the nation stronger and safer and life better for people. Our 13,000+ people are united in a shared purpose to pursue the limitless potential of technology and ingenuity for clients across defense, national security, public safety, civilian, and military health organizations. Join Accenture Federal Services, a technology company and part of global Accenture, to do work that matters in a collaborative and caring community, where you feel like you belong and are empowered to grow, learn and thrive through hands-on experience, certifications, industry training and more. Join us to drive positive, lasting change that moves missions and the government forward! Job Description: Accenture Federal Services is seeking bold, innovative thinkers to tear apart our world of code and find vulnerabilities. Software and applications, PCs, Macs, Linux and IoT are all the objects of our investigation, so we need someone who likes to solve puzzles and deep dive into new topics to solve some of the most challenging problems. Our projects involve small teams working a variety of research efforts in close coordination with customers. As a technical leader, you will drive vulnerability research (VR) and operational success for our customers Here's what you need: In-depth knowledge of C, C++, Python and Bash scripting; additional languages desired include C#, Java, Swift Experience with fuzzer development, AFL, Ida Pro, Ghidra and custom forensic analysis tools Academic degree(s) in Computer Science, Cyber Security, Software Engineering, Electrical or Computer Engineering, Physics and/or military training/experience Experience reading or writing assembly (x86, x64, ARM, PPC, MIPS, TILE, or others) Working experience with Git, GitLab, or Jira Bonus points if you have: Experience utilizing full system emulation for research and analysis Experience using VMware vCenter, vSphere Experience setting up networking and packet capture in Virtual Machine environments Security Clearance: Must have an active TS/SCI level clearance #clearancejobs As required by local law, Accenture Federal Services provides reasonable ranges of compensation for hired roles based on labor costs in the states of California, Colorado, Hawaii, Illinois, Maryland, Massachusetts, Minnesota, New Jersey, New York, Washington, Vermont, the District of Columbia, and the city of Cleveland. The base pay range for this position in these locations is shown below. Compensation for roles at Accenture Federal Services varies depending on a wide array of factors, including but not limited to office location, role, skill set, and level of experience. Accenture Federal Services offers a wide variety of benefits. You can find more information on benefits here. We accept applications on an on-going basis and there is no fixed deadline to apply. The pay range for the states of California, Colorado, Hawaii, Illinois, Maryland, Massachusetts, Minnesota, New Jersey, New York, Washington, Vermont, the District of Columbia, and the city of Cleveland is: $113,500 - $234,900 USD What We Believe As a company wholly dedicated to serving the US federal government, we bring together the best talent to help reinvent how federal agencies operate and deliver greater value for their mission and the American people. We have an unwavering commitment to creating a culture in which all our people are respected, feel a sense of belonging, and have equal opportunity. As a business imperative, every person at Accenture Federal Services has the responsibility to create and sustain a culture where everyone feels welcomed and included. This is grounded in our core values and our experience that hiring and developing great people who reflect different perspectives, experiences, and backgrounds is key to driving innovation and delivering the results that our clients and the country count on. Equal Employment Opportunity Statement We believe that no one should be discriminated against because of their differences. All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by federal, state, or local law. Our rich diversity makes us more innovative, more competitive, and more creative, which helps us better serve our clients and our communities. For details, view a copy of the Accenture Federal Services Equal Opportunity Policy Statement. Accenture Federal Services is an Equal Employment Opportunity employer. Additionally, as an Affirmative Action Employer for Veterans and Individuals with Disabilities, Accenture Federal Services is committed to providing veteran employment opportunities to our service men and women. Requesting An Accommodation Accenture Federal Services is committed to providing equal employment opportunities for persons with disabilities or religious observances, including reasonable accommodation when needed. If you are hired by Accenture Federal Services and require accommodation to perform the essential functions of your role, you will be asked to participate in our reasonable accommodation process. Accommodations made to facilitate the recruiting process are not a guarantee of future or continued accommodations once hired. If you are being considered for employment opportunities with Accenture Federal Services and need an accommodation for a disability or religious observance during the interview process or for the job you are interviewing for, please speak with your recruiter. Other Employment Statements Applicants for employment in the US must have work authorization that does not now or in the future require sponsorship of a visa for employment authorization in the United States. Candidates who are currently employed by a client of Accenture Federal Services or an affiliated Accenture business may not be eligible for consideration. Job candidates will not be obligated to disclose sealed or expunged records of conviction or arrest as part of the hiring process. The Company will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. Additionally, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the Company's legal duty to furnish information. California requires additional notifications for applicants and employees. If you are a California resident, live in or plan to work from Los Angeles County upon being hired for this position, please click here for additional important information.
    $76k-104k yearly est. Auto-Apply 60d+ ago
  • Sr. Security Researcher

    F5, Inc. 4.6company rating

    New York, NY jobs

    At F5, we strive to bring a better digital world to life. Our teams empower organizations across the globe to create, secure, and run applications that enhance how we experience our evolving digital world. We are passionate about cybersecurity, from protecting consumers from fraud to enabling companies to focus on innovation. Everything we do centers around people. That means we obsess over how to make the lives of our customers, and their customers, better. And it means we prioritize a diverse F5 community where each individual can thrive. Senior Security Researcher At F5, we make apps faster, smarter, and safer. Come work within the security threat research group in an exciting, fast paced environment. Our team is performing the analysis of the latest security threats, detection and mitigation of our security solutions, as well as pen testing of F5 products. The team works in an intensive environment and is constantly updated with the latest modern technologies. Come and join the best in their field! Position Summary: Being a part of a highly experienced Security Research team, while specializing in web vulnerabilities analysis, threat intelligence and Honeynet projects. The team is handling the research of vulnerabilities and malware, evolving threats analysis, development and updates of attack signatures and product-hacking. Responsibilities: * Researching web frameworks and servers to identify and understand emerging threats. * Examining and replicating newly disclosed web application vulnerabilities. * Focusing on WAF (Web Application Firewall) evasion techniques to preemptively bypass our defenses before hackers can. * Creating innovative proof of concept solutions for advanced threats and continuously refining attack signatures, all in collaboration with development teams to enhance the WAF product using our research findings. * Gathering web security intelligence from blogs, forums, conferences, and academic papers. * Building tools and infrastructure for analyzing attacks. * Composing and distributing insights through blogs, reports, and presenting at security conventions. * Periodically performing security efficacy assessments on a variety of products, including WAFs, API security solutions, application security scanners, and machine learning models, to verify and improve their defense capabilities. Qualifications: * At least 2 years of experience in analyzing real web attacks or web exploitation, with a strong preference for more extensive experience. * A deep knowledge of networking fundamentals, the HTTP protocol, web servers, and the inner workings of web applications is essential. * Experience in tracking emerging web vulnerabilities in real-time. * Experience in building research infrastructure and Python-based tools. * Experience with creating and comprehending Regular Expressions for detailed pattern matching and security-related data analysis. * In-depth knowledge of security principles, theories, and recognized attack vectors. * Experience in creating attack signatures, such as with tools like SNORT. - Advantage * Analyzing binary malware and malicious scripts. - Advantage * Knowledge in web development (front and back end). - Advantage The Job Description is intended to be a general representation of the responsibilities and requirements of the job. However, the description may not be all-inclusive, and responsibilities and requirements are subject to change. The annual base pay for this position is: $133,600.00 - $200,400.00 F5 maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, geographic locations, and market conditions, as well as to reflect F5's differing products, industries, and lines of business. The pay range referenced is as of the time of the job posting and is subject to change. You may also be offered incentive compensation, bonus, restricted stock units, and benefits. More details about F5's benefits can be found at the following link: ******************************************** F5 reserves the right to change or terminate any benefit plan without notice. Please note that F5 only contacts candidates through F5 email address (ending with @f5.com) or auto email notification from Workday (ending with f5.com or @myworkday.com). Equal Employment Opportunity It is the policy of F5 to provide equal employment opportunities to all employees and employment applicants without regard to unlawful considerations of race, religion, color, national origin, sex, sexual orientation, gender identity or expression, age, sensory, physical, or mental disability, marital status, veteran or military status, genetic information, or any other classification protected by applicable local, state, or federal laws. This policy applies to all aspects of employment, including, but not limited to, hiring, job assignment, compensation, promotion, benefits, training, discipline, and termination. F5 offers a variety of reasonable accommodations for candidates. Requesting an accommodation is completely voluntary. F5 will assess the need for accommodations in the application process separately from those that may be needed to perform the job. Request by contacting accommodations@f5.com.
    $133.6k-200.4k yearly Auto-Apply 21d ago
  • Cyber Defense Hunt Analyst

    Sentar 3.7company rating

    Virginia jobs

    Sentar is proud to be an employee-owned company, fostering a culture of empowerment, collaboration, and innovation. Sentar is dedicated to developing the critical talent that the connected world demands to create solutions to address the convergence of cybersecurity, intelligence, analytics, and systems engineering. We invite you to join the team where you can build, innovate, and secure your career. Sentar is seeking a Cyber Defense Hunt Analyst in Quantico, VA! Role Description: We are seeking a mission-driven Cyber Defense Hunt Analyst to join our team supporting the Marine Corps Cyberspace Operations Group (MCCOG) under the Cybersecurity Service Provider (CSSP) mission. In this role, you will conduct advanced defensive cyberspace operations (DCO-IDM) to detect, analyze, and mitigate Advanced Persistent Threats (APTs) across enterprise environments. You will perform proactive hunt missions aimed at reducing adversary dwell time, identifying stealthy attacker behaviors, and improving defensive posture across Marine Corps networks. This is a critical opportunity to work within an elite, forward-leaning cyber defense organization protecting national security assets from sophisticated cyber adversaries. Qualifications: Clearance Level: TS/SCI Certifications: IAT III and CSSP Analyst Education: Bachelors degree Experience: 5 years of related experience Proven experience analyzing endpoint, network, and identity telemetry to identify adversary activity Familiarity with MITRE ATT&CK, PowerShell-based threat techniques, and Active Directory exploitation Demonstrated ability to produce compliant, technically accurate documentation under CJCSM 6510.01B Preferred Qualifications Experience supporting MARFORCYBER, MCCOG, or other DoD CSSP organizations Hands-on proficiency with: Microsoft Sentinel, Defender for Endpoint, Cisco ISE, TACACS, Tanium, and SQL-based data repositories Scripting proficiency in PowerShell or Bash to automate data collection or configuration retrieval Familiarity with adversary campaigns such as Volt Typhoon, Salt Typhoon, or APT29 Understanding of CJCSM 6510.01B, DoD 8530.01-M, and CSSP compliance reporting standards Strong communication and presentation skills ability to brief technical and executive audiences Prior experience contributing to or teaching cyber hunt training courses or SOP updates Benefits at Sentar: Our unique ownership model attracts top talent, giving employees the freedom to take initiative and drive meaningful improvements. In addition to cultivating a thriving and inclusive work environment, Sentar offers an extensive benefits package designed to support the well-being of employees and their families. Employee ownership is the foundation of our culture, promoting participation, teamwork, and accountability while ensuring long-term financial security and a commitment to excellence. Voluntary Medical, Dental, Vision, with Health Savings or Flexible Spending Plan options Voluntary Life, Critical Illness, Accident, and Long Term Care insurance options Group Term Life, Short-Term and Long-Term Disability is provided by Sentar to all qualifying employees Generous 401(k) match Competitive PTO plan that graduates quickly with years of service Other leave programs; holiday schedule along with bereavement, maternity, jury and military duty Mental health awareness programs Tuition reimbursement Professional development reimbursement Recognition and Awards programs If you are not ready to apply for this position, submit your resume here to join our talent community. We'll keep you updated occasionally on new job opportunities. Sentar is an Affirmative Action and Equal Opportunity Employer M/F/Vets/Persons with Disabilities Our culture is one of inclusivity and support. Sentar is proudly an Equal Opportunity and VEVRAA Federal Contractor Employer M/F/Vets/Persons with Disabilities. Follow these links to learn more about your rights: EEO Is the Law Poster; EEO Is Law Supplement; and Pay Transparency. We want you to build your career at Sentar, so if you are an individual with a disability and require a reasonable workplace accommodation applying for a job or at any point in the employment process, contact the Recruiting Manager at *********************. Please indicate the specifics of the assistance needed. Thank you for considering Sentar in your employment search. Build, Innovate, Secure Your Career at Sentar.
    $78k-108k yearly est. 60d+ ago
  • SOC Cyber Defense Analyst - SME (Journeyman)

    Akira Technologies Inc. 4.1company rating

    Norfolk, VA jobs

    Akira Technologies is seeking a SOC Cyber Defense Analyst (SME / Journeyman) to support a government client in Norfolk, VA. This role provides hands-on cybersecurity monitoring, incident response, and forensic analysis across Operational Technology (OT), Industrial Control Systems (ICS), and enterprise network environments, including on-premises and cloud systems. The ideal candidate has 5-7 years of cybersecurity operations experience, operates independently on complex incidents, and serves as a technical subject matter expert within the SOC while supporting and mentoring junior analysts. This is an onsite position supporting NAVFAC in Norfolk, VA. This role requires Top Secret or higher clearance. Key Responsibilities Perform cyber defense monitoring and forensic analysis across host and network systems, including malware triage, log correlation, and timeline reconstruction. Investigate security incidents using MITRE ATT&CK and Cyber Kill Chain methodologies. Support containment, eradication, and recovery actions in accordance with established incident response procedures. Serve as a journeyman-level SME, providing technical guidance and mentoring to junior SOC analysts. Monitor, tune, and enhance SIEM platforms (e.g., Splunk Enterprise Security, Elastic SIEM, Cribl) to improve detection and threat visibility. Develop and maintain SIEM correlation rules, dashboards, and continuous monitoring content using data models and tstats. Evaluate system and network configurations for vulnerabilities and recommend remediation aligned with DoD cybersecurity standards. Support STIG compliance activities and assist with Information Assurance Vulnerability Management (IVAM) actions. Utilize asset mapping and inventory tools to validate authorized devices and identify unauthorized or anomalous systems. Handle digital evidence in accordance with government forensic and chain-of-custody best practices. Produce concise technical and executive-level reports detailing findings, impacts, and mitigation recommendations. Collaborate with SOC leadership and government stakeholders to improve SOC workflows, threat hunting, and operational effectiveness. Required Qualifications Active Top Secret clearance (or higher). 5-7 years of experience in cybersecurity operations, SOC analysis, or incident response. Strong knowledge of Windows and Linux operating systems, network traffic analysis, and security monitoring. Experience working within DoD cybersecurity frameworks and compliance-driven environments. Hands-on experience with tools such as Splunk (Enterprise Security preferred), Palo Alto, Elastic SIEM, Cribl, Nessus, CrowdStrike, VMware, or similar technologies. Demonstrated ability to independently lead investigations and communicate findings to technical and non-technical audiences. Preferred Qualifications Experience supporting OT / ICS / SCADA environments. Advanced Splunk Enterprise Security content development experience. Familiarity with GrayNoise, Shodan, MODBus, PCAP analysis, or industrial protocols. Relevant certifications such as GCIH, CEH, GCED, OSCP, CISSP, or equivalent. Leveling Summary Performs independently on complex incidents. Acts as a technical SME within the SOC. Mentors junior analysts without formal program or SOC ownership. Escalates advanced or strategic issues to senior or lead analysts. Salary Range: $125,000 - $140,000 Akira's pay range for this position considers various factors including skills, years of experience, training, licenses, certifications, alignment with market data, and internal equity in the organization. This pay range estimate is a general guideline only and not a guarantee of compensation or salary, which Akira believes to be done in good faith in compliance with local laws. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. It is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. General Description of Benefits Akira offers its employees multiple options for medical plans (some with Health Savings Account), dental plans, and vision coverage, and a 401(k) plan with employer match. To promote work/life balance, Akira offers paid time off, including vacation and sick time, holidays, paid parental leave, military leave, bereavement leave, and jury duty leave. We also offer short and long-term disability benefits to protect employee income in the event of sickness or injury, life insurance, accidental death and dismemberment insurance, and critical illness insurance. Akira also offers tuition, training, and certification reimbursement for professional development and career advancement. Akira regularly reviews our total rewards package to ensure our offerings remain competitive and reflect the values and needs expressed by our employees. About Akira Technologies Akira strives to meet and exceed the mission and objectives of US federal agencies. As a leading small business cloud modernization and data analytics services provider, we deliver trusted and highly differentiated solutions and technologies that serve the needs of our customers and citizens. Akira serves as a valued partner to essential government agencies across the intelligence, cyber, defense, civilian, and health markets. Every day, our employees deliver transformational outcomes, solving the most daunting challenges facing our customers. Akira is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics.
    $125k-140k yearly Auto-Apply 44d ago
  • Sr. Security Researcher

    F5 Networks 4.6company rating

    Lexington, NY jobs

    At F5, we strive to bring a better digital world to life. Our teams empower organizations across the globe to create, secure, and run applications that enhance how we experience our evolving digital world. We are passionate about cybersecurity, from protecting consumers from fraud to enabling companies to focus on innovation. Everything we do centers around people. That means we obsess over how to make the lives of our customers, and their customers, better. And it means we prioritize a diverse F5 community where each individual can thrive. Senior Security Researcher At F5, we make apps faster, smarter, and safer. Come work within the security threat research group in an exciting, fast paced environment. Our team is performing the analysis of the latest security threats, detection and mitigation of our security solutions, as well as pen testing of F5 products. The team works in an intensive environment and is constantly updated with the latest modern technologies. Come and join the best in their field! Position Summary: Being a part of a highly experienced Security Research team, while specializing in web vulnerabilities analysis, threat intelligence and Honeynet projects. The team is handling the research of vulnerabilities and malware, evolving threats analysis, development and updates of attack signatures and product-hacking. Responsibilities: Researching web frameworks and servers to identify and understand emerging threats. Examining and replicating newly disclosed web application vulnerabilities. Focusing on WAF (Web Application Firewall) evasion techniques to preemptively bypass our defenses before hackers can. Creating innovative proof of concept solutions for advanced threats and continuously refining attack signatures, all in collaboration with development teams to enhance the WAF product using our research findings. Gathering web security intelligence from blogs, forums, conferences, and academic papers. Building tools and infrastructure for analyzing attacks. Composing and distributing insights through blogs, reports, and presenting at security conventions. Periodically performing security efficacy assessments on a variety of products, including WAFs, API security solutions, application security scanners, and machine learning models, to verify and improve their defense capabilities. Qualifications: At least 2 years of experience in analyzing real web attacks or web exploitation, with a strong preference for more extensive experience. A deep knowledge of networking fundamentals, the HTTP protocol, web servers, and the inner workings of web applications is essential. Experience in tracking emerging web vulnerabilities in real-time. Experience in building research infrastructure and Python-based tools. Experience with creating and comprehending Regular Expressions for detailed pattern matching and security-related data analysis. In-depth knowledge of security principles, theories, and recognized attack vectors. Experience in creating attack signatures, such as with tools like SNORT. - Advantage Analyzing binary malware and malicious scripts. - Advantage Knowledge in web development (front and back end). - Advantage The Job Description is intended to be a general representation of the responsibilities and requirements of the job. However, the description may not be all-inclusive, and responsibilities and requirements are subject to change. The annual base pay for this position is: $133,600.00 - $200,400.00 F5 maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, geographic locations, and market conditions, as well as to reflect F5's differing products, industries, and lines of business. The pay range referenced is as of the time of the job posting and is subject to change. You may also be offered incentive compensation, bonus, restricted stock units, and benefits. More details about F5's benefits can be found at the following link: ******************************************* . F5 reserves the right to change or terminate any benefit plan without notice. Please note that F5 only contacts candidates through F5 email address (ending with @f5.com) or auto email notification from Workday (ending with f5.com or @myworkday.com). Equal Employment Opportunity It is the policy of F5 to provide equal employment opportunities to all employees and employment applicants without regard to unlawful considerations of race, religion, color, national origin, sex, sexual orientation, gender identity or expression, age, sensory, physical, or mental disability, marital status, veteran or military status, genetic information, or any other classification protected by applicable local, state, or federal laws. This policy applies to all aspects of employment, including, but not limited to, hiring, job assignment, compensation, promotion, benefits, training, discipline, and termination. F5 offers a variety of reasonable accommodations for candidates. Requesting an accommodation is completely voluntary. F5 will assess the need for accommodations in the application process separately from those that may be needed to perform the job. Request by contacting accommodations@f5.com.
    $133.6k-200.4k yearly Auto-Apply 22d ago
  • Network Sniffer Analysis

    E*Pro 3.8company rating

    McLean, VA jobs

    E*Pro Consulting service offerings include contingent Staff Augmentation of IT professionals, Permanent Recruiting and Temp-to-Hire. In addition, our industry expertise and knowledge within financial services, Insurance, Telecom, Manufacturing, Technology, Media and Entertainment, Pharmaceutical, Health Care and service industries ensures our services are customized to meet specific needs. For more details please visit our website ****************** We have been retained for providing recruiting assistance, for direct hires, by one of the world-leading information technology consulting, services, and business process outsourcing organization that envisioned and pioneered the adoption of the flexible global business practices that today enable companies to operate more efficiently and produce more value. Job Description Position Title : Network Sniffer Analysis Location : Mclean, VA Length : Full time / Permanent Position Work Status : US Citizen/ Green Card Holder/ EAD (GC) Required Skills • Strong data analysis ability with sniffer, packet, net flow data. • Perform sniffer data analysis to identify traffic profile among servers supporting specific business applications. • Familiar Opnet AppMapper or similar tool that helps identifies application dependency to map between the application and infrastructure components. Technologies Sniffer, Net flow, Gigamon, InfiniStream, Opnet AppMapper, Infoblox .., Software Application If you are qualified, available, planning to make a change, and have an interest in this or other projects with E*Pro, I would like to coordinate a time to talk with you at your earliest convenience. Please forward a recent version of your resume to my email address at [email protected] and the best time/day to follow up with you for discussion. Sincerely Yours, Ranjit Technical Recruiter | E*Pro Inc., Work: ************ x (234) Email: [email protected] E*Pro Inc. | 1000 Route 9 North, Suite 303 | Woodbridge Township, NJ 07095 Additional Information All your information will be kept confidential according to EEO guidelines.
    $83k-115k yearly est. 1d ago
  • Network Sniffer Analysis

    E Pro Consulting 3.8company rating

    McLean, VA jobs

    E*Pro Consulting service offerings include contingent Staff Augmentation of IT professionals, Permanent Recruiting and Temp-to-Hire. In addition, our industry expertise and knowledge within financial services, Insurance, Telecom, Manufacturing, Technology, Media and Entertainment, Pharmaceutical, Health Care and service industries ensures our services are customized to meet specific needs. For more details please visit our website ****************** We have been retained for providing recruiting assistance, for direct hires, by one of the world-leading information technology consulting, services, and business process outsourcing organization that envisioned and pioneered the adoption of the flexible global business practices that today enable companies to operate more efficiently and produce more value. Job Description Position Title : Network Sniffer Analysis Location : Mclean, VA Length : Full time / Permanent Position Work Status : US Citizen/ Green Card Holder/ EAD (GC) Required Skills • Strong data analysis ability with sniffer, packet, net flow data. • Perform sniffer data analysis to identify traffic profile among servers supporting specific business applications. • Familiar Opnet AppMapper or similar tool that helps identifies application dependency to map between the application and infrastructure components. Technologies Sniffer, Net flow, Gigamon, InfiniStream, Opnet AppMapper, Infoblox .., Software Application If you are qualified, available, planning to make a change, and have an interest in this or other projects with E*Pro, I would like to coordinate a time to talk with you at your earliest convenience. Please forward a recent version of your resume to my email address at [email protected] and the best time/day to follow up with you for discussion. Sincerely Yours, Ranjit Technical Recruiter | E*Pro Inc., Work: ************ x (234) Email: [email protected] E*Pro Inc. | 1000 Route 9 North, Suite 303 | Woodbridge Township, NJ 07095 Additional Information All your information will be kept confidential according to EEO guidelines.
    $83k-115k yearly est. 60d+ ago
  • Networking Security Analyst

    Oak Grove Technologies 4.3company rating

    Fort Belvoir, VA jobs

    Oak Grove Technologies, LLC, a dynamic and fast-growing federal contractor, is seeking a highly skilled and motivated Mid-Level Networking Security Analyst to join our team and support the Defense Threat Reduction Agency's (DTRA) Advance Red Cyber program in executing Red Team Assessments. In this role you will support the continuous monitoring and risk mitigation of sensitive networks and systems in accordance with DoD cybersecurity policies, procedures, and best practices. Oak Grove Technologies is a Service-Disabled Veteran-Owned Business based in Raleigh, NC, with a Test and Training Center located near Fort Bragg and Camp Mackall. With over 20 years of expertise in training, consulting, technology, and operational support, the company provides services to the military, government, and law enforcement. Committed to excellence, innovation, and national security, Oak Grove Technologies fulfills federal defense contracts and actively supports veterans through sponsorships and events. Driven by its mission-focused approach, the company seeks top talent to develop impactful solutions. Oak Grove Technologies offers a competitive compensation and benefits package. Requirements What You'll Be Doing Support continuous monitoring and risk mitigation of sensitive networks and systems in alignment with DoD cybersecurity policies, procedures, and best practices. Configure, scan, monitor, alert, and generate reports using security tools. PCAP collection and analysis. What Desired Skills You'll Bring Experience with PCAP collection and analysis. Prior experience as a SOC analyst. Familiarity with red teaming or offensive cyber activities. Desired Certifications: Certified Information Systems Security Professional (CISSP), CSA, CompTIA Security+ (Sec+), CompTIA Cybersecurity Analyst (CySA+), GIAC Certified Windows Security Administrator (GCWN), GIAC Certified Enterprise Defender (GCED), or Certified Ethical Hacker (CEH). What Required Skills You'll Bring U.S. Citizenship and an active Top Secret clearance with SCI eligibility are required. ( Highly qualified candidates with a Secret Clearance may also be considered.) 3+ years of experience in continuous monitoring and risk mitigation of sensitive networks and systems in accordance with DoD cybersecurity policies, procedures, and best practices. Experience with configuring, scanning, monitoring, alerting, and reporting security tools. Bachelor's degree in a relevant field, or additional years of experience in lieu of a degree. Willingness and ability to travel up to 15% (CONUS/OCONUS). Security Clearance Requirements: U.S. Citizenship and an active Top Secret clearance with SCI eligibility are required. ( Highly qualified candidates with a Secret Clearance may also be considered.) Compensation and Benefits: Competitive Pay, PTO, Health Benefits. If you are a highly motivated Networking Security Analyst and ready to apply your expertise in a high-impact role, we encourage you to join our mission. Oak Grove Technologies is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status, or any other protected class. Oak Grove Technologies, LLC participates in E-Verify to determine an individual's identity and employment eligibility to work in the United States. E-Verify is a service of DHS and SSA.
    $74k-101k yearly est. 60d+ ago

Learn more about Information Management Group jobs