Information System Security Engineer
Security architect job in Virginia Beach, VA
MANTECH seeks a motivated, career and customer-oriented Senior Information System Security Engineer (ISSE) to join our team in Norfolk, VA. This is a hybrid position with 1-2 days onsite and 2-3 days remote.
As an ISSE, you will have the opportunity to work on innovative and mission-critical and national security projects. You will collaborate with a skilled team of professionals, responsible for developing accreditation packages for cloud systems in both AWS and Azure environments. This position offers great opportunities for technical growth and improved experience in Cyber Security.
Responsibilities include but are not limited to:
Performing cyber security research under NAVSEA for cloud and network solutions
Developing, defining, and aiding in implementing cyber security policies and processes
Defining IS and Network Environment security requirements in accordance with applicable cybersecurity requirements
Supporting A&A packages for multiple projects
Applying security expertise to new modernization cyber solutions that provide confidentiality, integrity, availability, authentication, and non-repudiation for security policies and memorandum for records
Developing Plan of Action and Milestones with proper Mitigations or Remediations, accordingly
Developing approaches to mitigate IS and Cloud Network Environment vulnerabilities and recommend changes to network or network system components as needed
Travel up to 25%
Minimum Qualifications:
Bachelor's degree in Computer Science, Information Technology, Engineering, or a related technical field, and 8+ years of relevant experience
5+ years developing secure solutions for incident response, business continuity, and disaster recovery
3+ years implementing security controls and policies with emerging cybersecurity technologies, including access control, privileged access management, data security, network security, data loss prevention, cloud security, vulnerability management, configuration management, privacy, and audits
Must have an active Security+ certification
Must be familiar with the use and operation of security tools including STIG Viewer, eMASSter, and Tenable Nessus and/or Security Center
Experience with cloud brokerages, preferably Navy
Knowledge and experience working with federal compliance and guidance, including FISMA, RMF, Federal Enterprise Architecture Framework, DoDAF, NIST Cybersecurity Framework, NIST 800 series, FedRAMP and cloud-based security controls
Preferred Qualifications:
Master's degree
One of the following certifications: Certified Information Systems Security Professional (CISSP), CompTIA Advanced Security Practitioner (CASP) CE, Certified Secure Software Lifecycle Professional (CSSLP), CISSP- Information System Security Engineering Professional (ISSEP), or CISSP- Information System Security Architecture Professional (ISSAP) or an equivalent security certification
Clearance Requirements:
Must have an active Secret security clearance.
Physical Requirements:
The person in this position must be able to remain in a stationary position 50% of the time.
Must be able to move around the office and operate office equipment.
Frequently communicate with co-workers, management, and customers, which may involve delivering presentations. Must be able to exchange accurate information in these situations.
Bank Information Security Governance Senior
Security architect job in Chesapeake, VA
Why USAA?
At USAA, our mission is to empower our members to achieve financial security through highly competitive products, exceptional service and trusted advice. We seek to be the #1 choice for the military community and their families.
Embrace a fulfilling career at USAA, where our core values - honesty, integrity, loyalty and service - define how we treat each other and our members. Be part of what truly makes us special and impactful.
The Opportunity
We are seeking a dedicated Bank Information Security Governance Senior.
We offer a flexible work environment that requires an individual to be in the office 4 days per week. This position can be based in our Phoenix, AZ; San Antonio, TX; Plano, TX; Colorado Springs, CO; Chesapeake, VA; Charlotte, NC or Tampa, FL offices. Relocation assistance is not available for this position.
What you'll do:
Supports the first line of defense in ensuring the effectiveness of Information Security (IS) governance, IS risk management, and compliance programs within the Bank Technology Office. Collaborates with Information Technology (IT) and IS teams, business stakeholders, Compliance, Risk Management, Audit Services, and external parties to support IS governance and IS risk and compliance-based initiatives. Acts as a key liaison between the Association's IS function and various Bank business units, ensuring alignment with enterprise security policies and standards.
Continuously monitors IS environments to identify emerging risks related to cybersecurity, infrastructure, applications, and third-party services. Provides consultative services across Bank.
Provides expert insights on the development, implementation, and continuous improvement of IT governance frameworks (e.g., COBIT, ITIL) tailored to the Bank organization's specific needs and strategic objectives.
Analyzes incident trends and control gaps to anticipate potential risk scenarios and recommend preventive measures.
Conducts forward-looking risk assessments for new technology initiatives, system changes, and digital transformation projects.
Analyzes incident trends and control gaps to anticipate potential risk scenarios and recommend preventive measures.
Partners with and leads IT/IS teams to embed IS risk considerations early in the project lifecycle and ensure timely mitigation strategies.
Leads the development, implementation, and continuous improvement of IT governance frameworks (e.g., COBIT, ITIL) tailored to the organization's specific needs and strategic objectives.
Defines, maintains, and enforces IS policies, standards, and procedures to ensure compliance with relevant laws, regulations, and industry best practices.
Ensures IS risk compliance with legal, regulatory, and contractual requirements, coordinating audits and assessments.
Provides governance oversight for IS related initiatives, ensuring they adhere to established standards, policies, and risk management practices.
Mentors junior members of the IS governance team, providing guidance and support in their professional development.
Enhances, and maintains awareness of the risk governance framework and its elements (RCSA).
Performs root cause analysis to determine likelihood, impact, and mitigation approaches of identified risks.
Prepares metrics reporting and participates in the metrics refresh process.
Maintains awareness of cloud computing principles and AI and understands potential IS risks inherent within this discipline.
Ensures risks associated with business activities are effectively identified, measured, monitored, and controlled in accordance with risk and compliance policies and procedures.
What you have:
Bachelor's degree in Information Technology, Computer Science, Business Administration, or a related field; OR 4 years of related experience (in addition to the minimum years of experience required) may be substituted in lieu of degree.
6 years experience supporting IS governance, IS risk management, compliance, or IT audit activities
In-depth knowledge and application of IT governance frameworks such as COBIT, ITIL, ISO 27001, and NIST, CIS Controls and CMMC
Experience working on and implementing IT and/or IS policies, standards, and procedures.
Experience leading and coordinating IS audits and assessments and ensuring compliance with regulatory requirements.
A strong understanding of regulatory and compliance requirements applicable to the organization.
Ability to interpret complex IT/IS environments and detect early warning signals.
Experience in identifying potential failure points and simulating risk scenarios.
Proficiency in using data to identify trends, anomalies, and emerging risks.
Understanding of cloud, cybersecurity, and digital transformation risks.
Ability to articulate risk insights and influence stakeholders to take preventive actions.
Familiarity with GRC platforms, vulnerability management tools, and risk dashboards.
What sets you apart:
Information Technology or Security certifications (e.g., CISA, CRISC, CISM, CISSP, CGEIT, CIA, NIST, COBIT, etc.).
Familiarity with financial institutions regulations (GLBA, FFIEC Handbooks, PCI DSS)
Work experience in highly regulated work environments including other large financial institutions
Experience with data-driven analysis using AI tools and collaborating to drive process innovation
Highly self-motivated individual capable of working independently and proactively handling their workload with minimal direct supervision.
Strong analytical skills and demonstrated experience collaborating effectively with leadership at all levels within an organization.
Compensation range: The salary range for this position is: $114,080-$218,030.
USAA does not provide visa sponsorship for this role. Please do not apply for this role if at any time (now or in the future) you will need immigration support (i.e., H-1B, TN, STEM OPT Training Plans, etc.).
Compensation: USAA has an effective process for assessing market data and establishing ranges to ensure we remain competitive. You are paid within the salary range based on your experience and market data of the position. The actual salary for this role may vary by location.
Employees may be eligible for pay incentives based on overall corporate and individual performance and at the discretion of the USAA Board of Directors.
The above description reflects the details considered necessary to describe the principal functions of the job and should not be construed as a detailed description of all the work requirements that may be performed in the job.
Benefits: At USAA our employees enjoy best-in-class benefits to support their physical, financial, and emotional wellness. These benefits include comprehensive medical, dental and vision plans, 401(k), pension, life insurance, parental benefits, adoption assistance, paid time off program with paid holidays plus 16 paid volunteer hours, and various wellness programs. Additionally, our career path planning and continuing education assists employees with their professional goals.
For more details on our outstanding benefits, visit our benefits page on USAAjobs.com.
Applications for this position are accepted on an ongoing basis, this posting will remain open until the position is filled. Thus, interested candidates are encouraged to apply the same day they view this posting.
USAA is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
Auto-ApplyCyber Security Architect Manager
Security architect job in Norfolk, VA
Job Category: Information Technology Time Type: Full time Minimum Clearance Required to Start: Secret Employee Type: Regular Percentage of Travel Required: Up to 10% Type of Travel: Continental US * * * **The Opportunity:** Join NAVSEA 03S as a Cyber Security Manager supporting the Navy Maintenance and Modernization Enterprise Solution (NMMES), a mission-critical program that supports over 45,000 users executing naval ship and submarine maintenance operations worldwide.
**Responsibilities:**
+ Analyze and define security requirements for Multilevel Security (MLS) issues
+ Design, develop, and engineer solutions to MLS requirements
+ Implement and develop MLS solutions for complex systems
+ Gather and organize technical information about organizational mission goals and security needs
+ Perform comprehensive risk analyses and assessments
+ Provide daily supervision and direction to security staff
+ Support secure software development and integration tasks
+ Review work products for correctness and adherence to security standards
+ Provide expertise in Security/Information Assurance (IA) products including PKI, VPN, firewalls, and intrusion detection systems
+ Analyze and recommend resolution of security/IA problems
+ Ensure compliance with DoD and DoN Information Assurance rules and regulations
+ Manage security architecture across both legacy and modern systems
**Qualifications:**
_Required:_
+ Must have an Active Secret security clearance
+ Bachelor's Degree (STEM degree preferred but not required)
+ At least 5 years of experience in cybersecurity architecture
+ Strong knowledge of DoD and DoN Information Assurance rules and regulations
+ Experience with Multilevel Security (MLS) requirements
+ Proven leadership and team management abilities
_Desired:_
+ Advanced cybersecurity certifications (CISSP, CISM, CEH)
+ Experience with DoD/Navy programs
+ SAFe certification
+ Knowledge of Risk Management Framework (RMF)
+ Experience with FedRAMP and DISA security requirements
+ Cloud security expertise
+ Understanding of secure development practices
+ Experience managing security teams
-
**________________________________________________________________________________________**
**What You Can Expect:**
**A culture of integrity.**
At CACI, we place character and innovation at the center of everything we do. As a valued team member, you'll be part of a high-performing group dedicated to our customer's missions and driven by a higher purpose - to ensure the safety of our nation.
**An environment of trust.**
CACI values the unique contributions that every employee brings to our company and our customers - every day. You'll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.
**A focus on continuous growth.**
Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground - in your career and in our legacy.
**Your potential is limitless.** So is ours.
Learn more about CACI here. (************************************************
**________________________________________________________________________________________**
**Pay Range** : There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits. Learn more here (***************************************************** .
The proposed salary range for this position is:
$75,200-$158,100
_CACI is_ _an Equal Opportunity Employer._ _All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any_ _other protected characteristic._
Cyber Security Architect II
Security architect job in Hampton, VA
At least 5 years of experience in the field or in a related area. Familiar with a variety of the field's concepts, practices, and procedures. Relies on extensive experience and judgment to plan and accomplish goals and independently performs a wide variety of complicated tasks. May provide consultation on complex projects and is considered to be the top level contributor/specialist. May lead and direct the work of others. Performs a variety of routine project tasks applied to specialized technology problems. Tasks involve integration of electronic processes or methodologies to resolve total system problems, or technology problems as they relate to Information Assurance requirements. Conducts security assessments and security consulting services. Analyzes information security requirements. Knowledgeable about DoD and DoN Information Assurance rules and regulations. Under general supervision, designs, develops, engineers and implements solutions to MLS requirements. Gathers and organizes technical information about an organization's mission goals and needs, existing security products and ongoing programs in the MLS arena. Performs risk analyses, which also includes risk assessment. Provides technical support for secure software development and integration tasks, including reviewing work products for correctness and adhering to the design concept and to user standards. Knowledgeable of Security/IA products such as PKI, VPN, firewalls, and intrusion detection systems. Analyzes and recommends resolution of security/IA problems on the basis of knowledge of the major IA products and services, an understanding of their limitations, and knowledge of the IA disciplines. Secret clearance is required.
Director, Client Security Engineering Architect
Security architect job in Virginia Beach, VA
Known for being a great place to work and build a career, KPMG provides audit, tax and advisory services for organizations in today's most important industries. Our growth is driven by delivering real results for our clients. It's also enabled by our culture, which encourages individual development, embraces an inclusive environment, rewards innovative excellence and supports our communities. With qualities like those, it's no wonder we're consistently ranked among the best companies to work for by Fortune Magazine, Consulting Magazine, Seramount, Fair360 and others. If you're as passionate about your future as we are, join our team.
KPMG is currently seeking a Director, Tech Engineering to join our Tax Ignition Group.
Responsibilities:
* Lead the function of responding to clients' security inquires
* Meet with clients to answer their security questions and negotiate compensating controls when there are gaps between client requirements and our product offerings
* Drive innovation and improvement in the client security inquiry process such incorporating Artificial Intelligence into the process, creating additional collateral such as whitepapers, managing metrics, and improving the tooling and interactions with requestors
* Partner with various groups within Tax's technology function and business teams to incorporate trends into product roadmaps; collaborate with other compliance teams, and raise awareness around client security requirements
* Review and respond to client security questionnaires and assessments
* Build and maintain a knowledge base of common client questions
Qualifications:
* Minimum ten years of recent experience in Information Technology (IT) security compliance, risk management or related IT security within a large IT organization, preferably within a professional services firm, software product, or other highly regulated environment
* Bachelor's degree from an accredited college or university is preferred
* Deep understanding of cloud architecture, modern software development, and technical security controls is required; Azure experience is preferred
* Strong executive presence, negotiation, presentation, and communication skills are required; excellent analytical and problem-solving skills to assess complex security issues and develop effective solutions; capability to work effectively in a global environment, understanding diverse cultural perspectives and international client needs
* Proven experience in client-facing roles, particularly in handling security inquiries, negotiations, and managing client relationships; demonstrated ability to drive innovation and continuous process improvement, particularly in integrating new technologies and methodologies into existing processes
* Demonstrated knowledge of industry authoritative sources such as COBIT, NIST, ISO standards; CISM, CISA, ISO 27001 Auditor, LSS Green Belt, CRISC, CIPP, CGEIT or ITIL preferred
* Must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future. KPMG LLP will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa
KPMG LLP and its affiliates and subsidiaries ("KPMG") complies with all local/state regulations regarding displaying salary ranges. If required, the ranges displayed below or via the URL below are specifically for those potential hires who will work in the location(s) listed. Any offered salary is determined based on relevant factors such as applicant's skills, job responsibilities, prior relevant experience, certain degrees and certifications and market considerations. In addition, KPMG is proud to offer a comprehensive, competitive benefits package, with options designed to help you make the best decisions for yourself, your family, and your lifestyle. Available benefits are based on eligibility. Our Total Rewards package includes a variety of medical and dental plans, vision coverage, disability and life insurance, 401(k) plans, and a robust suite of personal well-being benefits to support your mental health. Depending on job classification, standard work hours, and years of service, KPMG provides Personal Time Off per fiscal year. Additionally, each year KPMG publishes a calendar of holidays to be observed during the year and provides eligible employees two breaks each year where employees will not be required to use Personal Time Off; one is at year end and the other is around the July 4th holiday. Additional details about our benefits can be found towards the bottom of our KPMG US Careers site at Benefits & How We Work.
Follow this link to obtain salary ranges by city outside of CA:
**********************************************************************
KPMG offers a comprehensive compensation and benefits package. KPMG is an equal opportunity employer. KPMG complies with all applicable federal, state and local laws regarding recruitment and hiring. All qualified applicants are considered for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, citizenship status, disability, protected veteran status, or any other category protected by applicable federal, state or local laws. The attached link contains further information regarding KPMG's compliance with federal, state and local recruitment and hiring laws. No phone calls or agencies please.
KPMG recruits on a rolling basis. Candidates are considered as they apply, until the opportunity is filled. Candidates are encouraged to apply expeditiously to any role(s) for which they are qualified that is also of interest to them.
Los Angeles County applicants: Material job duties for this position are listed above. Criminal history may have a direct, adverse, and negative relationship with some of the material job duties of this position. These include the duties and responsibilities listed above, as well as the abilities to adhere to company policies, exercise sound judgment, effectively manage stress and work safely and respectfully with others, exhibit trustworthiness, and safeguard business operations and company reputation. Pursuant to the California Fair Chance Act, Los Angeles County Fair Chance Ordinance for Employers, Fair Chance Initiative for Hiring Ordinance, and San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
Physical, Personnel, Special, SAP and Industrial Security Support
Security architect job in Virginia Beach, VA
Cyberspace Solutions, a Crimson Phoenix company, seeks exceptionally qualified Security Support - Physical, Personnel, Special, SAP and Industrial Security Support (PPS&I) Specialists to support USSOCOM. Intelligence Analysts responsible for researching, developing, and presenting intelligence products at the operational level for senior leaders including: CT and regional analysis, GEOINT, HUMINT, SIGINT, OSINT/PAI, political/military analysis and support to targeting. Intelligence analysts shall interface with other intelligence organizations to fully prepare teams for exploitation of enemy personnel, as well as prepare post screening analytical products and assessments supporting targeting efforts, and threat analysis. Intelligence Analysts are responsible for the production of intelligence assessments and products in support of deployed SOF Task Forces to enable the F3EAD targeting cycle.
Employees must maintain global readiness and be available to deploy on a no-notice basis to hazardous duty/combat zones. Deployments may be to a theater of operations with permissive, uncertain, or hostile environments while living in austere conditions for extended periods.
Crimson Phoenix supports the US national security community and its allies with a wide range of analytic and cyber effect solutions that accelerate informed decision made in the telephony, IP messaging, cyber, and multi-source arenas. Our customers require insight from the endless volume and variety of data to make critical, high integrity decisions at mission speed. We are an innovative solutions company striving to be a global leader in multi-source data collection, predictive analysis and mobile/network surveillance (4G/5G) and assurance, from the Edge of Collection to the Core of Exploitation, Tactical to Strategic, Endpoint to the Enterprise.
Responsibilities
Security Support - Physical, Personnel, Special, SAP and Industrial Security Support (PPS&I) Specialists to assist, monitor, and advise on all aspects of security activities. They shall plan and assist in implementation of security activities at the Top Secret and higher classification to ensure JSOTF personnel (Military, Civilians, Contractors) and all supported tenant organizations are prepared to operate in non-traditional environments to perform critical contingency tasks. Personnel performing these functions develop written technical approaches and methodologies with regard to security proposals.
Qualifications
Security Support - Physical, Personnel, Special, SAP and Industrial Security Support (PPS&I) Specialists shall possess the following qualifications:
Shall process personnel background investigations for special security clearance actions including:
Formulating and ensuring compliance with automated information systems security procedures
Suggesting, implementing and monitoring compliance with special security policies and procedures
Conducting and coordinating the training for special security representatives
Performing as a liaison with Government and industrial security officials, overseeing collateral and higher access and badge procedures.
Security Support personnel shall possess the following qualifications :
Minimum of six (6) years Physical, Personnel and Special Security experience within DoD or equivalent Government agencies required, with operational level experience preferred.
Position requires experience in compartmented programs in DoD, U.S. Intelligence Community, or supporting U.S. Contractors.
Experience in security training or security inspections is highly desirable.
Solid and varied experience in planning/accrediting facilities in accordance with the ICD 7051 standard.
Thorough familiarity with all security processes.
Must have a working knowledge of security policies and procedures to include National Industrial Security Program Supplement , and DoD 5105.21 Volumes 1-3.
Current Top Secret clearance and SCI eligible.
Must possess a valid US passport.
Must be able to pass all pre-deployment requirements including a medical, dental, psychological, background, credit, and security screens as deemed necessary to be considered deployable.
Must be able to obtain all required immunizations deemed necessary by the contract.
Equal employment opportunity employer:
All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by federal, state, or local law.
Crimson Phoenix is committed to providing veteran employment opportunities to our service men and women.
Auto-ApplyPhysical, Personnel, Special, SAP and Industrial Security Support
Security architect job in Virginia Beach, VA
Cyberspace Solutions, a Crimson Phoenix company, seeks exceptionally qualified Security Support - Physical, Personnel, Special, SAP and Industrial Security Support (PPS&I) Specialists to support USSOCOM. Intelligence Analysts responsible for researching, developing, and presenting intelligence products at the operational level for senior leaders including: CT and regional analysis, GEOINT, HUMINT, SIGINT, OSINT/PAI, political/military analysis and support to targeting. Intelligence analysts shall interface with other intelligence organizations to fully prepare teams for exploitation of enemy personnel, as well as prepare post screening analytical products and assessments supporting targeting efforts, and threat analysis. Intelligence Analysts are responsible for the production of intelligence assessments and products in support of deployed SOF Task Forces to enable the F3EAD targeting cycle.
Employees must maintain global readiness and be available to deploy on a no-notice basis to hazardous duty/combat zones. Deployments may be to a theater of operations with permissive, uncertain, or hostile environments while living in austere conditions for extended periods.
Crimson Phoenix supports the US national security community and its allies with a wide range of analytic and cyber effect solutions that accelerate informed decision made in the telephony, IP messaging, cyber, and multi-source arenas. Our customers require insight from the endless volume and variety of data to make critical, high integrity decisions at mission speed. We are an innovative solutions company striving to be a global leader in multi-source data collection, predictive analysis and mobile/network surveillance (4G/5G) and assurance, from the Edge of Collection to the Core of Exploitation, Tactical to Strategic, Endpoint to the Enterprise.
Responsibilities
Security Support - Physical, Personnel, Special, SAP and Industrial Security Support (PPS&I) Specialists to assist, monitor, and advise on all aspects of security activities. They shall plan and assist in implementation of security activities at the Top Secret and higher classification to ensure JSOTF personnel (Military, Civilians, Contractors) and all supported tenant organizations are prepared to operate in non-traditional environments to perform critical contingency tasks. Personnel performing these functions develop written technical approaches and methodologies with regard to security proposals.
Qualifications
Security Support - Physical, Personnel, Special, SAP and Industrial Security Support (PPS&I) Specialists shall possess the following qualifications:
Shall process personnel background investigations for special security clearance actions including:
Formulating and ensuring compliance with automated information systems security procedures
Suggesting, implementing and monitoring compliance with special security policies and procedures
Conducting and coordinating the training for special security representatives
Performing as a liaison with Government and industrial security officials, overseeing collateral and higher access and badge procedures.
Security Support personnel shall possess the following qualifications :
Minimum of six (6) years Physical, Personnel and Special Security experience within DoD or equivalent Government agencies required, with operational level experience preferred.
Position requires experience in compartmented programs in DoD, U.S. Intelligence Community, or supporting U.S. Contractors.
Experience in security training or security inspections is highly desirable.
Solid and varied experience in planning/accrediting facilities in accordance with the ICD 7051 standard.
Thorough familiarity with all security processes.
Must have a working knowledge of security policies and procedures to include National Industrial Security Program Supplement , and DoD 5105.21 Volumes 1-3.
Current Top Secret clearance and SCI eligible.
Must possess a valid US passport.
Must be able to pass all pre-deployment requirements including a medical, dental, psychological, background, credit, and security screens as deemed necessary to be considered deployable.
Must be able to obtain all required immunizations deemed necessary by the contract.
Equal employment opportunity employer:
All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by federal, state, or local law.
Crimson Phoenix is committed to providing veteran employment opportunities to our service men and women.
Auto-ApplyInformation Systems Security Officer (ISSO) - Intermediate (Info. Systems & Cyber Security, Associate)
Security architect job in Norfolk, VA
The MIL Corporation seeks an Information Systems Security Officer (ISSO) - Intermediate (Info. Systems & Cyber Security, Associate) to support cybersecurity operations for a Federal Government client in Norfolk, VA. The ISSO ensures cybersecurity for assigned systems, reporting to the Program Manager/System Owner (PM/SO). Responsibilities include feature deployment, security policy implementation, and RMF compliance. The ISSO may delegate tasks during Assessment and Authorization (A&A) but remains accountable.
This position currently requires a hybrid schedule. This hybrid position may require schedule changes based on contract needs. Schedule is subject to change based on company/contract requirements.
Responsibilities
* Collaborate with SOC stakeholders (systems administration, network, security, infrastructure teams, Enterprise Help Desk, program managers, and business unit sponsors).
* Ensure DoN Authorization to Operate (ATO) compliance Commander, Navy Installations Command (CNIC) operational IT boundaries per applicable directives.
* Provide expertise in RMF processes, guiding system owners through steps 1-5, including categorization, control selection, and eMASS documentation.
* Conduct continuous monitoring, vulnerability scanning, STIG/patch application, and manage findings in eMASS and VRAM.
* Maintain and update POAMs and configuration management plans, ensuring timely milestone completion.
* Evaluate threats, vulnerabilities, and security findings, providing recommendations to enhance IT resource protection.
* Ensure compliance with Department of Navy (DoN) and DoD cybersecurity policies, verifying user clearances and training.
* Assemble and submit Security Authorization Packages, registering and maintaining systems in eMASS.
* Execute annual security reviews, control testing, and contingency plan testing per FISMA requirements.
* Correlate non-RMF vulnerability assessment findings (e.g., penetration testing, CCORI) to RMF controls for holistic risk assessment.
Travel
Up to 10% annually, as required.
Required Qualifications
* 7 years of relevant experience in cybersecurity or related fields
* Active Security+ Certification (IAT Level II)
* Expertise in RMF processes and tools (e.g., eMASS, VRAM, NESSUS) and compliance frameworks (e.g., CNSS 1253, FIPS 199, STIGs)
* Strong understanding of DoD, DoN, and CNIC cybersecurity directives, processes, and business rules
* Proven experience creating and maintaining RMF artifacts, managing vulnerabilities, and maintaining configuration management plans
* Strong communication skills for effective collaboration with team members
Desired Qualifications
* CISSP Certification
* Hands-on experience with the U.S. Navy Risk Management Framework Process Guide (RPG) NAO process and procedures
Education
Bachelor's Degree in a relevant field from an accredited institution. Alternatively, an Associate's Degree with an additional 4 years of relevant work experience, or an additional 6 years of relevant work experience in lieu of a degree.
Clearance
All applicants for this position must possess a current Secret clearance; please note that the clearance process considers financial background aspects.
Compensation
The MIL Corporation values your contributions and offers a range of benefits to support your overall well-being. We are pleased to offer a comprehensive range of benefits to our full-time employees which include health, life, disability, and retirement plans, as well as paid time off, opportunities for professional growth and tuition assistance. Additional benefits and incentives may also apply, which will be communicated during the hiring process.
For this position, the projected compensation range is $115,000 - $145,000 per year. This estimate represents the typical salary range and is just one part of MIL's complete compensation package. Final salary for this position is determined based on factors such as individual qualifications, education, experience, and contractual limitations. Learn more on the MIL Careers page.
Why MIL?
The MIL Corporation (MIL) is a dynamic workforce of industry professionals who deliver world-class solutions in cyber, engineering, financial management, and information technology - and we are looking for candidates like you! Whether you're fresh out of college, the military, or well into your professional services career, MIL has great job opportunities that might be a great fit.
Here at MIL, we pride ourselves on the family-like environment instilled amongst our team. Our employees love working here, and it truly shows through our various recognitions & awards. Some of our most recent awards include:
* 2021-2024, Top Workplaces USA award (Energage)
* 2017-2024 Top Workplaces Award, Greater Washington Area (The Washington Post)
* 2018-2025 Certified Great Workplace, Great Place to Work
* 2021 - 2024, Best Workplaces in Consulting & Professional Services
* 2021 Fortune Best Workplaces for Millennials
* 2018 Fortune, Great Place to Work: Best Place to Work for Diversity
* 2020- 2024, 2017, Top Workplace Award, South Carolina (Greenville Business Magazine, Columbia Business Monthly, and Charleston Business Magazine)
* 2024 Patriot Award, Employer Support of the Guard and Reserve (ESGR), Department of Defense
* 2022 Freedom Award, Employer Support of the Guard and Reserve (ESGR), Department of Defense
* 2018, Above & Beyond Award, Employer Support of the Guard and Reserve (ESGR), Department of Defense
If your goal is to help the federal government deploy leading technologies, improve financial management, or defend the nation in cyberspace, MIL welcomes you. Become a part of something greater, where you, the people, make the difference.
Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, protected veteran status or other characteristics protected by state or federal law.
Electronic Security System (ESS) Engineer (Job ID:3995)
Security architect job in Norfolk, VA
Electronic Security System (ESS) Engineer (Job ID:3995) Location: Norfolk, VA Remote Status: Hybrid Job Id: 3995 # of Openings: 1 Electronic Security System (ESS) Engineer Purpose: * Valkyrie Enterprises has an immediate need for Electronic Security System Engineer who will provide key support for Department of Defense (DoD). Department of State (DoS) and other US Federal Government Electronic Security System projects.
* This position is hybrid and based in Norfolk Virginia.
Job Description:
* Responsible for designing, installing and commissioning Electronic Security Systems to DoD and DoS specific guideline and requirements.
* Responsible for reviewing and interpreting Request for Proposal (RFP) / Performance Work Statement (PWS) documentation to support the development of cost estimates to include system design, Bill of Material (BOM) and project execution.
* Responsible for the development of ESS documentation to include survey reports, drawing packages, test plans and procedures, training documents and maintenance plans.
* Read and interpret customer requirements and develop responses to requests for information, proposals and quotes
* Develop, read and interpret electrical, electronic, and electronic system schematics, technical data packages and installation design plans
* Develop, read and interpret system test plans and procedures.
* Serve as a Subject Matter Expert (SME) on security engineering needs and requirements regarding system performance, installations, and maintenance programs
* Provide recommended improvements to existing systems and designs using industry best practices
* Perform installation, maintenance, troubleshooting, and testing of security wiring & power circuits.
Qualifications
* Must have bachelor's degree in a technical discipline such as electrical engineering or computer science. Under unique circumstances, a graduate of a military advanced electronic or communication technician school can be used in lieu of a bachelor's degree
* Must have 5 years of experience with design and 10 years of experience with installation or maintenance of electronics/electrical systems including, but not limited to:
* Intrusion Detection Systems
* Access Control Systems
* Closed Circuit Television
* Intercom Systems
* Mass Notification Systems
* IP Network Infrastructure
* Conduit Installation
* Low Voltage Electrical Systems
* Must be able to use basic hand tools and test equipment.
* Must have the ability to work in a demanding, deadline-driven environment, be detailed orientated, and self-motivated.
* Must have strong verbal communication skills and the ability to work independently or under limited supervision.
Desired Qualifications:
* Manufacturer's certification or technical training is highly desirable (Lenel, Milestone, Security+. CISSP) is preferred
* Certified System Engineer ICAM PACS (CSEIP) Certification is preferred.
* Familiarity with US Navy (NIWC) and US Army (USACE) ESS requirements is preferred.
* Knowledge of the National Electric Code (NEC) and practices such as grounding and electrical safety is strongly preferred.
* Proficiency in AutoCAD or other Computer Aided Design applications is preferred.
* Proficiency with Microsoft Office Products and Adobe Acrobat is preferred.
* OSHA 10- or 30-hour Safety Certification and CPR and First Aid Certification is preferred.
* Familiarity with and have a working knowledge of a multitude of systems including but not limited to these below processes is strongly preferred::
* DoD and DoS Security Systems and requirements
* Access Control and Intrusion Detection Systems such as Lenel, Vindicator, AMAG, and DMP
* IP CCTV Surveillance Systems such as Genetec, Axis, Pelco and Milestone.
* Perimeter Protection Systems such as Southwest Microwave, Fiber SenSys and Protech
* Mass Notification Systems such as Federal Signal, Cooper and SiRcom
* Mechanical and electromechanical locking systems (electronic strikes, magnetic locks, etc.)
Security Requirements:
* Must be eligible to obtain and maintain a DoD "Secret" security clearance with the possibility to upgrade to "Top Secret" if required.
* Must be a US Citizen with a valid Driver's License.
Travel Requirements:
* Between 15% - 50% Travel, international and domestic, depending on program requirements.
* If position requires travel by domestic flight or access to secure federal facilities/military bases, candidate must be able to obtain (by start of position) and maintain appropriate identification credentials, such as REAL ID. (More information regarding REAL ID can be found: *************************** ).
Physical Requirements:
* Must be able to reach, climb, stoop, & kneel up to 75% of the time.
* Repetitive motion, climbing, balancing, stooping, kneeling, crouching, crawling, reaching, standing, walking, pushing, pulling, lifting, grasping, hearing, and visual acuity (depth perception).
* Must be able to lift up to 50 lbs.
* Moving about to accomplish tasks or moving from one worksite to another.
* Communicating with others to exchange information.
* Repeating motions that may include the wrists, hands and/or fingers.
* Subject to outside environmental conditions (extreme cold/heat), Inside or Outside / Noise levels
Valkyrie strictly adheres to a policy of equal employment opportunity. This policy is based on Valkyrie's commitment to hire and retain qualified employees consistent with position requirements; and to seek, employ, promote and treat all employees and applicants for employment without regard to race, color, religious creed, national origin, ancestry, citizenship status, pregnancy, childbirth, physical disability, mental disability, age, military status or protected veteran status, marital status, registered domestic partner or civil union status, gender (including sex stereotyping and gender identity or expression), medical condition, genetic information or sexual orientation or other protected characteristics.
Additionally, Valkyrie Enterprises provides a variety of benefits to eligible employees to support your best health, wellness, and future, to include medical/dental/vision options, company paid life and disability insurances, 401(k) with match, education reimbursement, as well as company paid holidays and paid time off (PTO).
Pay Range: $90,000 - $150,000 per year
Security Engineer Sr - C
Security architect job in Virginia Beach, VA
The most security-conscious organizations trust Telos Corporation to protect their vital IT assets. The reputation of our company rests on the quality of our solutions and the integrity of our people. Explore what you can bring to our solutions in the areas of cyber, cloud and enterprise security.
Be a part of the Telos culture and see what sets us apart! Telos offers an excellent compensation package with benefits that include generous paid time off, medical, dental, vision, tuition reimbursement, and 401k. Our employees enjoy more than just a great work environment!
This position will be based at Virginia Beach, VA.
Responsibilities:
The Engineer, Cybersecurity II provides advanced cybersecurity engineering support across Navy systems under the Naval Surface Warfare Center Dahlgren Division (NSWCDD). This role integrates cybersecurity requirements throughout the systems engineering lifecycle, supporting both afloat and ashore networks. The position contributes to system design, risk management, and cyber resilience initiatives aligned with DoD and NAVSEA standards.
Cyber Engineering and Analysis:
* Conduct system and software engineering analyses to ensure compliance with cybersecurity standards and best practices.
* Support Risk Management Framework (RMF) activities by developing and maintaining technical artifacts, assessment documentation, and ATO packages.
* Review and support the implementation of Security Technical Implementation Guides (STIGs) and vulnerability remediation processes.
* Perform configuration management of cybersecurity baselines, ensuring changes to system design maintain compliance with RMF and NIST SP 800-53 controls.
* Apply system hardening techniques and zero-trust security principles across operating systems, applications, and network devices.
* Analyze and support interconnection security agreements (ISAs) and ensure compliance within approved Authorization boundaries.
* Utilize and support cybersecurity assessment tools including ACAS, STIG Viewer, eMASS, and Security Compliance Checker.
System Life-Cycle Security:
* Participate in the design and implementation of secure systems architecture, providing cybersecurity engineering input from concept through sustainment.
* Conduct risk and vulnerability assessments for systems undergoing upgrades or changes, including penetration and regression testing.
* Support secure coding practices and software assurance reviews to detect and mitigate exploitable flaws.
* Contribute to development and documentation of cybersecurity procedures, security plans, and network diagrams.
* Assist in hardware and software patch management, version control, and baseline integrity monitoring.
Operations & Maintenance
* Provide system administration support for Windows, Linux, and network environments, ensuring cybersecurity compliance.
* Execute cybersecurity best practices during lab and field operations, including monitoring, incident response coordination, and risk reporting.
* Maintain technical documentation, POA&Ms, and audit trails in support of cybersecurity posture tracking.
Job Requirements
Qualifications:
Education: Bachelor's degree in Cybersecurity, Cyber Operations, Cyber Engineering, Information System,
Information Technology, Computer, Electrical, or Electronics Engineering, Software Engineering, Computer
Science, Mathematics with a concentration in Computer Science, or equivalent to above disciplines.
Certification:
* DoD 8570.01-M in accordance with (IAW) DFARS ************ Baseline Certification,
minimum IAT Level II.
Experience:
* Five (5) year of full-time professional experience performing system hardening with demonstrated
* experience in the following areas: Experience supporting Navy, NAVSEA, or DoD cybersecurity programs.
* Proficiency with DISA STIGs, eMASS, ACAS, Nessus, and RMF documentation.
* Knowledge of system hardening, zero-trust frameworks, and cross-domain security solutions.
* Working knowledge of NIST SP 800-37, 800-53, and 800-160 cybersecurity engineering standards.
* Hands-on experience with Windows Server, Linux, and network device administration.
* Strong technical writing and documentation skills for cybersecurity deliverables (CDRLs, POA&Ms, risk assessments, etc.).
Desired Attributes:
* Detail-oriented with a systems-thinking approach to cybersecurity.
* Strong communication and collaboration skills to work across engineering and program teams.
* Demonstrated ability to balance mission assurance, security compliance, and system performance.
The successful candidate must meet eligibility requirements to access sensitive information, which requires US citizenship.
Telos maintains a drug-free workplace and will conduct drug testing on all applicants who have accepted an offer of employment.
Telos Corporation participates in the E-Verify program. Therefore, any employment with Telos will also be contingent upon confirmation from the Social Security Administration ("SSA") and/or the Department of Homeland Security ("DHS") of your authorization to work in the United States. Telos offers excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future.
Telos Corporation and its subsidiaries are committed to equal opportunity for all, without regard to race, religion, color, national origin, citizenship, sex, sexual orientation, gender identity, age, veteran status, disability, genetic information, or any other protected characteristic. Telos Corporation will make reasonable accommodations for known physical or mental limitations of otherwise qualified employees and applicants with disabilities unless the accommodation would impose an undue hardship on the operation of our business. If you are interested in applying for an employment opportunity and feel you need a reasonable accommodation pursuant to the ADA, please contact us at **************. If you require relay service assistance, please click on the following link to review information on your state's relay service: **********************************
Telos Corporation is an EEO/AA employer.
Job Type
Full-Time
Location
Virginia Beach, VA 23461 US (Primary)
Telos offers an excellent compensation packages including salary commensurate with experience and benefits to meet your needs for today and the future. Telos and its subsidiaries are an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status.
Information Systems Security Manager II (ISSM II)
Security architect job in Hampton, VA
Job Details Hampton, VA (JUS) - Hampton, VA Full Time DayDescription
requires a TS/SCI Clearance and Special Access Program Experience*
At System High Corporation-a Top Washington-Area Workplace (The Washington Post, 2023-2025), a Top Workplaces Culture Excellence honoree (April 2025), and a three-time VETS Indexes 3-Star Employer-we protect and advance the nation's most critical missions. As part of our team, you'll tackle complex security challenges across SAP, SCI, and Collateral programs. If you're driven by national security, innovation, and integrity, we want to hear from you.
System High Corporation delivers the most advanced protection and secrecy solutions to secure and strengthen critical missions, programs, operations, and intelligence activities. We are seeking an Information Systems Security Manager (ISSM) II to help contribute to our success and help us solve problems with innovation through intelligence.
The ISSM's primary function serves as a principal advisor on all matters, technical and otherwise, involving the security of information systems under his/her purview. Primary support will be working within Special Access Programs (SAPs) supporting Department of Defense (DoD) agencies, such as HQ Air Force, Office of the Secretary of Defense, and Military Compartment efforts. The position will provide “day-to-day” support for Collateral, Sensitive Compartmented Information (SCI) and Special Access Program (SAP) activities.
Duties include, but not limited to:
Perform oversight of the development, implementation and evaluation of information system security program policy; special emphasis placed upon integration of existing SAP network infrastructures
Develop and oversee operational information systems security implementation policy and guidelines of network security, based upon the Risk Management Framework (RMF) with emphasize on Joint Special Access Program Implementation Guide (JSIG) authorization process
Advise customer on Risk Management Framework (RMF) assessment and authorization issues
Perform risk assessments and make recommendations to DoD agency customers
Advise government program managers on security testing methodologies and processes
Evaluate authorization documentation and provide written recommendations for authorization to government PM's
Develop and maintain a formal Information Systems Security Program
Ensure that all IAOs, network administrators, and other cyber security personnel receive the necessary technical and security training to carry out their duties
Develop, review, endorse, and recommend action by the AO or DAO of system assessment documentation
Ensure approved procedures are in place for clearing, sanitizing, and destroying various types of hardware and media
Develop and execute security assessment plans that include verification that the features and assurances required for each protection level functioning
Maintain a and/or applicable repository for all system authorization documentation and modifications
Develop policies and procedures for responding to security incidents, to include investigating and reporting security violations and incidents
Ensure proper protection or corrective measures have been taken when an incident or vulnerability has been discovered within a system
Ensure that data ownership and responsibilities are established for each authorization boundary, to include accountability, access rights, and special handling requirements
Ensure development and implementation of an information security education, training, and awareness program, to include attending, monitoring, and presenting local cyber security training.
Evaluate threats and vulnerabilities to ascertain whether additional safeguards are needed
Assess changes in the system, its environment, and operational needs that could affect the authorization
Ensure that authorization is accomplished a valid Authorization determination has been given for all authorization boundaries under your purview
Review AIS assessment plans
Coordinate with PSO or cognizant security official on approval of external information systems (e.g., guest systems, interconnected system with another organization)
Conduct periodic assessments of the security posture of the authorization boundaries
Institute and implement a Configuration Control Board (CCB) charter
Ensure configuration management (CM) for security-relevant changes to software, hardware, and firmware and that they are properly documented.
Ensure periodic testing is conducted to evaluate the security posture of IS by employing various intrusion/attack detection and monitoring tools (shared responsibility with ISSOs)
Ensure that system recovery and reconstitution processes developed and monitored to ensure that the authorization boundary can be recovered based on its availability level determination
Ensure all authorization documentation is current and accessible to properly authorized individuals
Ensure that system security requirements are addressed during all phases of the system life cycle
Participate in self-inspections
Periodically review system security to accommodate changes to policy or technology
Coordinate all technical security issues outside of area of expertise or responsibility with ISSE
Provide expert research and analysis in support of expanding programs and area of responsibility as it pertains to cyber security and information technology actives
Develop Assured File Transfers (AFT) on accordance with the JSIG.
Provide leadership, mentoring, and quality assurance for Cyber Security and Information Technology team members
Qualifications
Years of Experience
7 - 9 years related experience
Prior performance in roles such as ISSO or ISSM
Education
Bachelor's degree or equivalent experience (4 years)
Certifications
Must meet position and certification requirements outlined in DoD Directive 8570.01-M for Information Assurance Technician Level 2 or Information Assurance Manager Level 2 within 6 months of the date of hire
Clearance
Current Top-Secret Clearance with SCI Eligibility
Eligibility for access to Special Access Program Information
Willingness to submit to a Counterintelligence polygraph
Other Requirements
Must have working knowledge of DoD, National and applicable service and agency security policy, manuals and standards.
Must be able to regularly lift up to 50 lbs.
Additional Information
This is not designed to cover or contain all job duties required of the employee. There may be additional activities, duties and/or responsibilities that are required for this position that are not listed in this job description.
In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification document form upon hire.
System High is a Military friendly employer. Our extensive work on behalf of the U.S. government offers those who have served in uniform an opportunity to continue to serve their country in a new and exciting way while enjoying a successful civilian career.
System High values the power and strength of diverse backgrounds on the culture and performance of our company. We strive to maintain an inclusive culture to encourage each employee to bring their whole self to the mission.
System High Corporation is committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender, gender identity or expression, veteran status, or any other characteristic protected by law. We are proud to be an equal opportunity workplace.
If you require a reasonable accommodation to apply for a position with us, please email
*************************
.
Legal notices can be viewed on the following PDFs:
Know Your Rights: Workplace Discrimination is Illegal
;
EPPA Notice
;
FMLA Notice
Warning:
Beware of recruitment scams: System High will never request money or personal purchases during the hiring process. Verify all communications come from a systemhigh.com or msg.paycomonline.com email address.
ISSM II - Information Systems Security Manager
Security architect job in Hampton, VA
Come make your mark with Watermark!🎖️ FOUNDED BY USAF VETERANS in 2007, we are proud to be a Service-Disabled Veteran Owned Small Business.🌎 SUBJECT MATTER EXPERTS specializing in security and risk management. We're intimately familiar with DOD security programs and mission requirements.
⭐ OUR CORE VALUES drive every action we take as a company. We strive to exhibit PERSPECTIVE, PASSION, COMMUNICATION, INTEGRITY AND ETHICS, and BALANCE in all we do.
💲 COMPETITIVE BENEFITS PACKAGE to address our employees' physical, mental, emotional, and financial well-being. This includes 100% employer- paid medical insurance, ample paid leave, a free employee assistance program, and a competitive 401k savings plan. At Watermark, our people come first! Information Systems Security Manager II
The ISSM's primary function serves as a principal advisor on all matters, technical and otherwise, involving the security of information systems under their purview. Primary support will be working within Special Access Programs (SAPs) supporting Department of Defense (DoD) agencies, such as HQ Air Force, Office of the Secretary of Defense, and Military Compartment efforts. The position will provide “day-to-day” support for Collateral, Sensitive Compartmented Information (SCI) and Special Access Program (SAP) activities.
In this role you will…
Perform oversight of the development, implementation and evaluation of information system security program policy; special emphasis placed upon integration of existing SAP network infrastructures
Develop and oversee operational information systems security implementation policy and guidelines of network security, based upon the Risk Management Framework (RMF) with emphasize on Joint Special Access Program Implementation Guide (JSIG) authorization process
Advise customer on Risk Management Framework (RMF) assessment and authorization issues
Perform risk assessments and make recommendations to DoD agency customers
Advise government program managers on security testing methodologies and processes
Evaluate authorization documentation and provide written recommendations for authorization to government PMs
Develop and maintain a formal Information Systems Security Program
Ensure that all IAOs, network administrators, and other cyber security personnel receive the necessary technical and security training to carry out their duties
Develop, review, endorse, and recommend action by the AO or DAO of system assessment documentation
Ensure approved procedures are in place for clearing, sanitizing, and destroying various types of hardware and media
Develop and execute security assessment plans that include verification that the features and assurances required for each protection level functioning
Maintain a and/or applicable repository for all system authorization documentation and modifications
Institute and implement a Configuration Control Board (CCB) charter
Develop policies and procedures for responding to security incidents, to include investigating and reporting security violations and incidents
Ensure proper protection or corrective measures have been taken when an incident or vulnerability has been discovered within a system
Ensure that data ownership and responsibilities are established for each authorization boundary, to include accountability, access rights, and special handling requirements
Ensure development and implementation of an information security education, training, and awareness program, to include attending, monitoring, and presenting local cyber security training.
Evaluate threats and vulnerabilities to ascertain whether additional safeguards are needed
Assess changes in the system, its environment, and operational needs that could affect the authorization
Ensure that authorization is accomplished a valid Authorization determination has been given for all authorization boundaries under your purview
Review AIS assessment plans
Coordinate with PSO or cognizant security official on approval of external information systems (e.g., guest systems, interconnected system with another organization)
Conduct periodic assessments of the security posture of the authorization boundaries
Ensure configuration management (CM) for security-relevant changes to software, hardware, and firmware and that they are properly documented
Ensure periodic testing is conducted to evaluate the security posture of IS by employing various intrusion/attack detection and monitoring tools (shared responsibility with ISSOs)
Ensure that system recovery and reconstitution processes developed and monitored to ensure that the authorization boundary can be recovered based on its availability level determination
Ensure all authorization documentation is current and accessible to properly authorized individuals
Ensure that system security requirements are addressed during all phases of the system life cycle
Participate in self-inspections
Periodically review system security to accommodate changes to policy or technology
Coordinate all technical security issues outside of area of expertise or responsibility with ISSE
Provide expert research and analysis in support of expanding programs and area of responsibility as it pertains to cyber security and information technology activities
Develop Assured File Transfers (AFT) on accordance with the JSIG
Provide leadership, mentoring, and quality assurance for Cyber Security and Information Technology team members
Additional duties as assigned
Experience Requirements:
7-9 years related experience
Prior performance in roles such as ISSO or ISSM
Education Requirements:
Bachelor's degree in a related area or equivalent experience (4 years)
Certification Requirements:
IAT Level 3 (CISSP, CASP+ CE, CCNP Security, CISA, etc.) or IAM Level 3
Security Clearance Requirements:
Active/Current TS/SCI.
Must be able to obtain CI Poly.
Other Requirements:
Reports to a physical location which occasionally requires the ability to traverse between buildings
Must be able to regularly lift up to 50 lbs
May require sedentary work at least 50% of the time
Ability to manage stress with a high degree of maturity/professionalism
Demonstrated critical thinking and leadership skills and the ability to work well with others
Effective verbal and written communication skills
All Level I & Level II positions - candidate should possess some Special Access Program (SAP) experience
All Level III positions -candidate should possess 2+ years of Special Access Program (SAP) experience
KEYWORDS: RMF, Risk Management Framework, ICD, Information Assurance, IA, IAO, IAT, IAM, A&A, A+, Network+, Security+, Non-classified Internet Protocol Router Network (NIPRNet), Secret Internet Protocol Router Network (SIPRNet), DISA Security Technical Implementation Guides (STIGs), CISSP, CASP
Watermark provides salary ranges with job postings in states where it is legally required; any other salary ranges associated with our postings are third party estimates and may not be an accurate reflection of Watermark's total compensation package.
Multiple considerations are taken into account when determining the final salary/hour rate, including but not limited to, Contract Wage Determination, education and certifications, relevant work experience, related skills and competencies, as well as Federal Government Contract Labor categories. Central to Watermark's employment philosophy is the wellbeing of our employees which is why we offer a robust benefits package and wellness program alongside of annual base compensation.)
Watermark is an equal opportunity employer. All terms and conditions of employment are established without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, pregnancy, genetic information, disability, veteran status, or any other protected category under applicable federal, state, and local laws.
Auto-ApplySenior Security Analyst
Security architect job in Chesapeake, VA
The Senior Security Analyst will be responsible for supporting MI Technical Solutions SCORE program development by establishing adequate and reliable security policies and procedures for Commander Navy Regional Maintenance Command (CNRMC) and the oversight of Regional Maintenance Centers (RMC) Enterprise security programs, including Personnel Security, Physical Security, Anti-Terrorism/Force Protection, Operations Security and Industrial Security.
Responsibilities:
Responsible for protecting classified national security information and other sensitive information originated, or controlled by CNRMC from theft, loss, misuse, fraud, espionage, or sabotage.
Assists and advises in matters pertaining to the enforcement of regulations governing the receipt, dissemination, reproduction, regarding, transmission, safekeeping, and destruction of classified material.
Technical and administrative support in the collecting, collating, display, analysis, interpretation, and actions associated with organizational security operations, Navy DOD Security Policy and protocol.
Command Security Records Management and Knowledge Management.
Manage Trusted Workforce Enrollment, Visit Access Requests, Personnel Clearance System, and Key Request programs.
Participate with CNRMC member in the Security Community of Practice and other organizational initiatives supporting mission goals and security initiatives.
Assess large data sets and distilling into easily understood summary details for presentation at the Flag/SES level.
Analyzes, plans, advises, and/or evaluates the development and implementation of policy that promotes Fleet readiness, and compliance related to current Department of Defense (DoD), Department of Navy (DoN), Chief of Naval Operations (OPNAV), Fleet Forces Command (FFC), U.S. Pacific Fleet (PACFLT), and Naval Sea Systems Command (NAVSEA) Security Policies.
Contributes to the development and implementation of CNRMC and RMC Enterprise Strategic policies, objectives, and goals. Executes, develops, and implements procedures for compliance, training and development of security related certifications. Provides technical security consultation services and controls matters concerning classification, inventory, safeguarding, handling, transmission, and destruction of classified information.
Serves as an expert for the RMC Enterprise at conferences, briefings, and meetings to inform/convey command/naval positions and/or to persuade executive management to accept controversial changes. Incumbent uses tact and negotiating skills to sell appropriate solutions or develop viable alternatives.
Job Qualifications:
Must have a bachelor's degree and at least 10 years' experience or associates with at least 15 years' experience.
Must have US government security experience.
Must have a working knowledge of the Navy Regional Maintenance organization and knowledge of Navy organizational structure and department codes.
Must have experience and working knowledge with DOD security, dealing with the eight security pillars: Information, Personnel, Physical, Antiterrorism & Force Protection, Industrial, OPSEC, Insider Threat, Security Education, Awareness
Must be familiar with government security related database management systems.
Must maintain a highly trusted persona: security, confidence, and high ethics.
Must have experience in applying Knowledge Management tools and familiarity with Knowledge Management resources.
Must have an advanced knowledge in MS Office Suite (e.g., Excel, PowerPoint, Word, Outlook).
Must be detailed-oriented and able to multiple-task simultaneously
Must have excellent organizational, people management, communication (written and verbal), and problem-solving skills
Must be a team player but be also able to work independently
Requirements:
Must be a U.S. Citizen
Must have the ability to obtain and maintain a U.S. Government Security Clearance at Secret level.
Work may involve sitting or standing for extended periods.
May require lifting and carrying up to 25 lb.
Must have sufficient mobility to enter areas of industrial/commercial facilities where necessary.
Must put forward a professional behavior that enhances productivity and promotes teamwork and cooperation.
Commuting and traveling up to 10% may be required, as needed, to remote installations.
We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.
Auto-ApplyRemote Cloud Security Engineer
Security architect job in Virginia Beach, VA
We're looking for a seasoned Cloud Security Engineer with deep expertise in digital forensics, cloud infrastructure, and automation. This role blends investigative rigor with modern cloud security practices, supporting incident response, threat detection, and posture management across hybrid environments. You'll work independently on complex cases, coach junior staff, and help shape our cloud security strategy.
Key Responsibilities
- Conduct forensic investigations across Windows and Linux systems, recovering deleted, fragmented, or corrupted data.
- Identify and analyze cyber intrusions, fraud, and electronic crimes using endpoint tools like CrowdStrike.
- Automate security workflows and integrate tools like Swimlane for orchestration and response.
- Collaborate with cloud infrastructure teams, leveraging platforms like Wiz for ticket sourcing and posture management.
- Detect steganography, crack passwords, and ensure evidence integrity for potential courtroom presentation.
- Document findings in comprehensive reports and may testify as an expert witness.
- Lead projects independently, solve complex problems, and mentor junior professionals.
Compensation: $55/hr to $60/hr. Exact compensation may vary based on several factors, including skills, experience, and education. Benefit packages for this role will start on the 1st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.
We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to ********************.To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: ****************************************************
Skills and Requirements
o Bachelor's degree + 5 years of relevant experience, OR
o No degree + 7 years of relevant experience
o Proven experience in cloud cybersecurity, especially with tools like CrowdStrike, Wiz, and Swimlane
o Strong background in Windows and Linux environments
o Familiarity with Cloud Security Posture Management (CSPM)
o Not required, but certifications like CISSP, AWS Security, or CCFP are a plus
Security Engineer - Virginia Beach, VA
Security architect job in Virginia Beach, VA
If you love high profile and challenging programing projects supporting the United States Navy - Serco has a great opportunity for you! This Information Security Test Engineer will be on a dynamic team responsible for testing afloat and shore based systems at our offices in Virginia Beach, VA, Panama City Beach FL, or Washington DC. Bring your expertise and collaborative skills to make an impact towards our national security homeland defense.
This position is contingent upon your ability to obtain/maintain/transfer your Secret clearance.
Serco supports the US Navy in the acquisition of new technology used to defend our nation. Our team reviews acquisition documentation, develops cyber test plans, executes cyber test events, collects, and analyzes data and writes test reports. You will be part of a team that works closely with the customers and other Serco teams to deliver cyber-secure systems to the Navy. The team has been supporting Cybersecurity Assessment and Authorization for over 15 years and has been recognized by the Navy for their outstanding contributions.
In this role, you will:
Perform activities necessary for system Assessment and Authorization
Support the program office in creating/gathering necessary artifacts necessary to support an Authorization decision.
Perform both manual and automated cybersecurity testing of systems and components.
Document test results and provide preliminary risk assessment to the Program Manager.
Provide weekly status updates for systems under your purview.
Supports development of Cyber Test Plan for executes test events, collects, and analyzes data, and provides a report on the results.
Create/ update Cybersecurity policies and procedures.
Works directly with senior technical personnel, stakeholders, and project managers in the planning and execution of test events.
Qualifications
To be successful in this role, you will have:
Bachelor's degree and 3 years of experience
An Associates degree and 5 years of experience.
Active DoD Secret Security Clearance.
A Cybersecurity certification. (i.e. CompTIA Security+ CE or higher-level certification)
Proficiency in technical writing.
Proficiency with MS-Office software to include MS Word, MS Excel, MS Power Point.
The ability to travel up to 25%.
Additional desired experience and skills:
Previous experience with DoD Risk Management Framework.
NQV (Navy Qualifier Validator) certification.
If you are interested in supporting and working with our military and sailors and a passionate Serco team- then submit your application now for immediate consideration. It only takes a few minutes and could change your career!
Company Overview
Serco Inc. (Serco) is the Americas division of Serco Group, plc. In North America, Serco's 9,000+ employees strive to make an impact every day across 100+ sites in the areas of Defense, Citizen Services, and Transportation. We help our clients deliver vital services more efficiently while increasing the satisfaction of their end customers. Serco serves every branch of the U.S. military, numerous U.S. Federal civilian agencies, the Intelligence Community, the Canadian government, state, provincial and local governments, and commercial clients. While your place may look a little different depending on your role, we know you will find yours here. Wherever you work and whatever you do, we invite you to discover your place in our world. Serco is a place you can count on and where you can make an impact because every contribution matters.
To review Serco benefits please visit: ************************************************************ If you require an accommodation with the application process please email: ******************** or call the HR Service Desk at ************, option 1. Please note, due to EEOC/OFCCP compliance, Serco is unable to accept resumes by email.
Candidates may be asked to present proof of identify during the selection process. If requested, this will require presentation of a government-issued I.D. (with photo) with name and address that match the information entered on the application. Serco will not take possession of or retain/store the information provided as proof of identity. For more information on how Serco uses your information, please see our Applicant Privacy Policy and Notice.
Serco does not accept unsolicited resumes through or from search firms or staffing agencies without being a contracted approved vendor. All unsolicited resumes will be considered the property of Serco and will not be obligated to pay a placement or contract fee. If you are interested in becoming an approved vendor at Serco, please email *********************.
Serco is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, and other legally protected characteristics.
Pay Transparency
Our Total Rewards package includes competitive pay, performance-based incentives, and benefits that promote well-being and work-life balance-so you can thrive both professionally and personally. Eligible employees also gain access to a wide range of benefits from comprehensive health coverage and health savings accounts to retirement plans, life and disability insurance, and time-off programs that support work-life balance. Program availability may vary based on factors such as contract type, location, hire date, and applicable collective bargaining agreements.
Salary range: The range for this position can be found at the top of the posting. This range is provided as a general guideline and represents a good faith estimate across all experience levels. Actual base salary will be determined by a variety of factors, including but not limited to, the scope of the role, relevant experience, job-related knowledge, education and training, key skills, and geographic market considerations. For roles available in multiple states, the range may vary to reflect differences in local labor markets. In addition to base salary, eligible positions may include other forms of compensation such as annual bonuses or long-term incentive opportunities.
Benefits HIGHLIGHTS - Comprehensible Benefits for Full-time Employees (Part-time members receive a customized package tailored to their role).
Medical, dental, and vision insurance
Robust vacation and sick leave benefits, and flexible work arrangements where permitted by role or contract
401(k) plan that includes employer matching funds
Tuition reimbursement program
Life insurance and disability coverage
Optional coverages you can buy, including pet insurance, home and auto insurance, additional life and accident insurance, critical illness insurance, group legal, ID theft protection
Birth, adoption, parental leave benefits
Employee Assistance Plan that includes counseling conditions
Specific benefits are dependent upon the specific contract as well as whether the position is covered by a collective bargaining agreement or the Service Contract Act.
To review all Serco benefits please visit: ******************************************
Serco complies with all applicable state and local leave laws, including providing time off under the Colorado Healthy Families and Workplaces Act for eligible Colorado residents, in alignment with our policies and benefit plans. The application window for this position is for no more than 60 days. We encourage candidates to apply promptly after the posting date, as the position may close earlier if filled or if the application volume exceeds expectations. Please submit applications exclusively through Serco's external (or internal) career site. This is a U.S.-based role. If an applicant has any concerns with job posting compliance, please send an email to: ********************.
Auto-ApplyInformation Systems Security Officer
Security architect job in Yorktown, VA
Overview/ Job Responsibilities
Sev1Tech is looking for an Information Systems Security Officer (ISSO) who can prepare, submit, and monitor accreditation packages through the Risk Management Framework (RMF) process ensuring receipt of Interim Authority to Test (IATT) or Authority to Operate (ATO) in support of the Naval Supply Systems Command (NAVSUP) Ordnance Information System (OIS) program. The ISSO will maintain current operating cybersecurity environment within AWS GovCloud operating environment.
The ISSO will apply their knowledge of DOD Cybersecurity processes and best practices used to secure technical solutions, including applications, systems, architectures, and infrastructures on-site in Yorktown, VA (2nd preference is Mechanicsburg PA) 5 days a week.
This critical role will also be responsible for:
Meeting and maintaining DOD RMF CYBER certification and accreditation requirements, including researching, testing and providing technical information for obtaining required system accreditation.
Developing Security Requirements Traceability Matrix (STRM), aligning security requirements with the individual components of a system.
Performing checks of systems and applications for Information Assurance vulnerabilities using approved automated IA tools (ACAS, VRAM, SCAP-compliant scanners, DISA STIG Viewer, etc.), custom scripts and manual processes (i.e., Security Technical Implementation Guides [STIGS]).
Monitoring OIS security posture, documenting raw findings in a quick look report, for customer notification. Create and maintain system Plan of Action and Milestones (POA&Ms) of open vulnerabilities and applied mitigations utilizing Department of Defense Enterprise Mission Assurance Support Service (eMASS) tool.
Supporting the development and documentation of risk assessment results and recommendations using identified threats, applicable vulnerabilities, and likelihood of occurrence within context of risk tolerances
Monitor all database and application software used in OIS for version change control and nearing/exceeding last date allowed in the Department of Navy Application Database Management System (DADMS).
Coordinating/interfacing with OIS Technical Team, Defense Information Systems Agency (DISA), IA Staff, and Fleet Cyber Command to document, review, revise, and submit changes related to Ports, Protocols, and Services Management (PPSM), Access Control Lists (ACLs), and Whitelists. This support includes preparing and submitting the registration forms for new requirements.
Supporting DOD IT Portfolio Repository-DON (DITPR-DON) to support the annual review.
Providing recommendations for corrective actions and mitigation strategies.
Producing security risk assessment briefs and reports for delivery to stakeholders and senior management.
Support the DevSecOps team in implementing Cyber Security requirements to achieve and maintain accreditation and authority to operate within specified timelines.
Interpret OS, web server, and database scans to facilitate resolving security findings with the DevSecOps team and external teams
Conducting security monitoring through the use of VRAM (Vulnerability Remediation Asset Manager), and applying mitigation techniques to reduce and remediate vulnerabilities
Coordinating / troubleshooting with afloat platforms to assist in identification and remediation of cybersecurity vulnerabilities within the Program of Record (POR) area of responsibility
Ensure systems are scanned, patched, and compliant with DoD policy
Troubleshoot Windows and RHEL security policies
Support with configurations including CloudWatch logs, registering systems, reporting and manage findings
Assess systems to determine applicable IA controls based on design, architecture, and data
Attend risk management and system meetings to provide status updates and take action items
Other duties as required
Minimum Qualifications
Must have DOD Secret level clearance to start (T3 background investigation)
Certification Requirement: Directive 8570.1/8140 - IAM-1: Security+
Allowable substitutes for Security+ include CAP, CND, Cloud+, GSLC, HCISPP
Bachelor's degree with a minimum of 5 years of relevant experience. (4 years of additional experience in lieu of Bachelor's degree is acceptable)
Experience performing risk assessments and audits.
Knowledge of the overall Risk Management Framework and NIST compliance as a security professional.
Familiarity with DoD Cyber Security policies and requirements
Experience presenting to clients or management to present technical and non-technical information to allow key personnel to make informed decisions.
Familiarity with information security documents, government orders, notices, and guidelines.
Experience documenting and maintaining systems running in AWS GovCloud (DoD preferred)
Ability to work independently to create and update Security Plans, Contingency Plans, and other security documents
Desired Qualifications
Bachelor's degree in Engineering, IT, Computer Science, or related field or equivalent
Experience using DoD approved tools (ACAS, SCAP-compliant scanners, eMASS, etc.).
Experience successfully advising stakeholders through the ATO process.
Experience supporting DoD (Navy preferred) enterprise application in the AWS GovCloud (up to IL 6) in a security capacity
CISSP or equivalent certification
AWS Certified Security certification
About Sev1Tech LLC
Welcome to Sev1Tech! Founded in 2010, we are proud to be a leading provider of IT modernization, engineering, and program management solutions. Our commitment is to deliver exceptional program and IT support services that empower critical missions for both Federal and Commercial clients.
At Sev1Tech, our mission is clear: Build better companies. Enable better government. Protect our nation. Build better humans across the country. We believe that through innovation and dedication, we can make a significant impact on the communities we serve.
Join the Sev1Tech family, where your potential for greatness is limitless! Here, you will not only achieve remarkable accomplishments but also enjoy a fulfilling and rewarding career progression. We invite you to explore opportunities with us and become part of a team that values your contributions and growth.
Ready to take the next step? Apply directly through our website: Sev1Tech Careers and use the hashtag #join Sev1Tech to connect with us on social media!
For any additional questions or to submit referrals, feel free to reach out to ***********************.
Auto-ApplyPublic Key Infrastructure (PKI) Auditor & Trainer/Information Systems Security Officer (ISSO)
Security architect job in Norfolk, VA
Input is currently seeking a Public Key Infrastructure (PKI) Auditor & Trainer/Information Systems Security Officer (ISSO) for a potential contract to assist the Department of the Navy (DON) Public Key Infrastructure (KPI) and Key Management Infrastructure (KMI) Services.
Location(s): Andrews AFB, MD; Norfolk, VA; San Diego, CA; and Pearl Harbor, HI
Key Responsibilities:
Maintain Naval Communications Security Material System (NCMS) PKI Registration Authority (RA) and Local RA (LRA) systems, perform operating system updates and validate machines are operating in accordance with Authority to Operate (ATO).
Coordinated with Navy Marine Corps Intranet (NMCI) for machine and network troubleshooting.
Maintain standard system security and disaster recovery plans and ensure implementation across the detachment.
Maintain enterprise architecture Standard Operating Procedures (SOPs) and documentation to include illustrations network topology, system access requirements and processes for obtaining material and replacement hardware and software.
Function as the NCMS PKI liaison to external LRA sites providing assistance and information pertaining to System access, network access, peripheral devices. Liaison support also includes working with the government Information System Security Managers (ISSM), and Information System Security Officers (ISSO) to achieve and maintain ATO requirements.
Perform Cybersecurity tasks to include validation of Assured Compliance Assessment System (ACAS) scans and patching, apply Security Technical Implementation Guides (STIGs).
Properly secure and maintain PKI archives until moved to long term storage facility.
Perform backups, validate scans, perform software updates as needed, and review workstation system logs.
Complete compliance audits in accordance with Joint Force Head Quarters Department of Defense Information Network (JFHQ-DODIN) PKI Audit requirements, audits drafts, reports, track audit Plan of Action and Milestones (POA&M), schedule audits and perform Training and Assist Visits (TAV).
Schedule, conduct and update PKI LRA, Trusted Agent (TA), System Administrator (SA), ISSO classroom training for newly appointed personnel through the Navy.
Qualifications:
Understanding of Department of Defense (DoD) Common Access Card (CAC) characteristics and CAC/Smart card operation and procedures to include CAC middleware and hardware, with a least one-year experience.
Knowledge of the principles, concepts, and methodology of Information Technology (IT) processing and a working knowledge of computer system architecture, performance characteristics and DoD and Service IT security policies with a least one-year experience.
Familiar with DoD 8520.02, Public Key Infrastructure and Public Key Enabling.
Skilled verbal and written communication techniques required to conduct meetings, and prepare reports and other correspondence
Must be able to work independently.
Possess analytical processing skills.
Possess DoD 8140 qualification of 461 Basic or 451 Intermediate upon first day of employment and continue to maintain extended training requirements as identified in SECNAV M-5239.2. Navy COOL - Navy Cyber Workforce (CWF) Program - CWF Model
JFHQ-DODIN PKI Auditor Qualified or served as Navy RA, LRA or PKI ISSO for 3 years.
Cyber Network Defense Analyst
Security architect job in Hampton, VA
We're seeking a Cyber Network Defense Analyst (CND) to support the Intelligence, Surveillance, Reconnaissance (ISR) Wing Security Office and the Distributed Common Ground System (DCGS) Processing, Exploitation, Dissemination (PED) Operations Center (DPOC).
Job Responsibilities:
Performs forensic analysis of digital information and gathers and handles evidence.
Identifies network computer intrusion evidence and perpetrators.
Investigates computer fraud or other electronic crimes, crack files and system passwords, detects steganography and recovers deleted, fragmented and corrupted data from digital media of all types.
Ensures chain of custody and control procedures, documents procedures and findings in a manner suitable for courtroom presentation and prepares comprehensive written notes and reports.
May be required to testify in court as expert witnesses.
Required Skills and Experience:
BA/BS
3+ years of network operations experience
Active TS/SCI
CompTIA Security+
CompTIA Cybersecurity Analyst (CYSA)
Shift work required
Preferred Skills and Experience:
Working knowledge of AF DCGS and AF ISR operations is desired
Spectrum is proud of our diverse workforce and diligently committed to remaining an Equal Opportunity Employer. Spectrum governs all employment related decisions without regard to an individual's race, color, sex, religion, national origin, age, disability, veteran status or any other protected classification.
[EEO/AA/Protected Veterans/Individuals with Disability employer].
Work schedule: 10-hour rotational shift work. Rotations are quarterly between day and mid shifts and monthly between weekday and weekend shifts.
Auto-ApplySenior Security Analyst
Security architect job in Chesapeake, VA
The Senior Security Analyst will be responsible for supporting MI Technical Solutions SCORE program development by establishing adequate and reliable security policies and procedures for Commander Navy Regional Maintenance Command (CNRMC) and the oversight of Regional Maintenance Centers (RMC) Enterprise security programs, including Personnel Security, Physical Security, Anti-Terrorism/Force Protection, Operations Security and Industrial Security.
Responsibilities:
Responsible for protecting classified national security information and other sensitive information originated, or controlled by CNRMC from theft, loss, misuse, fraud, espionage, or sabotage.
Assists and advises in matters pertaining to the enforcement of regulations governing the receipt, dissemination, reproduction, regarding, transmission, safekeeping, and destruction of classified material.
Technical and administrative support in the collecting, collating, display, analysis, interpretation, and actions associated with organizational security operations, Navy DOD Security Policy and protocol.
Command Security Records Management and Knowledge Management.
Manage Trusted Workforce Enrollment, Visit Access Requests, Personnel Clearance System, and Key Request programs.
Participate with CNRMC member in the Security Community of Practice and other organizational initiatives supporting mission goals and security initiatives.
Assess large data sets and distilling into easily understood summary details for presentation at the Flag/SES level.
Analyzes, plans, advises, and/or evaluates the development and implementation of policy that promotes Fleet readiness, and compliance related to current Department of Defense (DoD), Department of Navy (DoN), Chief of Naval Operations (OPNAV), Fleet Forces Command (FFC), U.S. Pacific Fleet (PACFLT), and Naval Sea Systems Command (NAVSEA) Security Policies.
Contributes to the development and implementation of CNRMC and RMC Enterprise Strategic policies, objectives, and goals. Executes, develops, and implements procedures for compliance, training and development of security related certifications. Provides technical security consultation services and controls matters concerning classification, inventory, safeguarding, handling, transmission, and destruction of classified information.
Serves as an expert for the RMC Enterprise at conferences, briefings, and meetings to inform/convey command/naval positions and/or to persuade executive management to accept controversial changes. Incumbent uses tact and negotiating skills to sell appropriate solutions or develop viable alternatives.
Job Qualifications:
Must have a bachelor's degree and at least 10 years' experience or associates with at least 15 years' experience.
Must have US government security experience.
Must have a working knowledge of the Navy Regional Maintenance organization and knowledge of Navy organizational structure and department codes.
Must have experience and working knowledge with DOD security, dealing with the eight security pillars: Information, Personnel, Physical, Antiterrorism & Force Protection, Industrial, OPSEC, Insider Threat, Security Education, Awareness
Must be familiar with government security related database management systems.
Must maintain a highly trusted persona: security, confidence, and high ethics.
Must have experience in applying Knowledge Management tools and familiarity with Knowledge Management resources.
Must have an advanced knowledge in MS Office Suite (e.g., Excel, PowerPoint, Word, Outlook).
Must be detailed-oriented and able to multiple-task simultaneously
Must have excellent organizational, people management, communication (written and verbal), and problem-solving skills
Must be a team player but be also able to work independently
Requirements:
Must be a U.S. Citizen
Must have the ability to obtain and maintain a U.S. Government Security Clearance at Secret level.
Work may involve sitting or standing for extended periods.
May require lifting and carrying up to 25 lb.
Must have sufficient mobility to enter areas of industrial/commercial facilities where necessary.
Must put forward a professional behavior that enhances productivity and promotes teamwork and cooperation.
Commuting and traveling up to 10% may be required, as needed, to remote installations.
We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.
Auto-ApplySecurity Engineer - Virginia Beach, VA
Security architect job in Virginia Beach, VA
If you love high profile and challenging programing projects supporting the United States Navy - Serco has a great opportunity for you! This Information Security Test Engineer will be on a dynamic team responsible for testing afloat and shore based systems at our offices in Virginia Beach, VA, Panama City Beach FL, or Washington DC. Bring your expertise and collaborative skills to make an impact towards our national security homeland defense.
This position is contingent upon your ability to obtain/maintain/transfer your Secret clearance.
Serco supports the US Navy in the acquisition of new technology used to defend our nation. Our team reviews acquisition documentation, develops cyber test plans, executes cyber test events, collects, and analyzes data and writes test reports. You will be part of a team that works closely with the customers and other Serco teams to deliver cyber-secure systems to the Navy. The team has been supporting Cybersecurity Assessment and Authorization for over 15 years and has been recognized by the Navy for their outstanding contributions.
In this role, you will:
Perform activities necessary for system Assessment and Authorization
Support the program office in creating/gathering necessary artifacts necessary to support an Authorization decision.
Perform both manual and automated cybersecurity testing of systems and components.
Document test results and provide preliminary risk assessment to the Program Manager.
Provide weekly status updates for systems under your purview.
Supports development of Cyber Test Plan for executes test events, collects, and analyzes data, and provides a report on the results.
Create/ update Cybersecurity policies and procedures.
Works directly with senior technical personnel, stakeholders, and project managers in the planning and execution of test events.
Qualifications
To be successful in this role, you will have:
Bachelor's degree and 3 years of experience
An Associates degree and 5 years of experience.
Active DoD Secret Security Clearance.
A Cybersecurity certification. (i.e. CompTIA Security+ CE or higher-level certification)
Proficiency in technical writing.
Proficiency with MS-Office software to include MS Word, MS Excel, MS Power Point.
The ability to travel up to 25%.
Additional desired experience and skills:
Previous experience with DoD Risk Management Framework.
NQV (Navy Qualifier Validator) certification.
If you are interested in supporting and working with our military and sailors and a passionate Serco team- then submit your application now for immediate consideration. It only takes a few minutes and could change your career!
Company Overview
Serco Inc. (Serco) is the Americas division of Serco Group, plc. In North America, Serco's 9,000+ employees strive to make an impact every day across 100+ sites in the areas of Defense, Citizen Services, and Transportation. We help our clients deliver vital services more efficiently while increasing the satisfaction of their end customers. Serco serves every branch of the U.S. military, numerous U.S. Federal civilian agencies, the Intelligence Community, the Canadian government, state, provincial and local governments, and commercial clients. While your place may look a little different depending on your role, we know you will find yours here. Wherever you work and whatever you do, we invite you to discover your place in our world. Serco is a place you can count on and where you can make an impact because every contribution matters.
To review Serco benefits please visit: ************************************************************ If you require an accommodation with the application process please email: ******************** or call the HR Service Desk at ************, option 1. Please note, due to EEOC/OFCCP compliance, Serco is unable to accept resumes by email.
Candidates may be asked to present proof of identify during the selection process. If requested, this will require presentation of a government-issued I.D. (with photo) with name and address that match the information entered on the application. Serco will not take possession of or retain/store the information provided as proof of identity. For more information on how Serco uses your information, please see our Applicant Privacy Policy and Notice.
Serco does not accept unsolicited resumes through or from search firms or staffing agencies without being a contracted approved vendor. All unsolicited resumes will be considered the property of Serco and will not be obligated to pay a placement or contract fee. If you are interested in becoming an approved vendor at Serco, please email *********************.
Serco is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, and other legally protected characteristics.
Auto-Apply