SME Information Systems Security Engineer (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
SME Information Systems Security Engineer (Cybersecurity): Leading cybersecurity, compliance, and risk management activities for the U.S. Coast Guard's Digital Workplace Product Line with an accent on cyber-risk reduction, vulnerability mitigation, and ATO compliance frameworks. Focus on architecting security automation, managing critical vulnerabilities across cloud and mobile environments, and ensuring strict adherence to federal security standards.
Location: Hybrid in Alexandria, VA; must have an active Secret clearance
Salary: $170,000 - $210,000 Annually
Company
is a government IT transformation company delivering innovative services and solutions to improve how government agencies operate and serve citizens.
What you will do
- Lead cyber-risk reduction and vulnerability mitigation strategies across enterprise hardware, cloud productivity suites, and virtual desktop environments.
- Architect ATO compliance frameworks and strengthen security governance for enterprise workspace platforms and Manta Virtual Desktop (MVD) infrastructure.
- Design and implement advanced security automation to improve resilience across modern USCG desktop systems.
- Direct critical technical reviews to analyze and mitigate complex vulnerabilities across physical, mobile, and virtual workplace environments.
- Collaborate with senior product managers to prioritize scanning, patching, and risk reduction tasks for hardware and software lifecycles.
- Author and facilitate high-level documentation required to maintain secure interconnections and preserve ATO compliance status.
Requirements
- 10+ years of experience (or commensurate) in information systems security engineering.
- Active Secret clearance is mandatory.
- DoD 8570/8140 IASAE Level II or III certification (e.g., CISSP, CASP+, CSSLP).
- Expert-level experience in cyber-risk reduction, vulnerability mitigation, and maintaining compliance for enterprise-scale endpoint infrastructure.
- Technical mastery of continuous scanning, advanced risk analysis, and endpoint patching workflows.
- Deep knowledge of risk reduction governance and security automation principles within cloud and virtual desktop architectures.
Nice to have
- Experience architecting USCG C5I initiatives, Zero Trust solutions, or large-scale software modernization programs.
- Advanced certifications such as CISSP-ISSAP, CISSP-ISSEP, CCISO, or CISM.
- Strong communication skills for articulating complex risk metrics and compliance posture to executive leadership.
Culture & Benefits
- Flexible work environment.
- Learning and development platform including certification preparation content.
- Training, education, and certification assistance for full-time employees.
- Employee Assistance Program (EAP) and corporate discounts.
- Internal Mobility Program and referral bonus program.
- Pet insurance and standard health benefits.
Hiring process
- Virtual video interview with the hiring manager/team (camera and photo ID required).
- Enhanced Biometrics ID verification screening.
- Comprehensive background check covering criminal history, education, and employment for the past 7 years.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →