Vulnerability Management

Site Automation & OT Cybersecurity Cluster Lead | Richmond, VA

Location: Richmond, Virginia

Work Arrangement: 100% onsite

Employment Type: Full-time, permanent

Schedule: Monday–Friday, core business hours

Travel: Quarterly travel to Long Island, New York

Relocation Assistance: Available

Security Clearance: Not required

Visa Sponsorship: Not available

People Management: Formal management experience not required

Position Overview

A leading global food and beverage manufacturer is seeking a Site Automation & OT Cybersecurity Cluster Lead to provide technical and strategic leadership across a cluster of manufacturing facilities.

The role is responsible for reliable, secure and supportable automation systems, digital-transformation roadmaps, industrial control networks, OT cybersecurity, technology lifecycle planning and business continuity.

Key Responsibilities

• Develop site and cluster roadmaps for automation upgrades and digital manufacturing.

• Translate manufacturing priorities into practical technology initiatives.

• Lead connected manufacturing, IoT and Industry 4.0 adoption.

• Provide technical leadership for plant automation and control systems.

• Serve as escalation point for complex automation, controls, infrastructure and security issues.

• Lead OT cybersecurity technology, standards and compliance.

• Assess risks and coordinate vulnerability remediation.

• Promote secure configuration, access control, patching, backup and recovery.

• Oversee industrial control-network infrastructure and segmentation.

• Plan network, control-system and platform lifecycle upgrades.

• Lead automation and digital-manufacturing elements of capital projects.

• Coordinate vendors, integrators, IT, Engineering, Maintenance and Operations.

• Maintain business-continuity and disaster-recovery plans.

• Develop standards, technical documentation and support models.

• Build automation and cybersecurity capability across plant teams.

• Track project benefits, reliability, cost and operational performance.

Required Qualifications

• Significant industrial-automation and controls experience in manufacturing.

• Strong OT cybersecurity and industrial control-network knowledge.

• Experience with PLC, SCADA, HMI, industrial networks and plant systems.

• Understanding of network segmentation, access control, vulnerability management, backup and recovery.

• Experience leading capital projects and technology roadmaps.

• Strong cross-functional leadership and stakeholder-influence skills.

• Ability to troubleshoot complex plant technology problems.

• Ability to work onsite in Richmond and travel quarterly to Long Island.

• Current U.S. work authorization without sponsorship.

Preferred Qualifications

• Food, beverage or CPG manufacturing experience.

• Industry 4.0, IoT and digital-manufacturing experience.

• Knowledge of recognized OT security frameworks and standards.

• Vendor-management, business-continuity and disaster-recovery experience.

Equal Opportunity

The employer is an Equal Opportunity Employer and considers qualified applicants without discrimination based on any status protected by applicable law.

Market Director, Information Technology & Services | Healthcare IT | Lake Havasu City, AZ

Market Director, Information Technology & Services

📍 Location: Lake Havasu City, Arizona 86403
🏥 Work Arrangement: 100% Onsite
💼 Employment Type: Full-Time, Permanent
📈 Experience Level: Senior Leadership
👤 Reports To: Chief Financial Officer
💰 Base Salary: $101,000–$136,000
🕒 Typical Hours: Monday–Friday, 8:00 AM–5:00 PM
✈️ Travel: Regular Overnight Travel—Potentially Up to 50%
🚚 Relocation Assistance: Not Available
💵 Sign-On Bonus: Not Available
🚫 Visa Sponsorship: Not Available

Lead Technology That Directly Supports Patient Care

A regional healthcare organization is seeking an experienced Market Director of Information Technology & Services to provide strategic and operational technology leadership across its hospital and assigned market facilities.

Reporting to the Chief Financial Officer, this senior leadership position will oversee hospital IT operations, enterprise applications, infrastructure, cybersecurity, technology support and service delivery. The Director will ensure clinical and business systems remain reliable, secure and aligned with organizational strategy, regulatory requirements and patient-care priorities.

This is a highly visible, onsite leadership opportunity for an experienced healthcare IT professional who can connect clinical, operational and enterprise teams while delivering secure, dependable and cost-effective technology services.

Key Responsibilities

Strategic IT Leadership

  • Provide strategic leadership and oversight for Information Technology and Services across the assigned healthcare market.

  • Develop and execute a market-level IT strategy aligned with facility and enterprise priorities.

  • Serve as the primary liaison between hospital leadership, market stakeholders and enterprise IT.

  • Ensure local technology requirements are represented during enterprise planning and governance.

  • Translate enterprise technology strategies into effective facility-level implementation plans.

  • Advise executive leadership on technology risks, priorities, investments and emerging opportunities.

  • Contribute to enterprise governance councils and the development of technology, cybersecurity and data-governance standards.

Hospital IT Operations

  • Oversee day-to-day IT operations across assigned facilities.

  • Maintain the reliability, availability and performance of clinical and business systems.

  • Provide leadership across:

    • Hospital applications

    • Electronic Health Record systems

    • Infrastructure and network services

    • Cybersecurity

    • End-user support

    • Data and reporting systems

    • Connected clinical technologies

  • Ensure IT service-management, incident-response and change-management processes are consistently followed.

  • Monitor system performance, service levels and recurring operational issues.

  • Coordinate the response to major incidents and technology disruptions.

  • Identify and address technical debt affecting the market’s systems and data-center environment.

Clinical and Operational Partnership

  • Build trusted relationships with hospital executives, clinical leaders, physicians, nursing teams and operational departments.

  • Ensure technology solutions support patient care, clinical workflows and business operations.

  • Gather and prioritize technology needs across departments and facilities.

  • Translate clinical and operational requirements into practical technology solutions.

  • Help teams understand the operational impact of proposed technology changes.

  • Maintain strong communication during implementations, disruptions and organizational change.

EHR and Enterprise Applications

  • Oversee the reliable operation and support of Electronic Health Record and related clinical systems.

  • Lead or support EHR upgrades, implementations and optimization initiatives.

  • Coordinate with enterprise application teams and facility stakeholders to address workflow and system issues.

  • Support application testing, training, implementation and adoption.

  • Ensure clinical applications meet operational, cybersecurity and regulatory requirements.

  • Identify opportunities to improve clinical efficiency and patient-care outcomes through technology.

Cybersecurity and Regulatory Compliance

  • Implement and enforce enterprise cybersecurity policies and technology standards.

  • Protect clinical, patient, operational and financial information.

  • Ensure compliance with applicable healthcare technology and privacy requirements, including HIPAA and HITECH.

  • Participate in technology audits, regulatory inspections and accreditation activities.

  • Support cybersecurity assessments, incident-response activities and risk-remediation initiatives.

  • Promote secure technology practices across clinical and administrative teams.

  • Partner with enterprise cybersecurity leadership to address vulnerabilities and emerging threats.

Project and Change Management

  • Lead and support enterprise technology initiatives across assigned facilities.

  • Manage projects involving EHR upgrades, cybersecurity, digital transformation, infrastructure and technical-debt reduction.

  • Establish clear project plans, responsibilities, timelines and success measures.

  • Coordinate internal teams, enterprise resources, facility stakeholders and external partners.

  • Champion structured change management and effective communication.

  • Ensure staff receive appropriate training and support before new technology is introduced.

  • Monitor adoption and address barriers following implementation.

Financial and Vendor Management

  • Collaborate with Finance and executive leadership to develop and manage technology priorities.

  • Support IT budgeting, forecasting and financial planning.

  • Ensure technology investments align with organizational and patient-care objectives.

  • Identify opportunities for cost reduction, operational efficiency and revenue improvement.

  • Manage external vendors and technology partners in accordance with enterprise procurement requirements.

  • Monitor vendor performance, service delivery, contractual obligations and escalations.

  • Evaluate proposed technology investments based on value, risk and operational need.

Team Leadership and Development

  • Lead, mentor and develop the market’s IT professionals.

  • Establish clear performance expectations and promote accountability.

  • Support workforce planning, succession management and employee engagement.

  • Identify professional-development and technical-training opportunities.

  • Build a collaborative team culture focused on service, continuous learning and operational excellence.

  • Ensure the team remains responsive to the needs of clinical and business stakeholders.

Performance Improvement and Innovation

  • Drive continuous improvement across IT operations and service delivery.

  • Use performance data, benchmarks and service metrics to identify improvement opportunities.

  • Promote practical innovation that advances patient care, operational efficiency and information security.

  • Evaluate emerging healthcare technologies and their potential value.

  • Develop measurable plans to improve system availability, response times, user satisfaction and operational performance.

  • Support data-informed decision-making across hospital and market leadership.

Required Qualifications

Candidates must possess one of the following:

  • Bachelor’s degree in Computer Science, Information Systems, Business or a related discipline; or

  • At least seven years of directly relevant professional experience in place of a bachelor’s degree.

Additional requirements include:

  • At least five years of progressive IT management experience.

  • At least three years of experience within healthcare and a multi-site or enterprise environment.

  • Demonstrated ability to collaborate across clinical, operational and enterprise teams.

  • Strong leadership, communication and relationship-building capabilities.

  • Experience managing technology staff, priorities and service delivery.

  • Ability to work onsite in Lake Havasu City, Arizona.

  • Willingness and ability to undertake overnight travel, potentially up to 50%.

  • Current authorization to work in the United States without employer sponsorship.

Preferred Qualifications

  • Direct experience leading hospital IT operations.

  • Experience supporting multiple hospitals or healthcare facilities.

  • Strong knowledge of Electronic Health Record systems and clinical applications.

  • Experience with healthcare infrastructure, cybersecurity and data protection.

  • Knowledge of HIPAA, HITECH and related healthcare regulatory requirements.

  • Experience participating in hospital audits, inspections or accreditation activities.

  • Technology project and change-management experience.

  • Experience with EHR upgrades, digital transformation or clinical technology implementations.

  • Experience managing IT budgets and technology investments.

  • Strong vendor and contract-management experience.

  • Experience developing and mentoring IT professionals.

  • Knowledge of healthcare IT best practices and emerging technology trends.

  • Experience using performance metrics and analytics to improve IT service delivery.

The Ideal Candidate

The strongest candidate will be able to demonstrate:

  • Successful leadership of IT operations within a hospital or healthcare system.

  • Experience supporting a complex, multi-site or enterprise technology environment.

  • Strong understanding of the connection between technology and patient care.

  • Direct involvement with EHR systems, cybersecurity and regulatory compliance.

  • The ability to communicate effectively with clinical teams, hospital executives and enterprise IT leaders.

  • Examples of improving system availability, service delivery or stakeholder satisfaction.

  • Successful delivery of complex healthcare technology projects.

  • Experience managing budgets, vendors and competing operational priorities.

  • A collaborative and service-focused leadership style.

  • The ability to remain calm, organized and decisive during major incidents or technology disruption.

Work Environment

This position is based onsite within an active hospital environment. The successful candidate will work in clinical and office settings and may encounter the standard environmental conditions associated with healthcare facilities.

Normal business hours are generally Monday through Friday, from 8:00 AM to 5:00 PM. However, availability outside standard hours may occasionally be required based on operational needs, system incidents or project activity.

Regular travel between facilities and occasional overnight travel by land or air should be expected.

Benefits

The organization offers a comprehensive benefits package that may include:

  • Medical insurance

  • Dental insurance

  • Vision insurance

  • Life insurance

  • Accident and critical-illness coverage

  • Hospital-indemnity insurance

  • Short- and long-term disability coverage

  • Paid family leave

  • Paid time off

  • Retirement plan with employer contribution or match

  • Tuition and professional-certification assistance

  • Student-loan assistance

  • Mental, physical and financial wellness programs

  • Virtual-care and mental-health resources

  • Professional-development and career-advancement opportunities

Interview Process

The anticipated selection process includes:

  1. An initial 10-minute screening call.

  2. A Microsoft Teams interview with divisional IT leadership.

  3. A Microsoft Teams interview with hospital leadership.

  4. An onsite meeting with senior executives, department directors and IT staff.

Equal Opportunity

The organization is an Equal Opportunity Employer and considers qualified applicants without discrimination based on any status protected under applicable federal, state or local law.

 

Information System Security Officer (ISSO) – TS/SCI Full Scope Poly – Annapolis Junction, MD

Information System Security Officer (ISSO) – TS/SCI Full Scope Poly

📍 Location: Annapolis Junction, MD
🏢 Work Arrangement: 100% Onsite
💼 Employment Type: Full-Time
🔒 Security Clearance Required: Active TS/SCI with Full Scope Polygraph (NSA Preferred)
🇺🇸 Citizenship: U.S. Citizen Required
🚫 Visa Sponsorship: Not Available
🚚 Relocation Assistance: Available
💰 Compensation: $100,000 – $200,000 Base Salary

Overview

A leading government technology contractor is seeking Information System Security Officers (ISSOs) to support mission-critical classified programs within highly secure government environments.

This role is responsible for maintaining cybersecurity compliance throughout the Risk Management Framework (RMF) lifecycle, supporting system accreditation, continuous monitoring, vulnerability management, and ongoing cybersecurity operations.

The ideal candidate will possess strong RMF expertise, experience supporting classified environments, and the ability to work closely with System Administrators, System Owners, Information System Security Managers (ISSMs), Security Control Assessors, and Government stakeholders.

Key Responsibilities

Risk Management Framework (RMF)

  • Support the full RMF lifecycle for classified systems.

  • Develop and maintain RMF documentation and accreditation packages.

  • Coordinate Authority to Operate (ATO) activities.

  • Support security authorization and reauthorization efforts.

  • Ensure systems maintain compliance with cybersecurity requirements.

Security Compliance & Assessments

  • Conduct security control reviews and assessments.

  • Validate implementation of required security controls.

  • Monitor compliance against NIST and government standards.

  • Support internal and external cybersecurity audits.

Continuous Monitoring (ConMon)

  • Support ongoing Continuous Monitoring activities.

  • Review system configurations and compliance posture.

  • Analyze vulnerability findings and remediation efforts.

  • Track compliance status and corrective actions.

Vulnerability & Risk Management

  • Monitor vulnerabilities and security findings.

  • Coordinate remediation efforts with technical teams.

  • Assess risk and recommend mitigation strategies.

  • Support vulnerability management programs.

Stakeholder Collaboration

  • Work closely with:

    • System Administrators

    • System Owners

    • ISSMs

    • Security Control Assessors

    • Government Security Teams

  • Provide security guidance and compliance recommendations.

  • Support cybersecurity reviews and inspections.

Required Qualifications

Security Requirements

✔ Active TS/SCI Clearance

✔ Active Full Scope Polygraph (NSA Preferred)

✔ U.S. Citizenship Required

Cybersecurity & RMF Experience

Experience supporting:

  • Information Assurance (IA)

  • Cybersecurity Compliance

  • ISSO Functions

  • Classified Information Systems

Strong understanding of:

  • Risk Management Framework (RMF)

  • Authority to Operate (ATO)

  • Security Control Assessments

  • Continuous Monitoring (ConMon)

  • Risk Assessment Methodologies

RMF & Compliance Tools

Experience with one or more of:

  • LATTEART

  • XACTA

  • BISCOTTI

  • WATCHCAT

  • STE

Experience with:

  • Compliance scanning tools

  • Configuration assessment tools

  • Vulnerability management platforms

NIST Framework Knowledge

Strong familiarity with:

  • NIST SP 800-53 Rev. 3 and/or Rev. 5

  • NIST SP 800-37

  • Security Controls

  • RMF Documentation Requirements

Required Documentation Experience

Candidates should have experience creating, reviewing, or maintaining:

Security Documentation

  • System Security Plans (SSP)

  • Plans of Action & Milestones (POA&M)

  • Security Plan Findings (SPF)

  • Exception Documentation

Risk & Compliance Documentation

  • Risk Assessment Reports (RAR)

  • Security Assessment Reports (SAR)

  • Business Impact Assessments (BIA)

  • Configuration Management Plans (CMP)

  • Contingency Plans (CP)

  • After Action Reports (AAR)

Preferred Qualifications

Government & Classified Environment Experience

  • Classified Government systems

  • Security audits and inspections

  • Compliance reviews

  • Vulnerability remediation programs

Stakeholder Coordination

Experience coordinating with:

  • Authorizing Officials (AO)

  • Security Control Assessors (SCA)

  • ISSMs

  • System Owners

Technical Knowledge

  • Operating System Security

  • System Administration Concepts

  • Vulnerability Management

  • Configuration Management

Preferred Certifications

Highly desired certifications include:

  • CompTIA Security+

  • CISSP

  • CAP

  • CASP+

  • CISM

Must-Have Requirements

Clearance

✅ Active TS/SCI Clearance

✅ Active Full Scope Polygraph

Cybersecurity

✅ RMF Experience

✅ ATO Experience

✅ Continuous Monitoring (ConMon)

✅ Security Control Assessments

Documentation

✅ SSP Development

✅ POA&M Management

✅ Security Compliance Documentation

Soft Skills

✅ Strong Written Communication

✅ Strong Organizational Skills

✅ Risk-Based Decision Making

✅ Collaboration & Stakeholder Management

Screening Questions

  1. Do you currently hold an active TS/SCI clearance with a Full Scope Polygraph?

  2. Was your Full Scope Polygraph issued by NSA?

  3. When was your most recent Full Scope Polygraph completed?

  4. How many years of ISSO, Information Assurance, or Cybersecurity compliance experience do you have?

  5. Have you supported the full RMF lifecycle, including ATO activities?

  6. Which RMF compliance tools have you used (XACTA, LATTEART, BISCOTTI, WATCHCAT, STE)?

  7. Have you developed or maintained SSPs, POA&Ms, SARs, or RARs?

  8. What experience do you have with NIST 800-53 and NIST 800-37?

  9. Do you have experience supporting classified Government systems?

  10. Do you hold any cybersecurity certifications such as Security+, CISSP, CAP, CASP+, or CISM?

Ideal Candidate Profile

The ideal candidate will:

  • Hold an active TS/SCI Full Scope Polygraph.

  • Have strong ISSO or Information Assurance experience within classified environments.

  • Possess deep knowledge of RMF, ATO, and Continuous Monitoring processes.

  • Be highly detail-oriented and documentation-focused.

  • Have experience working with government cybersecurity compliance tools.

  • Understand vulnerability management and risk mitigation practices.

  • Effectively collaborate with technical and non-technical stakeholders.

  • Balance mission requirements with cybersecurity compliance obligations.

Candidate Snapshot

Requirement

Details

Clearance

Active TS/SCI + Full Scope Poly

Citizenship

U.S. Citizen

Experience Level

Mid-Level to Senior

Frameworks

RMF, NIST 800-53, NIST 800-37

Compliance

ATO, ConMon, Security Controls

Documentation

SSP, POA&M, SAR, RAR, CMP, CP

Tools

XACTA, LATTEART, BISCOTTI, WATCHCAT, STE

Certifications

Security+, CISSP, CAP, CASP+, CISM (Preferred)

Location

Annapolis Junction, MD

Work Arrangement

100% Onsite

Travel

None

Compensation

$100K – $200K

Relocation

Available

Why This Opportunity?

Mission Impact

Support highly classified national security programs and critical government systems.

Cybersecurity Leadership

Play a key role in accreditation, compliance, risk management, and cybersecurity governance activities.

Career Growth

Work alongside highly skilled cybersecurity professionals supporting some of the nation's most sensitive environments.

Excellent Benefits

  • 3 Weeks PTO

  • 11 Federal Holidays

  • Medical & Dental Coverage

  • Life Insurance

  • STD & LTD Coverage

  • 401(k) with Company Match

  • Long-Term Career Development

This opportunity is ideal for an ISSO, Information Assurance Analyst, Cybersecurity Compliance Analyst, RMF Analyst, Information Security Specialist, Security Control Assessor Support Specialist, or Cybersecurity Governance Professional with an active TS/SCI Full Scope Polygraph seeking to support mission-critical government programs.

 

Information System Security Engineer (ISSE) – TS/SCI Full Scope Poly – Annapolis Junction, MD

Information System Security Engineer (ISSE) – TS/SCI Full Scope Poly

📍 Location: Annapolis Junction, MD
🏢 Work Arrangement: 100% Onsite
💼 Employment Type: Full-Time
🔒 Security Clearance Required: Active TS/SCI with Full Scope Polygraph (NSA Preferred)
🇺🇸 Citizenship: U.S. Citizen Required
🎓 Certification Required: DoD 8570/8140 IASAE Level II Compliant Certification
🚫 Visa Sponsorship: Not Available
🚚 Relocation Assistance: Available
💰 Compensation: $100,000 – $200,000 Base Salary

Overview

A leading government technology contractor is seeking Information System Security Engineers (ISSEs) to support mission-critical classified government programs.

This role focuses on integrating cybersecurity engineering principles throughout the entire system lifecycle, including system design, implementation, accreditation, continuous monitoring, and sustainment. The ISSE will play a critical role in Risk Management Framework (RMF) execution, Assessment & Authorization (A&A) activities, security control validation, and ongoing cybersecurity compliance.

The ideal candidate will possess a strong blend of cybersecurity engineering, RMF expertise, technical security assessment experience, and security architecture knowledge within highly secure classified environments.

Key Responsibilities

Risk Management Framework (RMF)

  • Support the full RMF lifecycle for classified information systems.

  • Develop and maintain RMF documentation and security artifacts.

  • Assist with Authority to Operate (ATO) activities and sustainment.

  • Support Assessment & Authorization (A&A) efforts.

  • Maintain body-of-evidence packages for accreditation activities.

Security Engineering

  • Implement and validate security controls.

  • Perform Security Control Traceability and technical validation.

  • Support system boundary definition and security architecture development.

  • Conduct technical security assessments and risk analysis.

  • Recommend security improvements and mitigation strategies.

Compliance & Continuous Monitoring

  • Participate in Continuous Monitoring (ConMon) activities.

  • Conduct compliance assessments and security reviews.

  • Analyze vulnerability scan results and remediation efforts.

  • Verify remediation effectiveness and identify false positives.

  • Ensure ongoing compliance with cybersecurity requirements.

Vulnerability Management & Hardening

  • Support vulnerability management programs.

  • Implement and validate STIG compliance.

  • Support patch validation and security compliance efforts.

  • Assist with system hardening initiatives.

  • Coordinate remediation activities with technical teams.

Stakeholder Collaboration

  • Work closely with:

    • ISSOs

    • ISSMs

    • Security Control Assessors (SCAs)

    • System Owners

    • System Administrators

  • Support accreditation, compliance, and cybersecurity engineering efforts across mission systems.

Required Qualifications

Security Requirements

✔ Active TS/SCI Clearance

✔ Active Full Scope Polygraph (NSA Preferred)

✔ U.S. Citizenship Required

Certification Requirement

✔ DoD 8570/8140 IASAE Level II Compliant Certification

Examples include:

  • CISSP

  • CASP+

  • CCSP

  • CSSLP

Cybersecurity & RMF Experience

Strong experience with:

  • Risk Management Framework (RMF)

  • Assessment & Authorization (A&A)

  • Authority to Operate (ATO)

  • Security Control Implementation

  • Security Control Validation

  • Continuous Monitoring (ConMon)

NIST Knowledge

Strong familiarity with:

  • NIST SP 800-37

  • NIST SP 800-53 Rev. 3 and/or Rev. 5

  • Security Control Frameworks

  • RMF Compliance Processes

RMF & Compliance Tools

Experience with one or more of:

  • LATTEART

  • XACTA

  • BISCOTTI

  • WATCHCAT

  • STE

Additional experience with:

  • Compliance scanning tools

  • Configuration assessment tools

  • Vulnerability management platforms

Core ISSE Skill Areas

Security Engineering

  • Security Control Implementation

  • Security Control Validation

  • Security Architecture Support

  • System Boundary Definition

Compliance & Accreditation

  • Assessment & Authorization (A&A)

  • RMF Artifact Development

  • Accreditation Package Support

  • Body of Evidence Management

Vulnerability Management

  • Vulnerability Analysis

  • Remediation Tracking

  • Patch Validation

  • STIG Compliance

  • Security Hardening

Risk Management

  • Technical Risk Analysis

  • Compliance Validation

  • Continuous Monitoring (ConMon)

  • Security Assessment Support

Preferred Qualifications

Government & Classified Environment Experience

  • Classified Government cybersecurity programs.

  • Large-scale enterprise systems.

  • Mission-critical environments.

Technical Infrastructure Exposure

Experience supporting:

  • Enterprise Linux environments

  • Network infrastructure

  • Cloud environments

Stakeholder Coordination

Experience collaborating with:

  • ISSOs

  • ISSMs

  • Security Control Assessors

  • System Owners

  • Engineering Teams

Must-Have Requirements

Clearance

✅ Active TS/SCI Clearance

✅ Active Full Scope Polygraph

Certification

✅ IASAE Level II Certification

Cybersecurity

✅ RMF Experience

✅ A&A Experience

✅ ATO Experience

✅ Security Control Validation

Compliance

✅ Continuous Monitoring

✅ Vulnerability Management

✅ STIG Implementation

Documentation

✅ RMF Artifacts

✅ Accreditation Packages

✅ Security Documentation

Screening Questions

  1. Do you currently hold an active TS/SCI clearance with a Full Scope Polygraph?

  2. Was your Full Scope Polygraph issued by NSA?

  3. When was your most recent Full Scope Polygraph completed?

  4. Which IASAE Level II certification do you currently hold (CISSP, CASP+, CCSP, CSSLP, etc.)?

  5. How many years of ISSE or cybersecurity engineering experience do you have?

  6. Have you supported the full RMF lifecycle, including A&A and ATO activities?

  7. Which RMF tools have you used (XACTA, LATTEART, BISCOTTI, WATCHCAT, STE)?

  8. Do you have experience implementing and validating security controls?

  9. Have you supported STIG implementation, vulnerability remediation, and compliance validation?

  10. Do you have experience supporting classified government systems?

Ideal Candidate Profile

The ideal candidate will:

  • Hold an active TS/SCI Full Scope Polygraph.

  • Possess an active IASAE Level II certification.

  • Have strong cybersecurity engineering experience within classified environments.

  • Be highly knowledgeable in RMF, A&A, and ATO processes.

  • Understand security architecture, control implementation, and compliance validation.

  • Have experience supporting vulnerability management and STIG compliance.

  • Demonstrate excellent analytical, troubleshooting, and documentation skills.

  • Balance mission objectives with cybersecurity requirements and risk management practices.

Candidate Snapshot

Requirement

Details

Clearance

Active TS/SCI + Full Scope Poly

Citizenship

U.S. Citizen

Experience Level

Mid-Level to Senior

Certification

IASAE Level II Required

Frameworks

RMF, NIST 800-37, NIST 800-53

Compliance

A&A, ATO, ConMon

Security

Control Implementation & Validation

Documentation

RMF Artifacts & Accreditation Packages

Tools

XACTA, LATTEART, BISCOTTI, WATCHCAT, STE

Location

Annapolis Junction, MD

Work Arrangement

100% Onsite

Travel

None

Compensation

$100K – $200K

Relocation

Available

Why This Opportunity?

Mission Impact

Support highly classified systems that directly contribute to critical national security missions.

Cybersecurity Engineering Focus

Move beyond compliance into hands-on security engineering, architecture support, security control validation, and accreditation activities.

Technical Growth

Gain exposure to advanced RMF processes, security engineering practices, vulnerability management, and enterprise cybersecurity operations.

Strong Benefits Package

  • 3 Weeks PTO

  • 11 Federal Holidays

  • Medical & Dental Coverage

  • Life Insurance

  • STD & LTD Coverage

  • 401(k) with Company Match

  • Long-Term Career Development

This opportunity is ideal for an Information System Security Engineer (ISSE), Cybersecurity Engineer, RMF Engineer, Security Compliance Engineer, Cybersecurity Architect, A&A Specialist, or Security Controls Engineer with an active TS/SCI Full Scope Polygraph and IASAE Level II certification seeking to support highly sensitive government programs.

 

SOC Analyst – Montvale, NJ | Hybrid Cybersecurity & Vulnerability Management

SOC Analyst

📍 Location: Montvale, New Jersey
🏢 Work Model: Hybrid – 3 days onsite / 2 days remote
🏠 Employees work remotely every Friday + receive 40 additional remote days annually
💼 Employment Type: Full-Time
📈 Seniority Level: Associate / Mid-Level
🎓 Education: Bachelor’s Degree preferred
🔐 Industry: Cybersecurity / Manufacturing / Enterprise IT

💰 Compensation & Benefits

  • Salary Range: $90,000 – $110,000

  • Full benefits package

  • Hybrid flexibility

  • Collaborative and supportive IT/security environment

🚀 Overview

A growing enterprise organization is seeking a SOC Analyst to strengthen its cybersecurity operations through security monitoring, alert investigation, and vulnerability management.

This role combines Security Operations Center (SOC) responsibilities with hands-on vulnerability analysis and remediation coordination across enterprise infrastructure and endpoint environments.

The ideal candidate is analytical, collaborative, proactive, and highly communicative with experience supporting enterprise security operations.

🔧 Key Responsibilities

Security Operations

  • Monitor, triage, and investigate alerts from:

    • SIEM platforms

    • Endpoint protection tools

    • Security monitoring systems

  • Distinguish legitimate threats from false positives

  • Document findings and communicate results clearly

  • Assist with alert tuning and optimization efforts

Vulnerability Management

  • Support enterprise vulnerability scanning and assessments

  • Analyze vulnerability findings and prioritize remediation activities

  • Research CVEs and provide:

    • Exploitability analysis

    • Business impact context

    • Remediation guidance

  • Track remediation progress and validate fixes

Collaboration & Communication

  • Partner closely with:

    • Infrastructure teams

    • IT leadership

    • Cybersecurity teams

  • Maintain strong communication and visibility around risks and remediation efforts

  • Proactively identify opportunities for improvement

Continuous Improvement

  • Assist with:

    • DLP and information protection controls

    • System hardening initiatives

    • Documentation and runbook development

  • Explore enhanced capabilities within existing security tooling

✅ Required Qualifications

  • Bachelor’s degree in:

    • Cybersecurity

    • Computer Science

    • Information Technology

    • Related discipline
      OR equivalent practical experience

  • 3–5 years of experience in:

    • Security operations

    • Vulnerability management

    • Endpoint protection analysis

  • Strong understanding of:

    • CVEs

    • Risk prioritization

    • Vulnerability remediation processes

  • Excellent communication and collaboration skills

⭐ Preferred Skills

  • Experience with:

    • SIEM platforms

    • Enterprise log analysis

    • Endpoint detection & response (EDR) tools

  • Familiarity with:

    • Active Directory

    • Group Policy

    • Security baselines

  • Scripting or reporting experience:

    • PowerShell

    • Python

    • Power BI

  • Security certifications are a plus but not required

🎯 Ideal Candidate

  • Hands-on SOC or cybersecurity analyst with enterprise experience

  • Strong communicator who proactively keeps stakeholders informed

  • Comfortable balancing:

    • Security investigations

    • Vulnerability analysis

    • Cross-functional collaboration

  • Curious, self-driven, and eager to improve security operations

📝 Screening Considerations

  • Do you have experience with:

    • SOC operations

    • Vulnerability management

    • Endpoint security tools?

  • Have you worked with SIEM or enterprise detection platforms?

  • Are you comfortable working in a hybrid environment in Montvale, NJ?

  • Do you have experience coordinating remediation efforts with infrastructure teams?

🌍 Work Environment

  • Hybrid work schedule:

    • 3 onsite days

    • 2 remote days

  • Additional remote flexibility throughout the year

  • Collaborative enterprise IT and cybersecurity team

  • Occasional travel between NY/NJ locations may be required

📈 Why Join

  • Broad exposure across enterprise cybersecurity operations

  • Opportunity to influence security tooling and processes

  • Supportive, highly collaborative IT culture

  • Strong focus on learning, ownership, and continuous improvement

 

DevOps Engineer – Top Secret Clearance (Onsite, Huntsville AL)

DevOps Engineer (Top Secret Required)

💰 Salary: Up to $170,000
📍 Location: Huntsville, Alabama (100% Onsite)
🏢 Work Model: Fully Onsite
💼 Employment Type: Full-Time
🔐 Clearance: Active Top Secret (CI Poly required)
🎓 Education: Bachelor’s Degree Required
🚚 Relocation Assistance: Available (up to $10,000)

About the Role

We are seeking a DevOps Engineer to join a high-performing cyber team supporting a large SOC enterprise environment. This role is hands-on and mission-critical, focused on designing, deploying, operating, and securing DevSecOps infrastructure in a classified environment.

You’ll work across infrastructure, automation, and cybersecurity tooling—supporting everything from deployment and patching to troubleshooting complex interoperability issues.

Key Responsibilities

  • Design, deploy, test, certify, and operate DevSecOps infrastructure tools

  • Own operations and maintenance for multiple platform tools

  • Deploy and configure services using Infrastructure as a Service (IaaS)

  • Configure and manage Linux-based servers supporting dynamic applications

  • Debug cluster-based computing architectures

  • Use scripting or basic programming to solve operational issues

  • Install, configure, and manage open-source monitoring tools

  • Perform patching, upgrades, and sustainment activities

  • Address system interoperability and operational stability issues

Required Qualifications

  • Active Top Secret Security Clearance with willingness to sit for CI Poly

  • Bachelor’s degree (BS or BA)

  • 5+ years of DevOps-related experience

  • Strong experience administering Linux-based environments

  • Experience testing, deploying, maintaining, and administering cybersecurity infrastructure

  • Experience developing or modifying applications or utility programs for cybersecurity use

  • Comfortable operating in secure, enterprise SOC environments

Preferred Skills & Certifications

  • Red Hat Certified Systems Administrator (RHCSA)

  • AWS Certified Cloud Practitioner

  • AWS Certified DevOps Engineer – Associate

  • Experience with:

    • Splunk

    • Oracle / SQL-based platforms

    • Python scripting

  • Experience integrating third-party components and custom capabilities

  • Proven ability to automate operations and maintenance tasks

  • Strong troubleshooting and process-improvement mindset

Ideal Candidate Profile

  • Holds an active Top Secret clearance

  • Willing to complete a CI Polygraph

  • Has hands-on DevOps experience in secure cyber environments

  • Exposure to Splunk preferred

  • Willing to relocate to Huntsville, AL

  • Self-driven, technically curious, and operationally strong

Benefits

  • 3 weeks Paid Time Off

  • 2 weeks Holiday Pay

  • Medical, Dental, and Vision Insurance

  • Short--Term & Long-Term Disability

  • Life Insurance & AD&D

  • 401(k) with up to 4% match

  • Relocation assistance available (up to $10,000)

Additional Details

  • Security Clearance Required: Yes

  • Visa Sponsorship: Not available

  • Travel: None

 

Staff Product Security Engineer | Medical Devices | Limerick, Ireland | Onsite

🔐 Staff Product Security Engineer

📍 Location: Limerick City, Munster, Ireland (Onsite – minimum 4 days per week)
🏢 Industry: Medical Devices / Healthcare Technology
🧠 Level: Mid–Senior
💼 Employment Type: Full-Time
✈️ Travel: Occasional
🛂 Visa Sponsorship: Not available
💶 Salary Range: €85,000 – €95,000
🎁 Benefits: Full benefits package

🚀 The Opportunity

An innovative global medical technology organisation is seeking a Staff Product Security Engineer to play a critical role in shaping and strengthening product security across next-generation healthcare solutions.

This is a highly visible position offering the opportunity to:

  • Influence security strategy across product portfolios

  • Embed secure-by-design principles across the full product lifecycle

  • Lead security maturity improvements

  • Work cross-functionally with R&D, Quality, Regulatory, and IT

  • Protect products in an evolving threat landscape

If you're passionate about cybersecurity, product resilience, and impact-driven work in healthcare, this role offers both purpose and technical depth.

🎯 Key Responsibilities

  • Lead and develop a high-performing Product Security function

  • Define and guide product security strategy aligned with regulatory and enterprise cybersecurity objectives

  • Embed secure-by-design practices, threat modelling, and proactive vulnerability management

  • Partner with R&D, Quality, Regulatory, and IT teams to ensure security is integrated throughout the product lifecycle

  • Conduct product security risk assessments and support remediation strategies

  • Support product security documentation, including governance and compliance artefacts

  • Review technical designs and source code; provide clear, actionable recommendations

  • Support incident response and vulnerability management efforts

  • Implement best practices for:

    • Encryption & PKI

    • Authentication & access control

    • Audit logging

    • Secure hardening

    • Patch management

    • Vulnerability monitoring

  • Track and report security posture using meaningful metrics

  • Ensure adherence to development policies and quality management systems

🧠 Required Experience & Qualifications

  • Bachelor’s degree in Computer Science, Engineering, or related field (or equivalent experience)

  • 5+ years experience in:

    • Security architecture

    • Secure software development

    • Systems and architecture design

  • Experience working in regulated environments with strong QMS adherence

  • Proven experience leading or mentoring teams

  • Strong understanding of:

    • Encryption algorithms and PKI

    • Embedded device security

    • Networking and threat models

    • Dynamic and static code analysis tools

  • Excellent written and verbal communication skills

  • Strong collaboration and stakeholder management abilities

🧩 Technical Skills Snapshot

Domain

Experience

Product Security

Secure-by-design, threat modelling, vulnerability management

Cryptography

Encryption, PKI

AppSec

Static/Dynamic analysis, secure SDLC

Embedded Security

Yes

Networking

Security controls, common threats

Documentation

SAP, SharePoint, DocuSign or similar

Regulated Environments

Medical / highly regulated industries

Tools

Microsoft Office, security tooling

🏢 Work Style & Culture

  • Strong emphasis on onsite collaboration (minimum 4 days/week in office)

  • Cross-functional, high-impact environment

  • Focus on innovation, continuous improvement, and ownership

  • Opportunity to influence product direction at a strategic level

📌 Candidate Snapshot

Attribute

Details

Role

Staff Product Security Engineer

Location

Limerick, Ireland

Experience

10–15 years ideal

Leadership

Yes (influence & team leadership expected)

Domain

Medical device security

Environment

Regulated, high-compliance

Work Model

Onsite-first

🌍 Why This Role Matters

Your work will directly contribute to:

  • Protecting patient safety

  • Strengthening cybersecurity in healthcare systems

  • Ensuring regulatory compliance

  • Driving security maturity across critical medical technologies

This is a career-defining role for someone who wants both technical depth and meaningful impact.

 

Information Systems Security Engineer (ISSE) & Information Systems Security Officer (ISSO) | TS/SCI FS Poly | Annapolis Junction, MD | $220K–$260K

Job Title: Information Systems Security Engineer (ISSE) & Information Systems Security Officer (ISSO)
Location: Annapolis Junction, Maryland (100% Onsite)
Clearance Required: TS/SCI with Full Scope Polygraph (FS Poly)
Compensation: $220,000 – $260,000 base salary
Employment Type: Full-time
Relocation Assistance: Possible for ideal candidate
Benefits: Full benefits offered
Visa Candidates: Not considered

Overview:

We are hiring two experienced cybersecurity professionals for an exciting and mission-critical government program based in Annapolis Junction, MD. Both roles require active TS/SCI with Full Scope Poly (poly must be within the past 5 years and from a Maryland Intelligence Customer). While both positions are integral to the security posture of the program, each requires a different focus, background, and certification path.

1. Information Systems Security Engineer (ISSE)

Role ID: 727
Seniority Level: Mid to Senior
Clearance: TS/SCI w/ FS Poly (mandatory)
Certifications Required:

  • CISSP (Required)

  • ISSEP (Preferred or willing to obtain during crossover if CISSP has been held for 2+ years)

Key Responsibilities:

  • Develop and implement system security designs and architectures for complex, large-scale systems.

  • Lead security risk assessment and mitigation throughout the system development lifecycle.

  • Conduct system security planning, vulnerability testing, and compliance verification.

  • Analyze and implement secure communication protocols, encryption tools, and secure OS configurations.

  • Collaborate with engineers across integration, testing, and development teams to ensure compliance with classified information handling.

  • Use tools such as Nessus, NMAP, Wireshark for threat identification and remediation.

  • Support RMF, risk management activities, and IA (Information Assurance) processes.

Preferred Experience:

  • Bachelor’s or Master’s in Cybersecurity, Information Assurance, or related field.

  • Experience with Defense-in-Depth principles, secure software architecture, and penetration testing tools.

  • Proficient in scripting languages and secure configuration management.

2. Information Systems Security Officer (ISSO)

Role ID: 643
Seniority Level: Mid to Senior
Clearance: TS/SCI w/ FS Poly (mandatory)
Certifications Required:

  • IAT Level II or IAM Level II certification (Required)

    • Examples: Security+ CE, CASP+, CISSP, CISM, or similar

Key Responsibilities:

  • Act as ISSO for a large-scale software development and IT operations program.

  • Enforce security policies and maintain operational security posture of systems.

  • Manage documentation for system Certification & Accreditation (C&A) and Security Plans (SSPs).

  • Conduct vulnerability remediation, IAVA compliance, and configuration management for system security.

  • Support day-to-day information system operations, network security, and audit readiness.

  • Coordinate with ISSM and other security stakeholders to ensure secure system integration and lifecycle support.

Preferred Experience:

  • 10+ years as an ISSO in complex, standalone, or connected environments.

  • Experience maintaining SSPs, performing incident response, and managing vulnerability scans.

  • Familiarity with tools supporting IAVA management, CM, and system auditing.

  • Bachelor’s degree in a related field and 12+ years of overall security experience preferred.

Ideal Candidate Profile (Both Roles):

  • Must hold a current FS Poly with the Maryland Intelligence Customer (within the past 5 years).

  • No prior CCAs (Counterintelligence Concerns).

  • Excellent verbal/written communication skills and team collaboration.

  • Strong commitment to best practices and high-integrity security operations.

Additional Notes:

  • Both roles are 100% onsite in Annapolis Junction, MD.

  • Do not repost these positions.

  • Candidates must be U.S. Citizens with an active TS/SCI with Full Scope Polygraph.

 

Information Systems Security Engineer (ISSE) & Information Systems Security Officer (ISSO) | TS/SCI FS Poly | $220K–$260K | Annapolis Junction, MD

Job Title: Information Systems Security Engineer (ISSE) & Information Systems Security Officer (ISSO)
Location: Annapolis Junction, Maryland (100% Onsite)
Clearance Required: TS/SCI with Full Scope Polygraph (FS Poly)
Compensation: $220,000 – $260,000 base salary
Employment Type: Full-time
Relocation Assistance: Possible for ideal candidate
Benefits: Full benefits offered
Visa Candidates: Not considered

Overview:

We are hiring two experienced cybersecurity professionals for an exciting and mission-critical government program based in Annapolis Junction, MD. Both roles require active TS/SCI with Full Scope Poly (poly must be within the past 5 years and from a Maryland Intelligence Customer). While both positions are integral to the security posture of the program, each requires a different focus, background, and certification path.

1. Information Systems Security Engineer (ISSE)

Role ID: 727
Seniority Level: Mid to Senior
Clearance: TS/SCI w/ FS Poly (mandatory)
Certifications Required:

  • CISSP (Required)

  • ISSEP (Preferred or willing to obtain during crossover if CISSP has been held for 2+ years)

Key Responsibilities:

  • Develop and implement system security designs and architectures for complex, large-scale systems.

  • Lead security risk assessment and mitigation throughout the system development lifecycle.

  • Conduct system security planning, vulnerability testing, and compliance verification.

  • Analyze and implement secure communication protocols, encryption tools, and secure OS configurations.

  • Collaborate with engineers across integration, testing, and development teams to ensure compliance with classified information handling.

  • Use tools such as Nessus, NMAP, Wireshark for threat identification and remediation.

  • Support RMF, risk management activities, and IA (Information Assurance) processes.

Preferred Experience:

  • Bachelor’s or Master’s in Cybersecurity, Information Assurance, or related field.

  • Experience with Defense-in-Depth principles, secure software architecture, and penetration testing tools.

  • Proficient in scripting languages and secure configuration management.

2. Information Systems Security Officer (ISSO)

Role ID: 643
Seniority Level: Mid to Senior
Clearance: TS/SCI w/ FS Poly (mandatory)
Certifications Required:

  • IAT Level II or IAM Level II certification (Required)

    • Examples: Security+ CE, CASP+, CISSP, CISM, or similar

Key Responsibilities:

  • Act as ISSO for a large-scale software development and IT operations program.

  • Enforce security policies and maintain operational security posture of systems.

  • Manage documentation for system Certification & Accreditation (C&A) and Security Plans (SSPs).

  • Conduct vulnerability remediation, IAVA compliance, and configuration management for system security.

  • Support day-to-day information system operations, network security, and audit readiness.

  • Coordinate with ISSM and other security stakeholders to ensure secure system integration and lifecycle support.

Preferred Experience:

  • 10+ years as an ISSO in complex, standalone, or connected environments.

  • Experience maintaining SSPs, performing incident response, and managing vulnerability scans.

  • Familiarity with tools supporting IAVA management, CM, and system auditing.

  • Bachelor’s degree in a related field and 12+ years of overall security experience preferred.

Ideal Candidate Profile (Both Roles):

  • Must hold a current FS Poly with the Maryland Intelligence Customer (within the past 5 years).

  • No prior CCAs (Counterintelligence Concerns).

  • Excellent verbal/written communication skills and team collaboration.

  • Strong commitment to best practices and high-integrity security operations.

Additional Notes:

  • Both roles are 100% onsite in Annapolis Junction, MD.

  • Do not repost these positions.

  • Candidates must be U.S. Citizens with an active TS/SCI with Full Scope Polygraph.

 

Cyber Security Engineering & Support Manager | Vulnerability Management | Pittsburgh, PA | $120K–$140K + Bonus

Cyber Security Engineering & Support Manager

📍 Location: Pittsburgh, PA (Onsite – no remote options)
💼 Employment Type: Full-time
💵 Salary: $120,000 – $140,000 annually + bonus eligibility
🎯 Experience Level: Mid-Senior (7–10 years)

About the Role

This role leads a dedicated cybersecurity engineering and support team focused on protecting enterprise technologies and infrastructure across IT and manufacturing environments. You’ll oversee the deployment and lifecycle management of enterprise security tools, direct the vulnerability management program, and provide critical cybersecurity risk analytics to support strategic decision-making.

Reporting directly to the Chief Information Security Officer, you’ll be responsible for ensuring secure, scalable solutions across global operations while managing a skilled technical team.

Key Responsibilities

  • Lead and manage the Security Engineering & Support team, including staff development and budget oversight.

  • Deploy, support, and optimize enterprise security technologies across IT, end-user, and cybersecurity environments.

  • Own and execute the organization’s vulnerability management strategy, reducing attack surfaces and strengthening resilience.

  • Develop and deliver cybersecurity risk dashboards with actionable KPIs and KRIs.

  • Oversee operational security functions such as privileged access provisioning and IT compliance support.

  • Partner with business units and OT teams (e.g., PLCs, SCADA, HMIs) to align secure solutions with plant-level and enterprise objectives.

  • Collaborate across the business to integrate security with enterprise architecture, applications, and eCommerce platforms.

Required Qualifications

  • Bachelor’s degree in Computer Science, Information Systems, Engineering, or a related field.

  • 7+ years of experience in IT, infrastructure, or cybersecurity.

  • Proven experience leading vulnerability management programs.

  • Must be a U.S. citizen, lawful permanent resident, or otherwise eligible to access controlled technology under ITAR/EAR regulations.

Preferred Qualifications

  • 2+ years of management experience leading IT or cybersecurity professionals.

  • Experience managing departmental budgets.

  • Background in manufacturing or production environments.

  • Expertise in systems engineering, application security, and security operations.

  • Active security certifications such as CISSP, CISM, CISA, or Security+.

  • Master’s degree in cybersecurity, engineering, or related field.

Ideal Candidate Profile

  • Strong leadership skills with a proven ability to guide cross-functional teams.

  • Skilled in budget management and process optimization.

  • Excellent interpersonal and communication skills for engaging both technical and non-technical stakeholders.

  • Hands-on experience in manufacturing or production IT environments is highly desirable.

Compensation & Benefits

  • Base Salary: $120,000 – $140,000 per year

  • Bonus Eligible

  • Comprehensive benefits package (medical, dental, vision, retirement, life insurance, etc.)

  • Paid time off and holidays

  • Professional development opportunities

👉 This is a strategic cybersecurity leadership opportunity for a professional ready to drive enterprise-wide security programs while directly influencing resilience and risk management.

 

Information Security Analyst | Cybersecurity, Threat Intelligence & Incident Response | Madison, WI | $97K–$146K

Information Security Analyst

📍 Madison, Wisconsin (Hybrid – Flexible Work From Home Days)
📅 Full-time | Mid-Senior Level

💰 Salary: $97,000 – $146,000 per year
Benefits: Full package (healthcare, retirement, PTO & more)

🚀 About the Role

We are seeking a skilled Information Security Analyst to strengthen our cybersecurity defenses and protect enterprise systems from evolving threats. In this hands-on, high-impact role, you’ll be at the forefront of detecting, analyzing, and responding to incidents—keeping critical data and infrastructure safe.

This position offers a unique opportunity to work across threat intelligence, incident response, and digital forensics, while collaborating with cross-functional teams to enhance the organization’s overall security posture.

🛡️ Key Responsibilities

  • Monitor and analyze threat intelligence to assess risks and drive proactive defense strategies.

  • Investigate escalated incidents (malware, phishing, unauthorized access) through the full response lifecycle.

  • Conduct forensic investigations, advanced data collections, and eDiscovery requests.

  • Support incident response tabletop exercises to identify gaps and enhance readiness.

  • Review vulnerability scans and penetration test results, recommending improvements.

  • Develop and maintain security policies, standards, and training to strengthen organizational awareness.

  • Collaborate with IT, Legal, HR, and leadership teams on investigations and compliance.

🔧 Required Skills & Experience

  • 5+ years of information security experience (audit, assessment, engineering, or architecture).

  • Strong understanding of incident response, threat intelligence, and forensic analysis.

  • Experience with tools such as Magnet Forensics Axiom Cyber, Splunk, Microsoft Defender, and MITRE ATT&CK.

  • Ability to clearly communicate technical findings to both technical and non-technical audiences.

  • Proven expertise in developing security policies, standards, and governance practices.

  • Bachelor’s degree in Computer Science, Information Systems, or related field (or equivalent experience).

🎯 Preferred Qualifications

  • Financial Services industry background.

  • Law enforcement or forensics experience.

  • Strong consulting, negotiation, and relationship management skills.

This role is ideal for a proactive cybersecurity professional who thrives on investigating threats, improving defenses, and collaborating to protect sensitive information.

Cyber Security Engineer III – $95K–$115K | On-Site | Infrastructure & IT | Elkhart, IN

Position: Cyber Security Engineer III

📍 Location: Elkhart, IN (On-Site)
📅 Type: Full-Time | All Experience Levels Considered
🎓 Education: Bachelor’s degree in Computer Science or equivalent experience
🛂 Visa Sponsorship: Not available
🚗 Relocation Assistance: Available
💼 Industry: Infrastructure / Technology / Construction
💰 Compensation: $95,000 - $115,000

About the Role

We are looking for a Cyber Security Engineer III to strengthen and safeguard enterprise IT operations within a mission-critical infrastructure environment. You’ll respond to cybersecurity incidents, manage security tools and platforms, lead vulnerability programs, and play a key role in shaping and executing security policy.

This is a high-impact, hands-on role ideal for someone with a broad technical security background, who thrives in a collaborative environment and understands how to balance robust security with operational needs.

Key Responsibilities

  • Monitor for security anomalies, policy violations, and suspicious activities across networks and endpoints

  • Respond to incidents with clear documentation, root cause analysis, and effective resolution

  • Lead vulnerability management efforts—guiding remediation and patching with IT teams

  • Oversee security toolsets: firewalls, SIEM, antivirus, proxies, email protection, asset discovery tools, etc.

  • Conduct regular security control testing and provide clear reporting

  • Ensure systems align with internal security policies, frameworks, and compliance requirements

  • Collaborate with auditors, regulatory bodies, and external vendors as needed

  • Contribute to secure network/system architecture design discussions

  • Participate in cybersecurity on-call rotation and cross-functional team efforts

  • Remain current on emerging threats, vulnerabilities, and best practices

Must-Have Qualifications

Bachelor’s degree in Computer Science or equivalent practical experience
5+ years of hands-on information security experience
✅ Demonstrated experience with penetration testing, vulnerability remediation, and policy enforcement
✅ Proficiency in security technologies:

  • Firewalls & Proxies

  • SIEM platforms (e.g., Splunk, QRadar, etc.)

  • Antivirus and endpoint protection

  • Identity Providers (IdPs)
    ✅ Deep understanding of network security concepts
    ✅ Ability to independently identify and fix vulnerabilities across on-premise and remote networks
    ✅ Must hold a valid driver’s license

What Success Looks Like

  • You bring a security-first mindset without slowing business operations

  • You’re a self-starter with solid judgment and clear documentation skills

  • You provide security recommendations that are realistic, effective, and forward-looking

  • You’re ready to become a trusted security voice across IT and business teams

  • You actively participate in on-call duties, staying calm under pressure

If you're a cybersecurity professional who’s passionate about protecting critical infrastructure, enjoys hands-on tooling, and thrives in a role that combines operations with strategy—this position could be a great fit.