Job Closed
This listing is no longer active.
Digital Solutions, Risk Management, Compliance & Advisory, and Management Consulting
Information Assurance, Security Specialist
Location
Washington
Posted
127 days ago
Salary
0
Seniority
Senior
Job Description
Information Assurance, Security Specialist
MBL Technologies Inc.
• Conduct independent security assessments of information systems and cloud environments, including IaaS, PaaS, and SaaS service models. • Apply comprehensive information assurance and cybersecurity knowledge to high-impact, complex technical assignments. • Plan, lead, and support major technology and security initiatives, ensuring alignment with organizational goals. • Evaluate security performance, risk posture, and assessment results; recommend corrective actions and improvements to support project success. • Serve as a technical expert across multiple concurrent security projects and initiatives. • Develop, implement, and maintain enterprise information assurance and security standards, policies, and procedures. • Coordinate, develop, and evaluate organizational security programs, ensuring compliance with regulatory and contractual requirements. • Recommend information assurance and security solutions to meet customer and mission needs. • Identify, document, report, and support the resolution of security incidents, violations, and vulnerabilities. • Support customers and stakeholders at senior levels in the development and implementation of security doctrine, policies, and procedures. • Apply cybersecurity expertise to government and commercial systems, including common user systems and specialized systems requiring enhanced security controls. • Provide integration and implementation support for computer system security solutions throughout the system lifecycle. • Analyze general information assurance-related technical issues and provide engineering and technical support to resolve identified problems. • Ensure all information systems remain secure, compliant, and operational, supporting continuous monitoring and risk management activities.
Job Requirements
- 5–10 years of experience in information assurance, cybersecurity, or a related discipline
- Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field
- Senior industry professional certification, such as CISSP or equivalent (e.g., CISM, CISA)
- Demonstrated experience with cloud security assessments and enterprise security programs
- Strong knowledge of information assurance principles, security controls, and risk management practices
- Ability to work independently and lead security initiatives in complex environments
- Experience supporting federal, government, or highly regulated environments
- Familiarity with industry frameworks and standards (e.g., NIST, FedRAMP, FISMA, ISO)
- Experience providing technical leadership or mentoring to team members
- Strong written and verbal communication skills, including the ability to brief senior stakeholders.
Benefits
- robust benefits package (medical, dental, vision, STD, Accident, Life, Hospital Insurance, FSA, HSA, 401K match, professional development stipend)
- remote work
- employee discounts
- learning and development reimbursement
- Community Service and Employee Engagement events
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Own enterprise deals end-to-end : Source, develop, and close ARR through new logo acquisition and strategic expansion • Navigate complex buying centers : Build and execute multi-stakeholder strategies across security, data platform, compliance, legal, and procurement organizations • Run disciplined proof of concept : Lead technical evaluations with clear success criteria, tight timelines, and executive alignment to accelerate deals • Master security reviews : Guide customers through vendor risk assessments, architecture reviews, penetration tests, and compliance validation (SOC2, ISO, PCI-DSS, HIPAA) • Build compelling business cases : Quantify value across risk reduction (PCI scope reduction, breach prevention) and enablement outcomes (faster analytics, safe AI access, compliant data sharing) • Negotiate complex contracts : Navigate DPAs, security exhibits, BAAs, indemnities, and enterprise licensing terms to mutually beneficial close • Drive expansion : Develop land-and-expand strategies that grow initial deployments across lines of business, environments, and use cases • Partner strategically : Leverage cloud ecosystem relationships (AWS, Snowflake, Databricks, etc.) and GSI partnerships to accelerate deals
Cybersecurity Engineer I
AcornsAcorns is an award-winning, online micro-investing company. The company was founded in 2012 by Walter and Jeffrey Cruttenden, father and son, with the goal of radically simplifying
• Design, deploy, and manage security tools and infrastructure to detect and prevent threats across cloud (AWS and GCP), corporate, and product environments. • Work collaboratively with engineering and product teams to integrate security into the SDLC (Secure Software Development Life Cycle) via threat modeling, code reviews, and automated testing. • Conduct security assessments, penetration testing, and vulnerability management to identify and remediate risks in our applications and services. • Serve as an escalation point for security incidents, assisting with investigation, response, and post-incident analysis to continuously improve our security posture. • Automate security tasks and implement 'security-as-code' practices to scale our security efforts efficiently. • Secure endpoints and manage Endpoint Detection and Response (EDR), Data Loss Prevention, MDM (Mobile Device Management), Zero Trust, Patching, and Configuration Management for corporate and production assets. • Stay current with the latest cybersecurity threats, trends, and technologies, recommending proactive measures to enhance defense mechanisms.
• Analyze security events from various sources and distinguish between normal and suspicious behavior. • Take ownership of Tier-3 incidents, provide technical case leadership and overall subject-matter coordination. • Support, coach and mentor less experienced team members. • Prioritize alerts according to customer SLAs and make informed escalation decisions. • Perform complex analyses, engage external expertise when needed, and uncover potential compromises. • Independently handle challenging security incidents and requests. • Provide Tier-3 consultation by phone and involve additional experts as required. • Ensure quality of tickets and processes; identify and communicate opportunities for improvement. • Contribute to the enhancement of security signals (improving signal-to-noise ratio). • Reliably respond to all inquiries related to major security incidents. • Lead incident investigations, conduct post-mortem analyses and define next steps. • Independently structure and prioritize your own tasks. • Professionally represent AWN to customers on technical matters.
Senior Manager, Information Technology, Cybersecurity
SparkfundThe leading energy transition partner for the built environment
• Own and maintain the IT and Security roadmap aligned to business needs, SOC 2 expectations, and customer requirements • Prioritize and sequence investments across identity, devices, endpoint protection, SOC 2 controls, and collaboration tooling • Define and communicate IT and Security standards, policies, and architectural decisions • Partner with leadership to develop budget forecasts and resourcing plans for IT and cybersecurity • Identify operational and compliance risks and propose mitigation strategies and tradeoffs • Administer collaboration and identity platforms (Google Workspace, Microsoft 365, Slack, IAM, MDM, endpoint protection, etc.) • Configure and manage onboarding/offboarding workflows and IT provisioning • Implement and maintain IT helpdesk processes (low-volume) • Support vendor evaluations, integrations, and continuous improvements across the IT stack • Maintain secure device and access management across remote environments • Execute SOC 2 readiness and evidence collection in partnership with external consultants • Maintain IT and security policies, documentation, and control evidence • Coordinate responses to client security questionnaires and due diligence requests • Support vendor risk management and access control processes • Monitor and support incident response workflows in collaboration with leadership and vendors • Implement incremental improvements to device management, identity tooling, and endpoint management • Support responsible adoption of AI tooling and assess operational risks on a practical basis • Document workflows and train internal users on IT processes and tools




