SkyePoint Decisions is an established ISO 9001:2015 and ISO/IEC 27001:2013 certified small business and appraised at CMMI Level 3 for Services and Development. We possess a common vision of excellence and foster a collaborative team culture built upon individual performance and accountability. We invest in our people and systems to create value for our clients. It is the SkyePoint Way. We are grateful for the opportunity to work with exceptional people and give back to the communities we serve. Our employees value the flexibility at SkyePoint that allows them to balance quality work and their personal lives. SkyePoint Decisions is a participating E-Verify Employer. U.S. Citizenship is required for most positions. Equal Opportunity Employer/Veterans/Disabled.
Sr. Security Control Assessor
Location
United States
Posted
45 days ago
Salary
$100K - $120K / year
Seniority
Senior
Job Description
Sr. Security Control Assessor
SkyePoint Decisions
SkyePoint Decisions is a leading Cybersecurity Architecture and Engineering, Critical Infrastructure and Operations, and Applications Development and Maintenance IT service provider headquartered in Dulles, Virginia with operations across the U.S. We provide innovative enterprise-wide solutions as well as targeted services addressing the complex challenges faced by our federal government clients. Our focus is on enabling our clients to deliver their mission most efficiently and effectively – anytime, anywhere, securely. We combine technical expertise, mission awareness, and an empowered workforce to produce meaningful results. This is a contingent position based upon customer approval. SkyePoint Decisions is seeking a Sr. Security Control Assessor to join our team supporting a government contract. This is a remote position. Responsibilities: - Provide overall SA/OSA subject matter expertise to the Information System Security and Authorization (SA) program. - Provide specific guidance and technical expertise in the form of standards, policies, procedures, and oversight for the program. - Review and provide guidance on OSA program and continuous monitoring capabilities, PIA, SSPs and identity updates to enhance the quality of these assessments. - Review and provide advice based on analysis for Privacy Impact Assessments (PIA). - Review and provide advice based on analysis for Third Party Website and Applications (TPWA). - Review and analyze all system artifacts for accuracy, completeness, in support of an authorization to operate (ATO) requests. - Review ATO packages under the RMF for customer systems and the systems of the external partners and create or updated ATO packages as necessary before submission for approval. - Create or Review ATO packages prior to submission to CISO and CIO approval. - Ensure all assessment and audit reports are uploaded properly to the FISMA Management Tool: (Cyber Security Assessment and Management (CSAM)). - Coordinate and assist with data calls and data collection efforts for compiled and managed responses from stakeholders for audit and compliance reporting. - Conduct audits of closed Plan of Actions and Milestones (POA&M) for completeness and compliance. - Support the ongoing security authorization (OA) process that includes continuous monitoring. - Provide document development support for CISO sponsored events and responses to questions and concerns. - Draft document review and feedback on application of security and privacy requirements (e.g., technical review boards, review of SSPs, RA’s, contingency plan, POA&M reports). - Track the renewal dates for the security authorizations and ongoing security authorizations to ensure the ATO renewal efforts by working with respective stakeholders, SOs, and ISSOs. - Conduct lessons learned sessions and developing best practices. Required Qualifications: - Must be able to obtain a High Risk/Public Trust Security Clearance. - Bachelor’s or equivalent and five to ten (5-10) years related experience. - At least three years of experience in a computer security incident response role. - At least three years of enterprise Linux and Windows administration. - Experience working in a Security Operations Center. - Experience with Active Directory and other enterprise credential stores. - Passion for information security and incident response. - Experience with cyber threat intelligence. - Excellent communications and interpersonal skills. - Critical thinking and problem-solving skills. - Ability to quickly learn new technologies and respond to changing requirements and environment. - Ability to work independently and in a cross functional team. - Ability to identify both tactical and strategic solutions to complex issues. - Advanced malware analysis experience, such as reverse engineering and disassembly design. - Must be a U.S. citizen. Preferred Qualifications: - Active Secret or Top Secret security clearance. Compensation: Salary Range: $100,000-$120,000 The SkyePoint Decisions salary range for this position is a general guideline only. It represents an estimated range for this position and is just one piece of our total compensation package. Salary at SkyePoint is determined by various factors, including but not limited to location, work schedule, the candidate’s combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability, market data and business considerations. In addition to a competitive salary, SkyePoint offers benefits including a certification incentive program, PTO, floating federal holiday options, several insurance options including HMO and High Deductible plans with Health Savings Accounts [HSAs], Flex Spending Accounts [FSAs], Full Dental Plans, Vision, ST/LT Disability, Life Insurance, and 401k matched. What We Can Offer You: - At SkyePoint, we go B.I.G. (beginning in GRATITUDE) by recognizing all we have and giving back to our employees, families, and communities. It instills a positive mindset that permeates all we do. By beginning in gratitude, SkyePoint can continue to spread living in gratitude each day. - Great Benefits: Several insurance options including HMO and High Deductible plans with Health Savings Accounts [HSAs], Flex Spending Accounts [FSAs], Full Dental Plans, ST/LT Disability, Life Insurance, floating federal holiday options, and 401k matched - Certificate Incentive Program: To promote professional development, we recognize and reward employees who obtain new certifications aligned with business needs. - Flexible Work Environment SkyePoint Decisions is an established ISO 9001:2015 and ISO/IEC 27001:2013 certified small business and appraised at CMMI Level 3 for Services and Development. We possess a common vision of excellence and foster a collaborative team culture built upon individual performance and accountability. We invest in our people and systems to create value for our clients. It is the SkyePoint Way. We are grateful for the opportunity to work with exceptional people and give back to the communities we serve. Our employees value the flexibility at SkyePoint that allows them to balance quality work and their personal lives. SkyePoint Decisions is a participating E-Verify Employer. U.S. Citizenship is required for most positions. Equal Opportunity Employer/Veterans/Disabled. CCPA Disclosure Notice Here
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Security Engineer
YunoYuno enables any company to manage all the payment methods and fraud providers through a single integration.
• Design, implement, and maintain security controls integrated into the SDLC, CI/CD pipelines, and cloud environments, ensuring security by default across development and operations. • Collaborate closely with Engineering and DevOps teams to secure cloud infrastructure, Kubernetes clusters, and containerized workloads. • Implement and maintain security configurations in AWS and GCP (e.g., IAM, WAF, GuardDuty, Security Groups), continuously strengthening the cloud security posture. • Automate security processes and controls using scripting and infrastructure as code to improve efficiency and scalability. • Ensure DevSecOps practices align with compliance frameworks such as PCI DSS, ISO 27001/27701, and SOC 2, supporting audits and internal security assessments. • Explore and evaluate emerging technologies and architectures (e.g., Kubernetes enhancements, AI integrations) to ensure secure adoption.
Deine Mission - Du verantwortest den Vertrieb unserer Cybersecurity-Services – von der Identifikation neuer Geschäftsmöglichkeiten über Ausschreibungen und Angebotsprozesse bis hin zum erfolgreichen Abschluss - Du gehst proaktiv auf die Suche nach Opportunities, baust dir eigenständig eine belastbare Pipeline auf und entwickelst einen klaren Plan, wie du deine Ziele erreichst - In Erstgesprächen auf C-Level verstehst du die Herausforderungen unserer (Neu-)Kund:innen, analysierst Bedarfe realistisch und übersetzt diese in eine überzeugende Value Proposition - Gemeinsam mit Consulting, SOC Engineering und Delivery begleitest du Demos, Workshops und Ausschreibungen und stellst sicher, dass fachliche Tiefe und Machbarkeit Hand in Hand gehen - Du erstellst passgenaue Angebote, führst Vertragsverhandlungen souverän bis zum Abschluss und behältst Follow-ups, Forecasts und Pipeline-Pflege im CRM stets im Blick - In enger Abstimmung mit Marketing versetzt du dich in unterschiedliche Zielgruppen hinein und gestaltest Kampagnen so, dass sie nicht nur Aufmerksamkeit erzeugen, sondern echte Leads liefern - In enger Abstimmung mit Marketing verfolgst du Kampagnen nach und verwandelst Leads zu echten Opportunities Deine Skills - Mehrjährige Erfahrung im B2B-Vertrieb von Cybersecurity-Lösungen (Services, Managed Services oder Plattformen) - Souveränes Auftreten und starke Kommunikations- und Verhandlungskompetenz - Routine in komplexen Sales-Zyklen, inkl. Bedarfsanalysen, Angeboten, Ausschreibungen (RfPs) und Vertragsabschlüssen - Strukturierte, zielorientierte Arbeitsweise mit hoher Abschlussstärke und sicherem Umgang mit Pipeline & Forecasts - Hohe Eigenmotivation, Teamgeist und professionelles Auftreten - Sehr gute Deutschkenntnisse (C1) sowie gute Englischkenntnisse - Dein Hauptwohnsitz befindet sich Deutschland oder Österreich Dein Deal - 100% remote – arbeite bis zu 182 Tage pro Jahr aus dem EU-Ausland - Vertrauensurlaub - du bestimmst über den gesetzlichen Mindesturlaub hinaus, wie viel Pause du brauchst - Work & Sleep in unseren modernen Büroapartments in Düsseldorf und Wien - Betriebliche Krankenversicherung inkl. Zahnversicherung & Krebs-Vorsorge-Scan - Betriebliche Altersvorsorge mit 25% Zuschuss (steigend nach 3 und 5 Jahren) - Mental Health Programm „OpenUp Family“ – für dich und 3 weitere Lieblingsmenschen - Jobrad #theyseemerollliiiiing - 50 € Internetpauschale pro Monat - Monatliches Lieferando-Budget in Höhe von 20 € - water-Shop mit coolem Merch - Corporate Benefits in den Bereichen Mode, Reisen, Technik und mehr - Edenred-Cash-Karte mit monatlich 44 € steuerfreiem Sachbezug oder Firmenfitness mit EGYM Wellpass Deine Konditionen
ONSITE VMWare SME, Secret Clearance (pending award)
CDWCDW Corporation is a leading multi-brand provider of information technology solutions to business, government, education and healthcare customers in the United States, the United Kingdom and Canada. A Fortune 500 company and member of the S&P 500 Index, CDW helps its customers to navigate an increasingly complex IT market and maximize return on their technology investments. For more information about CDW, please visit www.CDW.com. Our broad array of products and services range from hardware and software to integrated IT solutions such as security, cloud, hybrid infrastructure and digital experience.
Description At CDW, we make it happen, together. Trust, connection, and commitment are at the heart of how we work together to deliver for our customers. It's why we're coworkers, not just employees. Coworkers who genuinely believe in supporting our customers and one another. We collectively forge our path forward with a level of commitment that speaks to who we are and where we're headed. We're proud to share our story and Make Amazing Happen at CDW. Overview We're seeking an experienced VMware Subject Matter Expert (SME) to support a mission-critical environment in Norfolk, VA. This role is ideal for a senior virtualization engineer who thrives in complex enterprise environments, understands DoD security requirements, and can lead the design, implementation, optimization, and sustainment of VMware-based infrastructure. Key Responsibilities Architecture & Engineering - Design, implement, and maintain VMware virtualization solutions across enterprise environments. - Lead modernization efforts including vSphere upgrades, vSAN deployments, and ESXi lifecycle management. - Develop and maintain system architecture documentation, diagrams, and configuration baselines. Operations & Optimization - Provide Tier III/SME-level support for VMware platforms, including vCenter, ESXi hosts, vSAN, NSX, and Horizon. - Troubleshoot complex virtualization, storage, and networking issues. - Monitor system performance and recommend improvements for efficiency, scalability, and security. Security & Compliance - Ensure all VMware components meet DoD cybersecurity requirements (STIGs, RMF controls, patching). - Support vulnerability remediation and system hardening activities. - Collaborate with cybersecurity teams to maintain compliance and support accreditation efforts. Collaboration & Leadership - Serve as the primary VMware technical advisor to program leadership and engineering teams. - Mentor junior engineers and contribute to knowledge-sharing across the team. - Participate in planning, design reviews, and technical working groups. Required Qualifications - Active Secret Clearance. - Bachelor's degree in IT, Computer Science, Engineering, or equivalent experience. - 7+ years of experience with VMware virtualization technologies. - Expertise with VMware vSphere/ESXi, vCenter Server, vSAN, and VMware tools. - Strong understanding of enterprise networking, storage, and Windows/Linux server administration. - Experience supporting DoD or federal environments. Preferred Qualifications - VMware certifications (VCP-DCV, VCAP, or higher). - Experience with NSX-T, Horizon VDI, PowerCLI automation, and DoD STIGs/RMF. - Familiarity with hybrid cloud technologies. Soft Skills - Strong communication and documentation abilities. - Ability to work independently and lead technical initiatives. - Comfortable engaging with stakeholders at all levels. * CDW is committed to being an AI-fluent organization * We're looking for people who bring curiosity, a learner's mindset, and a willingness to engage with ever-evolving technology and tools. We value adopting AI as a partner, openness to experimentation, and a shared interest in learning together on AI. Our goal is to create a culture where AI enhances- not replaces- human creativity and decision-making. You don't need to be an expert today; what matters is your readiness to explore, adapt, and grow with us as we integrate AI responsibly and effectively into our work.Additionally, CDW is committed to fostering an equitable, transparent, and respectful hiring process for all applicants. During our application process, our goal is to understand your experience, strengths, skills, and qualifications. As an AI forward company, we see AI not just as a tool, but as a catalyst for new ways of thinking, creating, and communicating. We encourage candidates to embrace an AI mindset, one that's curious, adaptive, and ready to explore what's possible. We welcome thoughtful use of AI to expand your perspective and elevate how you share your story, while ensuring your application remains rooted in your own background, judgment, and voice. * We make technology work so people can do great things. * CDW is a leading multi-brand provider of information technology solutions to business, government, education and healthcare customers in the United States, the United Kingdom and Canada. A Fortune 500 company and member of the S&P 500 Index, CDW helps its customers to navigate an increasingly complex IT market and maximize return on their technology investments. Together, we unite. Together, we win. Together, we thrive. CDW is an equal opportunity employer. All qualified applicants will receive consideration for employment without regards to race, color, religion, sex, sexual orientation, gender identity, national origin, disability status, protected veteran status or any other basis prohibited by state and local law.
Principal Data Security Engineer
UnitedHealth GroupUnitedHealth Group is a healthcare and well-being company that’s dedicated to improving the health outcomes of millions around the world. We are comprised of two distinct and com
Title: Principal Data Security Engineer Primary location: Nashville, TN; Remote USA Overtime status: Exempt Travel: No Job Description: Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best. Here, you will find a culture guided by inclusion, talented peers, comprehensive benefits and career development opportunities. Come make an impact on the communities we serve as you help us advance health optimization on a global scale. Join us to start Caring. Connecting. Growing together. The Principal Data Security Engineer will lead the design, deployment, integration, and operationalization of the Cloud Data Security Posture Management Platform across our partner Cloud Service Providers. The Principal Cloud Data Security Engineer will have very solid interpersonal skills, be a self-starter, and have a desire to maintain enterprise-wide visibility to initiatives related to cloud-based technologies and services. The Cloud Security Engineer is an individual contributor role with deep expertise in Cloud Security and Cloud Engineering best practices. You'll enjoy the flexibility to work remotely * from anywhere within the U.S. as you take on some tough challenges. For all hires in the Minneapolis or Washington, D.C. area, you will be required to work in the office a minimum of four days per week. Primary Responsibilities: - Lead the design, deployment and integration of the DSPM and DLP tools in a Cloud environment - Design, implement and manage security controls to safeguard cloud infrastructure and data - Conduct security assessments and audits to ensure compliance with federal regulations and standards (e.g. FedRAMP, NIST) - Collaborate with cross functional teams to identify security requirements and develop solutions - Develop and maintain security documentation including policies and procedures - Stay current with emerging security threats and technologies, providing recommendations for continuous improvement - Mentor and provide guidance to junior security engineers and other team members You'll be rewarded and recognized for your performance in an environment that will challenge you and give you clear direction on what it takes to succeed in your role as well as provide development for other roles you may be interested in. Required Qualifications: - 5+ years of designing data security posture management programs for cloud storage and databases - 3+ years of experience with AWS Cloud, Azure Gov or other cloud environments - 3+ years of experience in scripting and automation focused on cloud-based deployments utilizing languages/frameworks such as Python, Terraform, Cloudformation, etc. - 3+ years of experience with container security and orchestration tools (Docker, Kubernetes, etc.) - 3+ years of experience working with a wide array of operating systems (e.g. Linux, Windows, Ubuntu, etc.) - 3+ years of experience with cloud databases (e.g. SQL, NoSQL, Dyanomo, etc.) Preferred Qualifications: - Relevant security certifications - CISSP or equivalent - Experience with DevSecOps practices and integrating security into CI/CD pipelines - Knowledge of advanced threat detection and response techniques - Familiarity and in-depth knowledge of FedRAMP and NIST security frameworks and compliance standards - Solid understanding of fundamental security principles/concepts (Networking, Encryption, IAM) - Proven outstanding written and verbal communication skills, with the ability to work collaboratively in a team environment - Proven excellent problem-solving skills, with the ability to analyze complex security issues and develop effective solutions - All employees working remotely will be required to adhere to UnitedHealth Group's Telecommuter Policy Pay is based on several factors including but not limited to local labor markets, education, work experience, certifications, etc. In addition to your salary, we offer benefits such as, a comprehensive benefits package, incentive and recognition programs, equity stock purchase and 401k contribution (all benefits are subject to eligibility requirements). No matter where or when you begin a career with us, you'll find a far-reaching choice of benefits and incentives. The salary for this role will range from $112,700 to $193,200 annually based on full-time employment. We comply with all minimum wage laws as applicable. Application Deadline: This will be posted for a minimum of 2 business days or until a sufficient candidate pool has been collected. Job posting may come down early due to volume of applicants. At UnitedHealth Group, our mission is to help people live healthier lives and make the health system work better for everyone. We believe everyone-of every race, gender, sexuality, age, location and income-deserves the opportunity to live their healthiest life. Today, however, there are still far too many barriers to good health which are disproportionately experienced by people of color, historically marginalized groups and those with lower incomes. We are committed to mitigating our impact on the environment and enabling and delivering equitable care that addresses health disparities and improves health outcomes - an enterprise priority reflected in our mission. UnitedHealth Group is an Equal Employment Opportunity employer under applicable law and qualified applicants will receive consideration for employment without regard to race, national origin, religion, age, color, sex, sexual orientation, gender identity, disability, or protected veteran status, or any other characteristic protected by local, state, or federal laws, rules, or regulations. UnitedHealth Group is a drug - free workplace. Candidates are required to pass a drug test before beginning employment.


