Security Lead (Vulnerability Management) - SF/NYC/Remote (US)
Cogent Security, Inc.
Remote job
Cogent Security is on a mission to stop breaches and prevent cybercrime by innovating at the frontier of generative AI systems. We are building the world's first AI cyber taskforce, composed of AI agents capable of human-caliber reasoning and execution of cybersecurity tasks, that autonomously protects organizations from emerging threats. The early adopters of our technology include some of the world's most important institutions, spanning public companies, elite universities, and Fortune 500 corporations across industries.
Cogent was founded by a seasoned team of former engineering and product leaders, who bring decades of experience across cybersecurity and technology. The team is fully in-person in San Francisco and New York, and consists of the top software engineering and machine learning talent from leading companies such as Abnormal Security, Coinbase, Microsoft, Tesla, Stripe and more. To support our ambitious growth plans, we recently raised a large Seed round led by Greylock Partners and leading angels across AI, cybersecurity, and enterprise software (e.g. Reid Hoffman and founders of Abnormal, Datadog, and other top companies).
As we execute on our mission, we are constantly pushing ourselves to ACHIEVe:
Ambition for Excellence
We work backwards from the way things should be and constantly measure our progress against it
Customer Centricity
We obsess over the problems our customers face and relentlessly innovate to find the best solutions
Intellectual Honesty
We embrace hard conversations and actively seek the truth
Intentionality
We exhibit good judgment and are thoughtful about tradeoffs
Extreme Ownership
We take pride in our work and never say the words “not my problem”
Velocity / Bias for Action
We don't leave for tomorrow what can be done today
About the Role
As Security Lead, you will be both a key architect of our product and a steward of Cogent's own operational security.
What You'll Do
Shape the Cogent product at the frontier of AI and cybersecurity
Work hand-in-hand with machine learning engineers to build AI agents grounded in real-world security workflows
Contribute deep domain insight to shape product strategy, roadmap, and core capabilities
Build the world's first AI-native cybersecurity Org
Extend and evolve Cogent's security posture, systems, and incident response capabilities to create the strongest cyber program in the industry
Implement processes and tools to protect Cogent and our customers end to end
Educate the market and elevate the industry
Write thought-provoking content, partner with customers, and speak credibly about the role of AI in vulnerability management
Help define how the industry thinks about autonomous security
What You'll Bring
You are a top 1% builder who thrives at the intersection of security and engineering. You bring:
10+ years of deep, hands-on experience in security engineering
Expertise in vulnerability management across the attack surface
Fluency in Python or a comparable language, with a passion for automation
A track record of operating at scale in high-stakes, fast-paced environments
A bias for clarity, velocity, and technical rigor
(Bonus) Experience working closely with ML, AI, or data science teams
For California Based Applicants
The standard base salary range for this position is $100,000 - $300,000 annually. Compensation offered will be determined by factors such as location, job level, job-related knowledge, skills, and experience. Certain roles may be eligible for variable compensation, equity, and benefits.
We are committed to building an inclusive and diverse company. We do not discriminate based on gender, ethnicity, sexual orientation, religion, civil or family status, age, disability, or race.
#J-18808-Ljbffr
$36k-63k yearly est. 3d ago
Looking for a job?
Let Zippia find it for you.
Senior PM, AI Security & DLP Platform (Hybrid)
Nightfall
Remote job
A cloud data protection company based in California is seeking a Product Manager to drive development for endpoint DLP features. The ideal candidate will have 4-6 years of experience in product management at a SaaS startup, with strong communication skills and an execution-oriented mindset. This role offers the chance to work closely with engineering and sales teams, ensuring successful product adoption and customer satisfaction within a hybrid work environment.
#J-18808-Ljbffr
$95k-152k yearly est. 22h ago
Senior Acquisition SME - Remote Expert in Systems, Logistics & Security
Sd Solutions, LLC
Remote job
A consulting firm is seeking a Functional Subject Matter Expert to provide expert analysis in acquisition domains such as systems engineering and logistics. The role requires a minimum of 15 years of experience in relevant functional areas and a bachelor's degree. Candidates should possess strong analytical documentation skills and the ability to support federal acquisition programs. The position is primarily remote with occasional travel for team meetings and briefings.
#J-18808-Ljbffr
A leading behavioral health technology company is seeking a Manager of Information Security. This role focuses on overseeing the Security Assurance function, ensuring compliance with HIPAA and SOC 2 standards. The ideal candidate has over 7 years of experience in Information Security, including hands-on experience with Vanta. This position offers the flexibility of remote work in multiple U.S. states and includes generous health benefits and a commitment to inclusivity.
#J-18808-Ljbffr
$39k-67k yearly est. 2d ago
CISO - Remote, AI-Driven Security Leader for Fintech
Candescent Technologies Corporation
Remote job
A leading fintech solutions provider is seeking a Chief Information Security Officer (CISO) in Atlanta. This key role involves directing enterprise security strategy, managing regulatory compliance, and advancing AI-based security initiatives. The successful candidate will possess extensive experience in information security within financial services sectors. Join us to shape the future of secure digital banking.
#J-18808-Ljbffr
$28k-48k yearly est. 1d ago
Security Specialist III
JSOP8
Remote job
JT4, LLC provides engineering and technical support to multiple western test ranges for the U.S. Air Force, Space Force, and Navy under the Joint Range Technical Services Contract, better known as J-Tech II. JT4 develops and maintains realistic, integrated test and training environments and prepares our nation's war-fighting aircraft, weapons systems, and aircrews for today's missions and tomorrow's global challenges.
JOB SUMMARY - ESSENTIAL FUNCTIONS/DUTIES
Provide administrative and personnel security support to the unit manager and security staff.
Employee will be responsible for performing the following functions/duties:
Performs the daily administrative tasks in support of the site security department
Communicates with the clearance granting agency regarding status of clearances and periodic
re-investigations for employees/consultants
Obtains certification of existing clearance levels for employees/consultants and for prospective employees from appropriate customer/agency sponsor
Issues security badges to designated employees and visitors
Maintain logs and records of badges issued and related information
Schedules initial, periodic and exit briefings and notifies supervisor and employee of schedule
Oversees departmental coordination with employees/consultants for timely submittal of documents for initial clearances and periodic reinvestigations; fingerprint employees/consultants as required
Facilitates security briefings for individuals/groups as required
Provides work direction to lower level department clerical/administrative personnel
Performs other related tasks as directed
REQUIREMENTS - EDUCATION, TECHNICAL, AND WORK EXPERIENCE
Associate's degree or equivalent military or technical school and five years specifically related work experience in the NISPOM/SAP/SCI security fields, complemented by formal training such as successful completion of the Industrial Security Management Course. Must be very knowledgeable with the rules and regulations of the National Industrial Security Program Operation Manual (NISPOM) pertaining to all aspects of security.
In addition, a SecuritySpecialist III must possess the following qualifications:
Must have excellent communication skills, both written and oral
Must be proficient operating personal computers using Microsoft Word, Excel, and graphics software, and possess data base management experience
Must be familiar with a standard intel computer system, laminating machine and professional instamatic camera
Must qualify for and maintain a government security clearance
Must possess a valid, state-issued driver's license
SALARY
The expected salary range for this position is $67,000 to $84,000 annually.
Note: The salary range offered for this position is a good faith description of the expected salary range this role will pay. JT4, LLC considers factors such as (but not limited to) responsibilities of the position, candidate's work experience, education/training, key skills, internal peer equity, as well as, market and business considerations when extending an offer.
BENEFITS
Medical, Dental, Vision Insurance
Benefits Active on Day 1
Life Insurance
Health Savings Accounts/FSA's
Disability Insurance
Paid Time Off
401(k) Plan Options with Employer Match
JT4 will match 50%, up to an 8% contribution
100% Immediate Vesting
Tuition Reimbursement
OTHER RESPONSIBILITIES
Each employee must read, understand, and implement the general and specific operational, safety, quality, and environmental requirements of all plans, procedures, and policies pertaining to their job.
WORKING CONDITIONS
This position involves work typical of an office environment with no unusual hazards. There is occasional lifting (up to 20 pounds), constant sitting and use of a computer terminal, constant use of sight abilities while writing, reviewing, and editing documents, constant use of speech/hearing abilities for routine communications. Must maintain constant mental alertness.
Routine travel to remote work locations may be required.
DISCLAIMER
The above statements are intended to describe the general nature and level of work being performed by personnel assigned to this classification. They are not intended to be construed as an exhaustive list of all responsibilities, duties, and skills required of persons so classified.
Tasking is in support of a federal government contract that requires U.S. citizenship. Some jobs may require a candidate to be eligible for a government security clearance, state-issued driver's license or other licenses / certifications and the inability to obtain and maintain the required clearance, license or certification may affect an employee's ability to maintain employment.
SCC: JSOP8, JCIS11; A2NTTR
$67k-84k yearly 10h ago
Security Specialist III
JT3 4.3
Remote job
JT4, LLC provides engineering and technical support to multiple western test ranges for the U.S. Air Force, Space Force, and Navy under the Joint Range Technical Services Contract, better known as J-Tech II. JT4 develops and maintains realistic, integrated test and training environments and prepares our nation's war-fighting aircraft, weapons systems, and aircrews for today's missions and tomorrow's global challenges.
RANGE POSITION DESCRIPTION - ESSENTIAL FUNCTIONS/DUTIES
This position includes support in ongoing development and implementation of general and program specific security processes and procedures to include the advisement, planning, implementation, oversight, monitoring, analysis, reporting and assistance in the execution of security operations for a Special Access Programs (SAPs) and associated Facilities (SAPFs). Candidates with certification under the Security Personnel Education and Development program are highly preferred. Candidates with knowledge and experience with JADE are highly preferred. An Active TOP SECRET clearance is required for this position. Primary hours can change as dictated by mission requirements.
Performs the daily administrative tasks in support of the site security department.
Communicates with the clearance granting agency regarding status of clearances and periodic re-investigations for employees/consultants.
Obtains certification of existing clearance levels for employees/consultants and for prospective employees from appropriate customer/agency sponsor.
Issues security badges to designated employees and visitors. Maintain logs and records of badges issued and related information.
Schedules initial, periodic and exit briefings and notifies supervisors and employees of schedule.
Coordinates with employees/consultants for timely submittal of documents for initial clearances and periodic reinvestigations; fingerprint employees/consultants as required.
Assists in facilitating security briefings for individuals/groups as required.
Performs other related tasks as directed.
REQUIREMENTS - EDUCATION, TECHNICAL, AND WORK EXPERIENCE
Associate's Degree or equivalent military or technical school and 5 years specifically related work experience in the NISPOM/SAP/SCI security fields, complemented by formal training such as successful completion of the Industrial Security Management Course. Must be knowledgeable with the rules and regulations of the National Industrial Security Program Operation Manual (NISPOM) pertaining to all aspects of security. Must have excellent communication skills, both written and oral. Must be proficient operating personal computers using Microsoft Word, Excel, and graphics software, and possess database management experience. Familiar with a mainframe computer terminal, laminating machine and professional instamatic camera. Must possess a current, State issued driver's license. Must have a current government security clearance and special access. Must be a U.S. citizen.
SALARY
The expected pay range for this position is $84,000 to $92,000 annually.
Note: The salary range offered for this position is a good faith description of the expected salary range this role will pay. JT4, LLC considers factors such as (but not limited to) responsibilities of the position, candidate's work experience, education/training, key skills, internal peer equity, as well as, market and business considerations when extending an offer.
BENEFITS
Medical, Dental, Vision Insurance
**Benefits Active on Day 1
Life Insurance
Health Savings Accounts/FSA's
Disability Insurance
Paid Time Off
401(k) Plan Options with Employer Match
JT4 will match 50%, up to an 8% contribution
100% Immediate Vesting
Tuition Reimbursement
OTHER RESPONSIBILITIES
Each employee must read, understand, and implement the general and specific operational, safety, quality, and environmental requirements of all plans, procedures, and policies pertaining to their job.
WORKING CONDITIONS
This position involves work typical of an office environment with no unusual hazards. There is occasional lifting (up to 20 pounds), constant sitting and use of a computer terminal, constant use of sight abilities while writing, reviewing, and editing documents, constant use of speech/hearing abilities for routine communications. Must maintain constant mental alertness. Routine travel to remote work locations may be required.
DISCLAIMER
The above statements are intended to describe the general nature and level of work being performed by personnel assigned to this classification. They are not intended to be construed as an exhaustive list of all responsibilities, duties, and skills required of persons so classified.
Tasking is in support of a Federal Government Contract that requires U.S. citizenship. Some jobs may require a candidate to be eligible for a government security clearance, state-issued driver's license or other licenses/certifications, and the inability to obtain and maintain the required clearance, license or certification may affect an employee's ability to maintain employment.
SCC: JSOP8, JCIS11, A1412TW
$84k-92k yearly 11h ago
Security Specialist III
A1412TW
Remote job
JT4, LLC provides engineering and technical support to multiple western test ranges for the U.S. Air Force, Space Force, and Navy under the Joint Range Technical Services Contract, better known as J-Tech II. JT4 develops and maintains realistic, integrated test and training environments and prepares our nation's war-fighting aircraft, weapons systems, and aircrews for today's missions and tomorrow's global challenges.
RANGE POSITION DESCRIPTION - ESSENTIAL FUNCTIONS/DUTIES
This position includes support in ongoing development and implementation of general and program specific security processes and procedures to include the advisement, planning, implementation, oversight, monitoring, analysis, reporting and assistance in the execution of security operations for a Special Access Programs (SAPs) and associated Facilities (SAPFs). Candidates with certification under the Security Personnel Education and Development program are highly preferred. Candidates with knowledge and experience with JADE are highly preferred. An Active TOP SECRET clearance is required for this position. Primary hours can change as dictated by mission requirements.
Performs the daily administrative tasks in support of the site security department.
Communicates with the clearance granting agency regarding status of clearances and periodic re-investigations for employees/consultants.
Obtains certification of existing clearance levels for employees/consultants and for prospective employees from appropriate customer/agency sponsor.
Issues security badges to designated employees and visitors. Maintain logs and records of badges issued and related information.
Schedules initial, periodic and exit briefings and notifies supervisors and employees of schedule.
Coordinates with employees/consultants for timely submittal of documents for initial clearances and periodic reinvestigations; fingerprint employees/consultants as required.
Assists in facilitating security briefings for individuals/groups as required.
Performs other related tasks as directed.
REQUIREMENTS - EDUCATION, TECHNICAL, AND WORK EXPERIENCE
Associate's Degree or equivalent military or technical school and 5 years specifically related work experience in the NISPOM/SAP/SCI security fields, complemented by formal training such as successful completion of the Industrial Security Management Course. Must be knowledgeable with the rules and regulations of the National Industrial Security Program Operation Manual (NISPOM) pertaining to all aspects of security. Must have excellent communication skills, both written and oral. Must be proficient operating personal computers using Microsoft Word, Excel, and graphics software, and possess database management experience. Familiar with a mainframe computer terminal, laminating machine and professional instamatic camera. Must possess a current, State issued driver's license. Must have a current government security clearance and special access. Must be a U.S. citizen.
SALARY
The expected pay range for this position is $84,000 to $92,000 annually.
Note: The salary range offered for this position is a good faith description of the expected salary range this role will pay. JT4, LLC considers factors such as (but not limited to) responsibilities of the position, candidate's work experience, education/training, key skills, internal peer equity, as well as, market and business considerations when extending an offer.
BENEFITS
Medical, Dental, Vision Insurance
**Benefits Active on Day 1
Life Insurance
Health Savings Accounts/FSA's
Disability Insurance
Paid Time Off
401(k) Plan Options with Employer Match
JT4 will match 50%, up to an 8% contribution
100% Immediate Vesting
Tuition Reimbursement
OTHER RESPONSIBILITIES
Each employee must read, understand, and implement the general and specific operational, safety, quality, and environmental requirements of all plans, procedures, and policies pertaining to their job.
WORKING CONDITIONS
This position involves work typical of an office environment with no unusual hazards. There is occasional lifting (up to 20 pounds), constant sitting and use of a computer terminal, constant use of sight abilities while writing, reviewing, and editing documents, constant use of speech/hearing abilities for routine communications. Must maintain constant mental alertness. Routine travel to remote work locations may be required.
DISCLAIMER
The above statements are intended to describe the general nature and level of work being performed by personnel assigned to this classification. They are not intended to be construed as an exhaustive list of all responsibilities, duties, and skills required of persons so classified.
Tasking is in support of a Federal Government Contract that requires U.S. citizenship. Some jobs may require a candidate to be eligible for a government security clearance, state-issued driver's license or other licenses/certifications, and the inability to obtain and maintain the required clearance, license or certification may affect an employee's ability to maintain employment.
SCC: JSOP8, JCIS11, A1412TW
$84k-92k yearly 10h ago
ServiceNow Security Specialist (REMOTE)
Koniag Government Services 3.9
Remote job
Koniag Management Solutions, LLC a Koniag Government Services company, is seeking a ServiceNow SecuritySpecialist to support KMS and our government customer. This position is remote. This position requires the candidate to be able to obtain a Public Trust.
We offer competitive compensation and an extraordinary benefits package including health, dental and vision insurance, 401K with company matching, flexible spending accounts, paid holidays, three weeks paid time off, and more.
Koniag Management Solutions (KMS) is seeking an experienced ServiceNow Security Manager to lead the security, compliance, and governance of our ServiceNow (SNOW) platform. This role is responsible for defining and implementing security policies, managing user access controls, ensuring compliance with regulatory requirements, and establishing security best practices across all ServiceNow applications and modules. The ideal candidate will have deep expertise in ServiceNow security architecture, identity and access management, and information security principles, combined with strong leadership and risk management capabilities.
The ServiceNow Security Manager will serve as the primary security authority for the ServiceNow platform, working closely with IT Security, Compliance, Development, and Business teams to ensure the platform is secure, compliant, and aligned with organizational security standards. This individual will be responsible for managing security configurations, conducting security assessments, and providing security guidance for all ServiceNow initiatives.
**Essential Functions, Responsibilities & Duties may include, but are not limited to:**
+ Design, implement, and maintain comprehensive security architecture for the ServiceNow platform
+ Define and enforce security policies, configurations, standards, and procedures for ServiceNow applications and data
+ Create and maintain security documentation, including Access Control Lists (ACLs), roles, groups, and user permissions across all ServiceNow modules
+ Conduct regular security assessments, audits, and vulnerability analyses of the ServiceNow platform
+ Implement and maintain security compliance controls for regulatory requirements (SOX, HIPAA, GDPR, PCI-DSS, etc.)
+ Develop and maintain role-based access control (RBAC) frameworks and security models
+ Monitor and investigate security incidents, access violations, and anomalous activities
+ Collaborate with development teams to ensure secure coding practices and security by design
+ Manage ServiceNow Single Sign-On (SSO), multi-factor authentication (MFA), and identity integration
+ Lead security aspects of ServiceNow upgrades, patches, and platform changes
+ Provide security guidance and training to ServiceNow administrators and developers
+ Manage third-party integrations and API security configurations
+ Coordinate with internal and external auditors for ServiceNow security reviews
+ Stay current with ServiceNow security features, vulnerabilities, and industry best practices
+ Participate in incident response and disaster recovery planning for the ServiceNow platform
+ Generate security reports and metrics for leadership and compliance purposes
+ Build and maintain strong relationships with business leaders and key stakeholders
+ Support change management activities related to ServiceNow implementation
**Education and Experience:**
+ Bachelor's degree in Business Administration, Management, Computer Science, Engineering, or related field
+ Minimum 5-7 years of experience in information security, with at least 3-5 years focused on ServiceNow security
+ Proven experience implementing and managing ServiceNow security controls and access management
+ Experience with ServiceNow platform administration and configuration
+ Strong understanding of security frameworks and compliance requirements (ISO 27001, NIST, CIS Controls)
+ Experience conducting security assessments and managing security incidents
+ Track record of implementing security best practices in enterprise environments
+ Must hold at least one of the following certifications:
+ Certified Information Systems Security Professional (CISSP) certification
+ Certified Information Security Manager (CISM) certification
+ Certified Information Systems Auditor (CISA) certification
+ Certified Ethical Hacker (CEH) or other relevant security certification
**Required Skills and Competencies:**
+ Expert knowledge of ServiceNow security architecture and security controls
+ Deep understanding of ServiceNow ACLs, roles, groups, and security rule configurations
+ Proficiency in ServiceNow security modules (Security Operations, Vulnerability Response, Threat Intelligence) or other similar security tools
+ Strong knowledge of identity and access management (IAM) principles and technologies
+ Experience with ServiceNow authentication methods (SSO, SAML, OAuth, LDAP, Active Directory)
+ Understanding of encryption technologies and data protection mechanisms
+ Knowledge of network, cloud, & application security logging, monitoring, and SIEM integration
+ Experience with security audits, security assessments, vulnerability scanning, & compliance reporting
+ Understanding of API security and secure integration patterns
+ Knowledge of ServiceNow scripting for security implementations (JavaScript, Business Rules, Script Includes)
+ Excellent problem-solving, analytical, risk assessment, and critical thinking skills with ability to anticipate security threats and trends
+ Outstanding communication skills with ability to explain security concepts to technical and non-technical audiences
+ Ability to balance security requirements with business needs and usability
+ Customer service mindset with focus on Stakeholder management and collaboration skills
+ Self-motivated with ability to work with moderate supervision
**Desired Skills and Competencies:**
+ Master's degree in Information Security, Cybersecurity, or related field
+ Additional ServiceNow certifications (Implementation Specialist, Mainline Specialist)
+ Experience managing security teams or programs
+ Background in security consulting or advisory roles
+ Strong presentation and training delivery skills
+ Experience with security awareness program development
+ Knowledge of privacy regulations and data protection laws
+ Change management and security culture transformation experience
**Security Requirement:**
+ Ability to obtain Public Trust
**Travel:**
+ Minimal travel required (less than 10%)
**Our Equal Employment Opportunity Policy**
The company is an equal opportunity employer. The company shall not discriminate against any employee or applicant because of race, color, religion, creed, ethnicity, sex, sexual orientation, gender or gender identity (except where gender is a bona fide occupational qualification), national origin or ancestry, age, disability, citizenship, military/veteran status, marital status, genetic information or any other characteristic protected by applicable federal, state, or local law. We are committed to equal employment opportunity in all decisions related to employment, promotion, wages, benefits, and all other privileges, terms, and conditions of employment.
The company is dedicated to seeking all qualified applicants. If you require an accommodation to navigate or apply for a position on our website, please get in touch with Heaven Wood via e-mail at accommodations@koniag-gs.com or by calling ************ to request accommodations.
_Koniag Government Services (KGS) is an Alaska Native Owned corporation supporting the values and traditions of our native communities through an agile employee and corporate culture that delivers Enterprise Solutions, Professional Services and Operational Management to Federal Government Agencies. As a wholly owned subsidiary of Koniag, we apply our proven commercial solutions to a deep knowledge of Defense and Civilian missions to provide forward leaning technical, professional, and operational solutions. KGS enables successful mission outcomes for our customers through solution-oriented business partnerships and a commitment to exceptional service delivery. We ensure long-term success with a continuous improvement approach while balancing the collective interests of our customers, employees, and native communities. For more information, please visit_ _****************** _._
**_Equal Opportunity Employer/Veterans/Disabled. Shareholder Preference in accordance with Public Law 88-352_**
**Job Details**
**Job Family** **Engineering**
**Pay Type** **Salary**
**Hiring Min Rate** **160,000 USD**
**Hiring Max Rate** **180,000 USD**
$60k-112k yearly est. 38d ago
Security Specialist - ACSO/DO
LM Careers
Remote job
Act as a Designated Official (DO) for the Controlled Goods Program (CGP) and complete all Security Assessments - Exam and Certification through CGP required
Act as an Alternate Company Security Officer (ACSO) for the Contract Security Program (CSP) supporting the initiation, review and submission of security clearance application - Certification through CSP required
Understanding both CGP and CSP regulations and how they apply to data and physical access
Delivery of required security and Controlled Goods (CG) briefings
Completion and submission of CG exemptions for foreign visitors
Processing of incoming Request for Visits (RFVs) and CG attestations in support of customers/sub-contractors visiting our sites
Supporting the completion and submission of visit documentation for various programs to allow Lockheed Martin Canada Inc. (Lockheed Martin) employees to access customer/subcontractor restricted sites
Completion and submission of Security Requirements Check Lists (SRCLs) for services sub-contractors
Contributor in process and procedure development
Manage and track all CG and security clearance expiry dates and ensure the processing of timely renewals
Assist with the internal Lockheed Martin visitor management process including reviewing and approving expected visitors using online tool
Support physical security as required
Review data and physical access requests for security compliance and approval
Provide other administrative support to the Security team including data entry, attendance logging for awareness training and digitizing of security files.
Equal Opportunity Statement
Lockheed Martin is committed to upholding principles of equal opportunity, fostering a work environment that is aligned with our core values of integrity, respect, and exceptional performance. We recognize the importance of leveraging the unique talents and experiences of all our employees to drive innovation, deliver superior solutions, and maximize value for our customers. Our focus is on identifying the most qualified candidate for each role, regardless of their background. If you are interested in a position, we invite you to share how your skills and perspectives could bolster our team and encourage you to apply, even if you feel your qualifications do not fully meet all the job criteria outlined in our advertisement. Furthermore, Lockheed Martin is dedicated to ensuring our recruitment process is inclusive for all individuals. We are prepared to accommodate reasonable adjustments for applicants as needed.
Post secondary education
3-5 years professional experience
Self-starter with strong attention to detail
Familiarity with the CGP and CSP
Previous experience in administrative type role
Proficient with MS Word, Excel and PowerPoint
Ability to multi-task
Comfortable communicating with all levels of leadership
Confident in navigating difficult and sensitive conversations
Previous ACSO and/or DO experience would be considered an asset.
About us
Headquartered in Ottawa, Lockheed Martin Canada is the Canadian unit of Lockheed Martin Corporation, a global defense technology company driving innovation and advancing scientific discovery. Our all-domain mission solutions and 21st Century Security vision accelerate the delivery of transformative technologies to ensure those we serve always stay ahead of ready. We operate major facilities in Ottawa, Montreal, Halifax, Calgary and Victoria and work on a wide range of programs from advanced naval technology products, aircraft sustainment, and unmanned systems software. This position is part of the Rotary and Mission Systems business area, where employees across Canada support engineering, systems integration, training, sustainment and in-service support programs for Canadian and international military customers across land, air and sea.
What we offer you
We walk our talk when it comes to work/life balance! Your physical, mental and financial wellbeing matters to us. On top of working in a highly supportive, friendly, respectful environment, this is what you can expect when you join our team as a Regular Full-Time employee:
Flexible, compressed work schedules, depending on business requirements, where you have the option of Fridays off, as well as the possibility to work remote part-time
Competitive compensation
Time to recharge with vacation, personal days, holidays, and parental leaves
Comprehensive Family Medical, Dental and Vision coverage available on your first day of employment, along with:
Virtual Health Care (24/7 access to medical professionals)
A Wellness Spending Account to aid in your wellness journey
Employee & Family Assistance Program (EFAP) which includes free face to face counselling sessions
Medical Travel Insurance
Onsite fitness facilities at our main office locations
A Registered Retirement Savings Plan that includes matching company contributions on your first day of employment, that also includes access to Financial Advisors providing investment advice and comprehensive financial planning
Employee discounts to save on goods, services and various recreational activities
Access to a robust spectrum of development resources to enhance your skills and/or advance your career including:
Free learning resources through a modern and engaging platform
Education Assistance Program
Reimbursement for a professional membership
Self-directed Mentoring
Pay Transparency
At Lockheed Martin Canada, we comply with all pay transparency requirements and believe sharing pay ranges for open roles can foster a more equitable workforce.
Controlled Goods Program
$34k-71k yearly est. 36d ago
Global Events Security Specialist
Concentric Systems Inc. 3.8
Remote job
Are you interested in joining an organization with a global reach? In a world of shifting threats, Concentric is your trusted ally. Powered by elite professionals from military, government, and intelligence backgrounds. If you are passionate about intelligence, risk analysis, threat management, executive protection, security operations, or business resiliency, Concentric may be the organization you've been searching for!
Concentric is a risk consultancy specializing in delivering strategic security and intelligence services. We provide holistic, intelligent security solutions for private clients and corporations globally. Concentric offers strategic advisory services, risk assessments, physical protection, threat intelligence, open-source monitoring, program audits, secure embedded staffing, and training for security teams and intelligence analysts.
Our ultimate goal is to be recognized as the most innovative, capable, and trusted Risk Management partner in the world, and we do this by following these core values:
Integrity - Collaboration - Relationships - Excellence - Creativity - Results
Join Us,
Concentric - "Your World Secured"
We are currently looking to hire a Global Events Specialist to join our team embedded with our client in New York City, Washington, D.C., or Atlanta! This is a remote position with domestic and international travel required.
While this position is remote, we are specifically seeking candidates who reside on the East Coast due to business needs and travel requirements. The role involves regular domestic and international travel, and you may be asked to visit our headquarters in Washington DC, Atlanta, or New York City as needed. An East Coast location is required for this role.
JOB DESCRIPTION
The focus of this position is safeguarding the principals from safety and security hazards, both domestically and internationally, with an emphasis on event security within their corporate environment. The job requires high personal integrity and honesty, confidentiality, sound judgment, problem-solving skills, the ability to work under pressure, and the ability to follow instructions. The individual will provide professional event security planning and protection to Executives in a corporate office setting, as well as scheduled events/functions. This includes conducting risk assessments, working with vendors to support security and intelligence functions, and recommending to the client on threat management and safety. They will also be responsible for developing, implementing, and enhancing event security protocols for the firm and its principal(s) as required.
RESPONSIBILITIES
Provides specialist-level direct or remote coordination of security and safety services
to global events.
Prepares comprehensive event security plans in support of global events, including
security risk assessments, communications plans, protection operations, medical
response, and emergency evacuation plans.
Provides on-the-ground security support to global events, which includes support of
Executive Protection, threat identification, incident management, and emergency
response.
Conducts security advances, site visits, and security surveys to identify the suitability of
venues, identify risks and vulnerabilities, and provide security recommendations
based on findings.
Maintains and develops relationships with vendors and partners, and assists with
managing vendor and event security costs and budgets.
Provides a working knowledge of the market, including leveraging knowledge of
regional policies, procedures, and laws, and contacts within law enforcement and
emergency agencies.
Maintains liaison with internal stakeholders/partners to achieve objectives and
leverages both internal and external resources for program efficiency while providing
exceptional customer service.
Provides comprehensive After-Action Reviews post-event.
Assists in the development and implementation of SOPs
Supports the Director of Protective Services to effectively drive the implementation of
all event security programs within the scope of the team.
Completes daily requests from management and other duties as assigned.
REQUIRED QUALIFICATIONS
3-5 years of related executive protection and event security experience and/or training, or equivalent combination of education and experience
Bachelor's degree or equivalent combination of education and experience
Experience conducting event security, pre-advance, and travel and risk assessments.
Experience in international travel
Must have the ability to obtain and maintain international travel documents, such as a US passport or other equivalent documents.
This position requires the availability to work evenings, weekends, and holidays.
May be asked to work with limited notice, based on client needs
Must be able to legally work in the country where this position is located without visa sponsorship.
Domestic and International travel may be required 25% of the time
PREFERRED QUALIFICATIONS
Executive Protection training and/or Military/LEO experience preferred
Advanced medical training (EMT, WEMT, WFR, TCCC/TECC)
First Aid/CPR/AED Instructor Certification
Experience using Lenel Systems, DataMinr, ISOS, and other threat management suites
COMPENSATION & BENEFITS
The HSA medical plan covers 100% of the premium for employee-only coverage. The PPO medical plan requires an employee contribution for employee-only coverage. For both plans, Concentric covers a substantial portion of the premium for dependents.
Concentric also offers an HSA employer contribution
Medical FSA
Employer-paid insurance: life, STD, LTD, and AD&D
401 (k) including employer match
11 paid holidays
Paid leave (vacation, sick, parental)
Annual Health & Wellness Benefit
Pet Insurance
National discount employee program
Employee Assistance Program for personal needs
Credentity Protection - Eclipse Digital Protection by Concentric
Free access to our Risk Intelligence Dashboard and GEAR App. Providing 24/7 access to trusted risk intelligence and remote support, helping you stay informed, prepared, and protected wherever you operate.
Dedicated Security and Intelligence Training Programs for Professional Development
Coaching and Mentoring Opportunities
New York City, New York Pay Range$110,000-$115,000 USD
Concentric and SPS Global acknowledge the systemic barriers in the security industry and recognize that removing those barriers will require a collaborative and conscious effort. Concentric and SPS Global are committed to programs and initiatives that promote diversity, equity, and inclusion, enhancing our organization and the broader community. We are creating a diverse environment and are proud to be an equal opportunity employer. We encourage people from all backgrounds to apply. All qualified applicants will receive consideration for employment regardless of race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or veteran status.
Concentric Advisors and SPS Global are committed to protecting the privacy and security of all applicants who submit personal information to us. You can access our GDPR and CCPA policy by clicking the GDPR button at the bottom of our career page.
$110k-115k yearly Auto-Apply 19d ago
Governance Specialist - Security
Castlight Health 4.7
Remote job
The Governance Specialist is responsible for supporting apree health's governance, risk, and compliance programs to ensure adherence to regulatory, contractual, and internal security requirements. This role will manage customer audits, maintain certifications, and coordinate responses to security questionnaires. The specialist will work closely with internal teams and external partners to demonstrate our commitment to protecting sensitive healthcare data and meeting industry standard
How will you make an impact & Requirements
**This is a remote position that can be based anywhere within the United States.**
Key Responsibilities:
Continuously refine and optimize organizational security certification (e.g., HITRUST, SOC 2) and customer security audit strategies, overseeing security related evidence collection, control validation, and audit readiness to ensure sustained compliance and successful renewals.
Author, review, and proactively enhance comprehensive responses to security questionnaires and due diligence requests from healthcare partners and customers, leveraging deep knowledge of security controls, technical architecture and organizational posture to articulate apree health's security capabilities effectively.
Act as a subject matter expert and trusted advisor to internal stakeholders, interpreting security related compliance obligations, providing guidance on control implementation, and fostering a culture of security awareness across the organization.
Collaborate closely with vendor management, security, privacy and compliance teams to quantify, capture or rationalize risks and corresponding mitigating controls.
Work cross-functionally with business units to identify risks, and oversee the design and implementation of controls that improve security posture.
Maintain a thorough understanding of apree's tech stack, architecture and controls to provide concise go-to-market and customer support.
Assist with tracking governance and compliance metrics and contribute to risk management activities.
Stay up to date with changes in regulatory and compliance requirements affecting healthcare data security.
Qualifications:
Bachelor's degree in Information Systems, Business, or related field.
3-5 years of experience in IT governance, risk, and compliance, preferably in healthcare with a deep understanding of security controls and architecture.
Familiarity with HIPAA, HITRUST, ISO, SOC2, and other security frameworks.
Demonstrated ability to quantify risk, identify mitigations and enact change.
Strong organizational skills with the ability to manage multiple projects and deadlines.
Excellent written and verbal communication skills, with a proven ability to articulate complex technical and compliance concepts clearly and concisely to diverse audiences, including executive leadership and external partners.
Compensation:
$141,006.00
to
$211,507.00
$141k-211.5k yearly Auto-Apply 6d ago
Associate Security Specialist
Arc Group 4.3
Remote job
ASSOCIATE SECURITYSPECIALIST - REMOTE ARC Group has an immediate opportunity for an Associate SecuritySpecialist! This position is 100% remote working eastern time zone business hours. This is starting out as a contract position running through February 2025 with strong potential to extend longer or convert to FTE. This is a fantastic opportunity to join a well-respected organization offering tremendous career growth potential.
At ARC Group, we are committed to fostering a diverse and inclusive workplace where everyone feels valued and respected. We believe that diverse perspectives lead to better innovation and problem-solving. As an organization, we embrace diversity in all its forms and encourage individuals from underrepresented groups to apply.
100% REMOTE!
Candidates must currently have PERMANENT US work authorization. Sorry, but we are not considering any candidates from outside companies for this position (no C2C, 3rd party / brokering).
Job Description:
Accountable for activities that ensure all users in the organization have the appropriate levels of access to applications, systems and data resources. Evaluates and maintains procedures to safeguard information systems assets from intentional or inadvertent access or destruction. Ensures compliance with Security regulations and laws. Recommends and implements changes to enhance security controls and prevent unauthorized access.
Essential functions:
Performs a lead role in promotion of security awareness programs, assessing gaps and implementing solutions.
Responsible for the end-to-end completion of security requests.
Provisions user security roles and manages security groups across systems, platforms, databases, applications, servers, directors and folders.
Analyzes existing role structures to improve and streamline structures, security administration and improve end-user experience.
Responsible for highly sensitive security access for outsourced vendors and ensuring compliance with policy, regulations and contractual requirements.
Accountable for highly sensitive emergency processes.
Creates or maintains application scripts and uses application specific tools to create or manage application security.
Tracks and documents security issues and requests, actively monitors work queue.
Plans, coordinates, communicates, tests and implements audits ensuring that access entitlements are appropriate for job requirements.
Creates and coordinates completion of detailed security reports to fulfill audit, management or business owner requirements.
Accountable for follow-up of all security work requests including collaborating with other IT areas to ensure timely completion/resolution and obtainment of appropriate approval levels.
Interfaces with users to understand new capabilities, implement procedures, ensure security procedures have been communicated properly and are being adhered to.
Provides input to drive process improvements.
Works closely with business areas and IT partners on troubleshooting, pre-implementation activities and to assess application security.
Maintains and creates operational procedures and maintains Security Knowledge Base.
Performs system monitoring activities, identification and evaluation of security threats, breaches and vulnerabilities.
Responds to security alerts.
Responsible for on-call release support.
Acts as lead liaison for internal and external audit requests and activities. Leads remedial activities as the result of audit findings.
Defines scope of operational initiatives and adjusts priorities to support workload.
Provides subject matter expertise, leadership and guidance to work teams and end users on security policies, standards and procedures and processes.
Investigates business processes to understand and implement security requirements weighing business needs and security risks and resolving issues.
Researches solutions works with vendors to enhance Security Monitoring Program.
Coordinates and documents exceptions to security policy as directed by the Exception Governance Team.
Develops training content as needed.
Job Duties:
In-depth knowledge of Information Technology field and computer systems
Must have advanced security knowledge of the organization's existing platforms, systems, databases, and application security and are able to handle most regular issues independently.
Advanced analytical thinking, problem solving, quantitative analysis ability.
Must have an advanced understanding of Information Security concepts, protocols, industry best practices, and regulatory requirements.
Must have advanced proficiency with RACF, TSO and tools used to administer security on the mainframe
Must have advanced proficiency with Active Directory groups and user accounts, Windows folder structures and folder security.
Proficiency with Windows skills are required, e.g., Windows Explorer, Word, Excel, PowerPoint, Outlook, etc.
Must have advanced proficiency of UNIX/Linux security and tools used to administer security in these environments
Must have advanced proficiency of LDAP groups and user accounts and tools used to administer security in this environment
Must have advanced proficiency with database security and tools used to administer security within the various databases, e.g., UDB, DB2, SQL and Oracle
Must demonstrate expertise with security management tools
Works without daily supervision to meet customer expectations
High critical thinking skills to evaluate alternatives and present solutions that are consistent with business objectives and strategy
Experience using Agile methodology specific tools, languages and specialty skills may vary
Our ideal candidate would be someone with experience provisioning access using Microsoft Active Directory, IBM Mainframe TSO, Unix / RIG, Oracle, SQL, PowerShell, and experience with Cloud IAM Security such as Azure IAM, Azure Active Directory environment, and Microsoft Azure Access Controls, basic understanding of Microsoft Security Services (e.g., Microsoft Defender for Identity, Azure Information Protection, Microsoft Cloud App Security), and understanding of Oracle Identity Cloud offering
Required Experience:
2+ years of relevant work experience
Preferred Education:
Bachelor's degree in a related field
Required Education:
HS diploma or GED
Would you like to know more about our new opportunity? For immediate consideration, please apply online and view all our open positions at *******************
ARC Group is a Forbes-ranked a top 20 recruiting and executive search firm working with clients nationwide to recruit the highest quality technical resources. We have achieved this by understanding both our candidate's and client's needs and goals and serving both with integrity and a shared desire to succeed.
At ARC Group, we are committed to providing equal employment opportunities and fostering an inclusive work environment. We encourage applications from all qualified individuals regardless of race, ethnicity, religion, gender identity, sexual orientation, age, disability, or any other protected status. If you require accommodations during the recruitment process, please let us know.
Position is offered with no fee to candidate.
$32k-60k yearly est. 28d ago
Security Specialist (Microsoft 365 / Federal Environment)
Lucayan Technology Solutions
Remote job
Clearance Required: Public Trust (Minimum Background Investigation - MBI) Employment Type: Full-Time Lucayan Technology Solutions is seeking an experienced SecuritySpecialist to support the security posture of the IRS Microsoft 365 (M365) environment. This role will focus on security analysis, compliance, risk management, and protection of cloud-based services. The ideal candidate brings deep expertise in Microsoft 365 security capabilities, federal compliance frameworks, and hands-on experience supporting high-security environments in government or large enterprises.
Key Responsibilities
Conduct security and privacy analysis of Microsoft 365 services to ensure compliance with IRS and federal security standards.
Implement, configure, and monitor M365 security controls, compliance settings, and governance policies.
Support ongoing risk assessments, vulnerability management activities, and remediation efforts.
Develop, maintain, and update security documentation, including policies, procedures, and incident response plans.
Collaborate with technical teams, engineers, and IRS SMEs to ensure secure architecture, integration, and operation of M365 tools.
Monitor security alerts, assess potential threats, and support incident response activities.
Adapt quickly to IRS-specific compliance requirements, security controls, and operational processes.
Required Qualifications
Minimum 5 years of IT security experience, preferably supporting Microsoft 365 environments in large government or enterprise settings.
Experience supporting federal government clients or similar high-security, compliance-driven environments; IRS experience preferred.
Strong understanding of Microsoft 365 security, compliance, governance, and privacy features.
Hands-on experience with Azure AD, Intune, Exchange Online security, and identity protection tools.
Familiarity with federal cybersecurity standards and frameworks such as NIST 800-53, FISMA, and Zero Trust.
Strong analytical, troubleshooting, and problem-solving abilities.
Excellent communication skills and ability to coordinate security-related activities with cross-functional teams.
Security Clearance & Training Requirements
Must have or be able to obtain a Public Trust (MBI) clearance.
Must complete all IRS-required security, privacy, and compliance training.
Must comply with federal cybersecurity guidelines and organizational security protocols.
Preferred Qualifications
Experience supporting IRS programs or IRS modernization efforts.
Certifications such as:
CISSP, CISM, Security+
Microsoft Certified: Security Operations Analyst
Microsoft 365 Certified: Security Administrator
Experience with incident response, threat analysis, and security automation.
Knowledge of cloud governance and compliance tooling across Microsoft 365 and Azure.
Work Environment
Fully remote position with collaboration across distributed technical and security teams.
Must be comfortable working in a compliance-focused federal environment.
Occasional after-hours support may be required for incident response, maintenance windows, or urgent security issues.
Requires strong attention to detail, documentation discipline, and adherence to IRS and federal security standards.
$26k-57k yearly est. Auto-Apply 58d ago
Security Specialist
Decentralized Masters
Remote job
Who Are We?
Decentralized Masters is at the forefront of DeFi education globally. In just two years, we have grown from a pioneering pair of co-founders to over 130 dedicated professionals. Today, we are recognized as one of the fastest-growing enterprises in the sector, with industry insiders predicting our evolution into a unicorn company by 2030. Operating on a bootstrapped model, we are on track to achieve an impressive $50 million in revenue this year alone.
Our Impact
While our growth has been remarkable, we take even greater pride in the success of our clients. To date, we have empowered over 4000 investors to break into the DeFi world. At Decentralized Masters, we don't just offer education; we cultivate a powerhouse of knowledge combined with an engaging community, innovative technology, and a team of leading DeFi and blockchain experts. Our commitment is to deliver unparalleled resources designed for long-term success in the world of DeFi and Web3, ensuring our members not only safeguard but also enhance their financial future.
Our Vision
Our goal is to create the largest and most influential DeFi ecosystem the world has ever seen, starting with becoming the gold standard in DeFi education. This vision is ambitious, transformative, and poised to change the landscape of digital finance.
Are You Ready?
This is more than just a job; it's an opportunity to shape the future of Web3 technology and education. Are you ready to be part of our vision to redefine what's possible in DeFi and beyond? Apply below, and let's explore this journey together.
Check us out here: ******************************
What will you be doing?
We are seeking a SecuritySpecialist to develop, maintain, and continuously improve the security infrastructure across Decentralized Masters and our new SaaS venture. This role focuses on operational security, data protection, risk prevention, and proactive threat mitigation.
You'll work cross-functionally with engineering, data protection, compliance, operations, and product teams to ensure the confidentiality, integrity, and availability of our systems, data, and customer assets.
This is a hands-on role, ideal for someone who thrives in a fast-moving, high-ownership environment.
Key ResponsibilitiesOperational & Technical Security
Monitor, analyze, and respond to security events across systems, cloud environments, applications, and internal tools.
Implement and manage SIEM, IDS/IPS, endpoint protection, vulnerability scanners, and logging infrastructure.
Conduct regular vulnerability assessments and coordinate remediation with engineering teams.
Oversee secure configuration baselines for infrastructure, servers, cloud accounts, and internal systems.
Implement and enforce Data Loss Prevention (DLP) policies, tools, and controls to prevent unauthorized data transfers, including hands-on work with data classification and monitoring systems.
Perform detailed data flow mapping to understand how customer data moves across internal systems, SaaS apps, APIs, and third-party integrations.
Cloud SecuritySecure cloud environments (AWS preferred) including data at rest and in transit using encryption and cloud-native security tools.
Manage cloud access policies, network segmentation, secrets management, and continuous monitoring.
Risk Management & Compliance
Support compliance frameworks including GDPR, SOC 2, ISO 27001, and crypto-specific security standards as required.
Develop and maintain internal security policies, procedures, and security controls.
Partner with the Data Protection & Information Security Officer to ensure alignment across security, privacy, and data governance.
Access & Identity Management
Serve as the Access & Control Monitoring expert, managing IAM, RBAC policies, least-privilege access, MFA, and anomaly detection systems.
Perform regular access reviews, privilege audits, and segregation-of-duty checks.
Maintain strong audit logging practices and monitoring of access behavior.
Security Awareness & Culture
Deliver training, simulations, and internal education to strengthen internal security awareness.
Lead phishing simulation programs and social engineering prevention initiatives.
Incident Response
Lead the incident response process: detection, escalation, containment, investigation, and post-incident review.
Maintain and improve the incident response playbook; run annual and quarterly tabletop exercises.
Secure Development & SaaS Security (Bonus)
Collaborate with engineering teams to embed secure-by-design practices into our SaaS products.
Conduct application security reviews, threat modeling, and code analysis (bonus).
Contribute to architecture decisions for new features and infrastructure.
Requirements
What You Will BringMust-Have
3+ years of experience in cybersecurity, information security, or security operations.
Hands-on experience with Data Loss Prevention (DLP) tools and data classification frameworks.
Strong data flow mapping expertise with the ability to trace data across systems, integrations, and APIs.
Solid understanding of cloud security concepts, encryption, and cloud-native security tools (AWS preferred).
Expertise in IAM and Access Control Monitoring, including least-privilege models, RBAC, MFA, and anomaly detection.
Familiarity with audit logging, SIEM tools, vulnerability management, and endpoint security.
Experience with incident response processes and playbooks.
Strong understanding of MITRE ATT&CK, threat actors, and common attack vectors.
Working knowledge of compliance standards such as GDPR, SOC 2, and data protection regulations.
Excellent communication skills and the ability to collaborate with technical and non-technical teams.
Nice-to-Have
Experience working in fintech, blockchain, or DeFi environments.
Familiarity with cryptographic concepts, wallets, smart contracts, or key-management practices.
Certifications such as Security+, CySA+, GSEC, GCIH, OSCP, CCSP, or similar.
Experience automating security workflows using scripting languages.
Exposure to ISO 27001, SOC 2 Type II audits, or similar security frameworks.
Benefits
What We Offer
Competitive salary package
Flexible 40-hour workweek
Unlimited PTO and flexible work schedules
Team off-sites and events
Fully remote work setup - join our global team from anywhere!
Are You Ready?
This is more than a job; it's an opportunity to shape the future of Web3 education and finance. If you're a visionary leader ready to drive our mission and help us achieve unicorn status, we want to hear from you.
Apply now to join us in redefining what's possible in DeFi and beyond.
$25k-56k yearly est. Auto-Apply 44d ago
Intel Security Specialist with TS and SCI Eligible
Watershed Security
Remote job
JOB DESCRIPTION Watershed Security, is a Veteran Owned Small Business with over 20 years' Cybersecurity and Government Contracting experiencing. Watershed is looking for a Intel SecuritySpecialist to support the Naval Surface Warfare Center (NSWC) Dahlgren Division Dam Neck Anex (NSWCDD-DNA) in Dam Neck, VA. The successful candidates will have experience coordinating and enacting required security changes, with in various levels of an organization, ensuring compliance with published policies; conducting cybersecurity vulnerability and threat analysis; and be experienced as an ISSO or ISSE.
REQUIRED QUALIFICATIONS
Bachelor of Science in Information Systems or Bachelor of Science in Information Technology or Bachelor of Science in Computer Science or Bachelor of Science in Computer Engineering.
Years of Experience: Ten (10) years of full-time professional experience in performing Risk Management Framework (RMF) activities; (or) 15 years of RMF experience and a GED/High School Diploma.
Must be able to maintain IAT-II designation with at least one of the following active certifications: CCNA-Security, CySA+, GICSP, GSEC, Security+ CE, CND, SSCP.
Any level of Demonstrated experience in all of the following areas:
Performing STIG assessments to include using SCAP benchmarks and EvaluateSTIG
Performing vulnerability assessments with the Assured Compliance Assessment Solution tool
Using eMASS or XACTA for RMF package management
Developing Plans of Actions and Milestones (POA&M) entries
Completing Risk Management Framework Step 5 authorizations in the ISSE capacity or Information System Security Officer (ISSO) capacity
Communicating risk reduction recommendations to stakeholders
Managing privileged user documentation, training, and CSWF requirements
Researching and evaluating Cyber Task Orders (CTOs) and detailing implementation requirements
Tracking documentation requirements and coordination with POCs for updates
Reviewing Interconnection Security Agreements (ISAs) for technical details and ensuring within ATO parameters
Maintaining inventory, tracking, and destruction of removable media
Clearance Level: TOP SECRET with SCI Eligibility; US Citizen.
Ability to possibly provide onsite support in Dam Neck VA. Some/all remote work may be an option, however the norm will be onsite support. This will be dependent upon customer needs and classification level of work being performed.
Some travel may be required.
Proficient with Microsoft Office Suite (Word, Excel, Teams, Project). Self-Starter; detail oriented; able to brief senior level staff.
DESIRED QUALIFICATIONS
Experience supporting 10 or more Navy Packages (achieving and/or maintaining ATO)
Experience with Navy Cybersecurity requirements
Experience with the NAVSEA RMF Business Rules
Contingent upon award
PAY RANGE
Final salary is influenced by factors such as location, contract labor categories, experience, skills, education, and certifications. Watershed offers competitive compensation, medical and dental benefits, educational reimbursement, 401K plans with matching, 15 days of PTO to start and 11 paid holidays per year. The proposed salary range for this position is: $100,000.00 - $115,000.00 USD.
Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans
Powered by JazzHR
XSUlBJYcBd
$100k-115k yearly 23d ago
Control Validation Security Specialist
AVUM Inc.
Remote job
Job DescriptionDescription:
Avum is seeking an experienced Control Validation Security Analyst to perform comprehensive security audits and control validation activities for complex information systems supporting Federal and Department of Defense (DoD) operations. This role conducts rigorous security evaluations, vulnerability assessments, and control effectiveness testing to ensure compliance with DoD contracting system requirements and Federal cybersecurity standards.
The position specializes in security control validation, ensuring implemented safeguards are operating as intended and align with both mission requirements and risk tolerance. The analyst supports the Risk Management Framework (RMF) lifecycle for cloud-hosted Government systems handling sensitive contracting data, balancing security mitigations against business and operational needs.
Key Responsibilities
Execute comprehensive IT security audits on complex systems in accordance with DoD and Federal requirements.
Perform security control validation to verify proper implementation and effectiveness of technical, operational, and management controls.
Conduct vulnerability assessments and analyze findings to identify security gaps and risks.
Support RMF activities including control selection, implementation validation, assessment, and authorization support.
Evaluate applied security mitigations to determine alignment with security requirements and business objectives.
Validate project security controls to ensure compliance with DoD contracting system standards.
Document security findings, risk assessments, and remediation recommendations.
Maintain and update RMF artifacts and assessment results within eMASS.
Collaborate with system owners, engineers, and stakeholders to resolve security issues and implement corrective actions.
Support audits, inspections, and compliance reviews while ensuring accuracy and quality of deliverables.
Required Qualifications
US Citizenship with the ability to obtain and maintain a US Government Clearance.
Minimum of two (2) years of experience working with DoDI 8500.2 and/or NIST SP 800-53, with demonstrated understanding of the Risk Management Framework (RMF).
Strong analytical and problem-solving skills to identify, evaluate, and resolve security issues.
Strong skills implementing and configuring networks and network components.
Working knowledge of Enterprise Mission Assurance Support Service (eMASS).
Understanding of how to weigh business and mission needs against security risks.
Experience analyzing applied mitigations to determine whether they meet security requirements.
Demonstrated knowledge of Risk Management Framework (RMF) concepts and processes.
If You Have This, It's A Plus
Experience supporting cloud-hosted Government systems (AWS GovCloud, Azure Government, etc.).
Familiarity with DoD contracting or acquisition-related systems.
Experience supporting ATO packages, continuous monitoring, and security assessments.
Strong documentation and communication skills for both technical and non-technical audiences.
What's In It For You
Being part of a remote-first environment that rewards dedication and innovation.
Receiving competitive compensation and benefits package that includes bonuses and 401K with 6% matching that vest immediately.
Joining a mission-driven technically forward team.
Location
This role is fully remote. The candidate must be available during core Eastern Standard Time (EST) hours, Monday through Friday, and may need to travel for occasional in-person meetings.
About Avum
Avum, Inc. is a certified Small Disadvantaged Business who provides advanced software, database, and business intelligence systems to the DoD/Military, Intelligence Community, and Federal, State, Local and Commercial clients since 1991. We manage technical programs and projects and provide strategic guidance to support our customer's system engineering efforts. We provide sustainment in mission-critical and secure environments. We support information assurance activities and accreditation for the systems we deploy. Our engineers conduct rapid prototyping and Agile customer-focused iterations to produce complex applications, predictive analytic data environments, and NIST SP 800-53 compliant system architecture deployed within Navy and DoD networks. We have subject matter experts in multiple domains and technical expertise across all core technology stacks. We specialize in application development, large-scale database design, data engineering, and data visualization. Through results-driven, agile collaboration, the company continually researches and deploys secure solutions that exceed customer expectations in meeting or beating customer-allocated budgets and schedules. We aspire to the highest standards of ethical behavior and professional integrity in providing our customers with service that consistently earns us the highest possible performance ratings.
Avum, Inc. does not discriminate on the basis of race, sex, color, religion, age, national origin, marital status, disability, veteran status, genetic information, sexual orientation, gender identity or any other reason prohibited by law in provision of employment opportunities and benefits.
Requirements:
$39k-75k yearly est. 10d ago
Senior Cloud Security Specialist
GDIT
Remote job
Type of Requisition:
Regular
Clearance Level Must Currently Possess:
None
Clearance Level Must Be Able to Obtain:
None
Public Trust/Other Required:
None
Job Family:
Cyber and IT Risk Management
Job Qualifications:
Skills:
Security Information, Security Monitoring, Security Requirements, Security System Design, System Security
Certifications:
None
Experience:
7 + years of related experience
US Citizenship Required:
No
Job Description:
Seize your opportunity to make a personal impact as an Senior Cloud SecuritySpecialist supporting the Case Management Modernization (CMM) Program. The CMM program is an initiative to support the Administrative Office of the US Courts (AO) in developing a modern cloud-based solution to support all 204+ federal courts across the United States.
GDIT is your place to make meaningful contributions to challenging projects and grow a rewarding career. The Senior Cloud SecuritySpecialist will work as part of the CMM Enterprise Data Warehouse (EDW) team to deploy a secured cloud-native EDW platform and support the statutory and operational reporting, data cataloging, and other analytical objectives.
RESPONSIBILITIES:
Provide subject matter expertise for implementing secure by design concept into development to include security design principles, data protection, threat and vulnerability management, compliance and governance, threat and vulnerability management, and performance risk assessments.
Provide an advanced level of information security expertise needed to solve difficult challenges pertaining to the design and implementation of information security solutions, which may include, but is not limited, to networking, operating system, application and database security relative to both techniques and technologies.
Identify, document, and automate the integration of security controls into the enterprise architecture and system development life cycle process enabling ongoing (continuous) security monitoring, automated security authorization, and transparent risk reporting.
Gain organizational approval for the design and architecture of security requirements for cloud environment including the DWaaS component. Implement and maintain upon approval.
Design, implement and maintain layered system security architectures encompassing software, hardware, and communications to support the requirements and provide for present and future cross-functional needs and interfaces.
Provide subject matter expertise and hands-on guidance to teams for embedding secure-by-design principles throughout the product lifecycle, including threat modeling and secure coding practices.
Design and implement cloud workloads, services, databases, etc. with security as a primary consideration, including network segmentation, granular access control, data protection, and encryption and zero trust principles.
Integrate automated security testing in the CI/CD pipelines enabling real-time feedback and rapid remediation of vulnerabilities during development and deployment.
Collaborate with the AO Information System Security Office (ISSO) to schedule periodic penetration testing and conduct vulnerability assessments.
Provide monthly and ad hoc reports on identified vulnerabilities, remediation actions, and security breaches covering all access layers (database, application, infrastructure). Include trend analysis and recommendations for continuous improvement.
Maintain a risk register and track mitigation process.
Propose, implement, and validate security risk mitigation activities for all non-production and production environments with documented evidence of effectiveness.
Validate successful implementation of risk mitigation activities for all non-production and production environments.
Develop and maintain all Cloud Security Documentation: System Security Plan, Business Continuity Analysis, Disaster Recovery Plan, other documents required for Authority to Operate (ATO).
Create and maintain a Cloud Security Roadmap, provide updates quarterly and obtain organizational approval for all security architecture and design artifacts.
Implement and document technical and administrative controls to protect sensitive data from unauthorized internal access, including logging, monitoring, and access reviews.
Provide operational support for identity and access management (IAM) with granular role-based access controls, integration with on-premises identity management solutions in accordance with Judiciary enterprise security standards and cloud identity solutions and enable product teams to maintain a private image catalog for team specific isolation.
Support secure design and operation of multi-segment networks, multiple subnets, and virtual network routing, with regular security assessments and documentation.
Provide product teams with and enforce approved standards for logging and data retention, ensuring logs are protected, searchable, and compliant with regulatory requirements.
Document and maintain Standard Operating Procedures (SOPs) for cyber security.
Automate repetitive security tasks (e.g., patching, compliance checks, incident response) to improve efficiency and reduce human error.
Implement regular reviews and updates of security controls, policies, and procedures to address emerging threats and technological changes.
Implement regular reporting on security KPIs (e.g., mean time to detect/respond, vulnerability remediation time, compliance status) to demonstrate effectiveness and inform decision-making.
Establish a process for ongoing assessment and improvement of governance controls.
Provide guidance and recommendations to stakeholders for containment, validation, and eradication, and support remediation and recovery of incidents (including coordination, documentation, timeline tracking, and resource identification/utilization).
REQUIRED EXPERIENCE & QUALIFICATIONS:
12+ years of experience project leadership in monitoring computer networks and security issues, investigating and resolving security and cybersecurity incidents.
Bachelor's degree with 12+ years of general experience in information systems (10+ years of experience with MA/MS degree) and 8+ years of specialized experience.
Preferred: Certified Information Systems Security Professional (CISSP).
Preferred: Architect certification from at least one of the cloud service providers (CSPs).
Experience in documenting security incidents and performing security vulnerability assessments.
Experience working with Agile teams and SAFe to perform testing and uncovering system and network vulnerabilities.
Strong working experience in AWS Cloud Security (Certification is preferred) (3+ years' experience).
Required past ATO experience in AWS environment for large agency. (4+ years' experience).
Required solid understanding of NIST Standards.
Experience with the ATO process, FedRAMP, CIS, ISO 27001. (4+ years).
Solid understanding on ICAM, SIEM, Vulnerability management tools.
Experience with CSAM or similar tools.
The likely salary range for this position is $127,500 - $172,500. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.
Scheduled Weekly Hours:
40
Travel Required:
None
Telecommuting Options:
Remote
Work Location:
Any Location / Remote
Additional Work Locations:
Total Rewards at GDIT:
Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. GDIT typically provides new employees with 15 days of paid leave per calendar year to be used for vacations, personal business, and illness and an additional 10 paid holidays per year. Paid leave and paid holidays are prorated based on the employee's date of hire. The GDIT Paid Family Leave program provides a total of up to 160 hours of paid leave in a rolling 12 month period for eligible employees. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.We are GDIT. A global technology and professional services company that delivers consulting, technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 30,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50 countries worldwide, offering leading capabilities in digital modernization, AI/ML, Cloud, Cyber and application development. Together with our clients, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology.Join our Talent Community to stay up to date on our career opportunities and events at
gdit.com/tc.
Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans
$127.5k-172.5k yearly Auto-Apply 8d ago
Remote Income Protection Specialist | No Experience Required
Ohana Outreach Financial
Remote job
Job DescriptionWe train people from every background to succeed - because this business rewards mindset, not résumé.
Our mission is to protect families and empower individuals to build long-term income through mentorship, flexibility, and systems that actually work.
Your Day-to-Day:
Meet virtually with clients and discuss their protection goals.
Recommend simple financial programs that fit their needs.
Grow your skills through structured mentorship and weekly calls.
You'll Get:
Commissions, bonuses, and incentive trips (no cap).
Health, dental, and vision benefit access.
Full-time or part-time options.
Mentorship and support from leaders nationwide.
Your success here is determined by your consistency - not your credentials.
Who Thrives Here
People who are:
Coachable and willing to follow a proven process.
Self-driven and goal-oriented.
Good communicators who care about helping others.
Looking for long-term stability and income growth, not another short-term job.
No financial or sales experience is needed - our training covers everything. Licensing can be completed online in 1-2 weeks, and we'll guide you through it.
Why Apply Now
Most people spend years searching for a career that offers both income and lifestyle freedom. Here, you can build both - backed by real mentorship and an award-winning company culture.
If you've been craving a way to work from home, create flexibility, and make a difference for families while doing it, this could be your chance.
No scripts. No hype. Just a real opportunity to grow - on your terms.
Apply today, and we'll set up a short conversation to see if it's the right fit.
Requirements18+ and authorized to work in the U.S.
100% Uncapped Commission 1099
Able to pass a background check and complete licensing (3-7 days, we'll guide you through it every step of the way).
Prior experience in sales, customer service, leadership, or training is a plus-but not required.
Comfortable working remotely and independently.
BenefitsAll-Expenses-Paid Vacations - Travel to dream destinations like Puerto Rico, Italy, Portugal, Mexico, and more-fully paid based on performance.
Work-from-Anywhere Flexibility - 100% remote with control over your schedule and income.
Earn Time & Money - System-driven income model gives you the power to create both financial freedom and time freedom.
True Agency Ownership - Build your own business with real contractual ownership.
Legacy Business Transfer - Pass your agency to a loved one and create generational wealth.
Free Life Insurance - One full year of coverage included for qualifying agents.
Up to $500,000 in Life Coverage - Access large term coverage (up to 30 years) as a benefit.
Health Benefits Access - Affordable medical, dental, and vision coverage available through a partner provider.
Award-Winning Culture - Named a top company culture by Entrepreneur and a fastest-growing company by Inc. 5000.
• • Mentorship & Training - Plug into proven systems and real-time coaching to level up fast.
$59k-88k yearly est. 26d ago
Remote Protection Specialist - Training Provided | Commission Only
Anderson Johnson Agency LLC
Remote job
Job Description
About the Opportunity: We're growing fast and hiring sales representatives who want more control over their time, income, and growth. Licensed or not, we'll teach you how to succeed in the life insurance industry.
What You'll Do:
Work from home or anywhere in the U.S.
Contact clients who requested coverage information
Offer products from leading life insurance carriers
Build relationships with families and guide them through the process
Opportunity for advancement into leadership
What We Offer:
Full virtual training and mentorship program
Licensing help for new candidates
Part-time or full-time schedule
Commission-based pay (daily carrier deposits)
Performance-based bonuses
Access to leads, systems, and support
Compensation (Commission Only):
PT $1,500 - $3,000 / mo
FT $3,000 - $7,000 + / mo
We're Looking For:
Motivated, dependable professionals
Strong communicators
Willing to learn and adapt
Ready to earn a license with our guidance
Requirements:
Must be 18+ and a U.S. resident
Background check required
Computer, internet, and phone
⚠️ No agent's success, earnings, or production results should be viewed as typical, average, or expected. Not all agents achieve the same or similar results, and no particular results are guaranteed. Your success will depend on your work ethic, ability to follow our system, and the demand in your selected market.
Apply Now and discover a career that gives you flexibility and freedom.
Requirements
Must be 18 years or older
U.S. resident (currently hiring in the U.S. only)
Must be able to pass a background check
Willing to obtain a Life & Health insurance license (we help with this)
Comfortable working remotely with internet access
Strong communication skills
Self-motivated and coachable
Benefits
Remote work - work from anywhere
Flexible schedule - set your own hours
No income cap - performance-based pay
Access to warm leads - no cold calling
Daily pay from top-rated insurance carriers
Bonus structure available
Licensing support for new agents
Team mentorship & leadership development
Potential to grow your own agency