Information System Security Engineer
Security architect job in Virginia Beach, VA
MANTECH seeks a motivated, career and customer-oriented Senior Information System Security Engineer (ISSE) to join our team in Norfolk, VA. This is a hybrid position with 1-2 days onsite and 2-3 days remote.
As an ISSE, you will have the opportunity to work on innovative and mission-critical and national security projects. You will collaborate with a skilled team of professionals, responsible for developing accreditation packages for cloud systems in both AWS and Azure environments. This position offers great opportunities for technical growth and improved experience in Cyber Security.
Responsibilities include but are not limited to:
Performing cyber security research under NAVSEA for cloud and network solutions
Developing, defining, and aiding in implementing cyber security policies and processes
Defining IS and Network Environment security requirements in accordance with applicable cybersecurity requirements
Supporting A&A packages for multiple projects
Applying security expertise to new modernization cyber solutions that provide confidentiality, integrity, availability, authentication, and non-repudiation for security policies and memorandum for records
Developing Plan of Action and Milestones with proper Mitigations or Remediations, accordingly
Developing approaches to mitigate IS and Cloud Network Environment vulnerabilities and recommend changes to network or network system components as needed
Travel up to 25%
Minimum Qualifications:
Bachelor's degree in Computer Science, Information Technology, Engineering, or a related technical field, and 8+ years of relevant experience
5+ years developing secure solutions for incident response, business continuity, and disaster recovery
3+ years implementing security controls and policies with emerging cybersecurity technologies, including access control, privileged access management, data security, network security, data loss prevention, cloud security, vulnerability management, configuration management, privacy, and audits
Must have an active Security+ certification
Must be familiar with the use and operation of security tools including STIG Viewer, eMASSter, and Tenable Nessus and/or Security Center
Experience with cloud brokerages, preferably Navy
Knowledge and experience working with federal compliance and guidance, including FISMA, RMF, Federal Enterprise Architecture Framework, DoDAF, NIST Cybersecurity Framework, NIST 800 series, FedRAMP and cloud-based security controls
Preferred Qualifications:
Master's degree
One of the following certifications: Certified Information Systems Security Professional (CISSP), CompTIA Advanced Security Practitioner (CASP) CE, Certified Secure Software Lifecycle Professional (CSSLP), CISSP- Information System Security Engineering Professional (ISSEP), or CISSP- Information System Security Architecture Professional (ISSAP) or an equivalent security certification
Clearance Requirements:
Must have an active Secret security clearance.
Physical Requirements:
The person in this position must be able to remain in a stationary position 50% of the time.
Must be able to move around the office and operate office equipment.
Frequently communicate with co-workers, management, and customers, which may involve delivering presentations. Must be able to exchange accurate information in these situations.
Senior Manager, Information Security Office Consultant
Security architect job in Williamsburg, VA
Senior Data Engineer
Do you love building and pioneering in the technology space? Do you enjoy solving complex business problems in a fast-paced, collaborative,inclusive, and iterative delivery environment? At Capital One, you'll be part of a big group of makers, breakers, doers and disruptors, who solve real problems and meet real customer needs. We are seeking Data Engineers who are passionate about marrying data with emerging technologies. As a Capital One Data Engineer, you'll have the opportunity to be on the forefront of driving a major transformation within Capital One.
What You'll Do:
Collaborate with and across Agile teams to design, develop, test, implement, and support technical solutions in full-stack development tools and technologies
Work with a team of developers with deep experience in machine learning, distributed microservices, and full stack systems
Utilize programming languages like Java, Scala, Python and Open Source RDBMS and NoSQL databases and Cloud based data warehousing services such as Redshift and Snowflake
Share your passion for staying on top of tech trends, experimenting with and learning new technologies, participating in internal & external technology communities, and mentoring other members of the engineering community
Collaborate with digital product managers, and deliver robust cloud-based solutions that drive powerful experiences to help millions of Americans achieve financial empowerment
Perform unit tests and conduct reviews with other team members to make sure your code is rigorously designed, elegantly coded, and effectively tuned for performance
Basic Qualifications:
Bachelor's Degree
At least 3 years of experience in application development (Internship experience does not apply)
At least 1 year of experience in big data technologies
Preferred Qualifications:
5+ years of experience in application development including Python, or Java
2+ years of experience with a public cloud (AWS, Microsoft Azure, Google Cloud)
3+ years experience with Distributed data/computing tools (MapReduce, Hadoop, Hive, EMR, Kafka, Spark, Databricks)
2+ year experience working on real-time data and streaming applications
2+ years of experience with NoSQL implementation (DynamoDB)
2+ years of data warehousing experience (Redshift or Snowflake)
2+ years of experience with Agile engineering practices
2+ years experience with Glue
At this time, Capital One will not sponsor a new applicant for employment authorization, or offer any immigration related support for this position (i.e. H1B, F-1 OPT, F-1 STEM OPT, F-1 CPT, J-1, TN, or another type of work authorization).
The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked.
McLean, VA: $158,600 - $181,000 for Senior Data Engineer
Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter.
This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan.
Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website. Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level.
This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections 4901-4920; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries.
If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at ************** or via email at RecruitingAccommodation@capitalone.com. All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.
For technical support or questions about Capital One's recruiting process, please send an email to **********************
Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site.
Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Information Technology Security Manager
Security architect job in Chesapeake, VA
In cybersecurity, we help keep our diverse environment from design, merchandizing, supply chain, eCommerce, and enterprise secure in a dynamic space. The IT Security team is looking for a passionate cybersecurity leader who wants to make an impact in multiple environments. Family Dollar is looking for a detailed and results oriented Security Engineering Manager leader who will be responsible for overseeing and managing the security of its information systems and data. This person will lead a team of cybersecurity professionals and work closely with other departments to protect the organization's digital assets, data and systems from cyber threats and breaches. This role is critical to the strategic and tactical success of Family Dollar's cybersecurity program. As the leader of this team, you will be responsible for providing strategic and operational direction of our security engineering solutions and cybersecurity tool stack.
Under the direction of Director, Cybersecurity, the Security Engineering Manager takes a lead role in ensuring the security of all protected information collected, used, maintained, or released by Family Dollar. This role plays a vital role in ensuring the confidentiality, integrity and availability of our data. It is a critical role in the face of an ever-evolving landscape of cyber threats and attacks.
Principal Duties and Responsibilities
Partnering with teams across the organization to influence security by design to help drive overall direction of our technical security solutions.
Accountable for end-to-end life cycle of our security tool portfolio (e.g., Firewalls, IDS/IPS, WAF, IAM, DLP, SIEM, Proxy, DDoS, Antimalware, Cloud network infrastructure technologies)
Ensuring the hardening of our infrastructure (e.g., authentication, MFA, perimeter edge.)
Driving standards and expectations of secure practices across the organization such as data security, defense-in-depth, SASE, Zero Trust etc.
Collaborating with senior leadership to assess and understand strategic initiatives to ensure IT Security support.
Act as a subject matter expert to provide advisory guidance to other teams.
Interface and influence leaders at varying levels and roles within the company to drive security ownership.
Keeping up to date with the security landscape to ensure our teams are providing strong defenses.
Strong decision-making, problem-solving abilities, and leadership abilities to manage multiple, often conflicting priorities to successful completion.
Demonstrate commitment to high standards of ethics and values, regulatory compliance, and business integrity.
Excellent management skills to drive the personal development of the team and individuals.
Maintain all security tools and technology.
In charge of security systems, such as firewalls, data protection controls, patching.
Ensures that project/department milestones/goals are met and adhering to approved budgets.
Has full authority for personnel actions.
Evaluates risks and improves Family Dollar's security positioning through process improvement, policy, automation, and the continuous evolution of capabilities.
Implements processes to automate and continuously monitor information security controls, exceptions, risks, testing.
Develops reporting metrics, dashboards, and evidence artifacts.
Schedules regular testing of effectiveness and efficiency of controls within area of ownership.
Remains current on best practices and technological advancements and acts as the technical resource for information security.
Minimum Requirements/Qualifications
5+ years of experience in cybersecurity.
2+ years as a security leader of a team (e.g., Incident Response, Engineering team).
5+ years' experience leveraging and implementing cybersecurity frameworks such as, MITRE ATTACK, MITRE D3FEND, OWASP Top 10, CIS Controls, NIST CSF, NIST 800-53, etc.
10+ years of advanced IT skills with high level of information security experience and expertise.
Knowledge of securing network technologies, client, and server operating systems.
Ability to develop and maintain security baselines based on best practices and industry standards.
Experience responding to, analyzing, problem solving, and communicating information security incidents.
6+ years of planning and managing security projects.
Excellent interpersonal, communication, and presentation skills, including formal report writing experience.
Understanding of common security standards and regulations relating to a retail environment (e.g., PCI DSS, NIST CSF, ISO2700x, etc.)
Team leadership and management. Foster a culture of security awareness and compliance within the organization.
Ability to work in agile and waterfall frameworks as needed
1-3 years as a technical leader / supervisor with strong analytical and problem-solving skills identifying risks and championing that change.
5+ years of experience interfacing with varying levels of leadership and roles within a company, influencing security change.
Minimum of 5 years' experience with modern security tool stacks
Network security tools (e.g., WAF, Proxies, IDS/IPS, VPN, Taps, Firewalls)
Endpoint security tools (e.g., AV, EDR, Application Control, PKI)
Security Operations tools (e.g., SIEM)
Authentication and authorization tools (e.g., PAM, SSO, SAML, IAM, MFA)
Data Security tools (e.g., eDiscovery, DSPM)
Cloud (e.g., CSPM) and other implications of cybersecurity
Strong knowledge of cybersecurity concepts
Secure protection and detection techniques
Application security
Vulnerability management
Exploitation techniques
Incident response
Data privacy and encryption
Endpoint platforms (Windows, Linux & Mac, iOS/Android)
Desired Qualifications
Bachelors in Information Technology or other four-year related degree
Cyber Security Architect II
Security architect job in Hampton, VA
At least 5 years of experience in the field or in a related area. Familiar with a variety of the field's concepts, practices, and procedures. Relies on extensive experience and judgment to plan and accomplish goals and independently performs a wide variety of complicated tasks. May provide consultation on complex projects and is considered to be the top level contributor/specialist. May lead and direct the work of others. Performs a variety of routine project tasks applied to specialized technology problems. Tasks involve integration of electronic processes or methodologies to resolve total system problems, or technology problems as they relate to Information Assurance requirements. Conducts security assessments and security consulting services. Analyzes information security requirements. Knowledgeable about DoD and DoN Information Assurance rules and regulations. Under general supervision, designs, develops, engineers and implements solutions to MLS requirements. Gathers and organizes technical information about an organization's mission goals and needs, existing security products and ongoing programs in the MLS arena. Performs risk analyses, which also includes risk assessment. Provides technical support for secure software development and integration tasks, including reviewing work products for correctness and adhering to the design concept and to user standards. Knowledgeable of Security/IA products such as PKI, VPN, firewalls, and intrusion detection systems. Analyzes and recommends resolution of security/IA problems on the basis of knowledge of the major IA products and services, an understanding of their limitations, and knowledge of the IA disciplines. Secret clearance is required.
Cyber Security Architect
Security architect job in Norfolk, VA
Cyber Security ArchitectJob Category: Information TechnologyTime Type: Full time Minimum Clearance Required to Start: SecretEmployee Type: RegularPercentage of Travel Required: Up to 10%Type of Travel: Continental US* * *
The Opportunity:
Join CACI as the prime contractor on a growing program supporting NAVSEA 03D3 Digital Program Office as a Cyber Security Architect supporting the Navy Maintenance and Modernization Enterprise Solution (NMMES), a mission-critical program that supports over 45,000 users executing naval ship and submarine maintenance operations worldwide.
Key Responsibilities:
Perform specialized technology tasks related to Information Assurance requirements
Conduct security assessments and provide security consulting services
Analyze information security requirements for complex systems
Apply DoD and DoN Information Assurance rules and regulations
Design, develop, and implement solutions to Multilevel Security (MLS) requirements
Gather and organize technical information about organizational mission goals, needs, and security products
Perform risk analyses and assessments
Provide technical support for secure software development and integration tasks
Review work products for correctness and adherence to security standards
Work with Security/IA products such as PKI, VPN, firewalls, and intrusion detection systems
Analyze and recommend security/IA solutions based on product knowledge and limitations
Support both legacy and modern application security requirements
Qualifications:
Required:
Bachelor's Degree in Computer Science, Information Security, or related field
Up to 3 years of experience in cybersecurity or related area
Knowledge of DoD and DoN Information Assurance rules and regulations
Understanding of security technologies and frameworks
Experience with security assessment and risk analysis
Desired:
Security certifications (e.g., Security+, CISSP, CEH)
Experience with DoD/Navy programs or similar government IT systems
Knowledge of FedRAMP and DISA security requirements
Familiarity with Risk Management Framework (RMF)
Experience with security tools and technologies
Understanding of cloud security principles
Knowledge of secure development practices
SAFe certification
Specific labor category determined by years of experience + educational degrees as stated below:
Cyber Security Architect I - Bachelors degree and 3+ years of experience in Cyber Security or related area.
Cyber Security Architect II - Bachelors degree and 5+ years of experience in Cyber Security architecture.
Additional Information:
This position offers an opportunity to protect critical Navy maintenance systems and data. The ideal candidate will combine strong technical security skills with an understanding of DoD security requirements and regulations.
Success in this role requires:
Strong understanding of cybersecurity principles
Knowledge of DoD security requirements
Analytical and problem-solving skills
Attention to detail
Good documentation abilities
Effective communication skills
Note: Position supports NMMES software suite which includes both legacy software applications and current web application technologies running on multiple operating systems. Must be comfortable working with diverse technology stacks and security requirements.
Key Success Factors:
Understanding of security architecture principles
Knowledge of security assessment methodologies
Familiarity with security tools and technologies
Understanding of compliance requirements
Ability to perform risk assessments
Knowledge of secure development practices
The role requires someone who can:
Assess security requirements
Implement security solutions
Conduct risk analyses
Support secure development
Document security architectures
Stay current with security threats and solutions
Work effectively with development and operations teams
Special Requirements:
Must be able to obtain and maintain required security clearances
Must understand and comply with DoD security policies and procedures
Must maintain knowledge of current security threats and mitigation strategies
Must be able to work in a classified environment when required
This position is contingent on funding and may not be filled immediately. However, this position is representative of positions within CACI that are consistently available. Individuals who apply may also be considered for other positions at CACI.
________________________________________________________________________________________
What You Can Expect:
A culture of integrity.
At CACI, we place character and innovation at the center of everything we do. As a valued team member, you'll be part of a high-performing group dedicated to our customer's missions and driven by a higher purpose - to ensure the safety of our nation.
An environment of trust.
CACI values the unique contributions that every employee brings to our company and our customers - every day. You'll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.
A focus on continuous growth.
Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground - in your career and in our legacy.
Your potential is limitless. So is ours.
Learn more about CACI here.
________________________________________________________________________________________
Pay Range: There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits. Learn more here.
The proposed salary range for this position is:
$53,100-$106,300
CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.
Auto-ApplyPhysical, Personnel, Special, SAP and Industrial Security Support
Security architect job in Virginia Beach, VA
Cyberspace Solutions, a Crimson Phoenix company, seeks exceptionally qualified Security Support - Physical, Personnel, Special, SAP and Industrial Security Support (PPS&I) Specialists to support USSOCOM. Intelligence Analysts responsible for researching, developing, and presenting intelligence products at the operational level for senior leaders including: CT and regional analysis, GEOINT, HUMINT, SIGINT, OSINT/PAI, political/military analysis and support to targeting. Intelligence analysts shall interface with other intelligence organizations to fully prepare teams for exploitation of enemy personnel, as well as prepare post screening analytical products and assessments supporting targeting efforts, and threat analysis. Intelligence Analysts are responsible for the production of intelligence assessments and products in support of deployed SOF Task Forces to enable the F3EAD targeting cycle.
Employees must maintain global readiness and be available to deploy on a no-notice basis to hazardous duty/combat zones. Deployments may be to a theater of operations with permissive, uncertain, or hostile environments while living in austere conditions for extended periods.
Crimson Phoenix supports the US national security community and its allies with a wide range of analytic and cyber effect solutions that accelerate informed decision made in the telephony, IP messaging, cyber, and multi-source arenas. Our customers require insight from the endless volume and variety of data to make critical, high integrity decisions at mission speed. We are an innovative solutions company striving to be a global leader in multi-source data collection, predictive analysis and mobile/network surveillance (4G/5G) and assurance, from the Edge of Collection to the Core of Exploitation, Tactical to Strategic, Endpoint to the Enterprise.
Responsibilities
Security Support - Physical, Personnel, Special, SAP and Industrial Security Support (PPS&I) Specialists to assist, monitor, and advise on all aspects of security activities. They shall plan and assist in implementation of security activities at the Top Secret and higher classification to ensure JSOTF personnel (Military, Civilians, Contractors) and all supported tenant organizations are prepared to operate in non-traditional environments to perform critical contingency tasks. Personnel performing these functions develop written technical approaches and methodologies with regard to security proposals.
Qualifications
Security Support - Physical, Personnel, Special, SAP and Industrial Security Support (PPS&I) Specialists shall possess the following qualifications:
Shall process personnel background investigations for special security clearance actions including:
Formulating and ensuring compliance with automated information systems security procedures
Suggesting, implementing and monitoring compliance with special security policies and procedures
Conducting and coordinating the training for special security representatives
Performing as a liaison with Government and industrial security officials, overseeing collateral and higher access and badge procedures.
Security Support personnel shall possess the following qualifications :
Minimum of six (6) years Physical, Personnel and Special Security experience within DoD or equivalent Government agencies required, with operational level experience preferred.
Position requires experience in compartmented programs in DoD, U.S. Intelligence Community, or supporting U.S. Contractors.
Experience in security training or security inspections is highly desirable.
Solid and varied experience in planning/accrediting facilities in accordance with the ICD 7051 standard.
Thorough familiarity with all security processes.
Must have a working knowledge of security policies and procedures to include National Industrial Security Program Supplement , and DoD 5105.21 Volumes 1-3.
Current Top Secret clearance and SCI eligible.
Must possess a valid US passport.
Must be able to pass all pre-deployment requirements including a medical, dental, psychological, background, credit, and security screens as deemed necessary to be considered deployable.
Must be able to obtain all required immunizations deemed necessary by the contract.
Equal employment opportunity employer:
All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by federal, state, or local law.
Crimson Phoenix is committed to providing veteran employment opportunities to our service men and women.
Auto-ApplyPhysical, Personnel, Special, SAP and Industrial Security Support
Security architect job in Virginia Beach, VA
Cyberspace Solutions, a Crimson Phoenix company, seeks exceptionally qualified Security Support - Physical, Personnel, Special, SAP and Industrial Security Support (PPS&I) Specialists to support USSOCOM. Intelligence Analysts responsible for researching, developing, and presenting intelligence products at the operational level for senior leaders including: CT and regional analysis, GEOINT, HUMINT, SIGINT, OSINT/PAI, political/military analysis and support to targeting. Intelligence analysts shall interface with other intelligence organizations to fully prepare teams for exploitation of enemy personnel, as well as prepare post screening analytical products and assessments supporting targeting efforts, and threat analysis. Intelligence Analysts are responsible for the production of intelligence assessments and products in support of deployed SOF Task Forces to enable the F3EAD targeting cycle.
Employees must maintain global readiness and be available to deploy on a no-notice basis to hazardous duty/combat zones. Deployments may be to a theater of operations with permissive, uncertain, or hostile environments while living in austere conditions for extended periods.
Crimson Phoenix supports the US national security community and its allies with a wide range of analytic and cyber effect solutions that accelerate informed decision made in the telephony, IP messaging, cyber, and multi-source arenas. Our customers require insight from the endless volume and variety of data to make critical, high integrity decisions at mission speed. We are an innovative solutions company striving to be a global leader in multi-source data collection, predictive analysis and mobile/network surveillance (4G/5G) and assurance, from the Edge of Collection to the Core of Exploitation, Tactical to Strategic, Endpoint to the Enterprise.
Responsibilities
Security Support - Physical, Personnel, Special, SAP and Industrial Security Support (PPS&I) Specialists to assist, monitor, and advise on all aspects of security activities. They shall plan and assist in implementation of security activities at the Top Secret and higher classification to ensure JSOTF personnel (Military, Civilians, Contractors) and all supported tenant organizations are prepared to operate in non-traditional environments to perform critical contingency tasks. Personnel performing these functions develop written technical approaches and methodologies with regard to security proposals.
Qualifications
Security Support - Physical, Personnel, Special, SAP and Industrial Security Support (PPS&I) Specialists shall possess the following qualifications:
Shall process personnel background investigations for special security clearance actions including:
Formulating and ensuring compliance with automated information systems security procedures
Suggesting, implementing and monitoring compliance with special security policies and procedures
Conducting and coordinating the training for special security representatives
Performing as a liaison with Government and industrial security officials, overseeing collateral and higher access and badge procedures.
Security Support personnel shall possess the following qualifications :
Minimum of six (6) years Physical, Personnel and Special Security experience within DoD or equivalent Government agencies required, with operational level experience preferred.
Position requires experience in compartmented programs in DoD, U.S. Intelligence Community, or supporting U.S. Contractors.
Experience in security training or security inspections is highly desirable.
Solid and varied experience in planning/accrediting facilities in accordance with the ICD 7051 standard.
Thorough familiarity with all security processes.
Must have a working knowledge of security policies and procedures to include National Industrial Security Program Supplement , and DoD 5105.21 Volumes 1-3.
Current Top Secret clearance and SCI eligible.
Must possess a valid US passport.
Must be able to pass all pre-deployment requirements including a medical, dental, psychological, background, credit, and security screens as deemed necessary to be considered deployable.
Must be able to obtain all required immunizations deemed necessary by the contract.
Equal employment opportunity employer:
All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by federal, state, or local law.
Crimson Phoenix is committed to providing veteran employment opportunities to our service men and women.
Auto-ApplySenior Security Engineer - North America
Security architect job in Virginia Beach, VA
Do you ever have the urge to do things better than the last time? We do. And it's this urge that drives us every day. Our environment of discovery and innovation means we're able to create deep and valuable relationships with our clients to create real change for them and their industries. It's what got us here - and it's what will make our future. At Quantexa, you'll experience autonomy and support in equal measures allowing you to form a career that matches your ambitions. 41% of our colleagues come from an ethnic or religious minority background. We speak over 20+ languages across our 50+ nationalities, creating a sense of belonging for all.
Opportunity
This role combines deep technical security engineering with operational assurance and platform enablement. The position is responsible for shaping and sustaining secure development practices, strengthening cloud and SaaS controls, and improving detection and response maturity across Quantexa.
You will work closely with engineering, platform, and operational teams to build secure delivery patterns and ensure they are consistently adopted. This includes guiding DevOps team approaches, embedding automated security testing, consolidating compliance checks, and influencing design standards that support secure development and deployment. You will provide both assurance and hands on oversight to ensure tooling such as CI/CD, infrastructure as code, identity controls, and container orchestration remain hardened, monitored, and aligned to recognised best practices.
On the operational side, you will lead the improvement of security controls and monitoring capabilities across cloud platforms, SaaS services, and enterprise toolsets. You will integrate threat intelligence, refine detection rules, enhance incident readiness, and drive remediation activities based on security posture findings. You will work with stakeholders to review architectural risk, conduct threat modelling, and support operational response to emerging issues.
Success in this role requires an ability to translate complex risks into actionable change, influence adoption of secure practices, and build trust with engineering and senior technical stakeholders. You will balance preventative engineering activities with investigative skills and operational discipline, creating a feedback loop that strengthens resilience over time.
The ideal candidate brings strong experience across cloud security, DevOps enablement, identity and access controls, SaaS security, threat detection platforms, and incident response. You will be a self-starter who can navigate ambiguity, challenging stakeholders, collaborate across varied teams, and drive holistic improvements that enhance Quantexa's overall security posture.
The role is open in New York, New Jersey, Connecticut, North Carolina, Massachusetts, Pennsylvania, Virginia, Maryland, Washington, D.C., and Florida.
SOC Cyber Defense Analyst - SME (Journeyman)
Security architect job in Norfolk, VA
Job Description
Akira Technologies is seeking a SOC Cyber Defense Analyst (SME / Journeyman) to support a government client in Norfolk, VA. This role provides hands-on cybersecurity monitoring, incident response, and forensic analysis across Operational Technology (OT), Industrial Control Systems (ICS), and enterprise network environments, including on-premises and cloud systems.
The ideal candidate has 5-7 years of cybersecurity operations experience, operates independently on complex incidents, and serves as a technical subject matter expert within the SOC while supporting and mentoring junior analysts.
This is an onsite position supporting NAVFAC in Norfolk, VA. This role requires Top Secret or higher clearance.
Key Responsibilities
Perform cyber defense monitoring and forensic analysis across host and network systems, including malware triage, log correlation, and timeline reconstruction.
Investigate security incidents using MITRE ATT&CK and Cyber Kill Chain methodologies.
Support containment, eradication, and recovery actions in accordance with established incident response procedures.
Serve as a journeyman-level SME, providing technical guidance and mentoring to junior SOC analysts.
Monitor, tune, and enhance SIEM platforms (e.g., Splunk Enterprise Security, Elastic SIEM, Cribl) to improve detection and threat visibility.
Develop and maintain SIEM correlation rules, dashboards, and continuous monitoring content using data models and tstats.
Evaluate system and network configurations for vulnerabilities and recommend remediation aligned with DoD cybersecurity standards.
Support STIG compliance activities and assist with Information Assurance Vulnerability Management (IVAM) actions.
Utilize asset mapping and inventory tools to validate authorized devices and identify unauthorized or anomalous systems.
Handle digital evidence in accordance with government forensic and chain-of-custody best practices.
Produce concise technical and executive-level reports detailing findings, impacts, and mitigation recommendations.
Collaborate with SOC leadership and government stakeholders to improve SOC workflows, threat hunting, and operational effectiveness.
Required Qualifications
Active Top Secret clearance (or higher).
5-7 years of experience in cybersecurity operations, SOC analysis, or incident response.
Strong knowledge of Windows and Linux operating systems, network traffic analysis, and security monitoring.
Experience working within DoD cybersecurity frameworks and compliance-driven environments.
Hands-on experience with tools such as Splunk (Enterprise Security preferred), Palo Alto, Elastic SIEM, Cribl, Nessus, CrowdStrike, VMware, or similar technologies.
Demonstrated ability to independently lead investigations and communicate findings to technical and non-technical audiences.
Preferred Qualifications
Experience supporting OT / ICS / SCADA environments.
Advanced Splunk Enterprise Security content development experience.
Familiarity with GrayNoise, Shodan, MODBus, PCAP analysis, or industrial protocols.
Relevant certifications such as GCIH, CEH, GCED, OSCP, CISSP, or equivalent.
Leveling Summary
Performs independently on complex incidents.
Acts as a technical SME within the SOC.
Mentors junior analysts without formal program or SOC ownership.
Escalates advanced or strategic issues to senior or lead analysts.
Salary Range: $125,000 - $140,000
Akira's pay range for this position considers various factors including skills, years of experience, training, licenses, certifications, alignment with market data, and internal equity in the organization. This pay range estimate is a general guideline only and not a guarantee of compensation or salary, which Akira believes to be done in good faith in compliance with local laws. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. It is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case.
General Description of Benefits
Akira offers its employees multiple options for medical plans (some with Health Savings Account), dental plans, and vision coverage, and a 401(k) plan with employer match. To promote work/life balance, Akira offers paid time off, including vacation and sick time, holidays, paid parental leave, military leave, bereavement leave, and jury duty leave. We also offer short and long-term disability benefits to protect employee income in the event of sickness or injury, life insurance, accidental death and dismemberment insurance, and critical illness insurance. Akira also offers tuition, training, and certification reimbursement for professional development and career advancement.
Akira regularly reviews our total rewards package to ensure our offerings remain competitive and reflect the values and needs expressed by our employees.
About Akira Technologies
Akira strives to meet and exceed the mission and objectives of US federal agencies. As a leading small business cloud modernization and data analytics services provider, we deliver trusted and highly differentiated solutions and technologies that serve the needs of our customers and citizens. Akira serves as a valued partner to essential government agencies across the intelligence, cyber, defense, civilian, and health markets. Every day, our employees deliver transformational outcomes, solving the most daunting challenges facing our customers.
Akira is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics.
Information Systems Security Manager II (ISSM II)
Security architect job in Hampton, VA
Job Details Hampton, VA (JUS) - Hampton, VA Full Time DayDescription
requires a TS/SCI Clearance and Special Access Program Experience*
At System High Corporation-a Top Washington-Area Workplace (The Washington Post, 2023-2025), a Top Workplaces Culture Excellence honoree (April 2025), and a three-time VETS Indexes 3-Star Employer-we protect and advance the nation's most critical missions. As part of our team, you'll tackle complex security challenges across SAP, SCI, and Collateral programs. If you're driven by national security, innovation, and integrity, we want to hear from you.
System High Corporation delivers the most advanced protection and secrecy solutions to secure and strengthen critical missions, programs, operations, and intelligence activities. We are seeking an Information Systems Security Manager (ISSM) II to help contribute to our success and help us solve problems with innovation through intelligence.
The ISSM's primary function serves as a principal advisor on all matters, technical and otherwise, involving the security of information systems under his/her purview. Primary support will be working within Special Access Programs (SAPs) supporting Department of Defense (DoD) agencies, such as HQ Air Force, Office of the Secretary of Defense, and Military Compartment efforts. The position will provide “day-to-day” support for Collateral, Sensitive Compartmented Information (SCI) and Special Access Program (SAP) activities.
Duties include, but not limited to:
Perform oversight of the development, implementation and evaluation of information system security program policy; special emphasis placed upon integration of existing SAP network infrastructures
Develop and oversee operational information systems security implementation policy and guidelines of network security, based upon the Risk Management Framework (RMF) with emphasize on Joint Special Access Program Implementation Guide (JSIG) authorization process
Advise customer on Risk Management Framework (RMF) assessment and authorization issues
Perform risk assessments and make recommendations to DoD agency customers
Advise government program managers on security testing methodologies and processes
Evaluate authorization documentation and provide written recommendations for authorization to government PM's
Develop and maintain a formal Information Systems Security Program
Ensure that all IAOs, network administrators, and other cyber security personnel receive the necessary technical and security training to carry out their duties
Develop, review, endorse, and recommend action by the AO or DAO of system assessment documentation
Ensure approved procedures are in place for clearing, sanitizing, and destroying various types of hardware and media
Develop and execute security assessment plans that include verification that the features and assurances required for each protection level functioning
Maintain a and/or applicable repository for all system authorization documentation and modifications
Develop policies and procedures for responding to security incidents, to include investigating and reporting security violations and incidents
Ensure proper protection or corrective measures have been taken when an incident or vulnerability has been discovered within a system
Ensure that data ownership and responsibilities are established for each authorization boundary, to include accountability, access rights, and special handling requirements
Ensure development and implementation of an information security education, training, and awareness program, to include attending, monitoring, and presenting local cyber security training.
Evaluate threats and vulnerabilities to ascertain whether additional safeguards are needed
Assess changes in the system, its environment, and operational needs that could affect the authorization
Ensure that authorization is accomplished a valid Authorization determination has been given for all authorization boundaries under your purview
Review AIS assessment plans
Coordinate with PSO or cognizant security official on approval of external information systems (e.g., guest systems, interconnected system with another organization)
Conduct periodic assessments of the security posture of the authorization boundaries
Institute and implement a Configuration Control Board (CCB) charter
Ensure configuration management (CM) for security-relevant changes to software, hardware, and firmware and that they are properly documented.
Ensure periodic testing is conducted to evaluate the security posture of IS by employing various intrusion/attack detection and monitoring tools (shared responsibility with ISSOs)
Ensure that system recovery and reconstitution processes developed and monitored to ensure that the authorization boundary can be recovered based on its availability level determination
Ensure all authorization documentation is current and accessible to properly authorized individuals
Ensure that system security requirements are addressed during all phases of the system life cycle
Participate in self-inspections
Periodically review system security to accommodate changes to policy or technology
Coordinate all technical security issues outside of area of expertise or responsibility with ISSE
Provide expert research and analysis in support of expanding programs and area of responsibility as it pertains to cyber security and information technology actives
Develop Assured File Transfers (AFT) on accordance with the JSIG.
Provide leadership, mentoring, and quality assurance for Cyber Security and Information Technology team members
Qualifications
Years of Experience
7 - 9 years related experience
Prior performance in roles such as ISSO or ISSM
Education
Bachelor's degree or equivalent experience (4 years)
Certifications
Must meet position and certification requirements outlined in DoD Directive 8570.01-M for Information Assurance Technician Level 2 or Information Assurance Manager Level 2 within 6 months of the date of hire
Clearance
Current Top-Secret Clearance with SCI Eligibility
Eligibility for access to Special Access Program Information
Willingness to submit to a Counterintelligence polygraph
Other Requirements
Must have working knowledge of DoD, National and applicable service and agency security policy, manuals and standards.
Must be able to regularly lift up to 50 lbs.
Additional Information
This is not designed to cover or contain all job duties required of the employee. There may be additional activities, duties and/or responsibilities that are required for this position that are not listed in this job description.
In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification document form upon hire.
System High is a Military friendly employer. Our extensive work on behalf of the U.S. government offers those who have served in uniform an opportunity to continue to serve their country in a new and exciting way while enjoying a successful civilian career.
System High values the power and strength of diverse backgrounds on the culture and performance of our company. We strive to maintain an inclusive culture to encourage each employee to bring their whole self to the mission.
System High Corporation is committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender, gender identity or expression, veteran status, or any other characteristic protected by law. We are proud to be an equal opportunity workplace.
If you require a reasonable accommodation to apply for a position with us, please email
*************************
.
Legal notices can be viewed on the following PDFs:
Know Your Rights: Workplace Discrimination is Illegal
;
EPPA Notice
;
FMLA Notice
Warning:
Beware of recruitment scams: System High will never request money or personal purchases during the hiring process. Verify all communications come from a systemhigh.com or msg.paycomonline.com email address.
Security Engineer Sr - C
Security architect job in Virginia Beach, VA
The most security-conscious organizations trust Telos Corporation to protect their vital IT assets. The reputation of our company rests on the quality of our solutions and the integrity of our people. Explore what you can bring to our solutions in the areas of cyber, cloud and enterprise security.
Be a part of the Telos culture and see what sets us apart! Telos offers an excellent compensation package with benefits that include generous paid time off, medical, dental, vision, tuition reimbursement, and 401k. Our employees enjoy more than just a great work environment!
This position is contingent on contract award.
This position will be based at Virginia Beach, VA.
Responsibilities:
The Engineer, Cybersecurity II provides advanced cybersecurity engineering support across Navy systems under the Naval Surface Warfare Center Dahlgren Division (NSWCDD). This role integrates cybersecurity requirements throughout the systems engineering lifecycle, supporting both afloat and ashore networks. The position contributes to system design, risk management, and cyber resilience initiatives aligned with DoD and NAVSEA standards.
Cyber Engineering and Analysis:
* Conduct system and software engineering analyses to ensure compliance with cybersecurity standards and best practices.
* Support Risk Management Framework (RMF) activities by developing and maintaining technical artifacts, assessment documentation, and ATO packages.
* Review and support the implementation of Security Technical Implementation Guides (STIGs) and vulnerability remediation processes.
* Perform configuration management of cybersecurity baselines, ensuring changes to system design maintain compliance with RMF and NIST SP 800-53 controls.
* Apply system hardening techniques and zero-trust security principles across operating systems, applications, and network devices.
* Analyze and support interconnection security agreements (ISAs) and ensure compliance within approved Authorization boundaries.
* Utilize and support cybersecurity assessment tools including ACAS, STIG Viewer, eMASS, and Security Compliance Checker.
System Life-Cycle Security:
* Participate in the design and implementation of secure systems architecture, providing cybersecurity engineering input from concept through sustainment.
* Conduct risk and vulnerability assessments for systems undergoing upgrades or changes, including penetration and regression testing.
* Support secure coding practices and software assurance reviews to detect and mitigate exploitable flaws.
* Contribute to development and documentation of cybersecurity procedures, security plans, and network diagrams.
* Assist in hardware and software patch management, version control, and baseline integrity monitoring.
Operations & Maintenance
* Provide system administration support for Windows, Linux, and network environments, ensuring cybersecurity compliance.
* Execute cybersecurity best practices during lab and field operations, including monitoring, incident response coordination, and risk reporting.
* Maintain technical documentation, POA&Ms, and audit trails in support of cybersecurity posture tracking.
Job Requirements
Qualifications:
Education: Bachelor's degree in Cybersecurity, Cyber Operations, Cyber Engineering, Information System,
Information Technology, Computer, Electrical, or Electronics Engineering, Software Engineering, Computer
Science, Mathematics with a concentration in Computer Science, or equivalent to above disciplines.
Certification:
* DoD 8570.01-M in accordance with (IAW) DFARS ************ Baseline Certification,
minimum IAT Level II.
Experience:
* Five (5) year of full-time professional experience performing system hardening with demonstrated
* experience in the following areas: Experience supporting Navy, NAVSEA, or DoD cybersecurity programs.
* Proficiency with DISA STIGs, eMASS, ACAS, Nessus, and RMF documentation.
* Knowledge of system hardening, zero-trust frameworks, and cross-domain security solutions.
* Working knowledge of NIST SP 800-37, 800-53, and 800-160 cybersecurity engineering standards.
* Hands-on experience with Windows Server, Linux, and network device administration.
* Strong technical writing and documentation skills for cybersecurity deliverables (CDRLs, POA&Ms, risk assessments, etc.).
Desired Attributes:
* Detail-oriented with a systems-thinking approach to cybersecurity.
* Strong communication and collaboration skills to work across engineering and program teams.
* Demonstrated ability to balance mission assurance, security compliance, and system performance.
The successful candidate must meet eligibility requirements to access sensitive information, which requires US citizenship.
Telos maintains a drug-free workplace and will conduct drug testing on all applicants who have accepted an offer of employment.
Telos Corporation participates in the E-Verify program. Therefore, any employment with Telos will also be contingent upon confirmation from the Social Security Administration ("SSA") and/or the Department of Homeland Security ("DHS") of your authorization to work in the United States. Telos offers excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future.
Telos Corporation and its subsidiaries are committed to equal opportunity for all, without regard to race, religion, color, national origin, citizenship, sex, sexual orientation, gender identity, age, veteran status, disability, genetic information, or any other protected characteristic. Telos Corporation will make reasonable accommodations for known physical or mental limitations of otherwise qualified employees and applicants with disabilities unless the accommodation would impose an undue hardship on the operation of our business. If you are interested in applying for an employment opportunity and feel you need a reasonable accommodation pursuant to the ADA, please contact us at **************. If you require relay service assistance, please click on the following link to review information on your state's relay service: **********************************
Telos Corporation is an EEO/AA employer.
Job Type
Full-Time
Location
Virginia Beach, VA 23461 US (Primary)
Telos offers an excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future. Telos and its subsidiaries are an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status.
Security Engineer - Virginia Beach, VA
Security architect job in Virginia Beach, VA
If you love high profile and challenging programing projects supporting the United States Navy - Serco has a great opportunity for you! This Information Security Test Engineer will be on a dynamic team responsible for testing afloat and shore based systems at our offices in Virginia Beach, VA, Panama City Beach FL, or Washington DC. Bring your expertise and collaborative skills to make an impact towards our national security homeland defense.
This position is contingent upon your ability to maintain/transfer your Secret clearance.
Serco supports the US Navy in the acquisition of new technology used to defend our nation. Our team reviews acquisition documentation, develops cyber test plans, executes cyber test events, collects, and analyzes data and writes test reports. You will be part of a team that works closely with the customers and other Serco teams to deliver cyber-secure systems to the Navy. The team has been supporting Cybersecurity Assessment and Authorization for over 15 years and has been recognized by the Navy for their outstanding contributions.
In this role, you will:
Perform activities necessary for system Assessment and Authorization
Support the program office in creating/gathering necessary artifacts necessary to support an Authorization decision.
Perform both manual and automated cybersecurity testing of systems and components.
Document test results and provide preliminary risk assessment to the Program Manager.
Provide weekly status updates for systems under your purview.
Supports development of Cyber Test Plan for executes test events, collects, and analyzes data, and provides a report on the results.
Create/ update Cybersecurity policies and procedures.
Works directly with senior technical personnel, stakeholders, and project managers in the planning and execution of test events.
Qualifications
To be successful in this role, you will have:
Bachelor's degree and 3 years of experience
An Associates degree and 5 years of experience.
Active DoD Secret Security Clearance.
A Cybersecurity certification. (i.e. CompTIA Security+ CE or higher-level certification)
Proficiency in technical writing.
Proficiency with MS-Office software to include MS Word, MS Excel, MS Power Point.
The ability to travel up to 25%.
Additional desired experience and skills:
Previous experience with DoD Risk Management Framework.
NQV (Navy Qualifier Validator) certification.
If you are interested in supporting and working with our military and sailors and a passionate Serco team- then submit your application now for immediate consideration. It only takes a few minutes and could change your career!
Company Overview
Serco Inc. (Serco) is the Americas division of Serco Group, plc. In North America, Serco's 9,000+ employees strive to make an impact every day across 100+ sites in the areas of Defense, Citizen Services, and Transportation. We help our clients deliver vital services more efficiently while increasing the satisfaction of their end customers. Serco serves every branch of the U.S. military, numerous U.S. Federal civilian agencies, the Intelligence Community, the Canadian government, state, provincial and local governments, and commercial clients. While your place may look a little different depending on your role, we know you will find yours here. Wherever you work and whatever you do, we invite you to discover your place in our world. Serco is a place you can count on and where you can make an impact because every contribution matters.
To review Serco benefits please visit: ************************************************************ If you require an accommodation with the application process please email: ******************** or call the HR Service Desk at ************, option 1. Please note, due to EEOC/OFCCP compliance, Serco is unable to accept resumes by email.
Candidates may be asked to present proof of identify during the selection process. If requested, this will require presentation of a government-issued I.D. (with photo) with name and address that match the information entered on the application. Serco will not take possession of or retain/store the information provided as proof of identity. For more information on how Serco uses your information, please see our Applicant Privacy Policy and Notice.
Serco does not accept unsolicited resumes through or from search firms or staffing agencies without being a contracted approved vendor. All unsolicited resumes will be considered the property of Serco and will not be obligated to pay a placement or contract fee. If you are interested in becoming an approved vendor at Serco, please email *********************.
Serco is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, and other legally protected characteristics.
Pay Transparency
Our Total Rewards package includes competitive pay, performance-based incentives, and benefits that promote well-being and work-life balance-so you can thrive both professionally and personally. Eligible employees also gain access to a wide range of benefits from comprehensive health coverage and health savings accounts to retirement plans, life and disability insurance, and time-off programs that support work-life balance. Program availability may vary based on factors such as contract type, location, hire date, and applicable collective bargaining agreements.
Salary range: The range for this position can be found at the top of the posting. This range is provided as a general guideline and represents a good faith estimate across all experience levels. Actual base salary will be determined by a variety of factors, including but not limited to, the scope of the role, relevant experience, job-related knowledge, education and training, key skills, and geographic market considerations. For roles available in multiple states, the range may vary to reflect differences in local labor markets. In addition to base salary, eligible positions may include other forms of compensation such as annual bonuses or long-term incentive opportunities.
Benefits HIGHLIGHTS - Comprehensible Benefits for Full-time Employees (Part-time members receive a customized package tailored to their role).
Medical, dental, and vision insurance
Robust vacation and sick leave benefits, and flexible work arrangements where permitted by role or contract
401(k) plan that includes employer matching funds
Tuition reimbursement program
Life insurance and disability coverage
Optional coverages you can buy, including pet insurance, home and auto insurance, additional life and accident insurance, critical illness insurance, group legal, ID theft protection
Birth, adoption, parental leave benefits
Employee Assistance Plan that includes counseling conditions
Specific benefits are dependent upon the specific contract as well as whether the position is covered by a collective bargaining agreement or the Service Contract Act.
To review all Serco benefits please visit: ******************************************
Serco complies with all applicable state and local leave laws, including providing time off under the Colorado Healthy Families and Workplaces Act for eligible Colorado residents, in alignment with our policies and benefit plans. The application window for this position is for no more than 60 days. We encourage candidates to apply promptly after the posting date, as the position may close earlier if filled or if the application volume exceeds expectations. Please submit applications exclusively through Serco's external (or internal) career site. This is a U.S.-based role. If an applicant has any concerns with job posting compliance, please send an email to: ********************.
Auto-ApplyISSM II - Information Systems Security Manager
Security architect job in Hampton, VA
Come make your mark with Watermark!🎖️ FOUNDED BY USAF VETERANS in 2007, we are proud to be a Service-Disabled Veteran Owned Small Business.🌎 SUBJECT MATTER EXPERTS specializing in security and risk management. We're intimately familiar with DOD security programs and mission requirements.
⭐ OUR CORE VALUES drive every action we take as a company. We strive to exhibit PERSPECTIVE, PASSION, COMMUNICATION, INTEGRITY AND ETHICS, and BALANCE in all we do.
💲 COMPETITIVE BENEFITS PACKAGE to address our employees' physical, mental, emotional, and financial well-being. This includes 100% employer- paid medical insurance, ample paid leave, a free employee assistance program, and a competitive 401k savings plan. At Watermark, our people come first! Information Systems Security Manager II
The ISSM's primary function serves as a principal advisor on all matters, technical and otherwise, involving the security of information systems under their purview. Primary support will be working within Special Access Programs (SAPs) supporting Department of Defense (DoD) agencies, such as HQ Air Force, Office of the Secretary of Defense, and Military Compartment efforts. The position will provide “day-to-day” support for Collateral, Sensitive Compartmented Information (SCI) and Special Access Program (SAP) activities.
In this role you will…
Perform oversight of the development, implementation and evaluation of information system security program policy; special emphasis placed upon integration of existing SAP network infrastructures
Develop and oversee operational information systems security implementation policy and guidelines of network security, based upon the Risk Management Framework (RMF) with emphasize on Joint Special Access Program Implementation Guide (JSIG) authorization process
Advise customer on Risk Management Framework (RMF) assessment and authorization issues
Perform risk assessments and make recommendations to DoD agency customers
Advise government program managers on security testing methodologies and processes
Evaluate authorization documentation and provide written recommendations for authorization to government PMs
Develop and maintain a formal Information Systems Security Program
Ensure that all IAOs, network administrators, and other cyber security personnel receive the necessary technical and security training to carry out their duties
Develop, review, endorse, and recommend action by the AO or DAO of system assessment documentation
Ensure approved procedures are in place for clearing, sanitizing, and destroying various types of hardware and media
Develop and execute security assessment plans that include verification that the features and assurances required for each protection level functioning
Maintain a and/or applicable repository for all system authorization documentation and modifications
Institute and implement a Configuration Control Board (CCB) charter
Develop policies and procedures for responding to security incidents, to include investigating and reporting security violations and incidents
Ensure proper protection or corrective measures have been taken when an incident or vulnerability has been discovered within a system
Ensure that data ownership and responsibilities are established for each authorization boundary, to include accountability, access rights, and special handling requirements
Ensure development and implementation of an information security education, training, and awareness program, to include attending, monitoring, and presenting local cyber security training.
Evaluate threats and vulnerabilities to ascertain whether additional safeguards are needed
Assess changes in the system, its environment, and operational needs that could affect the authorization
Ensure that authorization is accomplished a valid Authorization determination has been given for all authorization boundaries under your purview
Review AIS assessment plans
Coordinate with PSO or cognizant security official on approval of external information systems (e.g., guest systems, interconnected system with another organization)
Conduct periodic assessments of the security posture of the authorization boundaries
Ensure configuration management (CM) for security-relevant changes to software, hardware, and firmware and that they are properly documented
Ensure periodic testing is conducted to evaluate the security posture of IS by employing various intrusion/attack detection and monitoring tools (shared responsibility with ISSOs)
Ensure that system recovery and reconstitution processes developed and monitored to ensure that the authorization boundary can be recovered based on its availability level determination
Ensure all authorization documentation is current and accessible to properly authorized individuals
Ensure that system security requirements are addressed during all phases of the system life cycle
Participate in self-inspections
Periodically review system security to accommodate changes to policy or technology
Coordinate all technical security issues outside of area of expertise or responsibility with ISSE
Provide expert research and analysis in support of expanding programs and area of responsibility as it pertains to cyber security and information technology activities
Develop Assured File Transfers (AFT) on accordance with the JSIG
Provide leadership, mentoring, and quality assurance for Cyber Security and Information Technology team members
Additional duties as assigned
Experience Requirements:
7-9 years related experience
Prior performance in roles such as ISSO or ISSM
Education Requirements:
Bachelor's degree in a related area or equivalent experience (4 years)
Certification Requirements:
IAT Level 3 (CISSP, CASP+ CE, CCNP Security, CISA, etc.) or IAM Level 3
Security Clearance Requirements:
Active/Current TS/SCI.
Must be able to obtain CI Poly.
Other Requirements:
Reports to a physical location which occasionally requires the ability to traverse between buildings
Must be able to regularly lift up to 50 lbs
May require sedentary work at least 50% of the time
Ability to manage stress with a high degree of maturity/professionalism
Demonstrated critical thinking and leadership skills and the ability to work well with others
Effective verbal and written communication skills
All Level I & Level II positions - candidate should possess some Special Access Program (SAP) experience
All Level III positions -candidate should possess 2+ years of Special Access Program (SAP) experience
KEYWORDS: RMF, Risk Management Framework, ICD, Information Assurance, IA, IAO, IAT, IAM, A&A, A+, Network+, Security+, Non-classified Internet Protocol Router Network (NIPRNet), Secret Internet Protocol Router Network (SIPRNet), DISA Security Technical Implementation Guides (STIGs), CISSP, CASP
Watermark provides salary ranges with job postings in states where it is legally required; any other salary ranges associated with our postings are third party estimates and may not be an accurate reflection of Watermark's total compensation package.
Multiple considerations are taken into account when determining the final salary/hour rate, including but not limited to, Contract Wage Determination, education and certifications, relevant work experience, related skills and competencies, as well as Federal Government Contract Labor categories. Central to Watermark's employment philosophy is the wellbeing of our employees which is why we offer a robust benefits package and wellness program alongside of annual base compensation.)
Watermark is an equal opportunity employer. All terms and conditions of employment are established without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, pregnancy, genetic information, disability, veteran status, or any other protected category under applicable federal, state, and local laws.
Auto-ApplyInformation Security Analyst - Senior - NAVSEA - US Navy
Security architect job in Norfolk, VA
Requirements Minimum Education & Experience Requirements
Bachelor's degree or higher in Computer Science, Cybersecurity, Information Systems, Information Technology, or related field.
Minimum of seven (7) years of experience in an IT or cybersecurity role that includes:
Preparing DoD/Navy system accreditation documentation
Evaluating and validating system security configurations
Applying, configuring, and maintaining security controls across multiple environments
Supporting secure configuration management and compliance activities
Security Clearance Requirements
Must hold an Active Secret Security Clearance.
Salary Description 120,000 - 160,000
System Engineer, Physical Security
Security architect job in Chesapeake, VA
Tyto Athene is searching for an experienced **System Engineer, Physical Security** to support one of our DoD programs. This individual will be required to operate in a diverse security environment. **Responsibilities:** + Design, install, test and support of DoD physical security systems including, but not limited to, access control, closed-circuit television and intrusion detection.
+ Three (3) years' experience working with and validating engineering drawings in accordance with DoD engineering drawings practices.
+ Ability to troubleshoot LENEL manufactured security system and access control system equipment and software.
+ Provide security engineering support including review and response to technical specifications, scope of work, product selection, surveys with customer interview, design, technical writing and implementation of Electronic Security Systems.
+ Evaluate new COTS products, identifies form fit function (FFF) replacements for end of life (EOL) equipment, reviews maintenance trouble tickets and research solutions.
+ Maintains As-Builts to include inside and outside plant, fiber optic infrastructure, CCTV, IDS, ACS, head end and other related Electronic Security Systems.
+ Develop Installation Design Packages (IDP) that are SIPH compliant for Electronic Security Systems such as PACS, IDS/PIDS, VMS, and other related low voltage systems for highly sensitive areas such as SCIF.
**Qualifications**
**Required:**
+ Ability to obtain a CI polygraph
+ Bachelor's degree in electrical or mechanical engineering and a minimum seven (7) years' experience; OR a minimum of ten (10) years' experience if candidate does not have a degree
+ CompTIA Security+ certified
+ LENEL Certified Expert (LCE)
**Clearance:**
+ Active TS/SCI clearance is required. Candidates must have this clearance in order to be considered.
**About Tyto Athene**
**Compensation:**
+ Compensation is unique to each candidate and relative to the skills and experience they bring to the position. The salary range for this position is typically between $130,000-$140,000. This does not guarantee a specific salary as compensation is based upon multiple factors such as education, experience, certifications, and other requirements, and may fall outside of the above-stated range.
**Benefits:**
+ Highlights of our benefits include Health/Dental/Vision, 401(k) match, Paid Time Off, STD/LTD/Life Insurance, Referral Bonuses, professional development reimbursement, and parental leave.
Tyto Athene is a trusted leader in IT services and solutions, delivering mission-focused digital transformation that drives measurable success. Our expertise spans four core technology domains-Network Modernization, Hybrid Cloud, Cybersecurity, and Enterprise IT-empowering our clients with cutting-edge solutions tailored to their evolving needs. With over 50 years of experience, Tyto Athene proudly support Defense, Intelligence, Space, National Security, Civilian, Health, and Public Safety clients across the United States and worldwide.
At Tyto Athene, we believe that success starts with our people. We foster a collaborative, innovative, and mission-driven environment where every team member plays a critical role in shaping the future of technology. Are you ready to join #TeamTyto?
Tyto Athene, LLC is an Equal Opportunity Employer; all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, [sexual orientation, gender identity,] national origin, disability, status as a protected veteran, or any characteristic protected by applicable law.
Submit a Referral (*****************************************************************************************************************************************
**Location** _US-VA-Chesapeake_
**ID** _2025-1600_
**Category** _Information Technology_
**Position Type** _Full-Time_
Public Key Infrastructure (PKI) Auditor & Trainer/Information Systems Security Officer (ISSO)
Security architect job in Norfolk, VA
Input is currently seeking a Public Key Infrastructure (PKI) Auditor & Trainer/Information Systems Security Officer (ISSO) for a potential contract to assist the Department of the Navy (DON) Public Key Infrastructure (KPI) and Key Management Infrastructure (KMI) Services.
Location(s): Andrews AFB, MD; Norfolk, VA; San Diego, CA; and Pearl Harbor, HI
Key Responsibilities:
Maintain Naval Communications Security Material System (NCMS) PKI Registration Authority (RA) and Local RA (LRA) systems, perform operating system updates and validate machines are operating in accordance with Authority to Operate (ATO).
Coordinated with Navy Marine Corps Intranet (NMCI) for machine and network troubleshooting.
Maintain standard system security and disaster recovery plans and ensure implementation across the detachment.
Maintain enterprise architecture Standard Operating Procedures (SOPs) and documentation to include illustrations network topology, system access requirements and processes for obtaining material and replacement hardware and software.
Function as the NCMS PKI liaison to external LRA sites providing assistance and information pertaining to System access, network access, peripheral devices. Liaison support also includes working with the government Information System Security Managers (ISSM), and Information System Security Officers (ISSO) to achieve and maintain ATO requirements.
Perform Cybersecurity tasks to include validation of Assured Compliance Assessment System (ACAS) scans and patching, apply Security Technical Implementation Guides (STIGs).
Properly secure and maintain PKI archives until moved to long term storage facility.
Perform backups, validate scans, perform software updates as needed, and review workstation system logs.
Complete compliance audits in accordance with Joint Force Head Quarters Department of Defense Information Network (JFHQ-DODIN) PKI Audit requirements, audits drafts, reports, track audit Plan of Action and Milestones (POA&M), schedule audits and perform Training and Assist Visits (TAV).
Schedule, conduct and update PKI LRA, Trusted Agent (TA), System Administrator (SA), ISSO classroom training for newly appointed personnel through the Navy.
Qualifications:
Understanding of Department of Defense (DoD) Common Access Card (CAC) characteristics and CAC/Smart card operation and procedures to include CAC middleware and hardware, with a least one-year experience.
Knowledge of the principles, concepts, and methodology of Information Technology (IT) processing and a working knowledge of computer system architecture, performance characteristics and DoD and Service IT security policies with a least one-year experience.
Familiar with DoD 8520.02, Public Key Infrastructure and Public Key Enabling.
Skilled verbal and written communication techniques required to conduct meetings, and prepare reports and other correspondence
Must be able to work independently.
Possess analytical processing skills.
Possess DoD 8140 qualification of 461 Basic or 451 Intermediate upon first day of employment and continue to maintain extended training requirements as identified in SECNAV M-5239.2. Navy COOL - Navy Cyber Workforce (CWF) Program - CWF Model
JFHQ-DODIN PKI Auditor Qualified or served as Navy RA, LRA or PKI ISSO for 3 years.
Information Systems Security Officer
Security architect job in Yorktown, VA
Overview/ Job Responsibilities
Sev1Tech is looking for an Information Systems Security Officer (ISSO) who can prepare, submit, and monitor accreditation packages through the Risk Management Framework (RMF) process ensuring receipt of Interim Authority to Test (IATT) or Authority to Operate (ATO) in support of the Naval Supply Systems Command (NAVSUP) Ordnance Information System (OIS) program. The ISSO will maintain current operating cybersecurity environment within AWS GovCloud operating environment.
The ISSO will apply their knowledge of DOD Cybersecurity processes and best practices used to secure technical solutions, including applications, systems, architectures, and infrastructures on-site in Yorktown, VA (2nd preference is Mechanicsburg PA) 5 days a week.
This critical role will also be responsible for:
Meeting and maintaining DOD RMF CYBER certification and accreditation requirements, including researching, testing and providing technical information for obtaining required system accreditation.
Developing Security Requirements Traceability Matrix (STRM), aligning security requirements with the individual components of a system.
Performing checks of systems and applications for Information Assurance vulnerabilities using approved automated IA tools (ACAS, VRAM, SCAP-compliant scanners, DISA STIG Viewer, etc.), custom scripts and manual processes (i.e., Security Technical Implementation Guides [STIGS]).
Monitoring OIS security posture, documenting raw findings in a quick look report, for customer notification. Create and maintain system Plan of Action and Milestones (POA&Ms) of open vulnerabilities and applied mitigations utilizing Department of Defense Enterprise Mission Assurance Support Service (eMASS) tool.
Supporting the development and documentation of risk assessment results and recommendations using identified threats, applicable vulnerabilities, and likelihood of occurrence within context of risk tolerances
Monitor all database and application software used in OIS for version change control and nearing/exceeding last date allowed in the Department of Navy Application Database Management System (DADMS).
Coordinating/interfacing with OIS Technical Team, Defense Information Systems Agency (DISA), IA Staff, and Fleet Cyber Command to document, review, revise, and submit changes related to Ports, Protocols, and Services Management (PPSM), Access Control Lists (ACLs), and Whitelists. This support includes preparing and submitting the registration forms for new requirements.
Supporting DOD IT Portfolio Repository-DON (DITPR-DON) to support the annual review.
Providing recommendations for corrective actions and mitigation strategies.
Producing security risk assessment briefs and reports for delivery to stakeholders and senior management.
Support the DevSecOps team in implementing Cyber Security requirements to achieve and maintain accreditation and authority to operate within specified timelines.
Interpret OS, web server, and database scans to facilitate resolving security findings with the DevSecOps team and external teams
Conducting security monitoring through the use of VRAM (Vulnerability Remediation Asset Manager), and applying mitigation techniques to reduce and remediate vulnerabilities
Coordinating / troubleshooting with afloat platforms to assist in identification and remediation of cybersecurity vulnerabilities within the Program of Record (POR) area of responsibility
Ensure systems are scanned, patched, and compliant with DoD policy
Troubleshoot Windows and RHEL security policies
Support with configurations including CloudWatch logs, registering systems, reporting and manage findings
Assess systems to determine applicable IA controls based on design, architecture, and data
Attend risk management and system meetings to provide status updates and take action items
Other duties as required
Minimum Qualifications
Must have DOD Secret level clearance to start (T3 background investigation)
Certification Requirement: Directive 8570.1/8140 - IAM-1: Security+
Allowable substitutes for Security+ include CAP, CND, Cloud+, GSLC, HCISPP
Bachelor's degree with a minimum of 5 years of relevant experience. (4 years of additional experience in lieu of Bachelor's degree is acceptable)
Experience performing risk assessments and audits.
Knowledge of the overall Risk Management Framework and NIST compliance as a security professional.
Familiarity with DoD Cyber Security policies and requirements
Experience presenting to clients or management to present technical and non-technical information to allow key personnel to make informed decisions.
Familiarity with information security documents, government orders, notices, and guidelines.
Experience documenting and maintaining systems running in AWS GovCloud (DoD preferred)
Ability to work independently to create and update Security Plans, Contingency Plans, and other security documents
Desired Qualifications
Bachelor's degree in Engineering, IT, Computer Science, or related field or equivalent
Experience using DoD approved tools (ACAS, SCAP-compliant scanners, eMASS, etc.).
Experience successfully advising stakeholders through the ATO process.
Experience supporting DoD (Navy preferred) enterprise application in the AWS GovCloud (up to IL 6) in a security capacity
CISSP or equivalent certification
AWS Certified Security certification
About Sev1Tech LLC
Welcome to Sev1Tech! Founded in 2010, we are proud to be a leading provider of IT modernization, engineering, and program management solutions. Our commitment is to deliver exceptional program and IT support services that empower critical missions for both Federal and Commercial clients.
At Sev1Tech, our mission is clear: Build better companies. Enable better government. Protect our nation. Build better humans across the country. We believe that through innovation and dedication, we can make a significant impact on the communities we serve.
Join the Sev1Tech family, where your potential for greatness is limitless! Here, you will not only achieve remarkable accomplishments but also enjoy a fulfilling and rewarding career progression. We invite you to explore opportunities with us and become part of a team that values your contributions and growth.
Ready to take the next step? Apply directly through our website: Sev1Tech Careers and use the hashtag #join Sev1Tech to connect with us on social media!
For any additional questions or to submit referrals, feel free to reach out to ***********************.
Auto-ApplySenior Manager, Information Security Office Consultant
Security architect job in Newport News, VA
Senior Manager, Information Security Office Consultant At Capital One, you will help consult on initiatives, programs, and projects to raise their game in Information Security. You are pragmatic and practical in your understanding of risk and security, but also willing to know when to pull in experts and escalate. You collaborate and innovate with other teams within Capital One to push the envelope. You are comfortable with Cloud Service technologies like Storage Services, Security & Access Control Management, Container Services, and API Implementation and Management. You are familiar with various Cloud computing models to include IaaS, PaaS, and SaaS along with their architectural differences. Security is essential to what we do here, from protecting our customers to our associates.
As a Senior Manager, You will play a leading role in delivering product security advisory services for a fast moving project within a line of business portfolio, working closely with other professionals as required. You have the ability to lead complex problem solving in partnership with multiple stakeholders in a fast-paced environment, driving results with critical impact. You will work with the other Information security consultants, business, technology and risk partners to achieve time sensitive goals and objectives in a secure manner with a heavy forward lean on modern software and technology architectures.
Responsibilities:
Act as an Information Security point of contact for a business function within the Card line of business
Coordinate and execute proactive Information Security consulting to the business and technology teams covering Infrastructure Security, Resiliency, Data Security, Network Architecture and Design, and User Access Management
Serve as an expert in Capital One's Information Security capabilities, solutions, policies, procedures and standards
Leverage strong technical acumen and be security SME reviewing architecture, providing risk mitigation solutions and driving overall risk management.
Partner closely with engineers, product managers, and other cross-functional partners to help break down complexity and organizational silos to problem solve.
Influence customers to leverage security capabilities and solutions to shift and integrate security to the left in the development processes
Escalate and manage cyber security risk
Provide ad hoc support on special Information Security hot topics for the business
Provide regular updates to executive leadership with your line of business on the overall Information Security health and risk environment
About You:
You have a desire to work in a very fast moving, forward leaning, and modern computing environment
You have experience in securing large-scale e-commerce platforms, with deep understanding of payments systems, customer data protection across high transaction environments ensuring protection of user data across internal and partner ecosystems.
You have a deep passion for Securing modern computing platforms
You have a strong desire to continually learn about new technologies
You possess strong conceptual thinking and communication skills
You are able to work well under minimal supervision
You are a demonstrated leader with team-oriented interpersonal skills and the ability to interface effectively with a broad range of people and roles, including upper management, IT leaders, and technology vendors
You maintain calmness and clarity of thought under pressure and ability to maintain confidentiality
You have a deep understanding of strategic business objectives and the ability to drive results toward those objectives
Basic Qualifications:
High School Diploma, GED or equivalent certification
At least 6 years of experience working in cybersecurity or information technology
At least 5 years of experience providing guidance and oversight of Security concepts
At least 5 years of experience performing security risk assessments and security architecture reviews
At least 5 years of experience with architecture, software design, networking, and cloud infrastructure
At least 4 years of experience with cloud security engineering
Preferred Qualifications:
Bachelor's Degree
6+ years of experience Application Security, Threat Modeling, Penetration Testing, Vulnerability Management
4+ years of experience in securing a public cloud environment (e.g. AWS, GCP, Azure)
2+ years experience in e-commerce industry
2+ years of experience building software utilizing public cloud (e.g. AWS, GCP, Azure)
1+ years of experience in security integration for Mergers and Acquisitions
1+ years of experience with Cloud patch management practices such as system rehydration and image management
1+ years of experience utilizing Agile methodologies
1+ years of experience with Software Security Architecture
1+ years of experience with Application Security
1+ years of experience with Threat Modeling
1+ years of experience with Penetration Testing and/or Vulnerability Management
1+ years of experience with integrating SaaS products into an Enterprise Environment
1+ years of experience with securing Container services
1+ years of experience with Splunk-Fu and Enterprise Monitoring experience
1+ years of experience in a Financial services industry experience
1+ years of experience with Offensive or Defensive Security techniques
AWS Certified Solutions Architect or Certified Information Systems Security Professional (CISSP) certification
At this time, Capital One will not sponsor a new applicant for employment authorization, or offer any immigration related support for this position (i.e. H1B, F-1 OPT, F-1 STEM OPT, F-1 CPT, J-1, TN, or another type of work authorization).
The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked.
McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical
New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical
Plano, TX: $204,900 - $233,800 for Sr Manager, Cyber Technical
Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical
Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter.
This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level.
This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.
For technical support or questions about Capital One's recruiting process, please send an email to
Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site.
Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Security Engineer - Virginia Beach, VA
Security architect job in Virginia Beach, VA
If you love high profile and challenging programing projects supporting the United States Navy - Serco has a great opportunity for you! This Information Security Test Engineer will be on a dynamic team responsible for testing afloat and shore based systems at our offices in Virginia Beach, VA, Panama City Beach FL, or Washington DC. Bring your expertise and collaborative skills to make an impact towards our national security homeland defense.
This position is contingent upon your ability to obtain/maintain/transfer your Secret clearance.
Serco supports the US Navy in the acquisition of new technology used to defend our nation. Our team reviews acquisition documentation, develops cyber test plans, executes cyber test events, collects, and analyzes data and writes test reports. You will be part of a team that works closely with the customers and other Serco teams to deliver cyber-secure systems to the Navy. The team has been supporting Cybersecurity Assessment and Authorization for over 15 years and has been recognized by the Navy for their outstanding contributions.
In this role, you will:
Perform activities necessary for system Assessment and Authorization
Support the program office in creating/gathering necessary artifacts necessary to support an Authorization decision.
Perform both manual and automated cybersecurity testing of systems and components.
Document test results and provide preliminary risk assessment to the Program Manager.
Provide weekly status updates for systems under your purview.
Supports development of Cyber Test Plan for executes test events, collects, and analyzes data, and provides a report on the results.
Create/ update Cybersecurity policies and procedures.
Works directly with senior technical personnel, stakeholders, and project managers in the planning and execution of test events.
Qualifications
To be successful in this role, you will have:
Bachelor's degree and 3 years of experience
An Associates degree and 5 years of experience.
Active DoD Secret Security Clearance.
A Cybersecurity certification. (i.e. CompTIA Security+ CE or higher-level certification)
Proficiency in technical writing.
Proficiency with MS-Office software to include MS Word, MS Excel, MS Power Point.
The ability to travel up to 25%.
Additional desired experience and skills:
Previous experience with DoD Risk Management Framework.
NQV (Navy Qualifier Validator) certification.
If you are interested in supporting and working with our military and sailors and a passionate Serco team- then submit your application now for immediate consideration. It only takes a few minutes and could change your career!
Company Overview
Serco Inc. (Serco) is the Americas division of Serco Group, plc. In North America, Serco's 9,000+ employees strive to make an impact every day across 100+ sites in the areas of Defense, Citizen Services, and Transportation. We help our clients deliver vital services more efficiently while increasing the satisfaction of their end customers. Serco serves every branch of the U.S. military, numerous U.S. Federal civilian agencies, the Intelligence Community, the Canadian government, state, provincial and local governments, and commercial clients. While your place may look a little different depending on your role, we know you will find yours here. Wherever you work and whatever you do, we invite you to discover your place in our world. Serco is a place you can count on and where you can make an impact because every contribution matters.
To review Serco benefits please visit: ************************************************************ If you require an accommodation with the application process please email: ******************** or call the HR Service Desk at ************, option 1. Please note, due to EEOC/OFCCP compliance, Serco is unable to accept resumes by email.
Candidates may be asked to present proof of identify during the selection process. If requested, this will require presentation of a government-issued I.D. (with photo) with name and address that match the information entered on the application. Serco will not take possession of or retain/store the information provided as proof of identity. For more information on how Serco uses your information, please see our Applicant Privacy Policy and Notice.
Serco does not accept unsolicited resumes through or from search firms or staffing agencies without being a contracted approved vendor. All unsolicited resumes will be considered the property of Serco and will not be obligated to pay a placement or contract fee. If you are interested in becoming an approved vendor at Serco, please email *********************.
Serco is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, and other legally protected characteristics.
Auto-ApplySystem Engineer, Physical Security
Security architect job in Chesapeake, VA
Tyto Athene is searching for an experienced System Engineer, Physical Security to support one of our DoD programs. This individual will be required to operate in a diverse security environment.
Responsibilities:
Design, install, test and support of DoD physical security systems including, but not limited to, access control, closed-circuit television and intrusion detection.
Three (3) years' experience working with and validating engineering drawings in accordance with DoD engineering drawings practices.
Ability to troubleshoot LENEL manufactured security system and access control system equipment and software.
Provide security engineering support including review and response to technical specifications, scope of work, product selection, surveys with customer interview, design, technical writing and implementation of Electronic Security Systems.
Evaluate new COTS products, identifies form fit function (FFF) replacements for end of life (EOL) equipment, reviews maintenance trouble tickets and research solutions.
Maintains As-Builts to include inside and outside plant, fiber optic infrastructure, CCTV, IDS, ACS, head end and other related Electronic Security Systems.
Develop Installation Design Packages (IDP) that are SIPH compliant for Electronic Security Systems such as PACS, IDS/PIDS, VMS, and other related low voltage systems for highly sensitive areas such as SCIF.
Qualifications
Required:
Ability to obtain a CI polygraph
Bachelor's degree in electrical or mechanical engineering and a minimum seven (7) years' experience; OR a minimum of ten (10) years' experience if candidate does not have a degree
CompTIA Security+ certified
LENEL Certified Expert (LCE)
Clearance:
Active TS/SCI clearance is required. Candidates must have this clearance in order to be considered.
About Tyto Athene
Compensation:
Compensation is unique to each candidate and relative to the skills and experience they bring to the position. The salary range for this position is typically between $130,000-$140,000. This does not guarantee a specific salary as compensation is based upon multiple factors such as education, experience, certifications, and other requirements, and may fall outside of the above-stated range.
Benefits:
Highlights of our benefits include Health/Dental/Vision, 401(k) match, Paid Time Off, STD/LTD/Life Insurance, Referral Bonuses, professional development reimbursement, and parental leave.
Tyto Athene is a trusted leader in IT services and solutions, delivering mission-focused digital transformation that drives measurable success. Our expertise spans four core technology domains-Network Modernization, Hybrid Cloud, Cybersecurity, and Enterprise IT-empowering our clients with cutting-edge solutions tailored to their evolving needs. With over 50 years of experience, Tyto Athene proudly support Defense, Intelligence, Space, National Security, Civilian, Health, and Public Safety clients across the United States and worldwide. At Tyto Athene, we believe that success starts with our people. We foster a collaborative, innovative, and mission-driven environment where every team member plays a critical role in shaping the future of technology. Are you ready to join #TeamTyto? Tyto Athene, LLC is an Equal Opportunity Employer; all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, [sexual orientation, gender identity,] national origin, disability, status as a protected veteran, or any characteristic protected by applicable law.
Auto-Apply