Applyπ United States
π§ Full-Time
πΈ 138826.0 - 173533.0 USD per year
π Software Development
- 10+ years of a combination of development, security and operations experience
- BA/BS in Cybersecurity, Computer Science or related field, or equivalent experience
- Strong understanding of the controls inheritance model and controls automation, shared responsibility model, and an understanding of modern RMF methodologies such as Continuous RMF
- Applying cybersecurity concepts, including threats, vulnerabilities, security operations, encryption, boundary defense, auditing, authentication, and risk management
- Expertise in application, platform, and cloud security including implementing CIS benchmarks and security guidelines
- Applying network firewalls, intrusion detection systems (IDS) and intrusion prevention systems (IPS), anti-malware, vulnerability scanning, encryption, monitoring, and Identity, Credential, and Access Management (ICAM)
- Experience working with government clients, especially in a 'Software Factory' environment, and familiarity with DoD security frameworks and Impact Level (IL) requirements
- Strong communication skills and interest in a client pairing environment
- Relevant cybersecurity certifications such as CISSP, CISM, CEH, or equivalent. Additional cloud or vendor certifications (AWS, GCP, etc.) are a plus
- Located within a commutable distance into Colorado Springs, CO and can be onsite on a hybrid capacity
- Must have an active TS/SCI security clearance.
- Lead and collaborate with cross-functional teams to enhance security processes and implement best practices.
- Conduct comprehensive cybersecurity assessments across the entire technology stack to identify vulnerabilities and ensure robust security measures.
- Shape and prioritize the organizationβs cybersecurity strategy, identifying key risks and remediation actions to protect critical assets.
- Collaborate with external cybersecurity and compliance organizations to drive changes that align with cRMF practices, accelerating the time to value and enhancing overall security outcomes.
- Lead incident response efforts, conducting root cause analyses and driving improvements to security resilience.
- Educate on cybersecurity best practices and provide regular reports on risks, metrics, and issues to leadership, ensuring informed decision-making and proactive risk management.
- Train and mentor security engineers, fostering growth and up-skilling of the cybersecurity practice team members.
AWSCloud ComputingCybersecurityGCPCommunication SkillsCI/CDDevOpsComplianceRisk ManagementScripting
Posted 3 months ago
Apply