Cybersecurity Strategist

1 week ago


Arlington, Virginia, United States Steampunk Full time
About the Job

Steampunk is seeking a highly skilled Senior Information System Security Officer to support a government customer on site in Arlington, VA. As an ISSO, you will play a critical role in ensuring the level of security documented with the security authorization is maintained at an acceptable level of risk.

The primary responsibilities for this position include supporting all activities that ensure the level of security is maintained, conducting compliance assessments, preparing Security Assessment Reports, developing waivers or risk acceptance memos, and ensuring systems maintain eligibility within the Ongoing Authorization program.

Key Responsibilities
  • Security Compliance and Authorization: Conduct compliance assessments, prepare Security Assessment Reports (SAR), develop waivers or risk acceptance memos, and ensure systems maintain eligibility within the Ongoing Authorization program.
  • Security Control and Vulnerability Testing: Perform extensive security control testing, configuration management, vulnerability monitoring, and remediation in line with NIST 800-53A and DHS standards, including Information Security Vulnerability Management (ISVM) and patch management.
  • Risk and Contingency Management: Conduct risk assessments, devise security plans, manage system risk via POA&M tracking, and perform annual contingency plan tests.
  • Documentation and Reporting: Maintain and update security authorization documents, ATO packages, and compliance documents, ensuring documentation meets regulatory standards and supports federal staff through audit processes.
  • Collaboration and Compliance: Coordinate with Privacy, Records, and Information Governance divisions, provide audit support across financial and regulatory frameworks, and ensure security requirements align with the development cycle (Waterfall, Agile, SecDevOps).
  • User Access and Configuration Management: Manage and review user accounts, enforce separation of duties, ensure CM processes are followed to mitigate new risks, and maintain an up-to-date system inventory.
  • Monitoring and Continuous Improvement: Conduct self-assessments, monitor system security continuously, integrate emerging requirements, and improve processes to enhance security delivery.
  • Communication and Stakeholder Engagement: Present system risks and findings, provide regular updates, and deliver risk briefings and reports to stakeholders, ensuring transparency in system security status.
Qualifications
  • Bachelor's Degree and 8 years of relevant IT cybersecurity experience; OR
    • No degree and 12 years of experience, 2 of which must be in FISMA
  • Knowledge of Security Compliance and Risk Management Frameworks: Expertise in NIST 800-53A, DHS standards, and risk management frameworks like FISMA, with hands-on experience in conducting security compliance assessments and developing risk management strategies.
  • Technical Proficiency in Security Control Testing and Vulnerability Management: Proficiency in vulnerability scanning, configuration management, and patch management tools, along with the ability to analyze and address vulnerabilities in complex systems.
  • Strong Documentation and Reporting Skills: Experience creating and maintaining comprehensive security authorization documentation, ATO packages, and compliance records, with the ability to convey technical findings clearly in both reports and presentations.
  • Effective Collaboration and Communication Abilities: Skilled in coordinating with various teams (e.g., Privacy, Information Governance), providing audit support, and conducting risk briefings, along with the ability to communicate security requirements in the context of development cycles and stakeholder expectations.
  • Process Improvement and Innovation Mindset: A proactive approach to refining security assessment processes, developing standardized language for security controls, and enhancing continuous monitoring practices to address emerging cybersecurity challenges effectively.
  • This role requires the employee to be on-site 5 days per week.


  • Arlington, Virginia, United States Aces Group LLC Full time

    DoD Cybersecurity StrategistAces Group LLC is seeking a highly skilled DoD Cybersecurity Strategist to join our team. As a DoD Cybersecurity Strategist, you will play a key role in developing and implementing cybersecurity strategies that align with DoD priorities.Key Responsibilities:Develop, implement, and integrate cybersecurity strategies, policies, and...


  • Arlington, Virginia, United States Diligent Innovations Full time

    Job OverviewDiligent Innovations, a veteran-owned defense consulting firm, seeks a seasoned Cybersecurity Strategist to support the DoD CIO's international cybersecurity initiatives. This role requires a strong background in cybersecurity and international relations.


  • Arlington, Virginia, United States Solutions³ LLC Full time

    Job OverviewSolutions³ LLC, a leading provider of cybersecurity solutions, is seeking an experienced Cybersecurity Strategist to support a mission-critical development and sustainment program for the U.S. Government.About the RoleThis position requires an individual with 5+ years of directly relevant experience in information security to provide support...


  • Arlington, Virginia, United States Department of Homeland Security Full time

    Cybersecurity Role OverviewThe Department of Homeland Security (DHS) is seeking a highly skilled Cybersecurity Strategist and Operations Manager to join their team. This position will play a critical role in strengthening the cybersecurity posture of DHS, fostering collaborative networks across the federal government, and engaging with industry to build a...


  • Arlington, Virginia, United States Peraton Full time

    Job SummaryPeraton is seeking a highly skilled Cybersecurity Operations Strategist to join its Federal Security Cyber sector in Arlington, VA. The ideal candidate will have a strong background in developing formal plans for defense operations, including coordinated actions to protect, detect, respond to, and recover from cybersecurity risks or...


  • Arlington, Virginia, United States ACES Group LLC Full time

    Cybersecurity Policy Analyst OpportunityAt ACES Group LLC, we are seeking an experienced Cybersecurity Policy Analyst to support the DoD CIO. This hybrid role requires active TS/SCI clearance and involves analyzing complex user, policy, regulatory, and resource demands to identify threats, vulnerabilities, and risks.About the Job$145,000 - $200,000 per year...


  • Arlington, Virginia, United States Winrock International Full time

    Empower Cybersecurity at Winrock InternationalSalary Range: $155,000 - $165,000 per yearAbout the Role:We seek a seasoned cybersecurity leader to join our team as Director, Cybersecurity. This is a hands-on role that involves setting security goals, establishing policies, and ensuring alignment with organizational objectives.Key Responsibilities:Strategic...


  • Arlington, Virginia, United States Arlington Independent School District Full time

    About the JobWe are seeking an experienced Cybersecurity Professional to join our team as a Network Security Strategist. This role will be responsible for ensuring the security of our applications, services, and network infrastructure across the enterprise.Job SummaryThe successful candidate will have a strong background in cybersecurity, with a focus on...


  • Arlington, Virginia, United States SecuriGence LLC Full time

    Leading Cybersecurity StrategyAt SecuriGence LLC, we are looking for a skilled Sr. Information Security Strategist to drive our cybersecurity strategy forward. With over 12 years of progressive experience in cybersecurity and at least 5 years in a leadership role, the ideal candidate will possess strong technical skills, excellent communication abilities,...


  • Arlington, Virginia, United States Solutions³ LLC Full time

    Job OverviewSolutions³ LLC, a leading provider of cybersecurity solutions, is seeking an experienced and technically proficient Chief Information Security Strategist to support its mission-critical development and sustainment program. This critical role involves providing onsite incident response to civilian Government agencies and critical asset owners who...


  • Arlington, Virginia, United States Tyto Athene, LLC Full time

    Tyto Athene, LLC is a dynamic organization seeking an experienced Senior Policy Strategist to support our client in Arlington, VA.**Job Summary:**We are looking for a highly skilled professional to lead our policy analysis efforts. The ideal candidate will have a strong background in cybersecurity and be able to analyze complex data to inform policy...


  • Arlington, Virginia, United States ICF Full time

    At ICF, we are seeking an experienced Critical Infrastructure Security Strategist to support a Department of Homeland Security (DHS) program.This role requires technical expertise in systems, operations, dependencies, and interdependencies within critical infrastructure sectors.We need you to produce, inform, and validate standalone risk analysis products to...


  • Arlington, Virginia, United States ACES Group LLC Full time

    IT Advancement Strategist Job SummaryThe ACES Group LLC is seeking a highly skilled IT Advancement Strategist to support the DoD CIO. As a key member of our team, you will play a critical role in implementing the DoD Fulcrum IT Advancement Strategy, enhancing cybersecurity practices, and supporting decision-making processes across the Planning, Programming,...


  • Arlington, Virginia, United States JCS Solutions LLC Full time

    Job OverviewJCS Solutions LLC is a leading provider of technology solutions and services, with expertise in cloud infrastructure, cybersecurity, digital modernization, and more. As a Cyber Intelligence Planner, you will support the Department of Homeland Security's (DHS) Cybersecurity and Infrastructure Security Agency (CISA).This role offers an excellent...

  • Graphic Designer

    1 week ago


    Arlington, Virginia, United States Zermount, Inc Full time

    Key ResponsibilitiesDevelop visually engaging and informative graphics, illustrations, and infographics to convey complex cybersecurity concepts in an accessible and appealing manner.Collaborate with cybersecurity experts to translate technical information into compelling visual content that educates and raises awareness for the topic given.The salary for...


  • Arlington, Virginia, United States SecuriGence LLC Full time

    Job DescriptionWe are seeking an experienced Information System Security Manager to lead and strengthen our security posture. This role requires a unique blend of strategic vision, technical expertise, and operational leadership to ensure our sensitive systems and data governance, confidentiality, integrity, and availability.The selected candidate will...


  • Arlington, Virginia, United States JCS Solutions LLC Full time

    JCS Solutions LLC, a premier technology firm specializing in enterprise-wide capabilities, is seeking an experienced Cyber Operations Planner for the Department of Homeland Security (DHS), Cybersecurity and Infrastructure Security Agency (CISA).The ideal candidate will take a lead role in developing detailed plans for the conduct or support of cyber...


  • Arlington, Virginia, United States ANALYGENCE Inc Full time

    Job SummaryANALYGENCE Inc is seeking an experienced Cyber Vulnerability Assessment Analyst (SME) to support our federal customer who plays a key role in enhancing the security, resiliency, and reliability of the nation's cyber and communications infrastructure. This role directly supports the customer Mission Engineering (ME) Information Security Branch...


  • Arlington, Virginia, United States Pantheon Data Full time

    About Us">Pantheon Data is a private, small business based in the Washington, DC, area. We provide a range of services, including infrastructure resiliency, contact center operations, information technology, software engineering, program management, strategic communications, engineering, and cybersecurity. Our customer base includes commercial clients as...


  • Arlington, United States Booz Allen Hamilton Full time

    Job Number: R0211256Business Analyst, Senior The Opportunity: You know that true progress is made at the intersection of business and tech, and as an IT business analyst, you're highly skilled in both. Here, you'll have the chance to work with an agile team as they develop digital products to support your clients' most pressing missions. We're looking for...