
Security Risk Consultant
1 week ago
At Aerstone, we are a team of high performing security professionals who take pride in sharing our skills and experience to improve our capabilities. We foster greatness, champion accountability, and value kindness. As a Penetration Testing Specialist, you will join our growing testing team and have the opportunity to support and lead technical testing and assessment activities, including vulnerability scanning, configuration reviews, web application scanning, database scanning, and more.
- You will be responsible for evaluating test results against compliance standards and conducting risk analyses of findings to generate detailed assessment reports.
- Our collaborative work environment encourages everyone to contribute and gain from our collective experiences, creating a culture based on synergy and the coordinated optimization of individual strengths.
- We welcome your interest in joining us and becoming a valued member of our team.
Key Responsibilities:
- Support and lead testing of web applications and APIs for susceptibility to SQL injections, Cross-Site Scripting, and other input attacks.
- Assess secure configurations and settings of PaaS, SaaS, and IaaS environments.
- Perform pre-assessment research and preparation, including reconnaissance, documentation, and configuration review.
- Conduct automated credentialed vulnerability scanning against databases using commercial and open-source scanning tools.
- Assess compliance posture against regulatory requirements, including NIST SP 800-53, OWASP ASVS, and ISO 27001.
- Document security weaknesses, including steps to reproduce.
- Analyze security findings, including risk analysis and root cause analysis.
- Research and propose practical remediation.
Requirements:
- 5+ years of experience in a relevant field.
- Bachelor's degree in a relevant field.
- Strong knowledge and experience with Linux-based operating systems and Linux-based testing tools.
- Experienced with common penetration testing tools and frameworks.
- Experienced with virtual machine platforms and remote testing solutions.
- Experienced with cloud computing infrastructures and cloud assessment techniques and tools.
- Experienced with NIST SP 800-53 controls and testing against these requirements.
-
Risk and Assurance Consultant
3 days ago
Springfield, Virginia, United States Rividium Inc Full timeJob Description: As a Risk and Assurance Consultant at RiVidium Inc, your primary responsibility will be to review or conduct audits of information technology (IT) programs and projects, evaluating their effectiveness and making recommendations for possible improvements and upgrades. You will also be responsible for reviewing service performance reports,...
-
Risk Management Professional
3 days ago
Springfield, Virginia, United States Guidehouse Full timeJob DescriptionAs an IT Controls Consultant at Guidehouse, you will play a critical role in supporting our clients' internal control programs. Your responsibilities will include:Performing IT audits and assessments to identify control weaknesses and areas for improvementDeveloping and implementing remediation plans to address identified control...
-
Network Security Specialist
3 days ago
Springfield, Virginia, United States GuidePoint Security Full timeAbout GuidePoint SecurityGuidePoint Security is a trusted cybersecurity advisor, providing expertise and solutions to help organizations mitigate risk. With over 1,000 employees and a strong network of partners, we serve more than 4,200 customers across the nation.About the RoleWe are seeking an experienced Cybersecurity Engineer Lead to join our team in...
-
Chief Information Risk Officer
1 week ago
Springfield, Virginia, United States DHS Headquarters Full timeChief Information Risk Officer Job DescriptionThe Department of Homeland Security (DHS) Headquarters is seeking an experienced Chief Information Risk Officer to join our team. As a key member of our information security team, you will be responsible for identifying and mitigating risks to DHS enterprise IT services.About the RoleIn this role, you will work...
-
IT Cybersecurity Risk Manager
3 weeks ago
Springfield, Virginia, United States Amyx Full timeJob Title: IT Cybersecurity Risk ManagerWe are seeking a highly skilled IT Cybersecurity Risk Manager to join our team at Amyx in Springfield, VA.About the RoleThe successful candidate will conduct evaluations of IT programs or their individual components to determine compliance with published standards. This includes developing methods to monitor and...
-
Enterprise Risk Management Strategist
5 days ago
Springfield, Virginia, United States BB6 Defense Full timeJob DescriptionWe are seeking a highly skilled Risk Management Framework Specialist to join our team at BB6 Defense.Estimated Salary: $120,000 - $180,000 per year, based on experience and qualifications.About the RoleThe ideal candidate will have a strong background in risk management and security frameworks, with experience in developing and implementing...
-
Industrial Control Systems Security Manager
3 days ago
Springfield, Virginia, United States JFL Consulting Full timeSpearhead Cyber Security Efforts for the DODJFL Consulting, LLC is seeking an accomplished Techical Project Manager to lead our DOD cybersecurity initiatives. As a seasoned professional in the field, you will be responsible for directing a team of cyber security specialists in managing ICS/OT/SCADA projects and ensuring compliance with relevant security...
-
Cybersecurity Solutions Architect
3 weeks ago
Springfield, Virginia, United States GuidePoint Security Full timeCompany OverviewGuidePoint Security is a leading provider of trusted cybersecurity expertise, solutions, and services that help organizations make better decisions and minimize risk.
-
Enterprise Risk Management Specialist
16 hours ago
Springfield, Virginia, United States BB6 Defense Full timeJob DescriptionWe are seeking an experienced Risk Management Framework Specialist to join our team at BB6 Defense. This is a challenging role that requires a strong background in information security and risk management.
-
Network Security Solutions Engineer
3 weeks ago
Springfield, Virginia, United States SITEC Consulting Full timeSITEC Consulting is an Information Technology and Professional Services Firm that specializes in providing cutting-edge technology solutions, cybersecurity, software, and systems engineering services.We are seeking a highly skilled Network Security Solutions Engineer to join our team. In this role, you will be responsible for designing, implementing, and...
-
Cybersecurity Infrastructure Architect
7 days ago
Springfield, Virginia, United States GuidePoint Security Full timeCybersecurity Professional OpportunitiesGuidePoint Security is seeking an experienced Endpoint Cybersecurity Specialist to join our team. This role involves designing and implementing endpoint-based cyber defense capabilities within the organization. The successful candidate will have a strong background in endpoint security, including experience with...
-
Cybersecurity Specialist
3 days ago
Springfield, Virginia, United States Parsons Company Full timeAbout Parsons CompanyParsons is a digitally enabled solutions provider focused on the defense, security, and infrastructure markets. With nearly 75 years of experience, Parsons is uniquely qualified to deliver cyber/converged security, technology-based intellectual property, and other innovative services to federal, regional, and local government agencies,...
-
Information Systems Risk Manager
3 days ago
Springfield, Virginia, United States Rividium Inc Full timeAbout the JobEstimated Salary: $140,000 - $170,000 per year.Job Description:We are seeking an experienced professional to fill the role of Information Systems Risk Manager at Rivium Inc. The successful candidate will be responsible for:Evaluating and approving development efforts to ensure baseline security safeguards are installed.Identifying alternative...
-
Artificial Intelligence Security Strategist
3 days ago
Springfield, Virginia, United States Leidos Full timeJob SummaryWe are seeking an Artificial Intelligence Security Strategist to join our team. As a key member, you will spearhead the exploration of cutting-edge AI frameworks, lead research on AI methodologies, and document the entire lifecycle of AI models—from creation to deployment and operation—while addressing the risks and vulnerabilities within each...
-
Senior Information Assurance Analyst
7 days ago
Springfield, Virginia, United States GuidePoint Security Full timeAbout GuidePoint SecurityAs a profitable, privately-held value-added reseller, GuidePoint Security focuses exclusively on information security. Since its inception in 2011, we have grown to over 1,000 employees, established strategic partnerships with leading security vendors, and served as a trusted advisor to more than 4,200 customers.About the RoleWe are...
-
IT Controls Consultant
7 days ago
Springfield, Virginia, United States Guidehouse Full timeAbout the RoleWe are seeking an experienced IT Controls Consultant to join our team at Guidehouse. As a key member of our internal control program, you will be responsible for supporting clients in implementing and maintaining effective IT controls.The ideal candidate will have a strong background in IT audit, assessment, and remediation, with experience in...
-
Endpoint Cybersecurity Specialist
3 days ago
Springfield, Virginia, United States GuidePoint Security Full timeJob DescriptionGuidePoint Security is seeking an Endpoint Cybersecurity Specialist to join our team. This role involves designing and implementing endpoint-based cyber defense capabilities within the organization. The successful candidate will have experience with industry-leading network security products, including host intrusion prevention, malware...
-
Springfield, Virginia, United States SMS Data Products Group Full timeAt SMS Data Products Group, we are seeking a highly skilled Cybersecurity Specialist to join our team in Alexandria, VA. This individual will play a critical role in supporting the United States Coast Guard by providing expert-level risk management framework (RMF) services.About the RoleThis Senior Information Assurance Security Specialist position requires...
-
Cybersecurity Engineer Lead
3 days ago
Springfield, Virginia, United States GuidePoint Security Full timeAbout GuidePoint SecurityAs a rapidly growing company, GuidePoint Security provides trusted cybersecurity expertise, solutions, and services to help organizations mitigate risk. We have established strategic partnerships with leading security vendors and serve as a trusted advisor to over 4,200 customers.About the RoleWe are seeking a seasoned Cybersecurity...
-
IT Consultant Leader
3 days ago
Springfield, Virginia, United States Microsoft Corporation Full timeJob DescriptionThis job requires a Cyber Consultant to join Microsoft Federal. The successful candidate will have an active U.S. Government Top Secret/SCI Security Clearance and the ability to meet Microsoft, customer and/or government security screening requirements. They will also be responsible for identifying opportunities to expand or accelerate the...