We build space simulation and analytics solutions to bring clarity to complex environments and create a safer world.
Information Systems Security Officer – Government Programs
Location
California + 21 moreAll locations: California | Colorado | Florida | Illinois | Nevada | New Jersey | New Mexico | New York | North Carolina | Ohio | Oregon | Maryland | Massachusetts | Michigan | Minnesota | Missouri | Pennsylvania | Texas | Virginia | Washington | West Virginia | Wisconsin
Posted
10 hours ago
Salary
$110K - $175K / year
Seniority
Senior
Job Description
Information Systems Security Officer – Government Programs
Slingshot Aerospace
• Play a critical role in protecting systems and environments supporting Slingshot's defense and intelligence missions. • Drive security, compliance, and accreditation efforts across cleared and regulated programs. • Monitor systems for compliance with security policies, classification handling requirements, access controls, and boundary protections. • Conduct periodic security assessments, control reviews, and continuous monitoring activities. • Support incident response activities, root cause investigations, and corrective action tracking. • Coordinate vulnerability management efforts, including STIG reviews, remediation tracking, patch validation, and audit evidence collection. • Partner with Engineering teams to embed secure-by-design principles throughout system development and deployment lifecycles.
Job Requirements
- Active Secret clearance required; TS/SCI preferred.
- U.S. Citizenship required.
- 5+ years of experience supporting cybersecurity, information assurance, or compliance programs within DoD, Intelligence Community, or federal contractor environments.
- Experience supporting RMF accreditation activities and maintaining ATO packages in regulated or classified environments.
- Working knowledge of NIST 800-171, NIST 800-53, CMMC 2.0, and DoD RMF requirements.
- Experience performing vulnerability management, audit support, and continuous monitoring activities.
- Familiarity with DISA STIGs, security control implementation, and enclave operations.
- Strong communication skills with the ability to collaborate across engineering teams, government stakeholders, and external partners.
- Ability to manage multiple priorities in fast-paced, mission-focused environments.
- Security certification such as Security+, CISSP, CAP, or equivalent.
Benefits
- Health insurance
- Retirement plans
- Paid time off
- Flexible work arrangements
- Professional development
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Director of Technical Product Marketing – Kubernetes, Container Security
RAPIDFORTRemove 95% of CVEs automatically with no code change
• Define and drive global product marketing strategy, including value proposition, messaging, customer benefits, and competitive differentiation • Lead global product launches, announcements, and integrated marketing campaigns • Present at customer executive briefings and industry events • Develop sales enablement materials, including playbooks, presentations, and tools • Produce corporate press materials and analyst briefing content, including press releases and industry articles • Plan, write, edit, and publish content such as eBooks, website copy, blog posts, and social media content • Engage with press, media, and industry analysts as a company spokesperson • Develop partner enablement materials including how-to guides, branding guidelines, newsletters, and portal content • Create webinar strategies and supporting materials including slides, vertical briefs (e.g., retail, healthcare, manufacturing), and partner solution briefs • Collaborate closely with Product Management on sales and partner enablement content • Lead development of sales presentations, partner materials, and executive-facing decks • Produce solution briefs, white papers, customer references, case studies, and funnel-specific content • Develop storyboards and scripts for sales, customer, partner, and corporate videos • Create differentiated messaging and visual content for events, including banners, signage, brochures, and booth materials • Enable channel partners with campaigns, collateral, and digital demand generation content (email, web, landing pages) • Support analyst relations, including submissions, surveys, reports, and white papers • Create or oversee development of graphics, icons, and infographics (a strong plus) • Manage budgets and ensure fiscal responsibility across marketing initiatives
Security Account Manager
SA Technologies Inc.SA Technologies is a Cloud Transformation Company, one of the fastest-growing IT Consulting & Tech solutions provider.
• Act as the primary security point of contact for assigned strategic/critical accounts. • Build multi-threaded relationships with customer security leadership (CISO org), IT, risk/compliance, and engineering teams. • Lead security governance cadences including security posture reviews, risk discussions, and roadmap alignment. • Conduct discovery to understand customer environments, threat models, regulatory requirements, and business priorities. • Advise on cloud security controls and best practices.
• Diagnose, prioritize, and drive security program maturity • Assess the current state with clear eyes: identify what’s working, what’s underdeveloped, and what needs to be rebuilt • Build a prioritized, multi-quarter roadmap that sequences risk reduction against business reality — without waiting to be handed a problem statement • Establish governance, ownership, and metrics that make the portfolio legible and actionable across security leadership, engineering leadership, and executives • Hold the line on outcomes — not activity or artifacts. • Translate security requirements into engineering practice • Make security by design the operating standard: shift-left practices, threat modeling, architecture review, and controls embedded into how teams plan and ship • Own the intersection of what security requires and what engineering can build — and move both sides toward it, fluently • Remove the blockers that sit between security intent and engineering execution • Build the habits and structures that outlast any individual program or initiative • Own the compliance surface without losing sight of real risk • Translate HIPAA, financial controls, and governance requirements into resilient programs that reduce actual exposure and scale — not just satisfy milestone audits • Sequence compliance investments against where the company is going, not just where it’s been • Build the evidence frameworks, metrics, and operational readiness that hold up under real scrutiny at scale • Shape the AI security framework before it becomes a crisis • Synthesize Aledade posture about AI risk, guardrails, and governance as AI becomes embedded in how we work and what we build • Build the scaffolding — principles, review processes, accountability structures — that gives others a framework to execute against • Operate with conviction in a space where the industry is still writing the rules • Drive alignment across a complex, high-stakes intersection • Operate at the seam between security, engineering, compliance, legal, and finance — without owning any of the headcount • Eliminate toil that crushes effectiveness of the subject matter experts around you by clearing the path, not walking it for them • Surface what’s being normalized that shouldn’t be — the risks deferred, the gaps unnamed, the programs that exist only on paper • Drive evidence-based decisions that stick — from architecture, through build, to the risk level with executives • Full-stack program leadership: equally at home in an architecture review, a compliance audit, a risk conversation with the CTO, and a sprint planning session with an engineering team
• Lead BetterHelp’s security engineering strategy, with offensive security as the foundation • Operate with a red team / attacker mindset, identifying vulnerabilities across applications, infrastructure, and internal systems • Direct and evolve the company’s red team capabilities, including penetration testing, code review, and vulnerability discovery • Provide oversight and guidance across: • Partner closely with Engineering to embed security into the software development lifecycle (SDLC) • Strengthen processes around vulnerability management, detection, and response • Build and improve offensive security tooling and capabilities, complementing external programs like Bugcrowd • Help reduce technical debt and improve system resilience through proactive security practices • Identify and address emerging threats, including AI security risks • Mentor and guide a strong team, setting a high bar for technical rigor and impact




