Rockville, Maryland, United States Hybrid / WFH Options
PTFS
action to be taken. Support and manage the FedRAMP cloud Moderate/High security environments to include Documenting and maintaining Security controls (technical, admin, policy) in accordance with NIST800-53-Rev 5 Conduct security briefings, debriefings, and annual refresher briefings. Provide Annual Security Refresher training Process incoming and outgoing visit authorization requests. Provide security support … in PTFS 1801 Research Blvd Office in Rockville MD Minimum two years ISSM experience and a CISSP Certification Experience obtaining FedRAMP for COTS software with extensive knowledge of NIST800-53 Rev 5. Significant experience with NIST800-53 Rev 5 Requirements: Requires at least three (3) years of experience in providing … communications, information, and information system security. Experience with DISS, e-APP (NBIS), clearance passing and conducting briefings and debriefings. Experience with DCSA inspections demonstrating positive results. Experience with NIST800-171, NIST800-53 Rev 5, FedRAMP/IL2, IL4 process and procedures Benefits: 15 days paid time off per year More ❯
Oshkosh, Wisconsin, United States Hybrid / WFH Options
Artech Information Systems
controls to advise the engineering team. 2. Participated or led cybersecurity compliance assessments: CMMC or ISO certification 3. Documented and demonstrated experience with defense regulatory compliance like CMMC, NIST, and DFARS. 4. Hold an active or can obtain a U.S. Government Secret level or above clearance. Interview Process: 1st interview will be via Teams video. 2nd and final … and contractual compliance. Maintain expert awareness of all aspects of information security and compliance, including PCI, and SOC requirements for information systems and industry best practices, such as, NIST800-53, 800-171, 172. Contribute to the development and maintenance of the Cybersecurity strategy. MINIMUM QUALIFICATIONS: Bachelor's degree in Cybersecurity, Information Systems, Communications … Computer Science or equivalent. Six (6) or more years of experience in cybersecurity including direct involvement with regulatory or framework compliance (CMMC, NIST800-171, PCI, ISO 27001, SOC2, FAR, DFARS, etc.) BASIC COMPETENCIES: Internal Contacts: Contact with employees or others primarily at a routine level involving basic information exchange; Contact with peers and others involving More ❯
Rome, New York, United States Hybrid / WFH Options
Gridiron IT Solutions
test and evaluate systems through a Whitebox adversarial approach for the DoD in support of our Air Force clients. Work with systems that are assessed based on the NIST800-53 Risk Management Framework security controls. Focus on the filtering capabilities and data flows, including low levels within the architecture of the system such as Mandatory … of start date Additional Qualifications Experience analyzing and executing test plans and procedures Experience developing or analyzing technical documentation Experience with penetration testing or adversarial emulation Experience with NIST800-53 security controls Knowledge of cyber threats and how to appropriately harden a system to prevent them Knowledge of vulnerability assessment tools, including Kali Linux, Wireshark More ❯
Annapolis Junction, Maryland, United States Hybrid / WFH Options
GTSC Talent Solutions
Desired Skills: Experience with one or more ServiceNow modules: CAM (Cloud Asset Management) RMF (Risk Management Framework) GRC (Governance, Risk & Compliance) SecOps (Security Operations) Familiarity with NISTSP800-53 standards Deep understanding of the Risk Management Framework (RMF) Previous experience in a DoD or highly regulated environment Education and Required Qualification Bachelor's Degree and More ❯
Bedford, Massachusetts, United States Hybrid / WFH Options
SkyBridge Aviation
SARs). • Perform control validation, security control testing, and system vulnerability assessments. • Support the Authorization and Accreditation (A&A) process in compliance with DoDI 8510.01 and NISTSP800-53. • Collaborate with system engineers, ISSMs, and other stakeholders to ensure cybersecurity requirements are integrated into system design. • Monitor and report on cybersecurity posture and ensure … clearance • DoD 8570.01-M IAT Level III certification (e.g., CASP+, CISSP, or equivalent) • 7+ years of cybersecurity experience, including RMF and control assessments • Experience with DoD cybersecurity policies, NIST standards, and vulnerability management tools • Three (3) years of experience in a Certification and Accreditation/A&A role • Demonstrated experience with STIGs, SRGs, POA&Ms and cybersecurity best More ❯
Hanover, Maryland, United States Hybrid / WFH Options
ICS Nett, Inc
with government agencies and partners to meet security requirements, create artifacts, and obtain government Authority to Operate. • Innovative Solutions: Identify and recommend security solutions that exceed NISTSP800, CNSSI 1253, and DODI 8510.01 requirements. Qualifications: • Education: Bachelor's degree in computer science, Information Systems, Information Assurance, Cyber Security, or related field of study; or More ❯
Washington, Washington DC, United States Hybrid / WFH Options
ClearanceJobs
Hands-on experience with AWS GovCloud, including EC2, EKS, MSK, S3, RDS, IAM, CloudTrail, and CloudWatch. • Strong expertise in Infrastructure as Code (Terraform, Ansible). • Experience with FedRAMP, NIST800-53, and cloud security best practices. • Proficiency in Kubernetes, Docker, and container orchestration. • Knowledge of Linux system administration and scripting (Python, Bash). • Experience with logging … availability. • Reliability & Performance: Monitor and enhance system performance, scalability, and reliability through observability tools, automation, and best practices. • Security & Compliance: Implement and maintain security controls aligned with FedRAMP, NIST800-53, and other federal cybersecurity standards. • Infrastructure as Code (IaC): Develop and manage infrastructure automation using Terraform and Ansible. • CI/CD & Automation: Enhance DevSecOps pipelines More ❯
Herndon, Virginia, United States Hybrid / WFH Options
Industrial Security Integrators, LLC
Support Engineer, you will play a critical role in delivering top-notch technical support, monitoring system health, and ensuring compliance with industry security standards such as CMMC and NIST800-171. Duties/Responsibilities: Provide first-line support for all support requests, including email troubleshooting, password resets, and mailbox management. Perform basic administrative tasks in … Conduct proactive system health checks to maintain operational efficiency. Handle Personally Identifiable Information (PII) with strict adherence to security protocols. Execute IT support tasks aligned with CMMC and NIST800-171 compliance requirements. Maintain detailed and accurate documentation of support activities while ensuring data security. Work closely with team members to ensure efficient issue resolution. Follow More ❯
Annapolis Junction, Maryland, United States Hybrid / WFH Options
GTSC Talent Solutions
Desired Skills: Experience with one or more ServiceNow modules: CAM (Cloud Asset Management) RMF (Risk Management Framework) GRC (Governance, Risk & Compliance) SecOps (Security Operations) Familiarity with NISTSP800-53 standards Deep understanding of the Risk Management Framework (RMF) Previous experience in a DoD or highly regulated environment Education and Required Qualification Bachelor's degree in More ❯
Corsham, Wiltshire, South West, United Kingdom Hybrid / WFH Options
i3Secure
highly complex programmes of work. Delivery of client engagements to support governance, risk and compliance against a range of cyber security regulations, frameworks and standards, including ISO 27001, NIST Regulations, CAF and secure by design. Staying on top of the latest developments within Cyber Security & Information Assurance by attending training and conferences. Working with the leadership and sales … and provide pre-sales support. About you: Experience: Security assurance, working with JSP440, JSP604 Security accreditation Secure by design Implementing security standards and frameworks, such as ISO 27001, NIST800 and CAF Conducting Cyber Security risk assessments and managing risk management activities Good knowledge of IT systems covering traditional infrastructure, cloud platforms and SaaS Working within … an operational security role or security management/leadership position Working with various technical teams Conducting Cyber Security assessments and gap analysis against various frameworks. Qualifications: NIST Foundation/Practitioner CISM CRISC ISO 27001 Lead Implementer/Auditor CISSP CISMP What we offer: Our story to-date has been phenomenal, but success doesn't end here and as More ❯
Gloucestershire, United Kingdom Hybrid / WFH Options
SSR General & Management
incident response and remediation efforts for security breaches. Provide security guidance and training to teams across the organization. Key Skills & Experience: Strong knowledge of security frameworks (ISO 27001, NIST800-30/53, OWASP) . Experience with risk management methodologies and compliance with MOD and HMG security standards (JSP, Def Stan 05-138/139). More ❯
Bristol, Kendleshire, Gloucestershire, United Kingdom Hybrid / WFH Options
SSR General & Management
incident response and remediation efforts for security breaches. Provide security guidance and training to teams across the organization. Key Skills & Experience: Strong knowledge of security frameworks (ISO 27001, NIST800-30/53, OWASP) . Experience with risk management methodologies and compliance with MOD and HMG security standards (JSP, Def Stan 05-138/139). More ❯
Hereford, Herefordshire, United Kingdom Hybrid / WFH Options
Telent
technical assessments of all applicable standards, policies, regulation, and legislation compliance Creation of security standards and requirements documents for projects and activities to be based on ISO 27001, NIST800-53 and ISO 22301. Review risks, propose mitigation actions and solutions, and assisting ongoing risk treatment activity. Assist the security testing process from scoping, planning and More ❯
Warwickshire, West Midlands, United Kingdom Hybrid / WFH Options
Telent Technology Services Ltd
technical assessments of all applicable standards, policies, regulation, and legislation compliance Creation of security standards and requirements documents for projects and activities to be based on ISO 27001, NIST800-53 and ISO 22301. Review risks, propose mitigation actions and solutions, and assisting ongoing risk treatment activity. Assist the security testing process from scoping, planning and More ❯
San Jose, California, United States Hybrid / WFH Options
Zscaler
Reporting to the Director Technology Risk and Compliance, you will be responsible for: Orchestrating FedRAMP and DoD authorization, including continuous monitoring and managing project timelines and deliverables e.g., NIST800-53 Rev 5, FIPS 140-3, DoD CC SRG V1R1, OMB Mandates) Driving the creation, review, and maintenance of critical documentation such as the System Security More ❯
Chantilly, Virginia, United States Hybrid / WFH Options
Gridiron IT Solutions
Security: Experience with best practices for the Azure cloud environments, Cloud Computing SRG, Identity and Access Management (IAM), Conditional Access Policies, and Regulatory Compliance such as IL6 and NIST800-53 Rev 5. Strong Experience with implementing governance capabilities within Management Groups, Subscriptions and Resource Groups Performance Optimization: Monitor and optimize cloud infrastructure for cost-effectiveness More ❯
Boston, Massachusetts, United States Hybrid / WFH Options
Digital Prospectors
design, implement, and maintain security controls, policies, and remediation strategies. • Develop and communicate clear, actionable recommendations to mitigate risk and limit operational/reputational impact. • Support compliance with NIST800-171 and other applicable security frameworks. • Mentor and guide team members while contributing to process improvements and best practices. Qualifications: • Strong knowledge of IT security best More ❯
Mc Lean, Virginia, United States Hybrid / WFH Options
Ctec Inc
Experience/User Interface (UX/UI), Section 508, United States Web Design System (USWDS), and Customer Journey Mapping (CJM). • Working knowledge of Application Security implementation, including NIST800-53 R5 security controls. Education: • Bachelor's degree in computer science, Software Engineering, Information Management Systems, or a related discipline. Equivalent professional experience will be considered More ❯
Chantilly, Virginia, United States Hybrid / WFH Options
Gridiron IT Solutions
performance, and storage utilization. Collaborate with cybersecurity analysts, engineers, and program stakeholders to drive continuous improvement of monitoring capabilities. Ensure Splunk implementation aligns with federal cybersecurity standards (e.g., NIST, RMF, FISMA). Document configurations, workflows, and standard operating procedures. Required Qualifications Active TS/SCI CI Polygraph required 7+ years of experience with Splunk engineering in a federal … Certified Admin or Architect; Splunk ES experience strongly preferred. Experience working in highly secure federal networks (IC, DoD, DHS, etc.). Understanding of frameworks like MITRE ATT&CK, NIST800-53, and RMF. Familiarity with cloud platforms (AWS, Azure) and hybrid data integration. Clearance Applicants selected will be subject to a security investigation and may need More ❯
Lexington, Massachusetts, United States Hybrid / WFH Options
John Galt Staffing
networks, file shares, virtual infrastructures, and some SAN/NAS environments within the group •Remediate security vulnerabilities, and harden systems according to cybersecurity best practices in line with NIST800-171, and CMMC guidelines •Develop and document technical processes and procedures •Work under minimal direction, and independently determine and develop approaches to complex IT solutions Must More ❯
Westminster, Colorado, United States Hybrid / WFH Options
Maxar Technologies
experience Preferred Qualifications: Active Secret or TS/SCI U.S. security clearance PowerShell training SCCM Group policy Imaging baselines OS Repositories Experience implementing compliance standards (eg STIG, CIS, NIST800-171) Cloud environment experience (AWS, Azure, GCP or other) Experience using Ansible, Satellite, Ubuntu Landscape or equivalent technologies. CI/CD experience would be preferable. Git More ❯
Herndon, Virginia, United States Hybrid / WFH Options
Industrial Security Integrators, LLC
Support Engineer, you will play a critical role in delivering top-notch technical support, monitoring system health, and ensuring compliance with industry security standards such as CMMC and NIST800-171. Duties/Responsibilities: Provide first-line support for all support requests, including email troubleshooting, password resets, and mailbox management. Perform basic administrative tasks in More ❯
Huntsville, Alabama, United States Hybrid / WFH Options
All Points Logistics LLC
on time. Experience with Linux Sysadmin (build, manage, monitor, shell scripting). Experience with Windows Sysadmin (build, manage, monitor, PowerShell scripting). Experience with Ansible preferred. Experience with NIST800-53 compliance preferred. Willing to travel a couple weeks per year. SECURITY CLEARANCE: FULL UNITED STATES CITIZENSHIP REQUIRED Public Trust/NACI/Badging Positions with More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
QBE Management Services (UK) Limited
access, disclosure, or loss.? Required Qualifications: Tertiary Degree or equivalent combination of education and work experience. Preferred Qualifications: Experience with security and risk-based standards such as ISO27001, ISO31000, NIST800, and PCI-DSS. Previous information security experience in a similar role. Regional experience required, global experience preferred. Experience working with outsourced service partners. Why QBE? At My Best? At QBE … for you and all the family.?? Family friendly policies – we offer 26 weeks leave at full pay regardless of gender identity, sexual orientation or how you become a parent.? <spMore ❯