Talent.com
VMD Corp
Cyber Security Engineer - TS/SCIVMD Corp • Bethesda, MD, US
Cyber Security Engineer - TS/SCI

Cyber Security Engineer - TS/SCI

VMD Corp • Bethesda, MD, US
30+ days ago
Job type
  • Full-time
Job description

Description




Cyber Security Engineer – TS/SCI
Xcelerate Solutions is seeking an exciting opening for you, our next TS/SCI Cyber Security Engineer working across several Task Orders under the DOMEX Technology Platform (DTP) contract supporting NMEC. Have impact as part of a mission focused, solutions oriented, and adaptive team that values innovation, collaboration, and professional development.
As a Cyber Security Engineer, your job will be to design, develop, and implement secure systems in on-premises infrastructure. You will leverage on your experience with security technologies and industry best practices to ensure that security is integrated into system design, development, testing, and deployment and that all security requirements are compliant with the DoD Risk Management Framework. This exciting and challenging work will help you expand your capabilities in security and will provide you with the skills and experience you need to achieve additional levels of the DoD 8570 IAT and IASAE Certifications. While most work is conducted on-site at our client location in Bethesda, MD, we offer a flexible schedule and, occasionally, some tasks may be performed remotely. Percentage of remote work will vary based on client requirements/deliverables.
In this role, you will collaborate closely with ISSOs, ISSSMs, software engineers, software developers, system engineers and Government counterparts to perform the full spectrum of systems and cyber security engineering tasks to ensure our systems meet a variety of regulatory compliance frameworks. Come join our award-winning organization and work with some of the most talented and brightest minds in the GovCon industry.
Location:
Bethesda, MD
Security Clearance:
Active TS/SCI
Responsibilities:
  • Support the secure architecture, design, and implementation of DoD systems in accordance with DoDI 8510.01, NIST SP 800-53, and other DoD security guidance.
  • Lead the integration of RMF activities into the system development lifecycle (SDLC), including selecting, implementing, and validating security controls.
  • Develop and maintain key security documentation such as System Security Plans (SSPs), Security Assessment Reports (SARs), Risk Assessments, and Plan of Action and Milestones (POA&Ms).
  • Collaborate with ISSOs, ISSMs, developers, and system owners to ensure systems are developed and maintained with approved security configurations.
  • Apply Security Technical Implementation Guides (STIGs) to systems and validate compliance using tools such as SCAP, STIG Viewer, and ACAS.
  • Maintain application, network, and database scanning infrastructure (application/product updates, database maintenance, benchmark/audit files, application/server builds, rule pack/content updates, scanner, or agent deployment etc.)
  • Analyze vulnerability scans and ensure timely mitigation or acceptance of risks based on DoD policies.
  • Provide technical input to support and maintain system authorization.
  • Participate in system reviews, architecture assessments, and engineering design reviews to embed cybersecurity from the outset.
  • Develop and implement automation or security tools to improve the compliance and monitoring of systems.
  • Support security incident response and forensics analysis in coordination with ISSMs and Security points of contact


Minimum Requirements:
  • BS degree and 8+ years of experience in cybersecurity. Additional relevant years of experience in lieu of degree is accepted.
  • An active TS/SCI clearance with ability to obtain a Poly
  • Have at least one of the following DoD 8570.01-M IASAE Level II certifications: CISSP, CISSP-ISSAP, CISSP-ISSEP, CSSLP, or CASP+ CE. NOTE: the CISSP Associate is not acceptable
  • Developer experience is preferred in a least one scripting / programming language.
  • Experience with reviewing cybersecurity vulnerabilities for risk and relevance as well as in vulnerability mitigations/remediation planning, for identified systems, network, application and database vulnerabilities
  • Ability to architect, design, troubleshoot, maintain, and deploy vulnerability scanning solutions such as (OWASP, Fortify, Sonarqube, Tenable, etc.)
  • Experience with XACTA, EMass, or similar tool
  • Strong in-depth understanding of including Microsoft Windows and Linux/UNIX operating systems
  • Experience with middleware / web technologies (Apache, tomcat, IIS, etc.)
  • Experience with Databases (Postgres, MS SQL, MySQL, ElasticSearch, etc.)
  • Understanding of TCP/IP networking.
  • Experience with Continuous Integration and Continuous Delivery Platforms (Jenkins, Bamboo, GitlabCI TFS, etc.)
  • Familiar with NIST 800-171, 800-172, NIST SSDF, and CMMC requirements.
  • Experience with NIST Special Publications e.g. NIST SP 800-27, 30, 37, 53, 60, 171, NIST SSDF, CMMC requirements, and CNSS publication CNSSI 1253
  • Experience supporting DoD/IC systems through the entire Risk Management Framework Plus (RMF) process
  • Experience establishing a System Security Engineering management process to integrate security and privacy controls into complex hardware and software systems
  • Experience developing and reviewing security concept of operations, systems security plans, security risk assessments, contingency plans, configuration management plans
  • Experience with incident response plans, plan of actions and milestones, risk management plans, and vulnerability management plans
  • Strong communication skills; able to successfully communicate with management personnel, technical personnel and third parties.


Preferred Qualifications:
  • Software development/coding experience with programming languages such as Python, Java, and React
  • Successfully achieved ATO under RMF+
  • Experience with big data applications
  • Experience with tools for ticketing and documentation (e.g., Gitlab, Jira, Confluence).
  • Experience working in an Agile environment
  • Experience with OIDC or Oauth2
  • Experience with any of the following technologies:
    • Kubernetes, Rancher, Strimzi, or Cloudera
    • Active Directory
      • Scripting languages like bash, python, or PowerShell


About Xcelerate Solutions:
Founded in 2009 and headquartered in McLean, VA, Xcelerate Solutions (www.xceleratesolutions.com) is one of America's fastest-growing companies. Xcelerate’s culture is defined by our diversified workforce of dynamic and versatile professionals, supported with growth and development opportunities that contribute to individual and company growth. This strong commitment to our employees has been recognized by our inclusion on the Washington Business Journal’s “50 Best Places to Work” list as well as being a “Great Place to Work” certified company with a 4.6 star, and a 99% CEO approval Glassdoor rating. Come find out why Xcelerate Solutions is one of the DC Metro top employers!
Xcelerate Solutions is an Equal Employment Opportunity/Affirmative Action Employer. We evaluate qualified applicants without regard to race, color, national origin, religion, age, equal pay, disability, veteran status, sex, sexual orientation, gender identity, genetic information, or expression of another protected characteristic. As part of this commitment to the full inclusion of all qualified individuals, Xcelerate provides reasonable accommodations if needed because of an applicant's or an employee's disability.

Pay Transparency Notice: Xcelerate Solutions will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant.
Create a job alert for this search

Cyber Security Engineer  - TS/SCI • Bethesda, MD, US

Similar jobs

Cyber Security Engineer SME with FSP

VMD CorpBethesda, MD, US
Full-time

Cyber Security Engineer SME – TS/SCI with Full Scope Polygraph.Xcelerate Solutions is seeking a highly skilled Cyber Security Engineer to provide mission-critical system support to our Intelligence... Show more

IDS/IPS Cyber Security Engineer, Mid

DAn SolutionsWashington, DC, USA
Full-time
Quick Apply

REQUIRES AN EXISTING/ACTIVE TS/SCI WITH CI POLYGRAPH - NO REMOTE WORK, MUST WORK ON SITE.We are seeking an experienced Network Intrusion Detection Engineer to join our cybersecurity team.The ideal ... Show more

Senior Security Engineer- Remote

Nastech GlobalWashington, DC, United States
Remote
Full-time

Job Title :Senior Security EngineerLocation :Washington, DC (Remote, but need to be within 100 miles of DC)Duration :Contract to HireClient Requirement :US Citizen able to obtain Public Trust Clear... Show more

 • Promoted

Cyber Security Engineer — Impact in Cloud & On-Prem

LeidosBethesda, MD, United States
Full-time

A leading technology solutions provider in Bethesda, MD is seeking a Cyber Security Engineer to deliver expertise and support in cloud and on-premises security infrastructures.The ideal candidate w... Show more

 • Promoted

Cloud Cyber Security Engineer - TS/SCI

VMD CorpBethesda, MD, US
Full-time

Cloud Cyber Security Engineer  – TS/SCI.Xcelerate Solutions is seeking our next Cloud Cyber Security Engineer, to play a critical role in the accreditation of a state-of-the-art technology stack un... Show more

Cybersecurity Engineer

Beyond SOFWashington, DC, United States
Full-time

Bachelor's degree in Computer Science, Information Security, or a related field.At least 10 years of experience as a cybersecurity engineer with a specialization in designing and building implement... Show more

 • Promoted

Lead Energy Storage Cyber Security Engineer - REMOTE

ThinkBAC ConsultingWashington, DC, United States
Remote
Full-time

Job DescriptionLead Energy Storage Cybersecurity Engineer / Cybersecurity ArchitectLocation :FULLY REMOTE (Anywhere in the USA)This is an opportunity to join an industry leading renewable energy ve... Show more

 • Promoted

Splunk Engineer - Active TS/SCI Required

ENS Solutions, LLCWashington, DC, US
Full-time
Quick Apply

You will work with an expert team focused on implementing and operating next-generation security solutions for government and commercial clients.You’ll use Splunk and integrate it with other state-... Show more

Cyber Security Engineer

Hoplite Solutions LLCBethesda, MD, US
Full-time
Quick Apply

Hoplite Solutions is seeking multiple Cyber Security Engineers.This role is responsible for protecting the customer’s information systems and networks from potential cyber-attacks.The Cyber S... Show more

Cyber Security Project Engineer

Ohm SystemsWashington, DC, United States
Full-time
Quick Apply

Job Description</b></p> <p><b>Clerance: - Top Secret with poly</b></p> <p><b>Role:</b></p> <p>A Cyber Security Project Engineer bri... Show more

Emerging Technology / Cybersecurity Engineer

Zermount, IncArlington, VA, US
Full-time
Quick Apply

Zermount, Inc is seeking a highly skilled and motivated Emerging Technology / Cybersecurity Engineer to join our dynamic team in the Computer & Network Security industry.As an Emerging Technolo... Show more

FCC - Security Engineer / SIEM Engineer

cFocus Software IncorporatedWashington, DC, US
Full-time
Quick Apply

Focus Software seeks a Security Engineer / SIEM Engineer to join our program supporting the Federal Communications Commission (FCC).This position requires the ability a Public Trust clearance.Bache... Show more

Senior Cybersecurity Engineer - DoD Compliance (TS/SCI)

Beyond SOFWashington, DC, United States
Full-time

A cybersecurity solutions firm in Washington seeks an experienced Cybersecurity Engineer.You will design and implement security controls, ensure compliance with regulations, and monitor for securit... Show more

 • Promoted

Senior Security Engineer — Cloud & Defense Tech

AndurilWashington, DC, United States
Full-time

A defense technology company in Washington, DC seeks a Security Engineer to design and implement security controls across cloud and corporate infrastructures.The ideal candidate will have strong pr... Show more

 • Promoted

Lead Security Engineer - Federal Cyber Operations

TekSynapWashington, DC, United States
Full-time

A high-tech company is seeking a Lead Security Engineer to oversee cybersecurity operations within the DC area.The ideal candidate will lead efforts to ensure compliance with federal security stand... Show more

 • Promoted

Senior Cybersecurity Engineer / Offensive Security Lead

Apogee Global RMSWashington, DC, US
Full-time
Quick Apply

Apogee Global RMS is seeking a.Senior Cybersecurity Engineer / Offensive Security Lead.This role is designed for operators who bring hands‑on offensive tradecraft, current certifications, and recen... Show more

Senior Network Security Engineer, Federal

RedSealWashington DC, DC, US
Full-time
Quick Apply

RedSeal, a pioneer in proactive exposure management and winner of the SC Award for Best CTEM Solution, helps organizations see, understand, and secure their hybrid digital environments across IT (o... Show more

Cyber Security Engineer — Cloud & On-Prem Security

Leidos IncBethesda, MD, United States
Full-time

A leading technology company is seeking a Cyber Security Engineer to support innovative technology solutions in Bethesda, MD.This role involves providing technical security expertise for both cloud... Show more