Cyber Security Specialist

4 days ago


Alexandria, Virginia, United States Human Resources Research Organization Full time
About the Job

We are seeking a skilled Cyber Engineer to join our team at the Human Resources Research Organization (HumRRO). As a non-profit leader in applied research, evaluation, and analytics, we work with federal and state government agencies, private sector organizations, and professional associations.

The ideal candidate will be involved in various aspects of our security operations, from conducting vulnerability assessments to analyzing security logs and artifacts. Your role will consist of performing NIST and 53(RMF) support for Federal and DoD and DOD Contractor IT systems by conducting risk assessments and developing RMF package components and test plans.

You will assist in documentation on cyber security technologies, best practices, policies and procedures. Other tasks include maintenance and technical reviews of IA security processes assuring requirements for continuous compliance activities, annual control assessments, monitoring POA&Ms, MFRs, and IA artifacts, creating and updating security documentation, and developing mitigations for maintaining compliance.

The position is onsite at a HumRRO office in Alexandria, VA (Hybrid work setting and other offices in Minneapolis, MN; Louisville, KY, San Diego, CA; or Monterey, CA may be considered).

U.S. citizenship is required for this position based on government contract requirements.

Key Responsibilities:
  • Assist in performing penetration testing and vulnerability assessments using tools such as OWASP ZAP, Burp Suite, and Kali Linux
  • Conduct analysis of user access and behavior using analytics and security monitoring tools
  • Review and analyze scan results from tools like SonarQube/Fortify to identify security issues and propose remediation actions
  • Collaborate with development teams to address and remediate security findings
  • Review and investigate issues found in error and audit logs
  • Conduct monthly security reviews, capture and document necessary compliance evidence
  • Assist in maintaining HumRRO's NIST, ISO 27001:2022 and CMMC control evidence catalogs
  • Maintain SaaS compliance data and provide monthly reports on NIST, ISO 27001:2002 and CMMC compliance status
  • Assist in developing and maintaining compliance-related policies, processes and procedures
  • Assist in third-party NIST, ISO 27001:2002 and CMMC compliance audits
  • Stay current with the latest security threats, vulnerabilities, and industry best practices
  • Assist in maintaining compliance with relevant security standards and regulations such as NIST, NIST RMF for DoD), and CMMC
Required Qualifications:
  • Bachelor's degree in Computer Science, Information Security, or related field (or equivalent work experience)
  • DOD clearance T/3 (public trust) eligible and US citizenship.
  • 1-3 years of experience in cybersecurity or related IT roles
  • Knowledge of secure coding practices and web application security
  • Familiarity with common security tools and technologies
  • Strong analytical and problem-solving skills
  • Knowledge of NIST frameworks and other security standards
  • Excellent communication and collaboration abilities
  • Willingness to learn and adapt to new technologies and methodologies
Desired Qualifications:
  • Security+ or other relevant security certifications CCSP, CISSP, Security+ certification,
  • Experience with cloud DevSecOps (AWS, Azure, or GCP)
  • Familiarity with DevSecOps practices, DISA standards, enterprise level work with security policies, network administration and support within AWS GovCloud.
  • In depth operational knowledge of IA controls and secure configurations with proficiency using ACAS, HBSS, and IAVM reporting.
  • Analyzing system configuration per DISA STIG using STIGviewer and SCAP to mitigate security vulnerabilities.
  • Exceptional skills responding to IAVAs as necessary to address systems vulnerabilities and remediating findings in FISMA and DIACAP audit reports.
  • Review proposed new systems, networks, and software designs and concepts for potential security risks, recommend mitigations or countermeasures and resolve integration issues.
  • Proficient with eMASS package development.
  • Detailed knowledge of Federal and DoD directives including RMF and DIACAP and ensuring these security policies, standards, and procedures are enforced.
  • Strong knowledge of RMF/NIST and Assessment Authorization processes.


  • Alexandria, Virginia, United States OneZero Solutions Full time

    Job SummaryWe are seeking a highly skilled Cyber Security Solutions Specialist to join our team at OneZero Solutions. As an Endpoint Protection Engineer, you will play a critical role in supporting a federal customer within the Department of Homeland Security.Key ResponsibilitiesAssist in the testing, deployment, sustainment, and optimization of endpoint...


  • Alexandria, Virginia, United States Leidos Full time

    Cyber Security Watch Officer Job DescriptionWe are seeking a highly skilled Cyber Security Watch Officer to join our team at Leidos in Alexandria, VA. As a Cyber Security Watch Officer, you will play a critical role in supporting the Joint Service Provider (JSP) Joint Network Operation and Support Center (JNOSC) and Cyber Center Security Chief.Key...


  • Alexandria, Virginia, United States Advantage Engineering & IT Solutions Inc Full time

    Job Title: Cyber Zero Trust Architect, SMEJob SummaryWe are seeking a highly skilled Cyber Zero Trust Architect to join our team at Advantage Engineering & IT Solutions Inc. As a key member of our cybersecurity team, you will be responsible for designing and implementing Zero Trust architectures, access controls, identity management, encryption, and network...


  • Alexandria, Virginia, United States Novul Solutions Full time

    {"Job Title": "Training Support Specialist", "Job Description": "Job SummaryWe are seeking a highly skilled Training Support Specialist to join our team at Novul Solutions. As a key member of our organization, you will be responsible for developing and delivering training programs to enhance the skills of our Cyber workforce.Key ResponsibilitiesDevelop and...


  • Alexandria, Virginia, United States Advantage Engineering & IT Solutions Inc Full time

    Job Title: Cyber Zero Trust Architect, SeniorJob Summary:We are seeking a highly experienced Cyber Zero Trust Architect, Senior to join our team at Advantage Engineering & IT Solutions Inc. As a key member of our cybersecurity team, you will be responsible for designing and implementing Zero Trust architectures, access controls, identity management,...


  • Alexandria, Virginia, United States TEKsystems Full time

    Cybersecurity Defensive Cyber Operations Team LeadAs a Cybersecurity Defensive Cyber Operations Team Lead at TEKsystems, you will play a critical role in protecting critical infrastructure from cyber threats. You will lead a team of cybersecurity professionals in monitoring network traffic for security incidents and events, analyzing and responding to...


  • Alexandria, Virginia, United States Novul Solutions Full time

    Job SummaryWe are seeking a highly skilled Cyber Training Specialist to join our team at Novul Solutions. As a key member of our organization, you will be responsible for developing and delivering high-quality training programs to enhance the skills and knowledge of our workforce.Key ResponsibilitiesTraining Program Development: Design and create...

  • Security Specialist

    22 hours ago


    Alexandria, Virginia, United States Powder River Industries, LLC Full time

    Job Title: Security EngineerAt Powder River Industries, LLC, we are seeking a highly skilled Security Engineer to join our team. The ideal candidate will have a strong background in Risk Management Framework (RMF) and security engineering, with a proven track record of implementing security controls and patching vulnerabilities on network devices.Key...


  • Alexandria, Virginia, United States Pinnacle Group, Inc. Full time

    Senior Information Security EngineerLocation: Alexandria & Charlottesville, VA (Hybrid - 3 Days On-site per Week)Salary: Up to $165,000 per yearClearance Required: Top Secret (SCI Eligible)Job Overview:We are seeking a highly skilled Senior Information Security Engineer to safeguard our organization's IT systems and sensitive information. As a key member of...


  • Alexandria, Virginia, United States TestPros Full time

    Job OverviewCompany BackgroundTestPros is a well-established and expanding organization, founded in 1988, dedicated to delivering Information Technology (IT) support services to a diverse clientele, including Commercial and U.S. Federal, State, and Local Government entities. Our expertise encompasses Program Management, Oversight, Process Auditing,...


  • Alexandria, Virginia, United States ALTA IT Services Full time

    Job OverviewPosition: Cybersecurity Operations SpecialistClearance Level: TS/SCIWe are seeking a skilled Cybersecurity Operations Specialist to enhance our capabilities in developing advanced data solutions for defense initiatives. This position involves providing expertise in sophisticated computer network defense strategies, focusing on the prevention,...


  • Alexandria, Virginia, United States ANSER Full time

    Job SummaryANSER is seeking a highly skilled IT Cyber Project Coordinator to support the Manpower Management Office (MMO) within the Organizational and Management Policy Directorate (O&MPD) under the Office of the Director of Administration and Management (ODA&M). The primary purpose of the position is to serve as the technical expert for the sustainment and...


  • Alexandria, Virginia, United States TEKsystems Full time

    Job SummaryWe are seeking a highly skilled Cybersecurity Defensive Cyber Operations Team Lead to join our team at TEKsystems. As a key member of our cybersecurity team, you will be responsible for leading our defensive cyber operations efforts and ensuring the security of our systems and networks.Key Responsibilities:Monitor network traffic for security...


  • Alexandria, Virginia, United States Booz Allen Hamilton Full time

    The OpportunityWe are seeking a highly skilled Cyber Resilience Expert to join our team in supporting the Department of Defense (DoD) in reducing cyber risk to critical missions. As a key member of our team, you will leverage your expertise in cybersecurity, cyber resiliency, and acquisition to develop and implement effective solutions for our clients.Key...


  • Alexandria, Virginia, United States Booz Allen Hamilton Full time

    Job SummaryWe are seeking a highly skilled Cyber Resilience Expert to join our team at Booz Allen Hamilton. As a key member of our team, you will support client efforts by bringing in-depth understanding and expertise of both weapon systems and cybersecurity to help reduce cyber risk to critical missions.You will be a critical member of a high-performing...


  • Alexandria, Virginia, United States Advantage Engineering & IT Solutions Inc Full time

    Job Title: Cyber Systems Engineer, Cloud, SMEJob Summary:We are seeking a highly skilled Cyber Systems Engineer with expertise in cloud computing and cybersecurity to join our team at Advantage Engineering & IT Solutions Inc. As a Cyber Systems Engineer, Cloud, SME, you will be responsible for designing, implementing, and maintaining secure cloud-based...


  • Alexandria, Virginia, United States Booz Allen Hamilton Full time

    Job Title: Information System Security OfficerWe are seeking a highly skilled Information System Security Officer to join our team at Booz Allen Hamilton. As an Information System Security Officer, you will be responsible for leading the discovery of cyber risks, understanding policies, and developing a mitigation plan for our clients.Key...


  • Alexandria, Virginia, United States Peraton Full time

    Key ResponsibilitiesPeraton is in search of a Trellix Endpoint Security Specialist to enhance our team of skilled and diverse professionals. This role involves contributing to Peraton's Department of Homeland Security (DHS) Infrastructure Managed Services (IMS) Program, specifically supporting the US Coast Guard (CG). The initiative focuses on modernizing...


  • Alexandria, Virginia, United States Booz Allen Hamilton Full time

    Protect Our Nation's Information SystemsAs a lead information security risk specialist, you'll play a critical role in helping government agencies understand and mitigate cyber threats. With your expertise in cloud technologies and security configuration, you'll lead the discovery of cyber risks, develop mitigation plans, and guide clients through a plan of...


  • Alexandria, Virginia, United States Leidos Full time

    {"title": "Industrial Security Representative", "description": "Job SummaryLeidos is seeking an experienced Industrial Security Representative to join our team in Alexandria, VA. As a key member of our Defense/Intel IT Business Area, you will be responsible for implementing the industrial security program and ensuring company and customer security...