Lead GRC and RMIS product strategy for an enterprise software organization. Remote anywhere in the United States, with a $145,000–$185,000 base salary and two permanent openings.
Market Director, Information Technology & Services | Healthcare IT | Lake Havasu City, AZ
Market Director, Information Technology & Services
📍 Location: Lake Havasu City, Arizona 86403
🏥 Work Arrangement: 100% Onsite
💼 Employment Type: Full-Time, Permanent
📈 Experience Level: Senior Leadership
👤 Reports To: Chief Financial Officer
💰 Base Salary: $101,000–$136,000
🕒 Typical Hours: Monday–Friday, 8:00 AM–5:00 PM
✈️ Travel: Regular Overnight Travel—Potentially Up to 50%
🚚 Relocation Assistance: Not Available
💵 Sign-On Bonus: Not Available
🚫 Visa Sponsorship: Not Available
Lead Technology That Directly Supports Patient Care
A regional healthcare organization is seeking an experienced Market Director of Information Technology & Services to provide strategic and operational technology leadership across its hospital and assigned market facilities.
Reporting to the Chief Financial Officer, this senior leadership position will oversee hospital IT operations, enterprise applications, infrastructure, cybersecurity, technology support and service delivery. The Director will ensure clinical and business systems remain reliable, secure and aligned with organizational strategy, regulatory requirements and patient-care priorities.
This is a highly visible, onsite leadership opportunity for an experienced healthcare IT professional who can connect clinical, operational and enterprise teams while delivering secure, dependable and cost-effective technology services.
Key Responsibilities
Strategic IT Leadership
Provide strategic leadership and oversight for Information Technology and Services across the assigned healthcare market.
Develop and execute a market-level IT strategy aligned with facility and enterprise priorities.
Serve as the primary liaison between hospital leadership, market stakeholders and enterprise IT.
Ensure local technology requirements are represented during enterprise planning and governance.
Translate enterprise technology strategies into effective facility-level implementation plans.
Advise executive leadership on technology risks, priorities, investments and emerging opportunities.
Contribute to enterprise governance councils and the development of technology, cybersecurity and data-governance standards.
Hospital IT Operations
Oversee day-to-day IT operations across assigned facilities.
Maintain the reliability, availability and performance of clinical and business systems.
Provide leadership across:
Hospital applications
Electronic Health Record systems
Infrastructure and network services
Cybersecurity
End-user support
Data and reporting systems
Connected clinical technologies
Ensure IT service-management, incident-response and change-management processes are consistently followed.
Monitor system performance, service levels and recurring operational issues.
Coordinate the response to major incidents and technology disruptions.
Identify and address technical debt affecting the market’s systems and data-center environment.
Clinical and Operational Partnership
Build trusted relationships with hospital executives, clinical leaders, physicians, nursing teams and operational departments.
Ensure technology solutions support patient care, clinical workflows and business operations.
Gather and prioritize technology needs across departments and facilities.
Translate clinical and operational requirements into practical technology solutions.
Help teams understand the operational impact of proposed technology changes.
Maintain strong communication during implementations, disruptions and organizational change.
EHR and Enterprise Applications
Oversee the reliable operation and support of Electronic Health Record and related clinical systems.
Lead or support EHR upgrades, implementations and optimization initiatives.
Coordinate with enterprise application teams and facility stakeholders to address workflow and system issues.
Support application testing, training, implementation and adoption.
Ensure clinical applications meet operational, cybersecurity and regulatory requirements.
Identify opportunities to improve clinical efficiency and patient-care outcomes through technology.
Cybersecurity and Regulatory Compliance
Implement and enforce enterprise cybersecurity policies and technology standards.
Protect clinical, patient, operational and financial information.
Ensure compliance with applicable healthcare technology and privacy requirements, including HIPAA and HITECH.
Participate in technology audits, regulatory inspections and accreditation activities.
Support cybersecurity assessments, incident-response activities and risk-remediation initiatives.
Promote secure technology practices across clinical and administrative teams.
Partner with enterprise cybersecurity leadership to address vulnerabilities and emerging threats.
Project and Change Management
Lead and support enterprise technology initiatives across assigned facilities.
Manage projects involving EHR upgrades, cybersecurity, digital transformation, infrastructure and technical-debt reduction.
Establish clear project plans, responsibilities, timelines and success measures.
Coordinate internal teams, enterprise resources, facility stakeholders and external partners.
Champion structured change management and effective communication.
Ensure staff receive appropriate training and support before new technology is introduced.
Monitor adoption and address barriers following implementation.
Financial and Vendor Management
Collaborate with Finance and executive leadership to develop and manage technology priorities.
Support IT budgeting, forecasting and financial planning.
Ensure technology investments align with organizational and patient-care objectives.
Identify opportunities for cost reduction, operational efficiency and revenue improvement.
Manage external vendors and technology partners in accordance with enterprise procurement requirements.
Monitor vendor performance, service delivery, contractual obligations and escalations.
Evaluate proposed technology investments based on value, risk and operational need.
Team Leadership and Development
Lead, mentor and develop the market’s IT professionals.
Establish clear performance expectations and promote accountability.
Support workforce planning, succession management and employee engagement.
Identify professional-development and technical-training opportunities.
Build a collaborative team culture focused on service, continuous learning and operational excellence.
Ensure the team remains responsive to the needs of clinical and business stakeholders.
Performance Improvement and Innovation
Drive continuous improvement across IT operations and service delivery.
Use performance data, benchmarks and service metrics to identify improvement opportunities.
Promote practical innovation that advances patient care, operational efficiency and information security.
Evaluate emerging healthcare technologies and their potential value.
Develop measurable plans to improve system availability, response times, user satisfaction and operational performance.
Support data-informed decision-making across hospital and market leadership.
Required Qualifications
Candidates must possess one of the following:
Bachelor’s degree in Computer Science, Information Systems, Business or a related discipline; or
At least seven years of directly relevant professional experience in place of a bachelor’s degree.
Additional requirements include:
At least five years of progressive IT management experience.
At least three years of experience within healthcare and a multi-site or enterprise environment.
Demonstrated ability to collaborate across clinical, operational and enterprise teams.
Strong leadership, communication and relationship-building capabilities.
Experience managing technology staff, priorities and service delivery.
Ability to work onsite in Lake Havasu City, Arizona.
Willingness and ability to undertake overnight travel, potentially up to 50%.
Current authorization to work in the United States without employer sponsorship.
Preferred Qualifications
Direct experience leading hospital IT operations.
Experience supporting multiple hospitals or healthcare facilities.
Strong knowledge of Electronic Health Record systems and clinical applications.
Experience with healthcare infrastructure, cybersecurity and data protection.
Knowledge of HIPAA, HITECH and related healthcare regulatory requirements.
Experience participating in hospital audits, inspections or accreditation activities.
Technology project and change-management experience.
Experience with EHR upgrades, digital transformation or clinical technology implementations.
Experience managing IT budgets and technology investments.
Strong vendor and contract-management experience.
Experience developing and mentoring IT professionals.
Knowledge of healthcare IT best practices and emerging technology trends.
Experience using performance metrics and analytics to improve IT service delivery.
The Ideal Candidate
The strongest candidate will be able to demonstrate:
Successful leadership of IT operations within a hospital or healthcare system.
Experience supporting a complex, multi-site or enterprise technology environment.
Strong understanding of the connection between technology and patient care.
Direct involvement with EHR systems, cybersecurity and regulatory compliance.
The ability to communicate effectively with clinical teams, hospital executives and enterprise IT leaders.
Examples of improving system availability, service delivery or stakeholder satisfaction.
Successful delivery of complex healthcare technology projects.
Experience managing budgets, vendors and competing operational priorities.
A collaborative and service-focused leadership style.
The ability to remain calm, organized and decisive during major incidents or technology disruption.
Work Environment
This position is based onsite within an active hospital environment. The successful candidate will work in clinical and office settings and may encounter the standard environmental conditions associated with healthcare facilities.
Normal business hours are generally Monday through Friday, from 8:00 AM to 5:00 PM. However, availability outside standard hours may occasionally be required based on operational needs, system incidents or project activity.
Regular travel between facilities and occasional overnight travel by land or air should be expected.
Benefits
The organization offers a comprehensive benefits package that may include:
Medical insurance
Dental insurance
Vision insurance
Life insurance
Accident and critical-illness coverage
Hospital-indemnity insurance
Short- and long-term disability coverage
Paid family leave
Paid time off
Retirement plan with employer contribution or match
Tuition and professional-certification assistance
Student-loan assistance
Mental, physical and financial wellness programs
Virtual-care and mental-health resources
Professional-development and career-advancement opportunities
Interview Process
The anticipated selection process includes:
An initial 10-minute screening call.
A Microsoft Teams interview with divisional IT leadership.
A Microsoft Teams interview with hospital leadership.
An onsite meeting with senior executives, department directors and IT staff.
Equal Opportunity
The organization is an Equal Opportunity Employer and considers qualified applicants without discrimination based on any status protected under applicable federal, state or local law.
Systems Administrator IV – Microsoft 365 | M365 Engineer | Tulsa, OK
Systems Administrator IV – Microsoft 365
📍 Location: Tulsa, Oklahoma
🏢 Work Arrangement: 100% Onsite
📅 Contract Duration: 12 Months
💼 Employment Type: Contract
🚫 Visa Sponsorship: Not Available
🚚 Relocation Assistance: Not Available
📞 On-Call: Participation in a 24/7 support rotation required
📌 Local Tulsa-Area Candidates Only
Overview
A leading energy organization is seeking an experienced Systems Administrator IV to provide senior-level administration, engineering and governance across its enterprise Microsoft 365 environment.
This is a hands-on technical leadership position supporting Microsoft 365 collaboration, identity, security and compliance services. The successful candidate will take end-to-end ownership of platforms including Exchange Online, Microsoft Teams, SharePoint Online, OneDrive, Copilot, Microsoft Entra ID and Microsoft Purview.
The role is particularly well suited to an experienced Microsoft 365 professional who can combine advanced technical troubleshooting with platform strategy, security governance, incident leadership and mentorship of other technical team members.
Key Responsibilities
Microsoft 365 Platform Administration
Lead the administration, engineering, licensing and governance of the Microsoft 365 platform.
Support Exchange Online, Microsoft Teams, SharePoint Online, OneDrive, Copilot and Microsoft Entra ID.
Maintain secure, reliable and scalable collaboration and productivity services across an enterprise environment.
Establish and maintain platform standards, administrative controls, permissions and governance processes.
Review Microsoft 365 licensing and access to support cost-effective, least-privilege platform usage.
Platform Strategy and Delivery
Monitor the Microsoft 365 product roadmap and evaluate emerging capabilities for business value, security and operational suitability.
Guide the testing, staging and production-readiness process for new Microsoft 365 services and major platform changes.
Translate business and technical requirements into scalable Microsoft 365 solutions.
Coordinate with security, infrastructure, business and project teams to deliver platform improvements and integrations.
Apply project-management and change-control practices throughout platform implementations and upgrades.
Identity and Access Management
Manage enterprise identity and access capabilities through Microsoft Entra ID.
Implement and maintain Single Sign-On, Multi-Factor Authentication and Conditional Access policies.
Administer privileged access controls and identity-governance processes.
Conduct access and permissions reviews to maintain least-privilege security.
Strengthen controls around administrative access and sensitive Microsoft 365 services.
Security and Compliance
Configure and administer Microsoft Purview security and compliance capabilities.
Support data classification, Data Loss Prevention, retention and eDiscovery requirements.
Implement Insider Risk Management controls and related governance processes.
Perform security reviews and platform hardening before significant service launches or changes.
Partner with security and compliance stakeholders to ensure Microsoft 365 services meet organizational requirements.
Reliability and Technical Support
Provide Tier 3 support for complex Microsoft 365, identity and collaboration-platform issues.
Lead root-cause analysis and post-incident reviews.
Develop and document solutions that improve service reliability and reduce recurring incidents.
Participate in the organization’s 24/7 on-call support rotation.
Maintain clear technical documentation, operational procedures and knowledge resources.
Technical Leadership
Provide technical leadership within a broader team of analysts and engineers.
Mentor colleagues and help develop their Microsoft 365 administration and troubleshooting capabilities.
Guide technical decision-making across complex platform initiatives.
Promote effective collaboration, knowledge sharing and operational best practices.
Required Qualifications
Candidates must meet one of the following education and experience combinations:
High school diploma or GED with at least 15 years of IT experience.
Associate degree with at least 10 years of IT experience.
Bachelor’s degree in an IT-related field with at least eight years of IT experience.
A bachelor’s degree is not mandatory when the candidate possesses the required equivalent professional experience.
Required Experience
Extensive hands-on experience administering and engineering enterprise Microsoft 365 environments.
Strong experience with:
Exchange Online
Microsoft Teams
SharePoint Online
OneDrive
Microsoft Copilot
Microsoft Entra ID
Microsoft Purview
Experience managing Microsoft 365 licensing, permissions, governance and platform-readiness processes.
Strong knowledge of SSO, MFA, Conditional Access, privileged access and identity governance.
Experience with Microsoft Purview capabilities including DLP, retention, data classification and eDiscovery.
Experience providing Tier 3 support and resolving sophisticated Microsoft 365 platform issues.
Demonstrated ability to lead root-cause analysis and post-incident reviews.
Experience working in a large, enterprise-scale environment with formal governance and change-control processes.
Ability to analyse business and technical requirements and translate them into scalable technology solutions.
Strong organizational, communication and interpersonal skills.
Ability and willingness to participate in a 24/7 on-call rotation.
Commitment to maintaining safety as the highest operational priority.
Preferred Background
Experience owning Microsoft 365 platforms across a large, multi-site or highly regulated organization.
Previous responsibility for platform strategy, roadmap evaluation and enterprise governance.
Experience leading complex Microsoft 365 deployments, migrations, integrations or security improvements.
Technical leadership or mentorship experience.
Experience working collaboratively with security, infrastructure, compliance and business stakeholders.
A stable employment history, including completed long-term contracts or sustained ownership of multi-year platform initiatives.
Formal people-management experience is not required. The priority is hands-on technical leadership, platform ownership and the ability to mentor others.
Location Requirement
This position requires attendance onsite in Tulsa, Oklahoma, five days per week. Only candidates who already live within a practical commuting distance of Tulsa will be considered.
Relevant nearby locations may include Tulsa, Broken Arrow, Jenks, Bixby, Owasso, Sand Springs, Sapulpa, Glenpool, Catoosa, Claremore and Collinsville.
Relocation assistance is not available.
Information System Security Officer (ISSO) – TS/SCI Full Scope Poly – Annapolis Junction, MD
Information System Security Officer (ISSO) – TS/SCI Full Scope Poly
📍 Location: Annapolis Junction, MD
🏢 Work Arrangement: 100% Onsite
💼 Employment Type: Full-Time
🔒 Security Clearance Required: Active TS/SCI with Full Scope Polygraph (NSA Preferred)
🇺🇸 Citizenship: U.S. Citizen Required
🚫 Visa Sponsorship: Not Available
🚚 Relocation Assistance: Available
💰 Compensation: $100,000 – $200,000 Base Salary
Overview
A leading government technology contractor is seeking Information System Security Officers (ISSOs) to support mission-critical classified programs within highly secure government environments.
This role is responsible for maintaining cybersecurity compliance throughout the Risk Management Framework (RMF) lifecycle, supporting system accreditation, continuous monitoring, vulnerability management, and ongoing cybersecurity operations.
The ideal candidate will possess strong RMF expertise, experience supporting classified environments, and the ability to work closely with System Administrators, System Owners, Information System Security Managers (ISSMs), Security Control Assessors, and Government stakeholders.
Key Responsibilities
Risk Management Framework (RMF)
Support the full RMF lifecycle for classified systems.
Develop and maintain RMF documentation and accreditation packages.
Coordinate Authority to Operate (ATO) activities.
Support security authorization and reauthorization efforts.
Ensure systems maintain compliance with cybersecurity requirements.
Security Compliance & Assessments
Conduct security control reviews and assessments.
Validate implementation of required security controls.
Monitor compliance against NIST and government standards.
Support internal and external cybersecurity audits.
Continuous Monitoring (ConMon)
Support ongoing Continuous Monitoring activities.
Review system configurations and compliance posture.
Analyze vulnerability findings and remediation efforts.
Track compliance status and corrective actions.
Vulnerability & Risk Management
Monitor vulnerabilities and security findings.
Coordinate remediation efforts with technical teams.
Assess risk and recommend mitigation strategies.
Support vulnerability management programs.
Stakeholder Collaboration
Work closely with:
System Administrators
System Owners
ISSMs
Security Control Assessors
Government Security Teams
Provide security guidance and compliance recommendations.
Support cybersecurity reviews and inspections.
Required Qualifications
Security Requirements
✔ Active TS/SCI Clearance
✔ Active Full Scope Polygraph (NSA Preferred)
✔ U.S. Citizenship Required
Cybersecurity & RMF Experience
Experience supporting:
Information Assurance (IA)
Cybersecurity Compliance
ISSO Functions
Classified Information Systems
Strong understanding of:
Risk Management Framework (RMF)
Authority to Operate (ATO)
Security Control Assessments
Continuous Monitoring (ConMon)
Risk Assessment Methodologies
RMF & Compliance Tools
Experience with one or more of:
LATTEART
XACTA
BISCOTTI
WATCHCAT
STE
Experience with:
Compliance scanning tools
Configuration assessment tools
Vulnerability management platforms
NIST Framework Knowledge
Strong familiarity with:
NIST SP 800-53 Rev. 3 and/or Rev. 5
NIST SP 800-37
Security Controls
RMF Documentation Requirements
Required Documentation Experience
Candidates should have experience creating, reviewing, or maintaining:
Security Documentation
System Security Plans (SSP)
Plans of Action & Milestones (POA&M)
Security Plan Findings (SPF)
Exception Documentation
Risk & Compliance Documentation
Risk Assessment Reports (RAR)
Security Assessment Reports (SAR)
Business Impact Assessments (BIA)
Configuration Management Plans (CMP)
Contingency Plans (CP)
After Action Reports (AAR)
Preferred Qualifications
Government & Classified Environment Experience
Classified Government systems
Security audits and inspections
Compliance reviews
Vulnerability remediation programs
Stakeholder Coordination
Experience coordinating with:
Authorizing Officials (AO)
Security Control Assessors (SCA)
ISSMs
System Owners
Technical Knowledge
Operating System Security
System Administration Concepts
Vulnerability Management
Configuration Management
Preferred Certifications
Highly desired certifications include:
CompTIA Security+
CISSP
CAP
CASP+
CISM
Must-Have Requirements
Clearance
✅ Active TS/SCI Clearance
✅ Active Full Scope Polygraph
Cybersecurity
✅ RMF Experience
✅ ATO Experience
✅ Continuous Monitoring (ConMon)
✅ Security Control Assessments
Documentation
✅ SSP Development
✅ POA&M Management
✅ Security Compliance Documentation
Soft Skills
✅ Strong Written Communication
✅ Strong Organizational Skills
✅ Risk-Based Decision Making
✅ Collaboration & Stakeholder Management
Screening Questions
Do you currently hold an active TS/SCI clearance with a Full Scope Polygraph?
Was your Full Scope Polygraph issued by NSA?
When was your most recent Full Scope Polygraph completed?
How many years of ISSO, Information Assurance, or Cybersecurity compliance experience do you have?
Have you supported the full RMF lifecycle, including ATO activities?
Which RMF compliance tools have you used (XACTA, LATTEART, BISCOTTI, WATCHCAT, STE)?
Have you developed or maintained SSPs, POA&Ms, SARs, or RARs?
What experience do you have with NIST 800-53 and NIST 800-37?
Do you have experience supporting classified Government systems?
Do you hold any cybersecurity certifications such as Security+, CISSP, CAP, CASP+, or CISM?
Ideal Candidate Profile
The ideal candidate will:
Hold an active TS/SCI Full Scope Polygraph.
Have strong ISSO or Information Assurance experience within classified environments.
Possess deep knowledge of RMF, ATO, and Continuous Monitoring processes.
Be highly detail-oriented and documentation-focused.
Have experience working with government cybersecurity compliance tools.
Understand vulnerability management and risk mitigation practices.
Effectively collaborate with technical and non-technical stakeholders.
Balance mission requirements with cybersecurity compliance obligations.
Candidate Snapshot
Requirement
Details
Clearance
Active TS/SCI + Full Scope Poly
Citizenship
U.S. Citizen
Experience Level
Mid-Level to Senior
Frameworks
RMF, NIST 800-53, NIST 800-37
Compliance
ATO, ConMon, Security Controls
Documentation
SSP, POA&M, SAR, RAR, CMP, CP
Tools
XACTA, LATTEART, BISCOTTI, WATCHCAT, STE
Certifications
Security+, CISSP, CAP, CASP+, CISM (Preferred)
Location
Annapolis Junction, MD
Work Arrangement
100% Onsite
Travel
None
Compensation
$100K – $200K
Relocation
Available
Why This Opportunity?
Mission Impact
Support highly classified national security programs and critical government systems.
Cybersecurity Leadership
Play a key role in accreditation, compliance, risk management, and cybersecurity governance activities.
Career Growth
Work alongside highly skilled cybersecurity professionals supporting some of the nation's most sensitive environments.
Excellent Benefits
3 Weeks PTO
11 Federal Holidays
Medical & Dental Coverage
Life Insurance
STD & LTD Coverage
401(k) with Company Match
Long-Term Career Development
This opportunity is ideal for an ISSO, Information Assurance Analyst, Cybersecurity Compliance Analyst, RMF Analyst, Information Security Specialist, Security Control Assessor Support Specialist, or Cybersecurity Governance Professional with an active TS/SCI Full Scope Polygraph seeking to support mission-critical government programs.
Information System Security Engineer (ISSE) – TS/SCI Full Scope Poly – Annapolis Junction, MD
Information System Security Engineer (ISSE) – TS/SCI Full Scope Poly
📍 Location: Annapolis Junction, MD
🏢 Work Arrangement: 100% Onsite
💼 Employment Type: Full-Time
🔒 Security Clearance Required: Active TS/SCI with Full Scope Polygraph (NSA Preferred)
🇺🇸 Citizenship: U.S. Citizen Required
🎓 Certification Required: DoD 8570/8140 IASAE Level II Compliant Certification
🚫 Visa Sponsorship: Not Available
🚚 Relocation Assistance: Available
💰 Compensation: $100,000 – $200,000 Base Salary
Overview
A leading government technology contractor is seeking Information System Security Engineers (ISSEs) to support mission-critical classified government programs.
This role focuses on integrating cybersecurity engineering principles throughout the entire system lifecycle, including system design, implementation, accreditation, continuous monitoring, and sustainment. The ISSE will play a critical role in Risk Management Framework (RMF) execution, Assessment & Authorization (A&A) activities, security control validation, and ongoing cybersecurity compliance.
The ideal candidate will possess a strong blend of cybersecurity engineering, RMF expertise, technical security assessment experience, and security architecture knowledge within highly secure classified environments.
Key Responsibilities
Risk Management Framework (RMF)
Support the full RMF lifecycle for classified information systems.
Develop and maintain RMF documentation and security artifacts.
Assist with Authority to Operate (ATO) activities and sustainment.
Support Assessment & Authorization (A&A) efforts.
Maintain body-of-evidence packages for accreditation activities.
Security Engineering
Implement and validate security controls.
Perform Security Control Traceability and technical validation.
Support system boundary definition and security architecture development.
Conduct technical security assessments and risk analysis.
Recommend security improvements and mitigation strategies.
Compliance & Continuous Monitoring
Participate in Continuous Monitoring (ConMon) activities.
Conduct compliance assessments and security reviews.
Analyze vulnerability scan results and remediation efforts.
Verify remediation effectiveness and identify false positives.
Ensure ongoing compliance with cybersecurity requirements.
Vulnerability Management & Hardening
Support vulnerability management programs.
Implement and validate STIG compliance.
Support patch validation and security compliance efforts.
Assist with system hardening initiatives.
Coordinate remediation activities with technical teams.
Stakeholder Collaboration
Work closely with:
ISSOs
ISSMs
Security Control Assessors (SCAs)
System Owners
System Administrators
Support accreditation, compliance, and cybersecurity engineering efforts across mission systems.
Required Qualifications
Security Requirements
✔ Active TS/SCI Clearance
✔ Active Full Scope Polygraph (NSA Preferred)
✔ U.S. Citizenship Required
Certification Requirement
✔ DoD 8570/8140 IASAE Level II Compliant Certification
Examples include:
CISSP
CASP+
CCSP
CSSLP
Cybersecurity & RMF Experience
Strong experience with:
Risk Management Framework (RMF)
Assessment & Authorization (A&A)
Authority to Operate (ATO)
Security Control Implementation
Security Control Validation
Continuous Monitoring (ConMon)
NIST Knowledge
Strong familiarity with:
NIST SP 800-37
NIST SP 800-53 Rev. 3 and/or Rev. 5
Security Control Frameworks
RMF Compliance Processes
RMF & Compliance Tools
Experience with one or more of:
LATTEART
XACTA
BISCOTTI
WATCHCAT
STE
Additional experience with:
Compliance scanning tools
Configuration assessment tools
Vulnerability management platforms
Core ISSE Skill Areas
Security Engineering
Security Control Implementation
Security Control Validation
Security Architecture Support
System Boundary Definition
Compliance & Accreditation
Assessment & Authorization (A&A)
RMF Artifact Development
Accreditation Package Support
Body of Evidence Management
Vulnerability Management
Vulnerability Analysis
Remediation Tracking
Patch Validation
STIG Compliance
Security Hardening
Risk Management
Technical Risk Analysis
Compliance Validation
Continuous Monitoring (ConMon)
Security Assessment Support
Preferred Qualifications
Government & Classified Environment Experience
Classified Government cybersecurity programs.
Large-scale enterprise systems.
Mission-critical environments.
Technical Infrastructure Exposure
Experience supporting:
Enterprise Linux environments
Network infrastructure
Cloud environments
Stakeholder Coordination
Experience collaborating with:
ISSOs
ISSMs
Security Control Assessors
System Owners
Engineering Teams
Must-Have Requirements
Clearance
✅ Active TS/SCI Clearance
✅ Active Full Scope Polygraph
Certification
✅ IASAE Level II Certification
Cybersecurity
✅ RMF Experience
✅ A&A Experience
✅ ATO Experience
✅ Security Control Validation
Compliance
✅ Continuous Monitoring
✅ Vulnerability Management
✅ STIG Implementation
Documentation
✅ RMF Artifacts
✅ Accreditation Packages
✅ Security Documentation
Screening Questions
Do you currently hold an active TS/SCI clearance with a Full Scope Polygraph?
Was your Full Scope Polygraph issued by NSA?
When was your most recent Full Scope Polygraph completed?
Which IASAE Level II certification do you currently hold (CISSP, CASP+, CCSP, CSSLP, etc.)?
How many years of ISSE or cybersecurity engineering experience do you have?
Have you supported the full RMF lifecycle, including A&A and ATO activities?
Which RMF tools have you used (XACTA, LATTEART, BISCOTTI, WATCHCAT, STE)?
Do you have experience implementing and validating security controls?
Have you supported STIG implementation, vulnerability remediation, and compliance validation?
Do you have experience supporting classified government systems?
Ideal Candidate Profile
The ideal candidate will:
Hold an active TS/SCI Full Scope Polygraph.
Possess an active IASAE Level II certification.
Have strong cybersecurity engineering experience within classified environments.
Be highly knowledgeable in RMF, A&A, and ATO processes.
Understand security architecture, control implementation, and compliance validation.
Have experience supporting vulnerability management and STIG compliance.
Demonstrate excellent analytical, troubleshooting, and documentation skills.
Balance mission objectives with cybersecurity requirements and risk management practices.
Candidate Snapshot
Requirement
Details
Clearance
Active TS/SCI + Full Scope Poly
Citizenship
U.S. Citizen
Experience Level
Mid-Level to Senior
Certification
IASAE Level II Required
Frameworks
RMF, NIST 800-37, NIST 800-53
Compliance
A&A, ATO, ConMon
Security
Control Implementation & Validation
Documentation
RMF Artifacts & Accreditation Packages
Tools
XACTA, LATTEART, BISCOTTI, WATCHCAT, STE
Location
Annapolis Junction, MD
Work Arrangement
100% Onsite
Travel
None
Compensation
$100K – $200K
Relocation
Available
Why This Opportunity?
Mission Impact
Support highly classified systems that directly contribute to critical national security missions.
Cybersecurity Engineering Focus
Move beyond compliance into hands-on security engineering, architecture support, security control validation, and accreditation activities.
Technical Growth
Gain exposure to advanced RMF processes, security engineering practices, vulnerability management, and enterprise cybersecurity operations.
Strong Benefits Package
3 Weeks PTO
11 Federal Holidays
Medical & Dental Coverage
Life Insurance
STD & LTD Coverage
401(k) with Company Match
Long-Term Career Development
This opportunity is ideal for an Information System Security Engineer (ISSE), Cybersecurity Engineer, RMF Engineer, Security Compliance Engineer, Cybersecurity Architect, A&A Specialist, or Security Controls Engineer with an active TS/SCI Full Scope Polygraph and IASAE Level II certification seeking to support highly sensitive government programs.
SOC Analyst – Montvale, NJ | Hybrid Cybersecurity & Vulnerability Management
SOC Analyst
📍 Location: Montvale, New Jersey
🏢 Work Model: Hybrid – 3 days onsite / 2 days remote
🏠 Employees work remotely every Friday + receive 40 additional remote days annually
💼 Employment Type: Full-Time
📈 Seniority Level: Associate / Mid-Level
🎓 Education: Bachelor’s Degree preferred
🔐 Industry: Cybersecurity / Manufacturing / Enterprise IT
💰 Compensation & Benefits
Salary Range: $90,000 – $110,000
Full benefits package
Hybrid flexibility
Collaborative and supportive IT/security environment
🚀 Overview
A growing enterprise organization is seeking a SOC Analyst to strengthen its cybersecurity operations through security monitoring, alert investigation, and vulnerability management.
This role combines Security Operations Center (SOC) responsibilities with hands-on vulnerability analysis and remediation coordination across enterprise infrastructure and endpoint environments.
The ideal candidate is analytical, collaborative, proactive, and highly communicative with experience supporting enterprise security operations.
🔧 Key Responsibilities
Security Operations
Monitor, triage, and investigate alerts from:
SIEM platforms
Endpoint protection tools
Security monitoring systems
Distinguish legitimate threats from false positives
Document findings and communicate results clearly
Assist with alert tuning and optimization efforts
Vulnerability Management
Support enterprise vulnerability scanning and assessments
Analyze vulnerability findings and prioritize remediation activities
Research CVEs and provide:
Exploitability analysis
Business impact context
Remediation guidance
Track remediation progress and validate fixes
Collaboration & Communication
Partner closely with:
Infrastructure teams
IT leadership
Cybersecurity teams
Maintain strong communication and visibility around risks and remediation efforts
Proactively identify opportunities for improvement
Continuous Improvement
Assist with:
DLP and information protection controls
System hardening initiatives
Documentation and runbook development
Explore enhanced capabilities within existing security tooling
✅ Required Qualifications
Bachelor’s degree in:
Cybersecurity
Computer Science
Information Technology
Related discipline
OR equivalent practical experience3–5 years of experience in:
Security operations
Vulnerability management
Endpoint protection analysis
Strong understanding of:
CVEs
Risk prioritization
Vulnerability remediation processes
Excellent communication and collaboration skills
⭐ Preferred Skills
Experience with:
SIEM platforms
Enterprise log analysis
Endpoint detection & response (EDR) tools
Familiarity with:
Active Directory
Group Policy
Security baselines
Scripting or reporting experience:
PowerShell
Python
Power BI
Security certifications are a plus but not required
🎯 Ideal Candidate
Hands-on SOC or cybersecurity analyst with enterprise experience
Strong communicator who proactively keeps stakeholders informed
Comfortable balancing:
Security investigations
Vulnerability analysis
Cross-functional collaboration
Curious, self-driven, and eager to improve security operations
📝 Screening Considerations
Do you have experience with:
SOC operations
Vulnerability management
Endpoint security tools?
Have you worked with SIEM or enterprise detection platforms?
Are you comfortable working in a hybrid environment in Montvale, NJ?
Do you have experience coordinating remediation efforts with infrastructure teams?
🌍 Work Environment
Hybrid work schedule:
3 onsite days
2 remote days
Additional remote flexibility throughout the year
Collaborative enterprise IT and cybersecurity team
Occasional travel between NY/NJ locations may be required
📈 Why Join
Broad exposure across enterprise cybersecurity operations
Opportunity to influence security tooling and processes
Supportive, highly collaborative IT culture
Strong focus on learning, ownership, and continuous improvement
Senior Manager – Product Cybersecurity COE | Pittsburgh, PA
Senior Manager – Product Cybersecurity COE
Pittsburgh, Pennsylvania | Hybrid (3 Days On-Site / 2 Remote) | Full-Time
This is a rare opportunity for a senior cybersecurity leader to shape and scale enterprise-wide product security strategy within a global engineering and manufacturing environment focused on innovation, digital transformation, and secure product development.
Combining cybersecurity leadership, engineering collaboration, governance, and strategic influence, this role is ideal for a highly experienced security professional passionate about embedding Secure by Design principles across complex product ecosystems.
This position offers significant executive visibility, global leadership exposure, and the opportunity to directly influence the cybersecurity posture of cutting-edge products, platforms, and connected technologies.
The Opportunity
As Senior Manager, Product Cybersecurity COE, you will lead the strategic direction and operational execution of product cybersecurity initiatives across a global enterprise environment.
You will:
Lead and develop a global cybersecurity organisation supporting products, platforms, and services
Drive Secure by Design initiatives across the full product development lifecycle
Define and execute cybersecurity strategies aligned with business priorities, customer expectations, and regulatory standards
Partner closely with Global Engineering, Product Management, IT, Legal, Compliance, and Quality teams
Establish governance frameworks, operating models, and cybersecurity performance metrics
Guide engineering and R&D teams in identifying and mitigating cybersecurity risks proactively
Support audits, regulatory engagements, and customer cybersecurity reviews
Communicate cybersecurity risk posture and strategic initiatives to executive leadership
Represent the organisation at cybersecurity conferences and industry events
Lead talent development, workforce planning, succession planning, and performance management across global teams
Compensation & Benefits
Salary: $154,000 – $225,000
Work Model: Hybrid (3 days in office / 2 days remote)
Location: Pittsburgh, Pennsylvania
Relocation Assistance: Available
Schedule: Full-Time
Comprehensive Benefits Package Includes:
Medical, Dental, and Vision Insurance
Life Insurance
Retirement Programs
Paid Time Off
Additional wellbeing, leadership development, and employee support programs
What Makes This Role Stand Out
Enterprise-level influence over global product cybersecurity strategy
Opportunity to shape Secure by Design practices within a large-scale engineering environment
Significant collaboration with executive leadership and cross-functional global teams
Exposure to advanced cybersecurity frameworks, product engineering, and emerging technologies
Strong focus on innovation, governance, and operational excellence
Opportunity to build and mentor high-performing global cybersecurity teams
Candidate Profile
Essential Requirements:
Bachelor’s degree in Computer Engineering, Computer Science, Electrical Engineering, Cybersecurity, or related field
Minimum 10 years of experience leading global teams within:
Product Security
Application Security
Firmware Security
Software Security
Hardware Security Environments
Minimum 5 years of experience developing, architecting, or implementing software security solutions
Strong leadership and stakeholder management capability
Ability to operate effectively within complex global enterprise environments
Preferred Qualifications:
Knowledge of:
IEC 62443
UL2900
OWASP Frameworks
NIST 800 Series Standards
Cybersecurity certifications such as:
CISSP
CISM
GIAC
Experience embedding cybersecurity into engineering and product development lifecycles
Strong strategic communication and governance experience
What Success Looks Like
The successful candidate will combine technical depth, strategic leadership, and operational execution, with the ability to balance innovation, customer expectations, regulatory compliance, and enterprise cybersecurity risk management at scale.
This is an exceptional opportunity for a cybersecurity leader seeking a role that offers global influence, strategic ownership, executive visibility, and long-term career growth within a highly innovative and technology-driven organisation.
Staff Product Security Engineer | Medical Devices | Limerick, Ireland | Onsite
🔐 Staff Product Security Engineer
📍 Location: Limerick City, Munster, Ireland (Onsite – minimum 4 days per week)
🏢 Industry: Medical Devices / Healthcare Technology
🧠 Level: Mid–Senior
💼 Employment Type: Full-Time
✈️ Travel: Occasional
🛂 Visa Sponsorship: Not available
💶 Salary Range: €85,000 – €95,000
🎁 Benefits: Full benefits package
🚀 The Opportunity
An innovative global medical technology organisation is seeking a Staff Product Security Engineer to play a critical role in shaping and strengthening product security across next-generation healthcare solutions.
This is a highly visible position offering the opportunity to:
Influence security strategy across product portfolios
Embed secure-by-design principles across the full product lifecycle
Lead security maturity improvements
Work cross-functionally with R&D, Quality, Regulatory, and IT
Protect products in an evolving threat landscape
If you're passionate about cybersecurity, product resilience, and impact-driven work in healthcare, this role offers both purpose and technical depth.
🎯 Key Responsibilities
Lead and develop a high-performing Product Security function
Define and guide product security strategy aligned with regulatory and enterprise cybersecurity objectives
Embed secure-by-design practices, threat modelling, and proactive vulnerability management
Partner with R&D, Quality, Regulatory, and IT teams to ensure security is integrated throughout the product lifecycle
Conduct product security risk assessments and support remediation strategies
Support product security documentation, including governance and compliance artefacts
Review technical designs and source code; provide clear, actionable recommendations
Support incident response and vulnerability management efforts
Implement best practices for:
Encryption & PKI
Authentication & access control
Audit logging
Secure hardening
Patch management
Vulnerability monitoring
Track and report security posture using meaningful metrics
Ensure adherence to development policies and quality management systems
🧠 Required Experience & Qualifications
Bachelor’s degree in Computer Science, Engineering, or related field (or equivalent experience)
5+ years experience in:
Security architecture
Secure software development
Systems and architecture design
Experience working in regulated environments with strong QMS adherence
Proven experience leading or mentoring teams
Strong understanding of:
Encryption algorithms and PKI
Embedded device security
Networking and threat models
Dynamic and static code analysis tools
Excellent written and verbal communication skills
Strong collaboration and stakeholder management abilities
🧩 Technical Skills Snapshot
Domain
Experience
Product Security
Secure-by-design, threat modelling, vulnerability management
Cryptography
Encryption, PKI
AppSec
Static/Dynamic analysis, secure SDLC
Embedded Security
Yes
Networking
Security controls, common threats
Documentation
SAP, SharePoint, DocuSign or similar
Regulated Environments
Medical / highly regulated industries
Tools
Microsoft Office, security tooling
🏢 Work Style & Culture
Strong emphasis on onsite collaboration (minimum 4 days/week in office)
Cross-functional, high-impact environment
Focus on innovation, continuous improvement, and ownership
Opportunity to influence product direction at a strategic level
📌 Candidate Snapshot
Attribute
Details
Role
Staff Product Security Engineer
Location
Limerick, Ireland
Experience
10–15 years ideal
Leadership
Yes (influence & team leadership expected)
Domain
Medical device security
Environment
Regulated, high-compliance
Work Model
Onsite-first
🌍 Why This Role Matters
Your work will directly contribute to:
Protecting patient safety
Strengthening cybersecurity in healthcare systems
Ensuring regulatory compliance
Driving security maturity across critical medical technologies
This is a career-defining role for someone who wants both technical depth and meaningful impact.
Enterprise Account Executive – Cybersecurity | East Coast (Remote) | $140K–$160K + Uncapped OTE
🛡️ Enterprise Account Executive – Cybersecurity (East Coast, Remote)
🌍 Location: Fully Remote (Must be based in EST time zone — ideally Northeast U.S.)
💼 Industry: Information Technology / Cybersecurity
🎯 Function: Enterprise Sales / Business Development
🎓 Education: Bachelor’s degree (preferred)
🚫 Visa Sponsorship: Not available
🚚 Relocation: Not applicable
💰 Compensation: $140,000–$160,000 base + uncapped commission
🕓 Employment Type: Full-Time | Permanent
🌟 The Opportunity
A high-growth cybersecurity vendor is expanding its U.S. footprint and seeking an Enterprise Account Executive to drive new business across large financial institutions (BFSI) on the East Coast.
This is a remote-first role focused on strategic new logo acquisition, selling a differentiated platform in DDoS validation, network protection, and enterprise risk management. You’ll engage directly with CISOs, compliance leaders, and senior stakeholders to help major financial institutions strengthen their cybersecurity posture.
If you’re a hunter-minded cybersecurity sales professional with a track record of landing large, complex deals — this is your chance to join a fast-scaling team making waves in the enterprise security market.
🧭 What You’ll Do
Own the entire sales cycle — from prospecting to closing — targeting major financial institutions across the U.S. East Coast.
Sell an advanced DDoS validation and risk assessment platform to enterprise security and compliance teams.
Build and manage executive-level relationships with CISOs, risk leaders, and procurement stakeholders.
Partner with GTM leadership to shape the company’s U.S. sales motion and strategy.
Collaborate cross-functionally with marketing, pre-sales, and product teams to ensure customer success and satisfaction.
Represent the company at industry events, conferences, and virtual engagements as a trusted cybersecurity expert.
🔑 Must-Have Experience
✅ 8+ years in cybersecurity enterprise sales, consistently exceeding quota.
✅ Strong experience selling into BFSI clients (banks, insurers, or fintech organizations).
✅ Proven success in outbound prospecting and new logo acquisition.
✅ Strong technical credibility, capable of engaging confidently with CISOs and security engineers.
🌍 Preferred Background
⭐ Experience with leading cybersecurity firms such as Akamai, Cloudflare, Zscaler, or Palo Alto Networks.
⭐ Familiarity with structured enterprise sales methodologies (e.g., MEDDIC, Challenger, or SPIN).
⭐ Prior roles such as Enterprise AE, Regional Sales Director, or Strategic Account Executive.
💡 Soft Skills
Consultative and disciplined approach to enterprise selling.
Executive presence with the ability to influence senior stakeholders.
Resilient, self-motivated, and comfortable managing long, complex sales cycles.
Excellent communication and storytelling skills.
💎 What’s On Offer
Competitive base salary + uncapped commission.
Fully remote role within the Eastern time zone.
Opportunity to own a key region and make a measurable impact in a high-growth market.
Work alongside a dynamic, mission-driven team building innovative cybersecurity solutions.
Be part of a company experiencing rapid expansion — with room to grow into strategic sales leadership roles.
🧩 Ideal Candidate Snapshot
Experience: 10–15 years (minimum 8+ in enterprise cybersecurity sales)
Territory: Eastern U.S. (must reside in EST)
Industry Focus: BFSI (Banking, Financial Services, Insurance)
Travel: Occasional (for client meetings and industry events)
🚀 Ready to make your mark in cybersecurity sales?
Join a fast-growing, innovative company redefining enterprise protection and risk validation. Bring your consultative expertise, and help top-tier clients secure their most valuable digital assets.
Senior Manager, Industrial Security (FSO) | $153K–$175K | Defense & Aerospace | Greenville, TX
Job Title: Sr. Manager, Industrial Security (Facility Security Officer - FSO)
Location: Greenville, TX (Onsite)
Industry: Aerospace / Aviation / Defense
Category: Security / Industrial Security
Seniority Level: Mid-Senior
Employment Type: Full-Time
Work Schedule: 9/80 Regular
Remote/Onsite: Onsite (classified work required)
Travel: Occasional
Visa Candidates Considered: No
Security Clearance Required: Yes (Top Secret/SCI, adjudicated and in-scope T5)
Relocation Assistance: Yes
Compensation:
Base Salary: $153,000 – $175,000
Bonus Eligible: No
Commission: No
Overtime Eligible: No
Benefits: Full benefits package included
Interview Travel Reimbursed: No
Role Overview:
A leading defense and aerospace organization is seeking a Senior Manager, Industrial Security (FSO) to oversee and manage all aspects of classified security operations supporting Department of Defense (DoD) and Intelligence Community (IC) programs. This leadership role is critical in ensuring compliance with national security regulations, managing the security program lifecycle, and protecting sensitive assets, personnel, and facilities.
Key Responsibilities:
Manage, implement, and enforce security compliance per the National Industrial Security Program (NISP) and 32 CFR Part 117 (NISPOM Rule).
Serve as the designated Facility Security Officer (FSO) and lead a multidisciplinary security team covering industrial, personnel (PERSEC), physical, and information security.
Develop and maintain SOPs, Operational Security Programs, and ensure compliance with all federal and company security policies.
Lead and support government security investigations, audits, and assessments.
Oversee COMSEC program management, asset tracking, and accountability.
Conduct security training, briefings, and education for staff with access to classified material.
Engage with stakeholders to interpret security directives, mitigate insider threats, and respond to compliance challenges.
Utilize tools and systems such as SIMS, NISS, DISS/NBIS, and maintain familiarity with ICD 705 standards.
Maintain up-to-date knowledge on evolving federal security regulations and interdisciplinary compliance across IT, cybersecurity, and configuration management.
Act as a security advisor to site leadership and corporate teams to ensure effective protection of personnel, facilities, and information.
Minimum Qualifications:
Bachelor’s degree with at least 12 years of relevant experience, or
Graduate degree with at least 10 years of related experience, or
16+ years of experience in lieu of a degree.
FSO Certification as defined by Defense Counterintelligence and Security Agency (DCSA).
Minimum 5 years of direct hands-on FSO experience.
Current DoD Top Secret/SCI clearance with adjudicated, in-scope T5 investigation.
U.S. Citizenship required.
Preferred Qualifications:
Counterintelligence or full-scope polygraph.
Degree(s) in Security Management, Criminal Justice, Homeland Security, or related fields.
Proficiency in SIMS, NISS, DISS/NBIS; familiarity with ICD 705.
Experience with Insider Threat Program management.
Knowledge of COMSEC handling and procedures.
Professional certifications such as ISP, CPP, or other security designations.
Familiarity with DCS, FMS programs, or international travel processes.
Ideal Candidate Profile:
Brings 5+ years of direct FSO experience in a classified defense or intelligence setting.
Holds a valid FSO certificate and an active Top Secret/SCI clearance.
Demonstrates deep understanding of DoD and IC regulatory frameworks.
Highly organized, self-motivated, and capable of operating independently in a fast-paced environment.
Strong leadership, compliance, and stakeholder engagement skills.
Risk & Governance Lead – AI & Data Governance | $150K–$165K | McLean, VA / Plano, TX / NYC (Hybrid)
Risk & Governance Lead – Investments & Capital Markets (AI & Data Governance)
📍 Location: Hybrid – 3 days onsite in McLean, VA, Plano, TX, or New York, NY
💼 Employment Type: Full-Time | Mid-Senior Level
💲 Salary Range: $150,000 – $165,000 USD (eligible for annual incentive program)
🎁 Benefits: Comprehensive total rewards package, health coverage, retirement plan, paid time off, and professional development opportunities
🚚 Relocation: Not available
🛂 Visa Sponsorship: Not available
✈️ Travel: None
Shape the Future of AI Risk & Data Governance
Are you passionate about safeguarding the responsible use of AI and ensuring the integrity of critical financial data? This is your opportunity to step into a high-impact leadership role at the intersection of risk management, data governance, and emerging technology.
As the Risk & Governance Lead for Investments & Capital Markets, you will champion data security and compliance for AI-driven models, working closely with senior leaders, technology teams, and compliance experts. Your mission: build a governance framework that balances innovation with regulatory rigor—ensuring AI and data assets are managed ethically, securely, and strategically.
Your Impact
Partner Across the Enterprise – Work with legal, technical, and business teams to identify model data risks and influence decision-making
Drive Risk Assessments – Evaluate and mitigate risks in divisional data management and AI initiatives
Develop & Enforce Policies – Shape governance standards for model data in line with industry regulations and best practices
Champion Ethical AI – Advocate for transparency, fairness, and accountability in AI model design and use
Enhance Security – Collaborate with InfoSec teams to address vulnerabilities in model data management
Ensure Compliance – Oversee adherence to AI and data governance policies, providing guidance and oversight
Build Awareness – Lead training programs on AI ethics, data management, and risk best practices
Measure What Matters – Create KPIs, KRIs, and reporting frameworks to track governance effectiveness
What You Bring
Bachelor’s degree (or equivalent experience)
8+ years in relevant fields, including at least 6 years in operational risk management, compliance, or technology risk
Strong understanding of data management best practices and AI technologies (machine learning, NLP, large language models, computer vision)
Knowledge of regulations such as GDPR, CCPA, and industry standards (e.g., IEEE, NIST, ISO/IEC)
Proven ability to build and maintain cross-functional relationships
Exceptional communication skills—able to bridge technical and business audiences
Preferred:
2–5 years of leadership experience
Experience with model risk management in financial services
Familiarity with housing finance or capital markets
Why This Role?
💡 High-Impact Work – Influence AI governance across a major financial institution
🌐 Cross-Functional Exposure – Collaborate with leaders across legal, compliance, risk, and technology
📈 Career Development – Access to training, mentorship, and advancement opportunities
🏦 Mission-Driven Organization – Be part of a team making housing more accessible and affordable nationwide
The Ideal Candidate
You’re a risk leader with a passion for AI governance, a deep understanding of data security frameworks, and the ability to balance compliance with innovation. You think strategically, act decisively, and know how to turn complex governance requirements into actionable, enterprise-wide practices.
Cyber Security Engineering & Support Manager | Vulnerability Management | Pittsburgh, PA | $120K–$140K + Bonus
Cyber Security Engineering & Support Manager
📍 Location: Pittsburgh, PA (Onsite – no remote options)
💼 Employment Type: Full-time
💵 Salary: $120,000 – $140,000 annually + bonus eligibility
🎯 Experience Level: Mid-Senior (7–10 years)
About the Role
This role leads a dedicated cybersecurity engineering and support team focused on protecting enterprise technologies and infrastructure across IT and manufacturing environments. You’ll oversee the deployment and lifecycle management of enterprise security tools, direct the vulnerability management program, and provide critical cybersecurity risk analytics to support strategic decision-making.
Reporting directly to the Chief Information Security Officer, you’ll be responsible for ensuring secure, scalable solutions across global operations while managing a skilled technical team.
Key Responsibilities
Lead and manage the Security Engineering & Support team, including staff development and budget oversight.
Deploy, support, and optimize enterprise security technologies across IT, end-user, and cybersecurity environments.
Own and execute the organization’s vulnerability management strategy, reducing attack surfaces and strengthening resilience.
Develop and deliver cybersecurity risk dashboards with actionable KPIs and KRIs.
Oversee operational security functions such as privileged access provisioning and IT compliance support.
Partner with business units and OT teams (e.g., PLCs, SCADA, HMIs) to align secure solutions with plant-level and enterprise objectives.
Collaborate across the business to integrate security with enterprise architecture, applications, and eCommerce platforms.
Required Qualifications
Bachelor’s degree in Computer Science, Information Systems, Engineering, or a related field.
7+ years of experience in IT, infrastructure, or cybersecurity.
Proven experience leading vulnerability management programs.
Must be a U.S. citizen, lawful permanent resident, or otherwise eligible to access controlled technology under ITAR/EAR regulations.
Preferred Qualifications
2+ years of management experience leading IT or cybersecurity professionals.
Experience managing departmental budgets.
Background in manufacturing or production environments.
Expertise in systems engineering, application security, and security operations.
Active security certifications such as CISSP, CISM, CISA, or Security+.
Master’s degree in cybersecurity, engineering, or related field.
Ideal Candidate Profile
Strong leadership skills with a proven ability to guide cross-functional teams.
Skilled in budget management and process optimization.
Excellent interpersonal and communication skills for engaging both technical and non-technical stakeholders.
Hands-on experience in manufacturing or production IT environments is highly desirable.
Compensation & Benefits
Base Salary: $120,000 – $140,000 per year
Bonus Eligible
Comprehensive benefits package (medical, dental, vision, retirement, life insurance, etc.)
Paid time off and holidays
Professional development opportunities
👉 This is a strategic cybersecurity leadership opportunity for a professional ready to drive enterprise-wide security programs while directly influencing resilience and risk management.
Cyber Intelligence Specialist – IT System Administrator - Salt Lake City, Utah - $100,000 - $125,000 annually
Cyber Intelligence Specialist – IT System Administrator
Location: Salt Lake City, Utah
Schedule: 9/80 (Every other Friday off!)
Clearance: Active Secret security clearance required, with potential to obtain Top Secret clearance.
Relocation: Yes, full Assistance available
Compensation: $100,000 - $125,000 annually
Are you ready to bring your expertise to a cutting-edge environment where you'll shape the future of cybersecurity and IT systems? Join our team in Salt Lake City as a Cyber Intelligence Specialist – IT System Administrator and take on a pivotal role in ensuring the integrity and security of our Linux and Windows-based infrastructure. This on-site, full-time position offers the chance to work on critical projects that make a real impact.
What You’ll Do
Secure Systems: Manage, monitor, and enhance the security of Linux and Windows servers, keeping them resilient against emerging threats.
Performance Optimization: Set up and maintain administrator accounts, fine-tune system performance, and handle system-wide software installations.
Innovate Security Practices: Implement and oversee Risk Management Framework (RMF) processes, continuous monitoring, and security controls.
System Maintenance: Perform updates, patch vulnerabilities, and ensure minimal downtime by troubleshooting performance issues.
Cutting-Edge Tech: Deploy and manage security tools like firewalls, intrusion detection systems, and encryption technologies.
Audit & Compliance: Conduct security audits, align IT systems with regulatory standards, and develop mitigation strategies for potential risks.
Collaborate & Lead: Partner with cybersecurity teams, provide guidance to staff, and contribute to disaster recovery planning and data restoration efforts.
Document & Train: Maintain system documentation and train team members on best practices and technical processes.
What Makes You a Great Fit
Required Qualifications:
Bachelor’s Degree with 4+ years of relevant experience, OR a Graduate Degree with 2+ years of experience, OR 8+ years of related experience in lieu of a degree.
Active Secret Security Clearance.
Preferred Skills:
Top Secret clearance with CI Poly is a big plus!
Certifications like CISSP, RHCSA, RHCE, CompTIA Security+, or Linux+.
Expertise in automation tools, scripting, and virtualization technologies.
Strong knowledge of Linux OS, network protocols, and security compliance frameworks such as RMF.
Proven ability to work independently and collaboratively in high-stakes environments.
Why Join Us?
Dive into meaningful work protecting critical infrastructure.
Advance your career with opportunities to grow your skill set and obtain top-tier security clearances.
Collaborate with a dynamic team passionate about innovation and excellence.
Work in a 9/80 schedule environment that offers work-life balance.
Take the next step in your career as a cybersecurity leader and IT systems expert. Let’s redefine security together—apply today!
