Solving complex Public Sector Use cases using emerging technologies - SBIR Phase III Awardee
Cyber Security Specialist
Location
United States
Posted
2 days ago
Salary
0
Seniority
Lead
Job Description
Cyber Security Specialist
VivSoft
• Perform security assessments of applications and infrastructure to identify vulnerabilities and ensure compliance with DoD cybersecurity standards • Support RMF activities, including system authorization (ATO), control validation, and continuous monitoring • Develop, review, and maintain security documentation such as System Security Plans (SSP), POA&Ms, SARs, and accreditation artifacts • Collaborate with ISSOs, ISSMs, cybersecurity teams, and system engineers to ensure security controls are properly implemented and maintained • Manage and maintain eMASS packages for system authorization and compliance tracking • Conduct vulnerability assessments and coordinate remediation activities aligned with STIGs and NIST SP 800‑53 controls • Monitor systems for security incidents and support incident response activities, including analysis, reporting, and mitigation • Ensure compliance with DoD cybersecurity policies, including DoDI 8530.01 and related guidance • Support DevSecOps initiatives by integrating security best practices into CI/CD pipelines and Agile development workflows • Participate in security audits, inspections, and continuous process improvement activities • Contribute to maintaining a compliant, secure, and auditable cybersecurity posture across the system lifecycle
Job Requirements
- Active Top-Secret clearance with SCI eligibility
- CISSP or CISM certification (DoD 8570 / 8140 compliant)
- 10+ years of cybersecurity experience supporting DoD or federal systems
- Strong hands‑on experience with RMF and ATO processes
- Proven experience managing eMASS security authorization packages
- In‑depth knowledge of NIST SP 800‑53, STIGs, and DoD cybersecurity policies
- Experience with vulnerability management tools and remediation processes
- Familiarity with AWS cloud environments, with preference for IL5 or other secure cloud environments
- Experience working in Agile and DevSecOps environments
Benefits
- Comprehensive Medical, Dental, and Vision Plans (Healthcare benefits are 100% employer-paid for employees only)
- Life Insurance
- Paid Time Off (Flexible/Combined PTO, Bereavement Leave, 11 Company Paid Holidays)
- 401K Retirement Plan with employer match
- Professional Development Training Reimbursement
- Flexible/remote work schedules
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Cloud Security Engineer
DarkshieldDarkshield is an expert cybersecurity agency based in York, UK. We help organisations navigate an increasingly complex digital landscape by providing expert services in penetration testing, vulnerability assessment, managed security, and more. Our mission is to protect businesses by delivering tailored, cutting-edge cybersecurity solutions that keep them resilient and ahead of cyber threats.
Role Description We are looking for a Cloud Security Engineer to join our growing team. This role involves designing, implementing, and managing security solutions across AWS, Azure, and Google Cloud. The ideal candidate will have a deep understanding of cloud security architectures, automation, and compliance frameworks. Key Responsibilities - Cloud Security Architecture & Implementation - Design and implement cloud security architectures across AWS, Azure, or Google Cloud. - Develop and enforce cloud security controls, including IAM policies, encryption, and network security. - Threat Monitoring & Incident Response - Monitor cloud environments for security threats, vulnerabilities, and misconfigurations. - Lead incident response efforts related to cloud security breaches and misconfigurations. - Implement SIEM and security monitoring tools for real-time threat detection. - Cloud Security Assessments & Compliance - Conduct cloud security assessments, penetration testing, and risk analysis. - Ensure compliance with ISO 27001, NIST, CIS Benchmarks, GDPR, and other security standards. - Collaborate with DevOps teams to integrate security into CI/CD pipelines. - Security Automation & Infrastructure as Code (IaC) - Automate security policies and compliance enforcement using Python, Terraform, Ansible, or CloudFormation. - Develop security automation scripts for vulnerability scanning and patch management. - Collaboration & Knowledge Sharing - Provide guidance and best practices to internal teams on cloud security. - Work closely with developers, DevOps, and compliance teams to align security requirements. Qualifications - At least three years of experience in cloud security engineering or a related role. - Hands-on expertise securing AWS, Azure, or Google Cloud platforms. - Strong knowledge of IAM, firewalls, WAFs, encryption, and security groups. - Experience with security automation using Python, Terraform, or CloudFormation. - Familiarity with container security (Kubernetes, Docker) and microservices security. Certifications (Preferred, Not Required) - AWS Certified Security – Specialty - Azure Security Engineer Associate (AZ-500) - Google Professional Cloud Security Engineer - CISSP, OSCP, CEH, or relevant security certifications are a plus. Soft Skills & Work Environment - Strong problem-solving skills and ability to think like an attacker. - Excellent communication and collaboration skills to work with cross-functional teams. - Ability to work independently and handle multiple projects in a fast-paced environment. Success Criteria (Performance Expectations) - Implement cloud security controls across at least one major cloud provider within the first three months. - Conduct at least two full cloud security assessments per quarter. - Develop automated security enforcement scripts that reduce vulnerabilities by 30 percent within the first six months. Benefits - Work on cutting-edge cybersecurity projects with top-tier clients. - Career growth opportunities in a fast-growing cybersecurity agency. - Flexible work environment – remote and hybrid options available. - Competitive salary and bonuses based on security impact and research.
Cybersecurity Engineer
DarkshieldDarkshield is an expert cybersecurity agency based in York, UK. We help organisations navigate an increasingly complex digital landscape by providing expert services in penetration testing, vulnerability assessment, managed security, and more. Our mission is to protect businesses by delivering tailored, cutting-edge cybersecurity solutions that keep them resilient and ahead of cyber threats.
Role Description We are looking for a skilled and motivated Cybersecurity Engineer to join our team. You will play a key role in designing, implementing, and maintaining security solutions that protect our clients from evolving threats. This role requires a strong technical background in cybersecurity, problem-solving skills, and the ability to work collaboratively with clients and internal teams. - Design, implement, and maintain security solutions to protect networks, applications, and data. - Conduct security assessments, penetration testing, and vulnerability management. - Monitor and respond to security incidents, ensuring swift mitigation and resolution. - Develop and enforce security policies, procedures, and best practices. - Perform security audits and risk assessments to identify potential vulnerabilities. - Work closely with clients to provide expert advice and tailored security solutions. - Keep up to date with emerging cyber threats, attack techniques, and security technologies. - Automate security processes and develop scripts/tools to enhance security operations. - Assist with compliance efforts, ensuring alignment with industry standards and regulations. Qualifications - Proven experience in cybersecurity engineering or a related field. - Strong understanding of network security, cryptography, and security frameworks. - Experience with penetration testing, vulnerability management, and incident response. - Familiarity with security tools such as SIEMs, IDS/IPS, firewalls, and endpoint security solutions. - Proficiency in scripting languages (e.g., Python, Bash, PowerShell) for security automation. - Knowledge of cloud security (AWS, Azure, or Google Cloud) is a plus. - Strong problem-solving and analytical skills. - Certifications such as CISSP, OSCP, CEH, or equivalent are desirable but not mandatory. - Excellent communication skills and the ability to work both independently and in a team environment. Benefits - Work with a passionate team dedicated to cybersecurity excellence. - Opportunity to work on a variety of challenging projects across different industries. - Support for professional development, including training and certification assistance. - Flexible working arrangements, including remote options. - A culture that values innovation, collaboration, and continuous learning.
Regional Vice President – Platform Security
Salesforce👋 We're Salesforce, the customer company. CRM + Data + AI + Trust.
• Lead and develop a team of Account Executives (AEs) and Specialists focused on Platform & Security solutions across UKI • Define and execute the regional go-to-market strategy for Platform & Security (Salesforce Shield, Event Monitoring, Security Center, Platform, Data Cloud, etc.) • Drive revenue growth by owning the regional forecast and delivering against quarterly and annual targets • Operate in a co-prime / matrix model, partnering closely with Core AEs, Solution Engineers, Customer Success, and cross-functional stakeholders to drive complex, multi-product deals • Build and maintain executive-level relationships with key customers and prospects across UKI • Coach and mentor the team on strategic selling, deal qualification, and pipeline management • Collaborate with EMEA and Global leadership to align on priorities, best practices, and resource allocation • Represent the voice of the customer internally to influence product roadmap and go-to-market strategy
Identity & Devices Security Architect – Client Consulting
Cyclotron, Inc.SECURE YOUR CLOUD INVESTMENT
• Architecting, designing, and executing enterprise deployments of Microsoft 365 Identity and Device Management tools • Working directly with customer teams to drive discovery, design, configuration, validation, piloting, deployment and support of Microsoft cloud and on-premises security capabilities • Providing a holistic approach that combines areas of expertise in identity & device management with threat protection, compliance, and more • Contributing to the development of new Identity and Device Management services offered by Cyclotron • Engaging with other Cyclotron and customer teams to improve processes and security posture


