1998 IT & Software Developer jobs in the US

Business Operational Concepts jobs

Information Systems Security Officer

$71,000 - 111,000
Business Operational Concepts
Broken Land Parkway 11000, Washington
$71,000 - 111,000
Company Size icon
Company Size
50-200
Company Type icon
Company Type
Services
Exp Level icon
Exp Level
Regular
Job Type icon
Job Type
Full-Time
Language icon
Language
English
Visa sponsorship icon
Visa sponsorship
No

Requirements

Must:
- Bachelors degree in Computer Science, Information Systems, Engineering, or a related field - Minimum of 5-8 years of experience in security engineering, governance, risk, and compliance (GRC), or cybersecurity risk management - Active Public Trust clearance or ability to obtain one - Proficient in security engineering principles including system design and cloud infrastructure - In-depth knowledge of NIST SP 800-37, SP 800-53, SP 800-53A, FIPS 199/200, FedRAMP, and OMB A-130 - Familiarity with tools such as Archer, ServiceNow IRM, Xacta, Nessus, Splunk, AWS Config, and Prisma - Strong communication skills to convey technical risks and suggestions to diverse audiences - Capability to collaborate effectively with multidisciplinary teams including developers, engineers, and policy personnel - Desired certifications include CISSP, CISM, CAP, CGRC, CEH, Security+, or cloud security certifications - U.S. Citizenship required

Technologies

CI/CD
DevSecOps
Prisma

Responsibilities

- Act as the primary technical lead for system-level Risk Management Framework (RMF) activities including security categorization, control selection, implementation, and assessment - Create and maintain system security documentation such as System Security Plans (SSPs), Security Assessment Reports (SARs), and Plans of Action and Milestones (POA&Ms) while ensuring compliance with continuous authorization - Conduct risk assessments to identify vulnerabilities, assess potential impacts, and propose mitigation strategies - Provide support for annual FISMA audits, Office of Inspector General (OIG) reviews, and internal compliance assessments using defensible technical evidence - Develop standardized risk metrics and dashboards to link system vulnerabilities with overall enterprise risk posture - Integrate security engineering practices into system designs and cloud architectures, ensuring adherence to security-by-design and Zero Trust principles - Collaborate with system engineers and developers to embed security controls within Continuous Integration/Continuous Deployment (CI/CD) pipelines and infrastructure-as-code deployments - Validate security control implementations through technical testing, configuration reviews, and vulnerability assessments - Examine secure architecture and offer technical consultation on encryption, access control, and network segmentation - Work alongside Security Operations Center (SOC) and vulnerability management teams to ensure findings are considered in risk posture and remediation planning - Formulate and sustain continuous monitoring strategies, implementing automated data feeds from various tools into Governance, Risk, and Compliance (GRC) systems - Verify that implemented controls are functioning as intended and yielding desired security outcomes - Track and report on control effectiveness and residual risks to leadership - Assist in the update of cybersecurity policies and Standard Operating Procedures (SOPs) to account for emerging threats and technologies - Mentor system owners and developers on secure design principles and RMF requirements - Support external audits by providing technical explanations and evidence of control effectiveness

Description


At Business Operational Concepts (BOC), we pride ourselves on being a leader in delivering Technical and Program Management Services, Information Technology, and Support. Our commitment allows government and commercial clients to reach their goals through high-quality, innovative, and cost-effective solutions. We foster a positive work environment with ample opportunities for career advancement within our expanding Federal sector team. Our competitive compensation package includes a generous salary, comprehensive insurance options (medical, dental, etc.), paid leave, a 401k plan, and much more. We value diversity and prioritize customer satisfaction above all.
Something wrong or incorrect with this job? Tell us in the chat 💬 on the right ➡️
You can find Cyber Security Engineer salaries in the United States here.

How many Cyber Security Engineer jobs are in the United States?

Currently, there are 1998 Security openings. Check also: IAM jobs, SAML jobs, Cisco jobs, Splunk jobs - all with salary brackets.

Is the US a good place for Cyber Security Engineers?

The US is one of the best countries to work as a Cyber Security Engineer. It has a vibrant startup community, growing tech hubs and, most important: lots of interesting jobs for people who work in tech.

Which companies are hiring for Cyber Security Engineer jobs in the United States?

PolyML, Paxyl inc., Square One Insurance Services, D3 Security Management Systems, IntouchCX, Concordant, LLC, Speed Commerce among others, are currently hiring for Security roles in the United States.

The company with most openings is Jobot as they are hiring for 134 different Cyber Security Engineer jobs in the United States. They are probably quite committed to find good Cyber Security Engineers.