Job Closed
This listing is no longer active.
... information is our commodity ™
Senior Cybersecurity Auditor
Location
United States
Posted
126 days ago
Salary
$127K - $137K / year
Seniority
Senior
Job Description
Senior Cybersecurity Auditor
Connected Logistics
• Performs Command Cyber Readiness Inspections and cybersecurity vulnerability evaluations • Uses a variety of security techniques, technologies, and tools to evaluate security posture in highly complex computer systems and networks • Performs vulnerability and risk analysis and participates in a variety of computer security penetration studies • Analyzes and defines security requirements for computer and networking systems, to include mainframes, workstations, and personal computers • Recommends solutions to meet security requirements • Gathers and organizes technical information about an organization's mission goals and needs and makes recommendations to improve existing security posture • Provides enterprise-wide technical analysis and direction for problem definition, analysis and remediation for complex systems and enclaves • Provides workable recommendations and advice to client executive management on system improvements, optimization, and maintenance in the following areas: Information Systems Architecture, Automation, Telecommunications, Networking, Communication Protocols, Application Software, Electronic Email, VOIP and VTC • Competent to work at the highest level of all phases of information systems auditing
Job Requirements
- Proven proficiency performing CCRI/ vulnerability assessment/ penetration testing on networks, databases, computer applications and IT frameworks
- Required to possess a DOD SECRET Clearance and be eligible for an IT-II Non-Critical Sensitive security clearance or Tier 3 (T3) upon assignment
- Seven (7) years of IT experience
- Five (5) years of cybersecurity experience
- Strong analytical and problem-solving skills for resolving security issues
- Strong skills implementing and configuring networks and networks components
- Command Cyber Readiness Inspection certification or equivalent in at least one of the following areas: Nessus Scan Analysis Operating Systems (Windows, Unix) Boundary Defense) Network Policy, Router, Firewall) Internal Defense (L2 Switch, L3 Switch) DNS (Policy, BIND/Windows) HBSS (remote console, AV, ABM, PA HIPS, ePO) Traditional Security (Common, Basic, NCV, SCV) Wireless Communications (BES, Handhelds)
- Tenable Certified NESSUS Auditory
- Knowledge and understanding of DOD security regulations, DISA Security Technical Implementation Guides
- Understanding of SCAP (Security Content Automation Protocol)
- Knowledge of and proficiency with: VULNERATOR USCYBERCOM CTO Compliance Program Wireless vulnerability assessment Web Services (IIS, Apache, Proxy) Database (SQL Server, Oracle) Email Services (Exchange) Vulnerability Scans (NESSUS, SCCM)
- Knowledge of Phishing exercises Cloud Security Operational Technology Artificial Intelligence USB Detection Physical Security
- Required to be a DISA Risk Management Executive, Cyber Standards Branch Certified Command Cyber Readiness Inspection (CCRI) Team Lead and have a certification in penetration testing, such as: Licensed Penetration Tester (LPT) Certified Expert Penetration Tester (CEPT) Certified Ethical Hacker (CEH) Global Information Assurance Certification Penetration Tester (GPEN)
- Familiarity with AUTOCHECKLIST Tool
Benefits
- health, dental, vision, life and disability insurance
- great 401(k) package
- generous Paid Time Off
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Lead cybersecurity design practice for Federal and DoD clients • Oversee technical execution and documentation for projects • Manage staff and drive business development efforts • Ensure compliance with cybersecurity standards and conduct quality reviews
Information Assurance, Security Specialist
MBL Technologies Inc.Digital Solutions, Risk Management, Compliance & Advisory, and Management Consulting
• Conduct independent security assessments of information systems and cloud environments, including IaaS, PaaS, and SaaS service models. • Apply comprehensive information assurance and cybersecurity knowledge to high-impact, complex technical assignments. • Plan, lead, and support major technology and security initiatives, ensuring alignment with organizational goals. • Evaluate security performance, risk posture, and assessment results; recommend corrective actions and improvements to support project success. • Serve as a technical expert across multiple concurrent security projects and initiatives. • Develop, implement, and maintain enterprise information assurance and security standards, policies, and procedures. • Coordinate, develop, and evaluate organizational security programs, ensuring compliance with regulatory and contractual requirements. • Recommend information assurance and security solutions to meet customer and mission needs. • Identify, document, report, and support the resolution of security incidents, violations, and vulnerabilities. • Support customers and stakeholders at senior levels in the development and implementation of security doctrine, policies, and procedures. • Apply cybersecurity expertise to government and commercial systems, including common user systems and specialized systems requiring enhanced security controls. • Provide integration and implementation support for computer system security solutions throughout the system lifecycle. • Analyze general information assurance-related technical issues and provide engineering and technical support to resolve identified problems. • Ensure all information systems remain secure, compliant, and operational, supporting continuous monitoring and risk management activities.
• Own enterprise deals end-to-end : Source, develop, and close ARR through new logo acquisition and strategic expansion • Navigate complex buying centers : Build and execute multi-stakeholder strategies across security, data platform, compliance, legal, and procurement organizations • Run disciplined proof of concept : Lead technical evaluations with clear success criteria, tight timelines, and executive alignment to accelerate deals • Master security reviews : Guide customers through vendor risk assessments, architecture reviews, penetration tests, and compliance validation (SOC2, ISO, PCI-DSS, HIPAA) • Build compelling business cases : Quantify value across risk reduction (PCI scope reduction, breach prevention) and enablement outcomes (faster analytics, safe AI access, compliant data sharing) • Negotiate complex contracts : Navigate DPAs, security exhibits, BAAs, indemnities, and enterprise licensing terms to mutually beneficial close • Drive expansion : Develop land-and-expand strategies that grow initial deployments across lines of business, environments, and use cases • Partner strategically : Leverage cloud ecosystem relationships (AWS, Snowflake, Databricks, etc.) and GSI partnerships to accelerate deals
Cybersecurity Engineer I
AcornsAcorns is an award-winning, online micro-investing company. The company was founded in 2012 by Walter and Jeffrey Cruttenden, father and son, with the goal of radically simplifying
• Design, deploy, and manage security tools and infrastructure to detect and prevent threats across cloud (AWS and GCP), corporate, and product environments. • Work collaboratively with engineering and product teams to integrate security into the SDLC (Secure Software Development Life Cycle) via threat modeling, code reviews, and automated testing. • Conduct security assessments, penetration testing, and vulnerability management to identify and remediate risks in our applications and services. • Serve as an escalation point for security incidents, assisting with investigation, response, and post-incident analysis to continuously improve our security posture. • Automate security tasks and implement 'security-as-code' practices to scale our security efforts efficiently. • Secure endpoints and manage Endpoint Detection and Response (EDR), Data Loss Prevention, MDM (Mobile Device Management), Zero Trust, Patching, and Configuration Management for corporate and production assets. • Stay current with the latest cybersecurity threats, trends, and technologies, recommending proactive measures to enhance defense mechanisms.




