it job board logo
  • Home
  • Find IT Jobs
  • Register CV
  • Register as Employer
  • Contact us
  • Career Advice
  • Recruiting? Post a job
  • Sign in
  • Sign up
  • Home
  • Find IT Jobs
  • Register CV
  • Register as Employer
  • Contact us
  • Career Advice
Sorry, that job is no longer available. Here are some results that may be similar to the job you were looking for.

40 jobs found

Email me jobs like this
Refine Search
Current Search
information system security officer
Chief Risk Officer
First Resource Bank Exton, Pennsylvania
Description: At First Resource Bank, we believe strong risk leadership is about more than controls and compliance-it's about judgment, trust, and building a workplace where people are empowered to do the right thing, every time. As a proud "Best Place to Work" and a thriving $800 million+ asset community bank headquartered in Exton, PA, we are excited to welcome a strategic and forward-thinking Executive Vice President & Chief Risk Officer (CRO) to our executive team. Reporting to the President & CEO, the CRO is a key member of the executive management team and a trusted advisor to the Board of Directors, with direct access to the Board and its committees on material risk matters. This role provides independent, enterprise-wide leadership of the Bank's risk management, and regulatory compliance establishing a practical, forward-looking risk framework that supports safe, sustainable growth and a strong culture of accountability. This is more than a traditional risk role. It's an opportunity to shape the risk and compliance foundation of a growing organization, serve as a trusted strategic partner to the President & CEO, and ensure the Bank's risk capabilities scale alongside its growth, technology, and evolving regulatory landscape. We're looking for a leader who brings both regulatory credibility and a passion for cultivating a culture where credible challenges are welcomed and issues are resolved with integrity. If you're energized by complexity, motivated by protecting what matters most, and ready to lead through influence, we invite you to explore this exciting opportunity with us. Requirements: Enterprise Risk Management, Risk Appetite & Governance Lead the design, implementation and continuous improvement of the Bank's enterprise risk management framework, including clear governance, risk taxonomy, policies, standards, methodologies, escalation protocols and documentation. Maintain a forward-looking process to identify, assess, measure, monitor and report material risks, including credit, concentration, capital, liquidity, interest-rate, market, operational, compliance, legal, strategic, reputation, cyber, information security, technology, data, model, fraud, third-party and emerging risks. Lead the annual Enterprise Risk Assessment in collaboration with executives, business-line leaders and control functions; ensure conclusions are supported, challenged, documented and translated into action plans. Develop and maintain the enterprise risk appetite framework and support business-line risk appetite limits, tolerances and escalation thresholds aligned with the Bank's strategic plan, capital position and operating capacity. Provide executive leadership to the Enterprise Risk Committee; prepare quarterly committee materials and coordinate complete, accurate and decision-useful reporting from risk owners. Develop an integrated inventory of key risk indicators, limits, watch items, exceptions, losses, near misses, control deficiencies and remediation commitments; escalate material matters promptly. Provide independent risk review and constructive challenge of strategic plans, budgets, new markets, acquisitions, significant capital actions, new products, major technology decisions, outsourcing arrangements and other material initiatives. Promote clear ownership through a three-lines model: business lines own risk and controls; Risk and Compliance provide oversight and challenge; Internal Audit provides independent assurance. Board, Executive & Regulatory Leadership Serve as the principal executive advisor on the Bank's aggregate risk profile and the risk implications of strategic and operational decisions. Report regularly to the Board of Directors and appropriate Board committees on risk appetite, trend analysis, concentrations, emerging risks, significant exceptions, examination matters, audit results and remediation status. Maintain direct and unrestricted access to the President & CEO, the Board Chair and the chairs of the Audit and other applicable Board committees; promptly communicate material risk or compliance concerns. Serve as a primary executive liaison with federal and state banking regulators for matters within the role's scope; organize examination readiness, coordinate responsive production of requested information and drive timely, sustainable remediation of findings. Support Board and committee education on risk, compliance, CRA, AML/CFT/OFAC, cybersecurity, third-party risk, emerging regulation and public-company readiness topics. Operational Resilience, Technology, Cyber, Data & Third-Party Risk Oversee the enterprise operational risk program, including risk and control self-assessments, event and loss capture, root-cause analysis, control testing coordination, issue management and lessons learned. Provide independent oversight of business continuity, disaster recovery and operational resilience programs; challenge critical-service mapping, recovery objectives, testing scenarios, interdependencies and remediation. Partner with the CIO, Information Security Officer and business leaders to assess cybersecurity, technology change, cloud, digital delivery, data governance, privacy, artificial intelligence and model risks; ensure material exposures are reflected in enterprise reporting. Lead or oversee the annual critical-vendor review with the CEO, CFO, COO and CIO; maintain risk-tiering, due diligence, contract-risk, ongoing monitoring, concentration, subcontractor and exit-strategy expectations for third parties. Participate in major projects and new-product reviews to identify regulatory requirements, customer impacts, control needs, implementation risks, monitoring requirements and go-live conditions. Provide executive oversight of fraud risk governance, trend reporting, escalation and coordination across Operations, Information Security, AML/CFT/OFAC, Compliance, Quality Control, Legal and customer-facing teams. Internal Audit Coordination & Assurance Lead management's annual internal audit risk assessment and present the proposed risk-based audit plan, coverage rationale and resource needs to the Audit Committee for review and approval. Coordinate scheduling and administration of outsourced internal audit and compliance-review engagements, including engagement scope, access, issue tracking, management responses and validation of corrective action. Recommend qualified independent service providers and annual engagement terms to the Audit Committee; preserve the providers' direct access to the Audit Committee and independence from management. Prepare quarterly Audit Committee materials covering internal audit, compliance reviews, significant control issues, overdue actions and management remediation status. Ensure management does not inappropriately limit audit scope, conclusions, communications or access. The Audit Committee retains functional oversight of Internal Audit. Compliance Officer Responsibilities Provide executive leadership and oversight of the Bank's consumer and regulatory compliance management system across deposit, lending, digital, marketing and operational activities. Chair the Compliance Committee and report regularly to the Board and Audit Committee on the compliance risk profile, monitoring and testing results, complaints, regulatory changes, exceptions and remediation. Develop, implement and maintain risk-based compliance policies, procedures, monitoring, change-management, training and reporting practices. Assess emerging laws, regulations, guidance and enforcement trends; assign accountable owners, evaluate impacts, identify gaps and verify timely implementation. Interpret and communicate regulatory requirements and provide practical guidance to employees and management, including requirements related to HMDA, flood insurance, SAFE Act, Red Flags Identity Theft, Fair Credit Reporting Act, privacy, electronic fund transfers, funds availability and reserve requirements. Oversee compliance reviews and regulatory examinations, including information requests, management responses, corrective action and validation of remediation. Oversee the formal complaint-management process and consumer dispute verifications; analyze root causes and trends and escalate potential systemic, legal, reputation or customer-harm concerns. Oversee online compliance training for all staff and provide or coordinate relevant Director education. Oversee the Bank's Nationwide Multistate Licensing System registrations for the Bank and mortgage loan originators. Ensure the compliance framework scales appropriately with asset growth, product expansion, increased complexity and digital delivery channels. CRA Officer Responsibilities Lead and administer the Bank's CRA program, strategy, performance monitoring, data integrity, documentation and public file. Monitor performance across lending, investment and service activities and assess results by geography and borrower characteristics, as applicable; identify gaps and recommend responsive strategies. Support the CRA Committee, prepare the annual CRA Committee book and report significant trends, opportunities and concerns to Executive Management and the Board. Coordinate CRA examination readiness and regulator responses; maintain documentation supporting performance context, community needs and qualifying activities. Partner with Lending, Retail . click apply for full job details
09/19/2026
Full time
Description: At First Resource Bank, we believe strong risk leadership is about more than controls and compliance-it's about judgment, trust, and building a workplace where people are empowered to do the right thing, every time. As a proud "Best Place to Work" and a thriving $800 million+ asset community bank headquartered in Exton, PA, we are excited to welcome a strategic and forward-thinking Executive Vice President & Chief Risk Officer (CRO) to our executive team. Reporting to the President & CEO, the CRO is a key member of the executive management team and a trusted advisor to the Board of Directors, with direct access to the Board and its committees on material risk matters. This role provides independent, enterprise-wide leadership of the Bank's risk management, and regulatory compliance establishing a practical, forward-looking risk framework that supports safe, sustainable growth and a strong culture of accountability. This is more than a traditional risk role. It's an opportunity to shape the risk and compliance foundation of a growing organization, serve as a trusted strategic partner to the President & CEO, and ensure the Bank's risk capabilities scale alongside its growth, technology, and evolving regulatory landscape. We're looking for a leader who brings both regulatory credibility and a passion for cultivating a culture where credible challenges are welcomed and issues are resolved with integrity. If you're energized by complexity, motivated by protecting what matters most, and ready to lead through influence, we invite you to explore this exciting opportunity with us. Requirements: Enterprise Risk Management, Risk Appetite & Governance Lead the design, implementation and continuous improvement of the Bank's enterprise risk management framework, including clear governance, risk taxonomy, policies, standards, methodologies, escalation protocols and documentation. Maintain a forward-looking process to identify, assess, measure, monitor and report material risks, including credit, concentration, capital, liquidity, interest-rate, market, operational, compliance, legal, strategic, reputation, cyber, information security, technology, data, model, fraud, third-party and emerging risks. Lead the annual Enterprise Risk Assessment in collaboration with executives, business-line leaders and control functions; ensure conclusions are supported, challenged, documented and translated into action plans. Develop and maintain the enterprise risk appetite framework and support business-line risk appetite limits, tolerances and escalation thresholds aligned with the Bank's strategic plan, capital position and operating capacity. Provide executive leadership to the Enterprise Risk Committee; prepare quarterly committee materials and coordinate complete, accurate and decision-useful reporting from risk owners. Develop an integrated inventory of key risk indicators, limits, watch items, exceptions, losses, near misses, control deficiencies and remediation commitments; escalate material matters promptly. Provide independent risk review and constructive challenge of strategic plans, budgets, new markets, acquisitions, significant capital actions, new products, major technology decisions, outsourcing arrangements and other material initiatives. Promote clear ownership through a three-lines model: business lines own risk and controls; Risk and Compliance provide oversight and challenge; Internal Audit provides independent assurance. Board, Executive & Regulatory Leadership Serve as the principal executive advisor on the Bank's aggregate risk profile and the risk implications of strategic and operational decisions. Report regularly to the Board of Directors and appropriate Board committees on risk appetite, trend analysis, concentrations, emerging risks, significant exceptions, examination matters, audit results and remediation status. Maintain direct and unrestricted access to the President & CEO, the Board Chair and the chairs of the Audit and other applicable Board committees; promptly communicate material risk or compliance concerns. Serve as a primary executive liaison with federal and state banking regulators for matters within the role's scope; organize examination readiness, coordinate responsive production of requested information and drive timely, sustainable remediation of findings. Support Board and committee education on risk, compliance, CRA, AML/CFT/OFAC, cybersecurity, third-party risk, emerging regulation and public-company readiness topics. Operational Resilience, Technology, Cyber, Data & Third-Party Risk Oversee the enterprise operational risk program, including risk and control self-assessments, event and loss capture, root-cause analysis, control testing coordination, issue management and lessons learned. Provide independent oversight of business continuity, disaster recovery and operational resilience programs; challenge critical-service mapping, recovery objectives, testing scenarios, interdependencies and remediation. Partner with the CIO, Information Security Officer and business leaders to assess cybersecurity, technology change, cloud, digital delivery, data governance, privacy, artificial intelligence and model risks; ensure material exposures are reflected in enterprise reporting. Lead or oversee the annual critical-vendor review with the CEO, CFO, COO and CIO; maintain risk-tiering, due diligence, contract-risk, ongoing monitoring, concentration, subcontractor and exit-strategy expectations for third parties. Participate in major projects and new-product reviews to identify regulatory requirements, customer impacts, control needs, implementation risks, monitoring requirements and go-live conditions. Provide executive oversight of fraud risk governance, trend reporting, escalation and coordination across Operations, Information Security, AML/CFT/OFAC, Compliance, Quality Control, Legal and customer-facing teams. Internal Audit Coordination & Assurance Lead management's annual internal audit risk assessment and present the proposed risk-based audit plan, coverage rationale and resource needs to the Audit Committee for review and approval. Coordinate scheduling and administration of outsourced internal audit and compliance-review engagements, including engagement scope, access, issue tracking, management responses and validation of corrective action. Recommend qualified independent service providers and annual engagement terms to the Audit Committee; preserve the providers' direct access to the Audit Committee and independence from management. Prepare quarterly Audit Committee materials covering internal audit, compliance reviews, significant control issues, overdue actions and management remediation status. Ensure management does not inappropriately limit audit scope, conclusions, communications or access. The Audit Committee retains functional oversight of Internal Audit. Compliance Officer Responsibilities Provide executive leadership and oversight of the Bank's consumer and regulatory compliance management system across deposit, lending, digital, marketing and operational activities. Chair the Compliance Committee and report regularly to the Board and Audit Committee on the compliance risk profile, monitoring and testing results, complaints, regulatory changes, exceptions and remediation. Develop, implement and maintain risk-based compliance policies, procedures, monitoring, change-management, training and reporting practices. Assess emerging laws, regulations, guidance and enforcement trends; assign accountable owners, evaluate impacts, identify gaps and verify timely implementation. Interpret and communicate regulatory requirements and provide practical guidance to employees and management, including requirements related to HMDA, flood insurance, SAFE Act, Red Flags Identity Theft, Fair Credit Reporting Act, privacy, electronic fund transfers, funds availability and reserve requirements. Oversee compliance reviews and regulatory examinations, including information requests, management responses, corrective action and validation of remediation. Oversee the formal complaint-management process and consumer dispute verifications; analyze root causes and trends and escalate potential systemic, legal, reputation or customer-harm concerns. Oversee online compliance training for all staff and provide or coordinate relevant Director education. Oversee the Bank's Nationwide Multistate Licensing System registrations for the Bank and mortgage loan originators. Ensure the compliance framework scales appropriately with asset growth, product expansion, increased complexity and digital delivery channels. CRA Officer Responsibilities Lead and administer the Bank's CRA program, strategy, performance monitoring, data integrity, documentation and public file. Monitor performance across lending, investment and service activities and assess results by geography and borrower characteristics, as applicable; identify gaps and recommend responsive strategies. Support the CRA Committee, prepare the annual CRA Committee book and report significant trends, opportunities and concerns to Executive Management and the Board. Coordinate CRA examination readiness and regulator responses; maintain documentation supporting performance context, community needs and qualifying activities. Partner with Lending, Retail . click apply for full job details
Procurement Manager (Marketplace Operations)
ActioNet Vienna, Virginia
Job Description Job Description Procurement Manager Location: Hybrid/Remote (DC/VA/MD Region) Clearance: Secret ActioNet is seeking a senior, self-directed operator to lead the design, buildout, launch, and operation of an enterprise marketplace for Federal and Defense customers. This is not a traditional buyer, order-processor, account-management, reseller-sales, or SaaS-renewal role. We are hiring the person who builds the backend operating model behind the marketplace - not someone to manage a storefront. The initial focus is a centralized marketplace for software, SaaS, cloud, and technology licenses, scaling over time to hardware, professional services, and broader mission-support categories. The objective is to consolidate fragmented agency-by-agency buying, aggregate demand to win volume discounts, standardize offers, shorten procurement cycle time, and create a compliant, auditable, repeatable acquisition process. Read this carefully: the hard part of this job is not the shopping page. It is catalog governance, acquisition routing, vendor participation, pricing normalization, approval logic, compliance documentation, fulfillment, invoicing, lifecycle tracking, reporting, and adoption. If that sentence does not describe work you have personally done, this is not your role. What You Will Build You own the marketplace as an operating ecosystem, not a website. That means standing up and running: The marketplace operating model - roles, approval gates, process and data ownership, escalation paths, governance. Catalog taxonomy and product-data governance - listing standards, SKU mapping, pricing attributes, refresh cycles, quality control. The request-to-fulfillment lifecycle - intake, eligibility and funding validation, approval routing, quoting, contracting support, order placement, provisioning, invoicing, reconciliation, license/asset tracking, renewals, closeout. Vendor, OEM, VAR, and small-business onboarding and governance - qualification, compliance, scorecards, performance remediation. Demand aggregation and savings strategy - spend analysis, consolidation, standardized bundles and tiered pricing, savings models. Acquisition and compliance integration - routing purchases through the correct FAR / OTA / contract-vehicle and approval paths, with full auditability. Platform coordination - translating the operating model into ServiceNow (or comparable) workflows, catalog items, roles, approvals, and dashboards. Governance and executive reporting - KPIs, risk registers, operating rhythms, decision packages, adoption metrics. Key Responsibilities Marketplace Stand-Up & Operating Model Lead all phases from concept and prototype through pilot, MVP, and production operations. Define the future-state operating model and a phased roadmap, beginning with software/SaaS and expanding to additional categories. Translate ambiguous customer objectives into executable plans, milestones, dependencies, and measurable outcomes - without waiting for step-by-step direction. Backend Procurement Lifecycle Design and run the complete request-to-fulfillment lifecycle and the exception paths for emergency buys, nonstandard vendors, and complex acquisitions. Decide where manual controls are required versus where workflow automation can be safely introduced. Establish SLAs and operational controls for intake, quoting, catalog updates, fulfillment, invoice validation, and renewals. Catalog Architecture & Data Governance Define and maintain catalog taxonomy, listing fields, pricing attributes, contract-vehicle data, license terms, and compliance flags. Normalize comparable products, SKUs, bundles, and reseller offers so government users can compare options consistently. Build governance to prevent stale listings, duplicate products, noncompliant offers, and inaccurate pricing. Demand Aggregation & Savings Analyze historical spend, renewal calendars, and fragmented purchases to identify consolidation opportunities. Aggregate demand across agencies to drive volume-based discounts and standardized enterprise offers. Build savings models and executive dashboards comparing legacy agency-by-agency buying against consolidated marketplace pricing. Vendor / OEM / VAR / Small-Business Ecosystem Run structured onboarding with clear qualification criteria, compliance documentation, and listing/pricing standards. Maintain performance scorecards (quote turnaround, pricing accuracy, fulfillment, SLA compliance) and remediate underperformance. Government Acquisition & Compliance Integration Serve as the operational bridge between marketplace users, contracting officers, finance, cybersecurity, technical teams, and industry partners. Ensure workflows align with FAR, DFARS and OTA pathways where applicable, contract-vehicle rules, small-business and competition requirements, and agency policy. Ensure records support audit readiness, traceability, and procurement integrity. Platform, Governance & Stakeholder Engagement Partner with technical teams to convert procurement operations into platform requirements, user stories, and acceptance criteria; support backlog, sprint planning, UAT, and release readiness. Establish governance forums, KPIs, risk reviews, and executive briefings. Drive adoption across agencies accustomed to decentralized buying, using data, savings, and executive sponsorship. Required Qualifications Candidates must be able to demonstrate the following. "Supported" or "familiar with" is not enough - we are looking for work you personally owned. Personally built, operated, or governed a marketplace, service catalog, procurement portal, shared-services platform, or IT-as-a-Service environment. Designed end-to-end procurement workflows from requirement intake through approval, acquisition support, order placement, fulfillment, invoicing, reconciliation, license tracking, renewal, and reporting. Federal or Defense acquisition fluency - can explain how FAR, OTA pathways, and contract-vehicle rules shape marketplace and workflow design. Hands-on ServiceNow (or comparable workflow / catalog / ITSM / procurement platform) configuration and ownership - catalog items, workflows, approvals, roles, dashboards. Vendor ecosystem management - onboarded and governed OEMs, VARs, small businesses, or multi-vendor supplier networks with defined standards and performance metrics. 8+ years leading Federal, Defense, or large-enterprise procurement, acquisition, shared-services, service-catalog, or digital-platform programs. Proven ability to operate independently in an ambiguous environment and create structure, process, and operating discipline without step-by-step direction. Strong written and verbal communication, including briefing senior government and industry stakeholders. Secret clearance, active or able to obtain. Preferred Qualifications Prior support to DOD, DISA, the Intelligence Community, or large Federal acquisition/modernization programs. Experience building or operating a government marketplace, enterprise buying portal, or brokered-services model. Category management, strategic sourcing, demand aggregation, volume discounting, or enterprise license agreements. Enterprise / IT / software asset management, license optimization, or lifecycle management. Familiarity with FedRAMP, RMF, Impact Levels, CMMC, or supply-chain risk management. Tools such as ServiceNow, Appian, Jira Service Management, Ariba, Coupa, Ivalua, Unison, PRISM, or Momentum. PMP, SAFe, ITIL, FAC-P/PM, DAWIA, NCMA CFCM/CPCM, or IAITAM CSAM certification ActioNet, Inc. is a Woman-Owned IT Engineering Services Firm that values a culture of equity, respect, and opportunity for all employees. Our growing workforce is composed of over 65% veterans, bringing dedication, discipline, and mission-focus to everything we do. We believe that fostering a supportive, fair, and collaborative environment empowers our ActioNeters to deliver outstanding results for our clients. Our commitment to employees has earned ActioNet recognition as a Top Workplace for 13 consecutive years (since 2014) and the Top Workplace for Commuter Award for five years in a row, reflecting our focus on employee well-being and work-life balance. ActioNet is mission-focused, client-centric, and results-driven, following both Project Management Institute (PMI) methodologies and Information Technology Infrastructure Library (ITIL) best practices to deliver excellence across every engagement. ActioNet continues to strengthen its leadership in cybersecurity and compliance through the achievement of the Cybersecurity Maturity Model Certification (CMMC) Version 2.0 Level 2 assessment by an authorized Certified Third-Party Assessment Organization (C3PAO). This accomplishment highlights our proven ability to protect Controlled Unclassified Information (CUI), maintain rigorous cybersecurity controls, and support the evolving security requirements of federal agencies and defense customers. Our industry-leading certifications demonstrate our dedication to quality, security, compliance, and continuous improvement: • CMMC V2.0 Level 2 Assessed by Authorized C3PAO • CMMI-DEV V3.0 Level 4 (Certified since 2003) • CMMI-SVC V3.0 Level 4 (Certified since 2018) • CMMI-SEC V3.0 Level 4 • CMMI-DATA V3.0 Level 4 . click apply for full job details
09/18/2026
Full time
Job Description Job Description Procurement Manager Location: Hybrid/Remote (DC/VA/MD Region) Clearance: Secret ActioNet is seeking a senior, self-directed operator to lead the design, buildout, launch, and operation of an enterprise marketplace for Federal and Defense customers. This is not a traditional buyer, order-processor, account-management, reseller-sales, or SaaS-renewal role. We are hiring the person who builds the backend operating model behind the marketplace - not someone to manage a storefront. The initial focus is a centralized marketplace for software, SaaS, cloud, and technology licenses, scaling over time to hardware, professional services, and broader mission-support categories. The objective is to consolidate fragmented agency-by-agency buying, aggregate demand to win volume discounts, standardize offers, shorten procurement cycle time, and create a compliant, auditable, repeatable acquisition process. Read this carefully: the hard part of this job is not the shopping page. It is catalog governance, acquisition routing, vendor participation, pricing normalization, approval logic, compliance documentation, fulfillment, invoicing, lifecycle tracking, reporting, and adoption. If that sentence does not describe work you have personally done, this is not your role. What You Will Build You own the marketplace as an operating ecosystem, not a website. That means standing up and running: The marketplace operating model - roles, approval gates, process and data ownership, escalation paths, governance. Catalog taxonomy and product-data governance - listing standards, SKU mapping, pricing attributes, refresh cycles, quality control. The request-to-fulfillment lifecycle - intake, eligibility and funding validation, approval routing, quoting, contracting support, order placement, provisioning, invoicing, reconciliation, license/asset tracking, renewals, closeout. Vendor, OEM, VAR, and small-business onboarding and governance - qualification, compliance, scorecards, performance remediation. Demand aggregation and savings strategy - spend analysis, consolidation, standardized bundles and tiered pricing, savings models. Acquisition and compliance integration - routing purchases through the correct FAR / OTA / contract-vehicle and approval paths, with full auditability. Platform coordination - translating the operating model into ServiceNow (or comparable) workflows, catalog items, roles, approvals, and dashboards. Governance and executive reporting - KPIs, risk registers, operating rhythms, decision packages, adoption metrics. Key Responsibilities Marketplace Stand-Up & Operating Model Lead all phases from concept and prototype through pilot, MVP, and production operations. Define the future-state operating model and a phased roadmap, beginning with software/SaaS and expanding to additional categories. Translate ambiguous customer objectives into executable plans, milestones, dependencies, and measurable outcomes - without waiting for step-by-step direction. Backend Procurement Lifecycle Design and run the complete request-to-fulfillment lifecycle and the exception paths for emergency buys, nonstandard vendors, and complex acquisitions. Decide where manual controls are required versus where workflow automation can be safely introduced. Establish SLAs and operational controls for intake, quoting, catalog updates, fulfillment, invoice validation, and renewals. Catalog Architecture & Data Governance Define and maintain catalog taxonomy, listing fields, pricing attributes, contract-vehicle data, license terms, and compliance flags. Normalize comparable products, SKUs, bundles, and reseller offers so government users can compare options consistently. Build governance to prevent stale listings, duplicate products, noncompliant offers, and inaccurate pricing. Demand Aggregation & Savings Analyze historical spend, renewal calendars, and fragmented purchases to identify consolidation opportunities. Aggregate demand across agencies to drive volume-based discounts and standardized enterprise offers. Build savings models and executive dashboards comparing legacy agency-by-agency buying against consolidated marketplace pricing. Vendor / OEM / VAR / Small-Business Ecosystem Run structured onboarding with clear qualification criteria, compliance documentation, and listing/pricing standards. Maintain performance scorecards (quote turnaround, pricing accuracy, fulfillment, SLA compliance) and remediate underperformance. Government Acquisition & Compliance Integration Serve as the operational bridge between marketplace users, contracting officers, finance, cybersecurity, technical teams, and industry partners. Ensure workflows align with FAR, DFARS and OTA pathways where applicable, contract-vehicle rules, small-business and competition requirements, and agency policy. Ensure records support audit readiness, traceability, and procurement integrity. Platform, Governance & Stakeholder Engagement Partner with technical teams to convert procurement operations into platform requirements, user stories, and acceptance criteria; support backlog, sprint planning, UAT, and release readiness. Establish governance forums, KPIs, risk reviews, and executive briefings. Drive adoption across agencies accustomed to decentralized buying, using data, savings, and executive sponsorship. Required Qualifications Candidates must be able to demonstrate the following. "Supported" or "familiar with" is not enough - we are looking for work you personally owned. Personally built, operated, or governed a marketplace, service catalog, procurement portal, shared-services platform, or IT-as-a-Service environment. Designed end-to-end procurement workflows from requirement intake through approval, acquisition support, order placement, fulfillment, invoicing, reconciliation, license tracking, renewal, and reporting. Federal or Defense acquisition fluency - can explain how FAR, OTA pathways, and contract-vehicle rules shape marketplace and workflow design. Hands-on ServiceNow (or comparable workflow / catalog / ITSM / procurement platform) configuration and ownership - catalog items, workflows, approvals, roles, dashboards. Vendor ecosystem management - onboarded and governed OEMs, VARs, small businesses, or multi-vendor supplier networks with defined standards and performance metrics. 8+ years leading Federal, Defense, or large-enterprise procurement, acquisition, shared-services, service-catalog, or digital-platform programs. Proven ability to operate independently in an ambiguous environment and create structure, process, and operating discipline without step-by-step direction. Strong written and verbal communication, including briefing senior government and industry stakeholders. Secret clearance, active or able to obtain. Preferred Qualifications Prior support to DOD, DISA, the Intelligence Community, or large Federal acquisition/modernization programs. Experience building or operating a government marketplace, enterprise buying portal, or brokered-services model. Category management, strategic sourcing, demand aggregation, volume discounting, or enterprise license agreements. Enterprise / IT / software asset management, license optimization, or lifecycle management. Familiarity with FedRAMP, RMF, Impact Levels, CMMC, or supply-chain risk management. Tools such as ServiceNow, Appian, Jira Service Management, Ariba, Coupa, Ivalua, Unison, PRISM, or Momentum. PMP, SAFe, ITIL, FAC-P/PM, DAWIA, NCMA CFCM/CPCM, or IAITAM CSAM certification ActioNet, Inc. is a Woman-Owned IT Engineering Services Firm that values a culture of equity, respect, and opportunity for all employees. Our growing workforce is composed of over 65% veterans, bringing dedication, discipline, and mission-focus to everything we do. We believe that fostering a supportive, fair, and collaborative environment empowers our ActioNeters to deliver outstanding results for our clients. Our commitment to employees has earned ActioNet recognition as a Top Workplace for 13 consecutive years (since 2014) and the Top Workplace for Commuter Award for five years in a row, reflecting our focus on employee well-being and work-life balance. ActioNet is mission-focused, client-centric, and results-driven, following both Project Management Institute (PMI) methodologies and Information Technology Infrastructure Library (ITIL) best practices to deliver excellence across every engagement. ActioNet continues to strengthen its leadership in cybersecurity and compliance through the achievement of the Cybersecurity Maturity Model Certification (CMMC) Version 2.0 Level 2 assessment by an authorized Certified Third-Party Assessment Organization (C3PAO). This accomplishment highlights our proven ability to protect Controlled Unclassified Information (CUI), maintain rigorous cybersecurity controls, and support the evolving security requirements of federal agencies and defense customers. Our industry-leading certifications demonstrate our dedication to quality, security, compliance, and continuous improvement: • CMMC V2.0 Level 2 Assessed by Authorized C3PAO • CMMI-DEV V3.0 Level 4 (Certified since 2003) • CMMI-SVC V3.0 Level 4 (Certified since 2018) • CMMI-SEC V3.0 Level 4 • CMMI-DATA V3.0 Level 4 . click apply for full job details
Senior Information Security Specialist
Dev Technology Ashburn, Virginia
Job Description Job Description Information Security Specialist Officer, Technical Lead, AWS Security • RMF & ATO • NIST 800-53 • Cloud Application Security Clearance: Active CBP, DHS, or Top Secret Clearance required Work Arrangement: Hybrid - onsite 3 days/week during standard business hours in Ashburn, VA About the Role Dev Technology Group is seeking a Senior Information Security Specialist to lead and develop a mid-sized team of ISSOs supporting the security, compliance, and authorization of mission-critical federal applications and information systems hosted in AWS. This is a hands-on technical leadership role combining people leadership, federal cybersecurity expertise, and direct collaboration with government and technical stakeholders. You will mentor junior and mid-level ISSOs while partnering with system owners, developers, architects, cloud/infrastructure engineers, security professionals, and government stakeholders throughout the system development lifecycle. You will provide practical security guidance for AWS-hosted applications, lead Risk Management Framework (RMF) and Authority to Operate (ATO) activities, oversee vulnerability management and continuous monitoring, and translate federal cybersecurity requirements into actionable guidance for technical teams. What You'll Do Lead, mentor, and develop a team of ISSOs by establishing priorities, providing technical direction and coaching, and promoting accountability and consistent security practices. Lead and oversee RMF, ATO, security authorization, compliance, vulnerability management, and continuous monitoring activities across a portfolio of federal systems and applications. Partner with ISSMs, system owners, assessors, developers, architects, engineers, and government stakeholders to maintain authorizations, identify risks, and address security requirements. Lead vulnerability management efforts, prioritizing remediation, developing mitigation strategies, and tracking corrective actions through resolution. Develop, assess, document, and support implementation of security controls aligned with FISMA, NIST 800-53, DHS, and client requirements . Prepare and maintain security and authorization documentation, including SSPs, ISAs, audit artifacts, and RMF documentation . Provide cybersecurity guidance for applications and systems deployed in AWS and integrate security throughout the software development lifecycle. Validate security implementation through technical reviews, discussions, interviews, assessments, and tabletop exercises. Support security audits, assessments, compliance reviews, and reviews of information systems and network connections. Interpret federal and client security policies and translate requirements into practical guidance for technical and development teams. Identify and escalate security risks, communicate priorities and remediation status, and provide clear visibility to Dev Technology leadership and government stakeholders. Develop and present security metrics, status reports, risk assessments, and executive briefings . Establish and improve security processes, procedures, templates, dashboards, and workflows to improve consistency, accountability, and efficiency across the ISSO team. Build trusted relationships with government clients through proactive communication, collaboration, and face-to-face engagement. Required Education, Experience & Skills Bachelor's degree and 7+ years of experience securing federal information systems. Demonstrated experience leading and mentoring information security professionals , including junior and mid-level ISSOs. Experience leading cybersecurity activities in a federal government client environment and working directly with government stakeholders.' Strong working knowledge of NIST Risk Management Framework (RMF) and experience supporting federal systems through security authorization and ATO activities . Experience developing, implementing, assessing, or documenting security controls aligned with FISMA and NIST 800-53 . Experience with vulnerability management, continuous monitoring, security assessments, audits, or compliance reviews for federal systems. Experience providing cybersecurity guidance for AWS-hosted applications and systems . Strong understanding of modern information systems and their technical security considerations. Ability to work effectively with developers, architects, engineers, government stakeholders, and technical and non-technical audiences. Strong written and verbal communication skills, including the ability to communicate security risks and technical findings and develop/present security documentation and executive briefings. Ability to establish priorities, manage competing demands, independently manage security activities, and escalate issues appropriately. Proactive, solutions-oriented approach to identifying risks and improving security practices. Current CBP, DHS, or Top Secret Clearance. Ability to work onsite 3 days per week in Ashburn, VA during standard business hours. Cybersecurity certification such as CISSP, CISM, GIAC, Security+, or another recognized cybersecurity certification. Preferred Education, Experience & Skills Experience developing or supporting RMF and authorization artifacts, including SSPs, ISAs, PTAs, ATTs, POA&Ms , and related documentation. Experience partnering with application development, cloud engineering, and DevSecOps teams to integrate security throughout the SDLC. Experience working in an Agile software development environment using Jira or similar platforms. Experience with GRC tools such as CSAM or similar platforms supporting authorization, compliance, vulnerability management, and security activities. Understanding of AI concepts and practical applications of AI for cybersecurity operations, risk analysis, compliance, or security program management. Our estimated salary range for this position is $88,000 - $ 150,000. This presented salary range is not a guarantee of compensation or salary. Offered salary is based on experience, geographic location, and possibly contractual requirements as appropriate to the role. Salary could fall outside of this range. Who We Are Dev Technology is a growing IT company with an employee-centric culture that works on mission-critical projects for the federal government. We partner with our federal customers to deliver technology services and solutions, and to drive our client's missions forward through innovation. We use Agile and DevSecOps principles to provide services including application development, biometrics and identity management, cloud and infrastructure optimization, IT and legacy modernization, and data management. As a Washington Post Top Workplace award winner for the past THIRTEEN years in a row, the Top Workplaces USA for the past five years, and a recipient of the Companies As Responsive Employers (CARE) Award for the past six years, Dev Technology employees enjoy: Generous and flexible time-off policy Flexible work schedules and telework options, including remote work availability for eligible projects Career development opportunities including a mentorship program, technical and management training through Dev University, hands-on learning through DevLab, tuition reimbursement, and paid training opportunities Industry-leading benefits including a choice of two health plans that include dental and vision, flexible spending account, commuter benefits, life insurance, and more 401K matching with a 5% matching contribution Regular team and company social events including our annual party, happy hours, fitness challenges, and more A focus on community engagement including company wide support activities, employer match for donations, and time off for volunteer efforts To learn more about working at Dev Technology, visit Working At Dev Technology Group Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans Dev Technology Group operates in the following states: AL, AR, AZ, CO, DC, FL, GA, ID, IL, IN, MD, MA, ME, MI, MN, MO, MS, NC, NJ, OH, OR, PA, SC, TN, TX, VA, WV.
09/18/2026
Full time
Job Description Job Description Information Security Specialist Officer, Technical Lead, AWS Security • RMF & ATO • NIST 800-53 • Cloud Application Security Clearance: Active CBP, DHS, or Top Secret Clearance required Work Arrangement: Hybrid - onsite 3 days/week during standard business hours in Ashburn, VA About the Role Dev Technology Group is seeking a Senior Information Security Specialist to lead and develop a mid-sized team of ISSOs supporting the security, compliance, and authorization of mission-critical federal applications and information systems hosted in AWS. This is a hands-on technical leadership role combining people leadership, federal cybersecurity expertise, and direct collaboration with government and technical stakeholders. You will mentor junior and mid-level ISSOs while partnering with system owners, developers, architects, cloud/infrastructure engineers, security professionals, and government stakeholders throughout the system development lifecycle. You will provide practical security guidance for AWS-hosted applications, lead Risk Management Framework (RMF) and Authority to Operate (ATO) activities, oversee vulnerability management and continuous monitoring, and translate federal cybersecurity requirements into actionable guidance for technical teams. What You'll Do Lead, mentor, and develop a team of ISSOs by establishing priorities, providing technical direction and coaching, and promoting accountability and consistent security practices. Lead and oversee RMF, ATO, security authorization, compliance, vulnerability management, and continuous monitoring activities across a portfolio of federal systems and applications. Partner with ISSMs, system owners, assessors, developers, architects, engineers, and government stakeholders to maintain authorizations, identify risks, and address security requirements. Lead vulnerability management efforts, prioritizing remediation, developing mitigation strategies, and tracking corrective actions through resolution. Develop, assess, document, and support implementation of security controls aligned with FISMA, NIST 800-53, DHS, and client requirements . Prepare and maintain security and authorization documentation, including SSPs, ISAs, audit artifacts, and RMF documentation . Provide cybersecurity guidance for applications and systems deployed in AWS and integrate security throughout the software development lifecycle. Validate security implementation through technical reviews, discussions, interviews, assessments, and tabletop exercises. Support security audits, assessments, compliance reviews, and reviews of information systems and network connections. Interpret federal and client security policies and translate requirements into practical guidance for technical and development teams. Identify and escalate security risks, communicate priorities and remediation status, and provide clear visibility to Dev Technology leadership and government stakeholders. Develop and present security metrics, status reports, risk assessments, and executive briefings . Establish and improve security processes, procedures, templates, dashboards, and workflows to improve consistency, accountability, and efficiency across the ISSO team. Build trusted relationships with government clients through proactive communication, collaboration, and face-to-face engagement. Required Education, Experience & Skills Bachelor's degree and 7+ years of experience securing federal information systems. Demonstrated experience leading and mentoring information security professionals , including junior and mid-level ISSOs. Experience leading cybersecurity activities in a federal government client environment and working directly with government stakeholders.' Strong working knowledge of NIST Risk Management Framework (RMF) and experience supporting federal systems through security authorization and ATO activities . Experience developing, implementing, assessing, or documenting security controls aligned with FISMA and NIST 800-53 . Experience with vulnerability management, continuous monitoring, security assessments, audits, or compliance reviews for federal systems. Experience providing cybersecurity guidance for AWS-hosted applications and systems . Strong understanding of modern information systems and their technical security considerations. Ability to work effectively with developers, architects, engineers, government stakeholders, and technical and non-technical audiences. Strong written and verbal communication skills, including the ability to communicate security risks and technical findings and develop/present security documentation and executive briefings. Ability to establish priorities, manage competing demands, independently manage security activities, and escalate issues appropriately. Proactive, solutions-oriented approach to identifying risks and improving security practices. Current CBP, DHS, or Top Secret Clearance. Ability to work onsite 3 days per week in Ashburn, VA during standard business hours. Cybersecurity certification such as CISSP, CISM, GIAC, Security+, or another recognized cybersecurity certification. Preferred Education, Experience & Skills Experience developing or supporting RMF and authorization artifacts, including SSPs, ISAs, PTAs, ATTs, POA&Ms , and related documentation. Experience partnering with application development, cloud engineering, and DevSecOps teams to integrate security throughout the SDLC. Experience working in an Agile software development environment using Jira or similar platforms. Experience with GRC tools such as CSAM or similar platforms supporting authorization, compliance, vulnerability management, and security activities. Understanding of AI concepts and practical applications of AI for cybersecurity operations, risk analysis, compliance, or security program management. Our estimated salary range for this position is $88,000 - $ 150,000. This presented salary range is not a guarantee of compensation or salary. Offered salary is based on experience, geographic location, and possibly contractual requirements as appropriate to the role. Salary could fall outside of this range. Who We Are Dev Technology is a growing IT company with an employee-centric culture that works on mission-critical projects for the federal government. We partner with our federal customers to deliver technology services and solutions, and to drive our client's missions forward through innovation. We use Agile and DevSecOps principles to provide services including application development, biometrics and identity management, cloud and infrastructure optimization, IT and legacy modernization, and data management. As a Washington Post Top Workplace award winner for the past THIRTEEN years in a row, the Top Workplaces USA for the past five years, and a recipient of the Companies As Responsive Employers (CARE) Award for the past six years, Dev Technology employees enjoy: Generous and flexible time-off policy Flexible work schedules and telework options, including remote work availability for eligible projects Career development opportunities including a mentorship program, technical and management training through Dev University, hands-on learning through DevLab, tuition reimbursement, and paid training opportunities Industry-leading benefits including a choice of two health plans that include dental and vision, flexible spending account, commuter benefits, life insurance, and more 401K matching with a 5% matching contribution Regular team and company social events including our annual party, happy hours, fitness challenges, and more A focus on community engagement including company wide support activities, employer match for donations, and time off for volunteer efforts To learn more about working at Dev Technology, visit Working At Dev Technology Group Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans Dev Technology Group operates in the following states: AL, AR, AZ, CO, DC, FL, GA, ID, IL, IN, MD, MA, ME, MI, MN, MO, MS, NC, NJ, OH, OR, PA, SC, TN, TX, VA, WV.
Securitas
Security Operations Center (SOC) - Overnight shift Sunday to Thursday Basking Ridge, NJ
Securitas Basking Ridge, New Jersey
Securitas is looking to hire for Security Opertions Center (SOC) Officer SHIFT : Sunday to Thursday 11:00pm to 7:00am Pay Rate: $19.00 an hour. Core requirements: 1-2+ years in SOC, security operations, dispatch, law enforcement, military, or a similar monitoring environment High school diploma/GED; associate degree in Criminal Justice, Security, Emergency Management, etc. is a plus Experience with CCTV/VMS, access control, alarms, radios, intercoms, and security software Strong written documentation and report-writing Excellent verbal communication and professional demeanor Ability to prioritize, multitask, and make sound decisions under pressure Comfortable working nights, weekends, holidays, and rotating 24/7 shifts Strong computer skills, particularly Microsoft Office Ability to follow SOPs, escalation procedures, and confidentiality requirements. MINIMUM HIRING STANDARDS: • Must be at least 18 years of age. • Must have a reliable means of communication (i.e., pager or phone). • Must have a reliable means of transportation Driver's License with a clean record. • Must have the legal right to work in the United States. • Must have the ability to speak, read, and write English. • Must have a High School Diploma or GED. Benefits & Perks: Medical Insurance Dental Insurance Vision Insurance 401k Paid Time Off Discounts (Retail, Phone Plans, Rentals, etc.) Employee Assistance Program & more! We help make your world a safer place. Securitas is a global company that offers the most advanced and sustainable security solutions in the industry. We are located in 47 countries and have 355,000 employees worldwide and over 150,000 clients. Securitas plays an essential role for our clients and in society. The SOC Operator position helps maintain a safe and secure environment for our clients by providing centrally managed law enforcement radio monitoring with event logging and recording, alarm monitoring of intrusion detection systems, and emergency dispatch, incident reporting and analysis, and remote alarm panel programming. We are driven by a clear corporate culture and purpose, which helps us live according to our values of Integrity, Vigilance, and Helpfulness. These values are at the heart of our culture, help define who we are and guide our actions. Our SOC Operator positions are highly sought after. If you have experience in roles like Call Center Representative, Dispatch or Camera Monitoring this is a great fit for you; if not, this is an exciting introduction to a career in the security industry. Are you interested in being part of our Team? • Apply quickly and efficiently online With over 80 years of protecting the things that matter, we've seen more than most. That's why Securitas is the partner of choice for companies and an employer of choice for candidates worldwide. See a different world. Make an Impact at Securitas USA Securitas USA employees come from all walks of life, bringing a variety of skills, experiences, and perspectives. United by a shared purpose, we help make the world a safer place. We provide security services to meet the unique needs of our clients to help safeguard their people and assets. At Securitas USA, our core values are the foundation of everything we do. Represented by the three red dots in our logo, Integrity, Vigilance, and Helpfulness guide how we serve our clients, support our colleagues, and engage with our communities. Integrity We act with honesty, accountability, and professionalism in everything we do, and we foster a culture where transparency, respect, and ethical behavior are expected. Vigilance We stay alert, aware, and attentive to our surroundings. Through observing and reporting, our employees help identify potential risks and respond to situations that may impact safety and security. Helpfulness We are approachable and service-oriented, whether assisting a client, colleague, or member of the community. Securitas USA is committed to equal employment opportunity. All qualified applicants will receive consideration for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, pregnancy, genetic information, disability, status as a protected veteran, or any other applicable legally protected characteristic. Reasonable Accommodation: Securitas USA is committed to the full inclusion of all qualified individuals. In keeping with our commitment, Securitas USA will take steps to assure the people with disabilities are provided with reasonable accommodations. Accordingly, if reasonable accommodation is required to fully participate in the job application or interview process, to perform the essential functions of the position, and/or to receive all other benefits and privileges of employment, please contact .
09/17/2026
Full time
Securitas is looking to hire for Security Opertions Center (SOC) Officer SHIFT : Sunday to Thursday 11:00pm to 7:00am Pay Rate: $19.00 an hour. Core requirements: 1-2+ years in SOC, security operations, dispatch, law enforcement, military, or a similar monitoring environment High school diploma/GED; associate degree in Criminal Justice, Security, Emergency Management, etc. is a plus Experience with CCTV/VMS, access control, alarms, radios, intercoms, and security software Strong written documentation and report-writing Excellent verbal communication and professional demeanor Ability to prioritize, multitask, and make sound decisions under pressure Comfortable working nights, weekends, holidays, and rotating 24/7 shifts Strong computer skills, particularly Microsoft Office Ability to follow SOPs, escalation procedures, and confidentiality requirements. MINIMUM HIRING STANDARDS: • Must be at least 18 years of age. • Must have a reliable means of communication (i.e., pager or phone). • Must have a reliable means of transportation Driver's License with a clean record. • Must have the legal right to work in the United States. • Must have the ability to speak, read, and write English. • Must have a High School Diploma or GED. Benefits & Perks: Medical Insurance Dental Insurance Vision Insurance 401k Paid Time Off Discounts (Retail, Phone Plans, Rentals, etc.) Employee Assistance Program & more! We help make your world a safer place. Securitas is a global company that offers the most advanced and sustainable security solutions in the industry. We are located in 47 countries and have 355,000 employees worldwide and over 150,000 clients. Securitas plays an essential role for our clients and in society. The SOC Operator position helps maintain a safe and secure environment for our clients by providing centrally managed law enforcement radio monitoring with event logging and recording, alarm monitoring of intrusion detection systems, and emergency dispatch, incident reporting and analysis, and remote alarm panel programming. We are driven by a clear corporate culture and purpose, which helps us live according to our values of Integrity, Vigilance, and Helpfulness. These values are at the heart of our culture, help define who we are and guide our actions. Our SOC Operator positions are highly sought after. If you have experience in roles like Call Center Representative, Dispatch or Camera Monitoring this is a great fit for you; if not, this is an exciting introduction to a career in the security industry. Are you interested in being part of our Team? • Apply quickly and efficiently online With over 80 years of protecting the things that matter, we've seen more than most. That's why Securitas is the partner of choice for companies and an employer of choice for candidates worldwide. See a different world. Make an Impact at Securitas USA Securitas USA employees come from all walks of life, bringing a variety of skills, experiences, and perspectives. United by a shared purpose, we help make the world a safer place. We provide security services to meet the unique needs of our clients to help safeguard their people and assets. At Securitas USA, our core values are the foundation of everything we do. Represented by the three red dots in our logo, Integrity, Vigilance, and Helpfulness guide how we serve our clients, support our colleagues, and engage with our communities. Integrity We act with honesty, accountability, and professionalism in everything we do, and we foster a culture where transparency, respect, and ethical behavior are expected. Vigilance We stay alert, aware, and attentive to our surroundings. Through observing and reporting, our employees help identify potential risks and respond to situations that may impact safety and security. Helpfulness We are approachable and service-oriented, whether assisting a client, colleague, or member of the community. Securitas USA is committed to equal employment opportunity. All qualified applicants will receive consideration for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, pregnancy, genetic information, disability, status as a protected veteran, or any other applicable legally protected characteristic. Reasonable Accommodation: Securitas USA is committed to the full inclusion of all qualified individuals. In keeping with our commitment, Securitas USA will take steps to assure the people with disabilities are provided with reasonable accommodations. Accordingly, if reasonable accommodation is required to fully participate in the job application or interview process, to perform the essential functions of the position, and/or to receive all other benefits and privileges of employment, please contact .
Instructor of Digital Acquisition AFIT/LS - 1.2.26
Credence Dayton, Ohio
Job Description Job Description Overview Join a team where innovation meets mission. Our AI, cloud, cyber, and modernization solutions save agencies thousands of hours, safeguard national security, and strengthen health and humanitarian missions worldwide. With more than 1,700+ team members, 1,500+ AI & data experts, and 100+ prime contracts, we deliver on a scale and with purpose. We've been recognized as a Top Workplace by The Washington Post for six consecutive years and named to the Inc. 5000 list of Fastest-Growing Private Companies in 13 of the past 14 years. Credence is a welcoming environment for those looking to grow and make a meaningful impact. We encourage employees to push boundaries and help solve critical, world-changing federal challenges. Position Summary Credence has an immediate need for an Instructor of Digital Acquisition (Technical) who will be primarily responsible for supporting the School of Systems and Logistics (AFIT/LS) at Wright Patterson AFB, OH. AFIT/LS is the Air Force's sole provider of professional continuing education courses in the areas of acquisition, logistics, data, and software engineering. With more than 100 courses, workshops, and seminars, the school plans, develops, and conducts courses and programs to satisfy the educational needs of logistics, systems, and acquisition customers from the Air and Space Force, DoD, and other federal agencies. More than 20,000 students receive education from AFIT/LS each year. The school currently offers Air Force courses ranging in length from two days to five weeks in the disciplines of acquisition management, engineering management, data, and sustainment. AFIT/LS leverages technology to provide its courses, workshops, and seminars not only live in-person but virtually as well as web-based, combining technology with experts in the field. AFIT/LS provides the acquisition and logistics workforce with the knowledge, skills, and abilities to manage the entire spectrum of a system's life cycle. Responsibilities include, but are not limited to the duties listed below: Develop and administer Professional Continuing Education (PCE) to educate and train joint service active duty, reservist, National Guard, officers, enlisted personnel, and civilians on tactical, strategic, and operational levels of AF/DoD Digital Acquisitions. Interact with course sponsors, subject matter experts, and instructional systems designers to determine education needs and develop, maintain, and instruct course content appropriately. Ensure all curricula are approved by course leadership and designed to facilitate understanding and engagement in accordance with curriculum standards. Document course lectures, notes, presentations, and assignments to maintain continuity of the position and support knowledge transfer to a successor contractor or Government individual. Coordinate course offerings, document courses in accordance with Air Force and AFIT policies and conduct post-offering assessments. Instruct students across multiple approved educational platforms and settings, including traditional in-residence/on-site classrooms and distance learning services. Travel and instruct at different locations, both CONUS and OCONUS, as mission requires and as approved by the Government. Participate in consultation efforts and attend or participate in workshops, conferences, technical interchanges, or similar venues as approved by the Government on a case-by-case basis. Assist faculty and staff with graduate-level research, including literature reviews, data collection, technical writing, instruction, and other duties as required. Requirements Must be a U.S. citizen and able to obtain a Secret Security Clearance. This requirement is mandatory for consideration. Bachelor's degree in a STEM-related field and ten (10) years of experience in engineering or a related technical discipline, with at least three (3) years of applied systems engineering experience. Experience in digital engineering, model-based systems engineering, digital modeling, or a similar digital acquisition area is required. Experience with digital modeling languages and tools is required. Experience with Model-Based Systems Engineering (MBSE). Strong background in SysML, Cameo, and No Magic preferred. Knowledge of DAF, DoD, or USAF engineering policies, guides, and directives. Why This Role Matters Real-World Impact - Your work will support defense and health agencies where AI solutions directly contribute to national security and public well-being. Growth-Oriented Environment - Learn from technical leaders, innovate within Agentic AI, and mentor those around you in AI best practices. Culture of Empowerment - You'll be part of a team that values innovation, trust, collaboration, and mission success. Please join us, as together we build a better world one mission at a time powered by Technology and its People! Benefits Health Care Plan (Medical, Dental & Vision) Retirement Plan (401k, IRA) Life Insurance (Basic, Voluntary & AD&D) Paid Time Off (Vacation, Sick & Public Holidays) Family Leave (Maternity, Paternity) Short Term & Long Term Disability Training & Development
09/17/2026
Full time
Job Description Job Description Overview Join a team where innovation meets mission. Our AI, cloud, cyber, and modernization solutions save agencies thousands of hours, safeguard national security, and strengthen health and humanitarian missions worldwide. With more than 1,700+ team members, 1,500+ AI & data experts, and 100+ prime contracts, we deliver on a scale and with purpose. We've been recognized as a Top Workplace by The Washington Post for six consecutive years and named to the Inc. 5000 list of Fastest-Growing Private Companies in 13 of the past 14 years. Credence is a welcoming environment for those looking to grow and make a meaningful impact. We encourage employees to push boundaries and help solve critical, world-changing federal challenges. Position Summary Credence has an immediate need for an Instructor of Digital Acquisition (Technical) who will be primarily responsible for supporting the School of Systems and Logistics (AFIT/LS) at Wright Patterson AFB, OH. AFIT/LS is the Air Force's sole provider of professional continuing education courses in the areas of acquisition, logistics, data, and software engineering. With more than 100 courses, workshops, and seminars, the school plans, develops, and conducts courses and programs to satisfy the educational needs of logistics, systems, and acquisition customers from the Air and Space Force, DoD, and other federal agencies. More than 20,000 students receive education from AFIT/LS each year. The school currently offers Air Force courses ranging in length from two days to five weeks in the disciplines of acquisition management, engineering management, data, and sustainment. AFIT/LS leverages technology to provide its courses, workshops, and seminars not only live in-person but virtually as well as web-based, combining technology with experts in the field. AFIT/LS provides the acquisition and logistics workforce with the knowledge, skills, and abilities to manage the entire spectrum of a system's life cycle. Responsibilities include, but are not limited to the duties listed below: Develop and administer Professional Continuing Education (PCE) to educate and train joint service active duty, reservist, National Guard, officers, enlisted personnel, and civilians on tactical, strategic, and operational levels of AF/DoD Digital Acquisitions. Interact with course sponsors, subject matter experts, and instructional systems designers to determine education needs and develop, maintain, and instruct course content appropriately. Ensure all curricula are approved by course leadership and designed to facilitate understanding and engagement in accordance with curriculum standards. Document course lectures, notes, presentations, and assignments to maintain continuity of the position and support knowledge transfer to a successor contractor or Government individual. Coordinate course offerings, document courses in accordance with Air Force and AFIT policies and conduct post-offering assessments. Instruct students across multiple approved educational platforms and settings, including traditional in-residence/on-site classrooms and distance learning services. Travel and instruct at different locations, both CONUS and OCONUS, as mission requires and as approved by the Government. Participate in consultation efforts and attend or participate in workshops, conferences, technical interchanges, or similar venues as approved by the Government on a case-by-case basis. Assist faculty and staff with graduate-level research, including literature reviews, data collection, technical writing, instruction, and other duties as required. Requirements Must be a U.S. citizen and able to obtain a Secret Security Clearance. This requirement is mandatory for consideration. Bachelor's degree in a STEM-related field and ten (10) years of experience in engineering or a related technical discipline, with at least three (3) years of applied systems engineering experience. Experience in digital engineering, model-based systems engineering, digital modeling, or a similar digital acquisition area is required. Experience with digital modeling languages and tools is required. Experience with Model-Based Systems Engineering (MBSE). Strong background in SysML, Cameo, and No Magic preferred. Knowledge of DAF, DoD, or USAF engineering policies, guides, and directives. Why This Role Matters Real-World Impact - Your work will support defense and health agencies where AI solutions directly contribute to national security and public well-being. Growth-Oriented Environment - Learn from technical leaders, innovate within Agentic AI, and mentor those around you in AI best practices. Culture of Empowerment - You'll be part of a team that values innovation, trust, collaboration, and mission success. Please join us, as together we build a better world one mission at a time powered by Technology and its People! Benefits Health Care Plan (Medical, Dental & Vision) Retirement Plan (401k, IRA) Life Insurance (Basic, Voluntary & AD&D) Paid Time Off (Vacation, Sick & Public Holidays) Family Leave (Maternity, Paternity) Short Term & Long Term Disability Training & Development
SCA II - Security Control Assessor
Watermark Risk Management International Arlington, Virginia
Job Description Job Description Come make your mark with Watermark! FOUNDED BY USAF VETERANS in 2007, we are proud to be a Service-Disabled Veteran Owned Small Business. SUBJECT MATTER EXPERTS specializing in security and risk management. We're intimately familiar with DOD security programs and mission requirements. OUR CORE VALUES drive every action we take as a company. We strive to exhibit PERSPECTIVE, PASSION, COMMUNICATION, INTEGRITY AND ETHICS, and BALANCE in all we do. COMPETITIVE BENEFITS PACKAGE to address our employees' physical, mental, emotional, and financial well-being. This includes 100% employer- paid medical insurance, ample paid leave, a free employee assistance program, and a competitive 401k savings plan. At Watermark, our people come first! Security Control Assessor (SCA) II The SCA is responsible for conducting a comprehensive assessment of the management, operational, and technical security controls employed within or inherited by an IS to determine the overall effectiveness of the controls (i.e., the extent to which the controls are implemented correctly, operating as intended, and producing the desired outcome with respect to meeting the security requirements for the system). SCAs also provide an assessment of the severity of weaknesses or deficiencies discovered in the IS and its environment of operation and recommend corrective actions to address identified vulnerabilities. Responsibilities will cover Collateral, Sensitive Compartmented Information (SCI) and Special Access Program (SAP) activities within the customer's area of responsibility. In this role you will . Perform oversight of the development, implementation and evaluation of IS security program policy; special emphasis placed upon integration of existing SAP network infrastructure Perform assessment of ISs, based upon the Risk Management Framework (RMF) methodology in accordance with the Joint Special Access Program (SAP) Implementation Guide (JSIG) Advise the Information System Owner (ISO), Information Data Owner (IDO), Program Security Officer (PSO), and the Delegated and/or Authorizing Official (DAO/AO) on any assessment and authorization issues Evaluate Authorization packages and make recommendation to the AO and/or DAO for authorization Evaluate IS threats and vulnerabilities to determine whether additional safeguards are required Advise the Government concerning the impact levels for Confidentiality, Integrity, and Availability for the information on a system Ensure security assessments are completed and results documented and prepare the Security Assessment Report (SAR) for the Authorization boundary Initiate a Plan of Action and Milestones (POA&M) with identified weaknesses for each Authorization Boundaries assessed, based on findings and recommendations from the SAR Evaluate security assessment documentation and provide written recommendations for security authorization to the Government Discuss recommendation for authorization and submit the security authorization package to the AO/DAO Assess proposed changes to Authorization boundaries operating environment and mission needs to determine the continuation to operate. Review and concur with all sanitization and clearing procedures in accordance with Government guidance and/or policy Assist the Government compliance inspections Assist the Government with security incidents that relate to cybersecurity and ensure that the proper and corrective measures have been taken Ensure organization are addressing and conducting all phases of the system development life cycle (SDLC) Evaluate Hardware and Software to determine security impact that it might have on Authorization boundaries Evaluate the effectiveness and implementation of Continuous Monitoring Plans Represent the customer on inspection teams Additional duties as assigned Experience Requirements: 7-9 years related experience Minimum of four (4) years' experience in SAP, SCI or Collateral Information Systems (IS) Security and the implementation of regulations identified in the description of duties. Prior performance in the role of ISSO and ISSM or SCA Education Requirements: Bachelor's degree in a related area OR Associate's degree in a related area + 2 years' experience OR equivalent experience (4 years) Certification Requirements: Must meet position and certification requirements outlined in DoD Directive 8570.01-M for Information Assurance Technician Level III or Information Assurance Manager Level II within 6 months of the date of hire Security Clearance Requirements: Active TS/SCI clearance Eligibility for access to Special Access Program Information Willingness to submit to a Counterintelligence polygraph Other Requirements: Must be able to regularly lift up to 50 lbs. May require sedentary work at least 50% of the time Reports to a physical location which occasionally requires the ability to traverse between buildings Ability to manage stress with a high degree of maturity/professionalism Demonstrated critical thinking and leadership skills and the ability to work well with others Effective verbal and written communication skills All Level I & Level II positions - candidate should possess some Special Access Program (SAP) experience All Level III positions -candidate should possess 2+ years of Special Access Program (SAP) experience Watermark provides salary ranges with job postings in states where it is legally required; any other salary ranges associated with our postings are third party estimates and may not be an accurate reflection of Watermark's total compensation package. Multiple considerations are taken into account when determining the final salary/hourly rate, including but not limited to, Contract Wage Determination, education and certifications, relevant work experience, related skills and competencies, as well as Federal Government Contract Labor Categories. Central to Watermark's employment philosophy is the wellbeing of our employees which is why we offer a robust benefits package and wellness program alongside of annual base compensation. Watermark is an equal opportunity employer. All terms and conditions of employment are established without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, pregnancy, genetic information, disability, veteran status, or any other protected category under applicable federal, state, and local laws. Powered by JazzHR Ulb7SEozj9
09/16/2026
Full time
Job Description Job Description Come make your mark with Watermark! FOUNDED BY USAF VETERANS in 2007, we are proud to be a Service-Disabled Veteran Owned Small Business. SUBJECT MATTER EXPERTS specializing in security and risk management. We're intimately familiar with DOD security programs and mission requirements. OUR CORE VALUES drive every action we take as a company. We strive to exhibit PERSPECTIVE, PASSION, COMMUNICATION, INTEGRITY AND ETHICS, and BALANCE in all we do. COMPETITIVE BENEFITS PACKAGE to address our employees' physical, mental, emotional, and financial well-being. This includes 100% employer- paid medical insurance, ample paid leave, a free employee assistance program, and a competitive 401k savings plan. At Watermark, our people come first! Security Control Assessor (SCA) II The SCA is responsible for conducting a comprehensive assessment of the management, operational, and technical security controls employed within or inherited by an IS to determine the overall effectiveness of the controls (i.e., the extent to which the controls are implemented correctly, operating as intended, and producing the desired outcome with respect to meeting the security requirements for the system). SCAs also provide an assessment of the severity of weaknesses or deficiencies discovered in the IS and its environment of operation and recommend corrective actions to address identified vulnerabilities. Responsibilities will cover Collateral, Sensitive Compartmented Information (SCI) and Special Access Program (SAP) activities within the customer's area of responsibility. In this role you will . Perform oversight of the development, implementation and evaluation of IS security program policy; special emphasis placed upon integration of existing SAP network infrastructure Perform assessment of ISs, based upon the Risk Management Framework (RMF) methodology in accordance with the Joint Special Access Program (SAP) Implementation Guide (JSIG) Advise the Information System Owner (ISO), Information Data Owner (IDO), Program Security Officer (PSO), and the Delegated and/or Authorizing Official (DAO/AO) on any assessment and authorization issues Evaluate Authorization packages and make recommendation to the AO and/or DAO for authorization Evaluate IS threats and vulnerabilities to determine whether additional safeguards are required Advise the Government concerning the impact levels for Confidentiality, Integrity, and Availability for the information on a system Ensure security assessments are completed and results documented and prepare the Security Assessment Report (SAR) for the Authorization boundary Initiate a Plan of Action and Milestones (POA&M) with identified weaknesses for each Authorization Boundaries assessed, based on findings and recommendations from the SAR Evaluate security assessment documentation and provide written recommendations for security authorization to the Government Discuss recommendation for authorization and submit the security authorization package to the AO/DAO Assess proposed changes to Authorization boundaries operating environment and mission needs to determine the continuation to operate. Review and concur with all sanitization and clearing procedures in accordance with Government guidance and/or policy Assist the Government compliance inspections Assist the Government with security incidents that relate to cybersecurity and ensure that the proper and corrective measures have been taken Ensure organization are addressing and conducting all phases of the system development life cycle (SDLC) Evaluate Hardware and Software to determine security impact that it might have on Authorization boundaries Evaluate the effectiveness and implementation of Continuous Monitoring Plans Represent the customer on inspection teams Additional duties as assigned Experience Requirements: 7-9 years related experience Minimum of four (4) years' experience in SAP, SCI or Collateral Information Systems (IS) Security and the implementation of regulations identified in the description of duties. Prior performance in the role of ISSO and ISSM or SCA Education Requirements: Bachelor's degree in a related area OR Associate's degree in a related area + 2 years' experience OR equivalent experience (4 years) Certification Requirements: Must meet position and certification requirements outlined in DoD Directive 8570.01-M for Information Assurance Technician Level III or Information Assurance Manager Level II within 6 months of the date of hire Security Clearance Requirements: Active TS/SCI clearance Eligibility for access to Special Access Program Information Willingness to submit to a Counterintelligence polygraph Other Requirements: Must be able to regularly lift up to 50 lbs. May require sedentary work at least 50% of the time Reports to a physical location which occasionally requires the ability to traverse between buildings Ability to manage stress with a high degree of maturity/professionalism Demonstrated critical thinking and leadership skills and the ability to work well with others Effective verbal and written communication skills All Level I & Level II positions - candidate should possess some Special Access Program (SAP) experience All Level III positions -candidate should possess 2+ years of Special Access Program (SAP) experience Watermark provides salary ranges with job postings in states where it is legally required; any other salary ranges associated with our postings are third party estimates and may not be an accurate reflection of Watermark's total compensation package. Multiple considerations are taken into account when determining the final salary/hourly rate, including but not limited to, Contract Wage Determination, education and certifications, relevant work experience, related skills and competencies, as well as Federal Government Contract Labor Categories. Central to Watermark's employment philosophy is the wellbeing of our employees which is why we offer a robust benefits package and wellness program alongside of annual base compensation. Watermark is an equal opportunity employer. All terms and conditions of employment are established without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, pregnancy, genetic information, disability, veteran status, or any other protected category under applicable federal, state, and local laws. Powered by JazzHR Ulb7SEozj9
Information Systems Security Officer (ISSO) with DoD Clearance
VETS, Inc Scott Air Force Base, Illinois
VETS, Inc., is looking to add a mid-level (3-5 years experience) Information Systems Security Officer (ISSO) to our growing team. This is a full-time, permanent position with full benefits located at Scott AFB. Due to contractual requirements, this position required US Citizenship and a current/active DoD Clearance. The successful candidate will: Own the day-to-day security authorization posture of assigned DoD information systems Work within a well-resourced team with dedicated engineering, operations, and architecture support Develop expertise in modern RMF tooling including eMASS and eMASSer automation Directly support mission continuity by managing ATO packages and continuous monitoring programs Grow into a senior GRC role with clear advancement pathways Responsibilities Develop, maintain, and update System Security Plans (SSPs) for assigned systems Manage POA&Ms from identification through remediation and closure Compile and submit Authorization to Operate (ATO) packages Conduct continuous monitoring activities per established strategy Utilize eMASS for GRC management and RMF workflow tracking Coordinate with ISSEs and SecOps to validate control implementations Develop Security Assessment Plans (SAPs) and support SAR coordination Draft supply chain risk management plans Support the Cybersecurity Architect with RMF strategic planning Required: Active Secret or TS clearance 35 years of RMF/ATO experience within DoD or federal environments Hands-on experience with eMASS Working knowledge of NIST SP 800-53r5 and DoD RMF processes Demonstrated ability to independently author SSPs and manage POA&Ms DoD 8140.03M DCWF Basic tier certification CEH DoD 8140 Interim Education Options Desired DoD 8140.03M DCWF Intermediate tier certification one of: CEH(P), RCCE Level 1, Cloud+, CPTE, FITSP-A, GCED, GCIH, GCSA, GICSP, GSEC, PenTest+, or Security+ Degree in Computer Science, Cybersecurity, Data Science, Information Systems, Information Technology, or Software Engineering Experience with eMASSer or similar RMF automation tooling Exposure to cloud-hosted or hybrid system authorization boundaries Familiarity with the DoD RMF Knowledge Service
09/16/2026
VETS, Inc., is looking to add a mid-level (3-5 years experience) Information Systems Security Officer (ISSO) to our growing team. This is a full-time, permanent position with full benefits located at Scott AFB. Due to contractual requirements, this position required US Citizenship and a current/active DoD Clearance. The successful candidate will: Own the day-to-day security authorization posture of assigned DoD information systems Work within a well-resourced team with dedicated engineering, operations, and architecture support Develop expertise in modern RMF tooling including eMASS and eMASSer automation Directly support mission continuity by managing ATO packages and continuous monitoring programs Grow into a senior GRC role with clear advancement pathways Responsibilities Develop, maintain, and update System Security Plans (SSPs) for assigned systems Manage POA&Ms from identification through remediation and closure Compile and submit Authorization to Operate (ATO) packages Conduct continuous monitoring activities per established strategy Utilize eMASS for GRC management and RMF workflow tracking Coordinate with ISSEs and SecOps to validate control implementations Develop Security Assessment Plans (SAPs) and support SAR coordination Draft supply chain risk management plans Support the Cybersecurity Architect with RMF strategic planning Required: Active Secret or TS clearance 35 years of RMF/ATO experience within DoD or federal environments Hands-on experience with eMASS Working knowledge of NIST SP 800-53r5 and DoD RMF processes Demonstrated ability to independently author SSPs and manage POA&Ms DoD 8140.03M DCWF Basic tier certification CEH DoD 8140 Interim Education Options Desired DoD 8140.03M DCWF Intermediate tier certification one of: CEH(P), RCCE Level 1, Cloud+, CPTE, FITSP-A, GCED, GCIH, GCSA, GICSP, GSEC, PenTest+, or Security+ Degree in Computer Science, Cybersecurity, Data Science, Information Systems, Information Technology, or Software Engineering Experience with eMASSer or similar RMF automation tooling Exposure to cloud-hosted or hybrid system authorization boundaries Familiarity with the DoD RMF Knowledge Service
SENIOR Operations Research Analyst OR OA
Heartland Consulting Kings Bay, Georgia
Job Description Job Description NOW HIRING ON-SITE FULL TIMESenior Operations Research AnalystNavy Warfighting Analysis Theater Undersea Warfare Norfolk, VALocationClearanceScheduleTravelNSA Hampton Roads / Naval Station Norfolk (on-site)Active Top Secret / SCI required at startFull-timeNone requiredAbout the RoleHeartland Consulting is hiring a Senior Operations Research Analyst to sit on-site with Commander, Submarine Group Two (COMSUBGRU TWO) in its role as Theater Undersea Warfare Commander (TUSWC) for U.S. Second Fleet. The analyst is the command's embedded OA/OR capability - the person who finds where analysis can improve TUSWC planning, builds the methods, trains the staff to use them, and leaves behind documented processes the watch floor can run without the contractor in the room.This is not a remote study contract and not a generic "data analyst" seat. You will work in a classified Navy staff environment, handle operational data, brief seniors (including flag-level audiences), and institutionalize operations-analysis methods for maritime homeland defense and theater undersea warfare.Heartland is the incumbent on this effort. The current analyst is in the seat today. We are recruiting the successor now so the command has a clean, qualified handoff and no gap in on-site support.What You Will DoProvide on-site operations analysis / operations research support to the TUSWC staff at COMSUBGRU TWO.Identify opportunities to insert OA/OR into the TUSWC planning process and improve operational effectiveness.Collect, clean, manage, and employ operational datasets for trend analysis and predictive analytics.Formulate and solve optimization problems (linear, nonlinear, network, and integer programming) that inform planning choices.Build and use stochastic models (Markov chains, Poisson processes, queueing, renewal processes) and simulation with design-of-experiments techniques.Apply systems analysis, including risk-benefit and cost-benefit analysis, to deployment, requirements, and course-of-action questions.Employ OA/OR tools in live TUSWC planning and operations - not only after-action studies.Develop and document methods, processes, and procedures the TUSWC staff can implement.Train TUSWC staff on those methods and leave behind usable SOPs, briefs, and implementation products.Liaise with other TUSWC staffs, OA/OR subject-matter experts, and tool developers.Deliver the contract products: OA/OR Support Plan Brief (30 days after award), monthly progress and financial status reports, interim progress reviews, a final annotated brief, and a Final OA/OR Implementation Plan.Brief results independently, in writing and orally, including annotated PowerPoint for senior leadership with read-aheads.Required QualificationsThese are the contract minimums. Candidates who do not meet them cannot be placed on this task.Education: Bachelor's degree in Operations Research or Operations Analysis. (The contract is specific - related degrees such as mathematics, statistics, or engineering do not substitute for this requirement.)Preferred: Master of Science in Operations Research or Operations Analysis (NPS Curriculum 360 / 355 or civilian equivalent).Experience: Ten (10) years applying operations research / operations analysis to Navy warfighting analysis.Demonstrated skill in mathematics and computation, including programming for complex analysis, algorithm development, and simulation.Demonstrated skill in data preparation (collect, clean, manipulate) and statistical / probability analysis of decision problems.Demonstrated skill in optimization, stochastic modeling, simulation with design of experiments, and systems analysis.Proven ability to conduct independent analysis and present results orally and in writing to operational customers.Clearance: Active Top Secret / SCI. U.S. citizenship required. Ability to obtain NATO briefings after hire. Must be eligible for a DISS Visit Access Request to COMSUBGRU TWO.Ability to work full-time on-site at NSA Hampton Roads / Naval Station Norfolk (Building NH-13 / TUSWC spaces). No remote option for this seat.Desired QualificationsNavy 3211P / 3211Q operations-analysis subspecialty, or equivalent civilian utilization tour at a Fleet, TYCOM, numbered-fleet, OPNAV N81, UWDC Tactical Analysis Group, CNA field, NUWC, or TUSWC staff.Direct undersea warfare, theater ASW, maritime homeland defense, or submarine-force staff experience.Prior on-site embed at a Navy operational staff (not only laboratory or headquarters studies).Experience training operators or staff officers on analytic methods and leaving durable process documentation.Familiarity with SIPRNet collaboration, OPSEC, and handling of classified / CUI / PPBE data.Tools such as Python, R, MATLAB, Julia, or equivalent; optimization solvers; discrete-event or combat simulation; and standard Navy briefing products.Experience briefing O-6 / flag / SES audiences.Work EnvironmentPrimary workplace: COMSUBGRU TWO, 1430 Mitscher Avenue, Norfolk, VA 23551 (NSA Hampton Roads).Classification: work up to TOP SECRET / SCI; incidental TS/SCI research into models; meetings at TS/SCI; NATO information access.Government intends to provide NIPR and SIPR access on site. Contractor provides personal analytic tools unless otherwise furnished.Travel is not part of this task. Other direct costs are not authorized.Analysis, methods, algorithms, code, and data developed on contract become U.S. Government property.Compensation and BenefitsFinal Compensation is based on Education and Experience.Compensation is competitive for a TS/SCI, on-site Navy warfighting OR seat in Hampton Roads and is commensurate with education, clearance, and directly relevant experience. Heartland typically provides:Health, dental, and vision insurance401(k) with company matchPaid time off and paid federal holidaysSupport for professional affiliations (MORS, INFORMS) when mission allowsFinal offer depends on qualifications, clearance currency, and start-date availability. Target start is aligned to contract award / 29 September 2026, with an earlier overlap preferred so the outgoing analyst can conduct a structured turnover.How to ApplyApply HERE to this job posting, orEmail a résumé (PDF) and a one-page letter that maps your education and ten-year Navy-warfighting OR experience to the required skill list above. State clearance level, investigation date or last PR date if known, and earliest start date.Apply: line: Senior OR Analyst - COMSUBGRU TWO TUSWC - Last Name Website: citizens only. Heartland Consulting is a Veteran-Owned Small Business and an Equal Opportunity Employer. We do not discriminate on the basis of race, color, religion, sex, national origin, age, disability, veteran status, or any other protected status. This position requires an active U.S. security clearance; clearance eligibility is a bona fide occupational qualification.
09/16/2026
Full time
Job Description Job Description NOW HIRING ON-SITE FULL TIMESenior Operations Research AnalystNavy Warfighting Analysis Theater Undersea Warfare Norfolk, VALocationClearanceScheduleTravelNSA Hampton Roads / Naval Station Norfolk (on-site)Active Top Secret / SCI required at startFull-timeNone requiredAbout the RoleHeartland Consulting is hiring a Senior Operations Research Analyst to sit on-site with Commander, Submarine Group Two (COMSUBGRU TWO) in its role as Theater Undersea Warfare Commander (TUSWC) for U.S. Second Fleet. The analyst is the command's embedded OA/OR capability - the person who finds where analysis can improve TUSWC planning, builds the methods, trains the staff to use them, and leaves behind documented processes the watch floor can run without the contractor in the room.This is not a remote study contract and not a generic "data analyst" seat. You will work in a classified Navy staff environment, handle operational data, brief seniors (including flag-level audiences), and institutionalize operations-analysis methods for maritime homeland defense and theater undersea warfare.Heartland is the incumbent on this effort. The current analyst is in the seat today. We are recruiting the successor now so the command has a clean, qualified handoff and no gap in on-site support.What You Will DoProvide on-site operations analysis / operations research support to the TUSWC staff at COMSUBGRU TWO.Identify opportunities to insert OA/OR into the TUSWC planning process and improve operational effectiveness.Collect, clean, manage, and employ operational datasets for trend analysis and predictive analytics.Formulate and solve optimization problems (linear, nonlinear, network, and integer programming) that inform planning choices.Build and use stochastic models (Markov chains, Poisson processes, queueing, renewal processes) and simulation with design-of-experiments techniques.Apply systems analysis, including risk-benefit and cost-benefit analysis, to deployment, requirements, and course-of-action questions.Employ OA/OR tools in live TUSWC planning and operations - not only after-action studies.Develop and document methods, processes, and procedures the TUSWC staff can implement.Train TUSWC staff on those methods and leave behind usable SOPs, briefs, and implementation products.Liaise with other TUSWC staffs, OA/OR subject-matter experts, and tool developers.Deliver the contract products: OA/OR Support Plan Brief (30 days after award), monthly progress and financial status reports, interim progress reviews, a final annotated brief, and a Final OA/OR Implementation Plan.Brief results independently, in writing and orally, including annotated PowerPoint for senior leadership with read-aheads.Required QualificationsThese are the contract minimums. Candidates who do not meet them cannot be placed on this task.Education: Bachelor's degree in Operations Research or Operations Analysis. (The contract is specific - related degrees such as mathematics, statistics, or engineering do not substitute for this requirement.)Preferred: Master of Science in Operations Research or Operations Analysis (NPS Curriculum 360 / 355 or civilian equivalent).Experience: Ten (10) years applying operations research / operations analysis to Navy warfighting analysis.Demonstrated skill in mathematics and computation, including programming for complex analysis, algorithm development, and simulation.Demonstrated skill in data preparation (collect, clean, manipulate) and statistical / probability analysis of decision problems.Demonstrated skill in optimization, stochastic modeling, simulation with design of experiments, and systems analysis.Proven ability to conduct independent analysis and present results orally and in writing to operational customers.Clearance: Active Top Secret / SCI. U.S. citizenship required. Ability to obtain NATO briefings after hire. Must be eligible for a DISS Visit Access Request to COMSUBGRU TWO.Ability to work full-time on-site at NSA Hampton Roads / Naval Station Norfolk (Building NH-13 / TUSWC spaces). No remote option for this seat.Desired QualificationsNavy 3211P / 3211Q operations-analysis subspecialty, or equivalent civilian utilization tour at a Fleet, TYCOM, numbered-fleet, OPNAV N81, UWDC Tactical Analysis Group, CNA field, NUWC, or TUSWC staff.Direct undersea warfare, theater ASW, maritime homeland defense, or submarine-force staff experience.Prior on-site embed at a Navy operational staff (not only laboratory or headquarters studies).Experience training operators or staff officers on analytic methods and leaving durable process documentation.Familiarity with SIPRNet collaboration, OPSEC, and handling of classified / CUI / PPBE data.Tools such as Python, R, MATLAB, Julia, or equivalent; optimization solvers; discrete-event or combat simulation; and standard Navy briefing products.Experience briefing O-6 / flag / SES audiences.Work EnvironmentPrimary workplace: COMSUBGRU TWO, 1430 Mitscher Avenue, Norfolk, VA 23551 (NSA Hampton Roads).Classification: work up to TOP SECRET / SCI; incidental TS/SCI research into models; meetings at TS/SCI; NATO information access.Government intends to provide NIPR and SIPR access on site. Contractor provides personal analytic tools unless otherwise furnished.Travel is not part of this task. Other direct costs are not authorized.Analysis, methods, algorithms, code, and data developed on contract become U.S. Government property.Compensation and BenefitsFinal Compensation is based on Education and Experience.Compensation is competitive for a TS/SCI, on-site Navy warfighting OR seat in Hampton Roads and is commensurate with education, clearance, and directly relevant experience. Heartland typically provides:Health, dental, and vision insurance401(k) with company matchPaid time off and paid federal holidaysSupport for professional affiliations (MORS, INFORMS) when mission allowsFinal offer depends on qualifications, clearance currency, and start-date availability. Target start is aligned to contract award / 29 September 2026, with an earlier overlap preferred so the outgoing analyst can conduct a structured turnover.How to ApplyApply HERE to this job posting, orEmail a résumé (PDF) and a one-page letter that maps your education and ten-year Navy-warfighting OR experience to the required skill list above. State clearance level, investigation date or last PR date if known, and earliest start date.Apply: line: Senior OR Analyst - COMSUBGRU TWO TUSWC - Last Name Website: citizens only. Heartland Consulting is a Veteran-Owned Small Business and an Equal Opportunity Employer. We do not discriminate on the basis of race, color, religion, sex, national origin, age, disability, veteran status, or any other protected status. This position requires an active U.S. security clearance; clearance eligibility is a bona fide occupational qualification.
Corporate Operations Analyst
KMS Solutions, LLC Washington, Washington DC
Job Description Job Description Corporate Operations Analyst - TSUB PMS 396 Company Overview: KMS Solutions, LLC is a technical management / solutions company that specializes in engineering, analysis, and cyber security. Founded in 2005, KMS is a certified small business with nearly two decades of experience supporting the Department of Defense as well as many other departments and programs critical to our Nation's security and well-being. KMS is a three-time winner of the USA Today Top Workplaces recognizing quality workplace cultures across the United States who put their employees first. Additionally, KMS has won multiple regional Top Workplaces awards and Culture Excellence Awards for Compensation & Benefits, Innovation, Leadership, Purpose & Values and Work-Life Flexibility. Position Summary KMS Solutions, LLC is seeking a highly motivated individual to serve as a Corporate Operations Analyst for In-Service Strategic Submarines Program Office (PMS 396). This role supports a Department of the Navy (DoN) program office to ensure the acquisition, sustainment, and operability of all in-service strategic submarines, currently the Ohio Class submarines and soon Columbia Class submarines. This position supports PMS 396 which is part of Direct Reporting Portfolio Manager, Submarines (DRPM), and Team Submarine (TSUB). Essential Functions Reasonable accommodations may be made to enable individuals with disabilities to perform essential functions. Develop, implement, and maintain standardized operating procedures (SOPs) to ensure consistent, compliant, and efficient execution of corporate and program level processes. Manage ETMS2 taskers from receipt to closure, ensuring timely coordination, stakeholder engagement, and accurate, high quality submissions that meet leadership intent. Draft, route, and maintain Memorandums of Agreement (MOAs) and Memorandums of Understanding (MOUs), ensuring alignment with organizational objectives and proper configuration control. Coordinate and process awards, letters of appreciation, and recognition packages, ensuring accuracy, timeliness, and adherence to organizational criteria and approval workflows. Oversee onboarding and offboarding processes for personnel, ensuring seamless transitions by coordinating accounts, accesses, equipment, workspace setup, and compliance documentation. Serve as administrator for SharePoint and Microsoft Teams environments, managing permissions, site structure, content organization, and collaboration tools to support operational efficiency. Maintain corporate level documentation libraries, dashboards, and workflows to improve visibility, reporting, and decision making for leadership. Identify process gaps and drive continuous improvement initiatives that enhance operational performance, communication, and cross team coordination. Lead development and delivery of programmatic communications to internal and external stakeholders, ensuring consistent, accurate, and strategically aligned messaging. Coordinate and execute messaging strategies supporting the OHIO to COLUMBIA transition, including strategic communications, stakeholder engagement, and alignment with broader Navy narrative objectives. Synthesize and contextualize complex data sets from multiple technical and programmatic sources, transforming them into executive level products tailored for Flag officers and SES leadership. Manage high visibility fleet issues by coordinating inputs, shaping messaging, and delivering clear, authoritative communication products for senior leaders and operational stakeholders. Required Education and Experience 10+ years in related positions. 7+ years working with the Department of Defense. Experience briefing senior military and government leadership (Admirals/Generals/SES). Bachelor's degree. Experience may be qualifying in lieu of a degree. Preferred Education and Experience Experience with Team Submarine (TSUB), Naval Sea Systems Command (NAVSEA), OPNAV N97, Strategic Systems Program (SSP), submarine operational leadership, and other key stakeholders. Experience with Acquisition Category (ACAT) 1 programs. Experience working with submarines in any manner, especially Ohio or Columbia class submarines. Competencies Strong written and oral communications. Very proficient with Microsoft Office Suite (Outlook, PowerPoint, Word, Excel, SharePoint) Additional Eligibility Requirements (if applicable) None Work Authorization/Security Clearance Requirement Secret Clearance is required This position requires the ability to obtain and/or maintain a DoD Security Clearance. Security clearances may only be granted to U.S. citizens. Legally authorized to work in the United States at the time of hire and throughout employment. Other Duties: Please note this job posting is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities, and activities may change at any time with or without notice. Supervisory Responsibility: None Work Environment: This job operates in a professional office environment. This role routinely uses standard office equipment such as computers, phones, and photocopiers. Physical Demands: The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. While performing the duties of this job, the employee is regularly required to talk or hear. Excellent listening skills are essential. The employee frequently is required to stand, walk, use hands to finger, handle or feel, and reach with hands and arms. Must be able to lift up to 20 lbs. Position Type/Expected Hours of Work: The typical workday is eight hours in length, normal hours are 7:30 AM-3:30PM. Some flexibility in hours is allowed, with concurrence from the supervisor. The employee must be available during the "core" work hours of 9:00 a.m. to 3:00 p.m. and must account for the hours in a pay period to maintain full-time status. Telework: Telework may be allowed up to 20% Subject to change based on business needs and customer requirements. Travel: Ability to travel CONUS; potential to travel OCONUS. Travel up to 25% may be required. Benefits and Additional Compensation: KMS offers a competitive benefits packaging including medical, dental and vision insurances, flexible spending account, PTO, paid holidays, military leave, bereavement leave, 401k / retirement savings plan, professional development and tuition reimbursement, basic and voluntary life insurance / AD&D, short-term and long-term disability, voluntary AFLAC supplemental insurance products and employee assistance plan (EAP) program. Additionally, KMS offers employee referral bonuses and a discretionary annual bonus. AAP/EEO Statement: KMS Solutions is an Equal Employment Opportunity Employer and maintains an Affirmative Action Program. We recruit, employ, train, compensate, and promote qualified individuals without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, protected veteran status, age, genetic information, or any other protected status under applicable federal, state, or local laws. Applicants or employees needing reasonable accommodation during the application or interview process should contact Human Resources. KMS Solutions is a drug free workplace.
09/16/2026
Full time
Job Description Job Description Corporate Operations Analyst - TSUB PMS 396 Company Overview: KMS Solutions, LLC is a technical management / solutions company that specializes in engineering, analysis, and cyber security. Founded in 2005, KMS is a certified small business with nearly two decades of experience supporting the Department of Defense as well as many other departments and programs critical to our Nation's security and well-being. KMS is a three-time winner of the USA Today Top Workplaces recognizing quality workplace cultures across the United States who put their employees first. Additionally, KMS has won multiple regional Top Workplaces awards and Culture Excellence Awards for Compensation & Benefits, Innovation, Leadership, Purpose & Values and Work-Life Flexibility. Position Summary KMS Solutions, LLC is seeking a highly motivated individual to serve as a Corporate Operations Analyst for In-Service Strategic Submarines Program Office (PMS 396). This role supports a Department of the Navy (DoN) program office to ensure the acquisition, sustainment, and operability of all in-service strategic submarines, currently the Ohio Class submarines and soon Columbia Class submarines. This position supports PMS 396 which is part of Direct Reporting Portfolio Manager, Submarines (DRPM), and Team Submarine (TSUB). Essential Functions Reasonable accommodations may be made to enable individuals with disabilities to perform essential functions. Develop, implement, and maintain standardized operating procedures (SOPs) to ensure consistent, compliant, and efficient execution of corporate and program level processes. Manage ETMS2 taskers from receipt to closure, ensuring timely coordination, stakeholder engagement, and accurate, high quality submissions that meet leadership intent. Draft, route, and maintain Memorandums of Agreement (MOAs) and Memorandums of Understanding (MOUs), ensuring alignment with organizational objectives and proper configuration control. Coordinate and process awards, letters of appreciation, and recognition packages, ensuring accuracy, timeliness, and adherence to organizational criteria and approval workflows. Oversee onboarding and offboarding processes for personnel, ensuring seamless transitions by coordinating accounts, accesses, equipment, workspace setup, and compliance documentation. Serve as administrator for SharePoint and Microsoft Teams environments, managing permissions, site structure, content organization, and collaboration tools to support operational efficiency. Maintain corporate level documentation libraries, dashboards, and workflows to improve visibility, reporting, and decision making for leadership. Identify process gaps and drive continuous improvement initiatives that enhance operational performance, communication, and cross team coordination. Lead development and delivery of programmatic communications to internal and external stakeholders, ensuring consistent, accurate, and strategically aligned messaging. Coordinate and execute messaging strategies supporting the OHIO to COLUMBIA transition, including strategic communications, stakeholder engagement, and alignment with broader Navy narrative objectives. Synthesize and contextualize complex data sets from multiple technical and programmatic sources, transforming them into executive level products tailored for Flag officers and SES leadership. Manage high visibility fleet issues by coordinating inputs, shaping messaging, and delivering clear, authoritative communication products for senior leaders and operational stakeholders. Required Education and Experience 10+ years in related positions. 7+ years working with the Department of Defense. Experience briefing senior military and government leadership (Admirals/Generals/SES). Bachelor's degree. Experience may be qualifying in lieu of a degree. Preferred Education and Experience Experience with Team Submarine (TSUB), Naval Sea Systems Command (NAVSEA), OPNAV N97, Strategic Systems Program (SSP), submarine operational leadership, and other key stakeholders. Experience with Acquisition Category (ACAT) 1 programs. Experience working with submarines in any manner, especially Ohio or Columbia class submarines. Competencies Strong written and oral communications. Very proficient with Microsoft Office Suite (Outlook, PowerPoint, Word, Excel, SharePoint) Additional Eligibility Requirements (if applicable) None Work Authorization/Security Clearance Requirement Secret Clearance is required This position requires the ability to obtain and/or maintain a DoD Security Clearance. Security clearances may only be granted to U.S. citizens. Legally authorized to work in the United States at the time of hire and throughout employment. Other Duties: Please note this job posting is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities, and activities may change at any time with or without notice. Supervisory Responsibility: None Work Environment: This job operates in a professional office environment. This role routinely uses standard office equipment such as computers, phones, and photocopiers. Physical Demands: The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. While performing the duties of this job, the employee is regularly required to talk or hear. Excellent listening skills are essential. The employee frequently is required to stand, walk, use hands to finger, handle or feel, and reach with hands and arms. Must be able to lift up to 20 lbs. Position Type/Expected Hours of Work: The typical workday is eight hours in length, normal hours are 7:30 AM-3:30PM. Some flexibility in hours is allowed, with concurrence from the supervisor. The employee must be available during the "core" work hours of 9:00 a.m. to 3:00 p.m. and must account for the hours in a pay period to maintain full-time status. Telework: Telework may be allowed up to 20% Subject to change based on business needs and customer requirements. Travel: Ability to travel CONUS; potential to travel OCONUS. Travel up to 25% may be required. Benefits and Additional Compensation: KMS offers a competitive benefits packaging including medical, dental and vision insurances, flexible spending account, PTO, paid holidays, military leave, bereavement leave, 401k / retirement savings plan, professional development and tuition reimbursement, basic and voluntary life insurance / AD&D, short-term and long-term disability, voluntary AFLAC supplemental insurance products and employee assistance plan (EAP) program. Additionally, KMS offers employee referral bonuses and a discretionary annual bonus. AAP/EEO Statement: KMS Solutions is an Equal Employment Opportunity Employer and maintains an Affirmative Action Program. We recruit, employ, train, compensate, and promote qualified individuals without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, protected veteran status, age, genetic information, or any other protected status under applicable federal, state, or local laws. Applicants or employees needing reasonable accommodation during the application or interview process should contact Human Resources. KMS Solutions is a drug free workplace.
SENIOR Operations Research Analyst OR OA
Heartland Consulting Norfolk, Virginia
Job Description Job Description NOW HIRING ON-SITE FULL TIMESenior Operations Research AnalystNavy Warfighting Analysis Theater Undersea Warfare Norfolk, VALocationClearanceScheduleTravelNSA Hampton Roads / Naval Station Norfolk (on-site)Active Top Secret / SCI required at startFull-timeNone requiredAbout the RoleHeartland Consulting is hiring a Senior Operations Research Analyst to sit on-site with Commander, Submarine Group Two (COMSUBGRU TWO) in its role as Theater Undersea Warfare Commander (TUSWC) for U.S. Second Fleet. The analyst is the command's embedded OA/OR capability - the person who finds where analysis can improve TUSWC planning, builds the methods, trains the staff to use them, and leaves behind documented processes the watch floor can run without the contractor in the room.This is not a remote study contract and not a generic "data analyst" seat. You will work in a classified Navy staff environment, handle operational data, brief seniors (including flag-level audiences), and institutionalize operations-analysis methods for maritime homeland defense and theater undersea warfare.Heartland is the incumbent on this effort. The current analyst is in the seat today. We are recruiting the successor now so the command has a clean, qualified handoff and no gap in on-site support.What You Will DoProvide on-site operations analysis / operations research support to the TUSWC staff at COMSUBGRU TWO.Identify opportunities to insert OA/OR into the TUSWC planning process and improve operational effectiveness.Collect, clean, manage, and employ operational datasets for trend analysis and predictive analytics.Formulate and solve optimization problems (linear, nonlinear, network, and integer programming) that inform planning choices.Build and use stochastic models (Markov chains, Poisson processes, queueing, renewal processes) and simulation with design-of-experiments techniques.Apply systems analysis, including risk-benefit and cost-benefit analysis, to deployment, requirements, and course-of-action questions.Employ OA/OR tools in live TUSWC planning and operations - not only after-action studies.Develop and document methods, processes, and procedures the TUSWC staff can implement.Train TUSWC staff on those methods and leave behind usable SOPs, briefs, and implementation products.Liaise with other TUSWC staffs, OA/OR subject-matter experts, and tool developers.Deliver the contract products: OA/OR Support Plan Brief (30 days after award), monthly progress and financial status reports, interim progress reviews, a final annotated brief, and a Final OA/OR Implementation Plan.Brief results independently, in writing and orally, including annotated PowerPoint for senior leadership with read-aheads.Required QualificationsThese are the contract minimums. Candidates who do not meet them cannot be placed on this task.Education: Bachelor's degree in Operations Research or Operations Analysis. (The contract is specific - related degrees such as mathematics, statistics, or engineering do not substitute for this requirement.)Preferred: Master of Science in Operations Research or Operations Analysis (NPS Curriculum 360 / 355 or civilian equivalent).Experience: Ten (10) years applying operations research / operations analysis to Navy warfighting analysis.Demonstrated skill in mathematics and computation, including programming for complex analysis, algorithm development, and simulation.Demonstrated skill in data preparation (collect, clean, manipulate) and statistical / probability analysis of decision problems.Demonstrated skill in optimization, stochastic modeling, simulation with design of experiments, and systems analysis.Proven ability to conduct independent analysis and present results orally and in writing to operational customers.Clearance: Active Top Secret / SCI. U.S. citizenship required. Ability to obtain NATO briefings after hire. Must be eligible for a DISS Visit Access Request to COMSUBGRU TWO.Ability to work full-time on-site at NSA Hampton Roads / Naval Station Norfolk (Building NH-13 / TUSWC spaces). No remote option for this seat.Desired QualificationsNavy 3211P / 3211Q operations-analysis subspecialty, or equivalent civilian utilization tour at a Fleet, TYCOM, numbered-fleet, OPNAV N81, UWDC Tactical Analysis Group, CNA field, NUWC, or TUSWC staff.Direct undersea warfare, theater ASW, maritime homeland defense, or submarine-force staff experience.Prior on-site embed at a Navy operational staff (not only laboratory or headquarters studies).Experience training operators or staff officers on analytic methods and leaving durable process documentation.Familiarity with SIPRNet collaboration, OPSEC, and handling of classified / CUI / PPBE data.Tools such as Python, R, MATLAB, Julia, or equivalent; optimization solvers; discrete-event or combat simulation; and standard Navy briefing products.Experience briefing O-6 / flag / SES audiences.Work EnvironmentPrimary workplace: COMSUBGRU TWO, 1430 Mitscher Avenue, Norfolk, VA 23551 (NSA Hampton Roads).Classification: work up to TOP SECRET / SCI; incidental TS/SCI research into models; meetings at TS/SCI; NATO information access.Government intends to provide NIPR and SIPR access on site. Contractor provides personal analytic tools unless otherwise furnished.Travel is not part of this task. Other direct costs are not authorized.Analysis, methods, algorithms, code, and data developed on contract become U.S. Government property.Compensation and BenefitsFinal Compensation is based on Education and Experience.Compensation is competitive for a TS/SCI, on-site Navy warfighting OR seat in Hampton Roads and is commensurate with education, clearance, and directly relevant experience. Heartland typically provides:Health, dental, and vision insurance401(k) with company matchPaid time off and paid federal holidaysSupport for professional affiliations (MORS, INFORMS) when mission allowsFinal offer depends on qualifications, clearance currency, and start-date availability. Target start is aligned to contract award / 29 September 2026, with an earlier overlap preferred so the outgoing analyst can conduct a structured turnover.How to ApplyApply HERE to this job posting, orEmail a résumé (PDF) and a one-page letter that maps your education and ten-year Navy-warfighting OR experience to the required skill list above. State clearance level, investigation date or last PR date if known, and earliest start date.Apply: line: Senior OR Analyst - COMSUBGRU TWO TUSWC - Last Name Website: citizens only. Heartland Consulting is a Veteran-Owned Small Business and an Equal Opportunity Employer. We do not discriminate on the basis of race, color, religion, sex, national origin, age, disability, veteran status, or any other protected status. This position requires an active U.S. security clearance; clearance eligibility is a bona fide occupational qualification.
09/16/2026
Full time
Job Description Job Description NOW HIRING ON-SITE FULL TIMESenior Operations Research AnalystNavy Warfighting Analysis Theater Undersea Warfare Norfolk, VALocationClearanceScheduleTravelNSA Hampton Roads / Naval Station Norfolk (on-site)Active Top Secret / SCI required at startFull-timeNone requiredAbout the RoleHeartland Consulting is hiring a Senior Operations Research Analyst to sit on-site with Commander, Submarine Group Two (COMSUBGRU TWO) in its role as Theater Undersea Warfare Commander (TUSWC) for U.S. Second Fleet. The analyst is the command's embedded OA/OR capability - the person who finds where analysis can improve TUSWC planning, builds the methods, trains the staff to use them, and leaves behind documented processes the watch floor can run without the contractor in the room.This is not a remote study contract and not a generic "data analyst" seat. You will work in a classified Navy staff environment, handle operational data, brief seniors (including flag-level audiences), and institutionalize operations-analysis methods for maritime homeland defense and theater undersea warfare.Heartland is the incumbent on this effort. The current analyst is in the seat today. We are recruiting the successor now so the command has a clean, qualified handoff and no gap in on-site support.What You Will DoProvide on-site operations analysis / operations research support to the TUSWC staff at COMSUBGRU TWO.Identify opportunities to insert OA/OR into the TUSWC planning process and improve operational effectiveness.Collect, clean, manage, and employ operational datasets for trend analysis and predictive analytics.Formulate and solve optimization problems (linear, nonlinear, network, and integer programming) that inform planning choices.Build and use stochastic models (Markov chains, Poisson processes, queueing, renewal processes) and simulation with design-of-experiments techniques.Apply systems analysis, including risk-benefit and cost-benefit analysis, to deployment, requirements, and course-of-action questions.Employ OA/OR tools in live TUSWC planning and operations - not only after-action studies.Develop and document methods, processes, and procedures the TUSWC staff can implement.Train TUSWC staff on those methods and leave behind usable SOPs, briefs, and implementation products.Liaise with other TUSWC staffs, OA/OR subject-matter experts, and tool developers.Deliver the contract products: OA/OR Support Plan Brief (30 days after award), monthly progress and financial status reports, interim progress reviews, a final annotated brief, and a Final OA/OR Implementation Plan.Brief results independently, in writing and orally, including annotated PowerPoint for senior leadership with read-aheads.Required QualificationsThese are the contract minimums. Candidates who do not meet them cannot be placed on this task.Education: Bachelor's degree in Operations Research or Operations Analysis. (The contract is specific - related degrees such as mathematics, statistics, or engineering do not substitute for this requirement.)Preferred: Master of Science in Operations Research or Operations Analysis (NPS Curriculum 360 / 355 or civilian equivalent).Experience: Ten (10) years applying operations research / operations analysis to Navy warfighting analysis.Demonstrated skill in mathematics and computation, including programming for complex analysis, algorithm development, and simulation.Demonstrated skill in data preparation (collect, clean, manipulate) and statistical / probability analysis of decision problems.Demonstrated skill in optimization, stochastic modeling, simulation with design of experiments, and systems analysis.Proven ability to conduct independent analysis and present results orally and in writing to operational customers.Clearance: Active Top Secret / SCI. U.S. citizenship required. Ability to obtain NATO briefings after hire. Must be eligible for a DISS Visit Access Request to COMSUBGRU TWO.Ability to work full-time on-site at NSA Hampton Roads / Naval Station Norfolk (Building NH-13 / TUSWC spaces). No remote option for this seat.Desired QualificationsNavy 3211P / 3211Q operations-analysis subspecialty, or equivalent civilian utilization tour at a Fleet, TYCOM, numbered-fleet, OPNAV N81, UWDC Tactical Analysis Group, CNA field, NUWC, or TUSWC staff.Direct undersea warfare, theater ASW, maritime homeland defense, or submarine-force staff experience.Prior on-site embed at a Navy operational staff (not only laboratory or headquarters studies).Experience training operators or staff officers on analytic methods and leaving durable process documentation.Familiarity with SIPRNet collaboration, OPSEC, and handling of classified / CUI / PPBE data.Tools such as Python, R, MATLAB, Julia, or equivalent; optimization solvers; discrete-event or combat simulation; and standard Navy briefing products.Experience briefing O-6 / flag / SES audiences.Work EnvironmentPrimary workplace: COMSUBGRU TWO, 1430 Mitscher Avenue, Norfolk, VA 23551 (NSA Hampton Roads).Classification: work up to TOP SECRET / SCI; incidental TS/SCI research into models; meetings at TS/SCI; NATO information access.Government intends to provide NIPR and SIPR access on site. Contractor provides personal analytic tools unless otherwise furnished.Travel is not part of this task. Other direct costs are not authorized.Analysis, methods, algorithms, code, and data developed on contract become U.S. Government property.Compensation and BenefitsFinal Compensation is based on Education and Experience.Compensation is competitive for a TS/SCI, on-site Navy warfighting OR seat in Hampton Roads and is commensurate with education, clearance, and directly relevant experience. Heartland typically provides:Health, dental, and vision insurance401(k) with company matchPaid time off and paid federal holidaysSupport for professional affiliations (MORS, INFORMS) when mission allowsFinal offer depends on qualifications, clearance currency, and start-date availability. Target start is aligned to contract award / 29 September 2026, with an earlier overlap preferred so the outgoing analyst can conduct a structured turnover.How to ApplyApply HERE to this job posting, orEmail a résumé (PDF) and a one-page letter that maps your education and ten-year Navy-warfighting OR experience to the required skill list above. State clearance level, investigation date or last PR date if known, and earliest start date.Apply: line: Senior OR Analyst - COMSUBGRU TWO TUSWC - Last Name Website: citizens only. Heartland Consulting is a Veteran-Owned Small Business and an Equal Opportunity Employer. We do not discriminate on the basis of race, color, religion, sex, national origin, age, disability, veteran status, or any other protected status. This position requires an active U.S. security clearance; clearance eligibility is a bona fide occupational qualification.
Senior Joint Staff Operations Analyst
Prevailance Suffolk, Virginia
Job Description Job Description Description: Status: Position Filled - Accepting Applications for Ready Replacement Pool (RRP) consideration. Prevailance is seeking an experienced, mission-focused professional to serve as a Senior Operations Analyst in support of the CJCS J6 Directorate for Cyber and Command, Control, Communications, and Computers Integration ( DDC5I ). The Senior Operations Analyst will support the CJCS J6 Directorate by applying operational expertise to develop executive-level briefing materials, conduct visual analyses, and enable DoD leadership to make informed decisions. The role focuses on advancing Cyber and C4 capabilities, including CJADC2 and information operations ( IO ), and contributes to integrating requirements and assessments aimed at building an interdependent joint force. The Analyst will work within a small, agile team environment to conduct high-level staff coordination and detailed technical analysis. Key Responsibilities : Perform requirements analysis and feasibility studies for critical Cyber and C4 projects Provide support to Joint Staff Communities of Interest and coordinate with various services and organizations Develop technology conceptual designs, conduct special studies and analyses, and assess technical approaches for system improvement Lead staff coordination at Joint Staff and Combatant Command levels, ensuring findings are integrated into actionable insights Requirements: Operational Experience : At least 5 years of military experience, preferably on a Combatant Command ( COCOM ), Major Command, or Joint Staff. Experience as an action officer on a major staff, with multi-service or multinational exposure, is preferred Command and Control (C2) : 4-6 years in Command and Control at the strategic and operational levels Writing Skills : Proven experience in crafting briefing papers for flag/general officers ( FO/GO ) and strong communications skills Technical Proficiency : Skilled in Microsoft Office ( especially PowerPoint and SharePoint ) for information management, COI calendar management, and report production Analytical Experience : Experience in supporting major concept studies, conducting independent research, and working across services and organizations to define requirements, perform traceability, and evaluate improvement strategies Database Knowledge : Familiarity with SQL, Access, and other databases is a plus but not required Education: BA or BS degree required; MA or MS degree preferred (four years of relevant experience may substitute for a BA/BS) Clearance Eligibility: Must be able to obtain and maintain a TOP SECRET / SCI security clearance Ideal Candidate : A mission-focused professional with substantial military background, strategic-level C2 experience, and action officer expertise on a major staff. The candidate should be capable of producing high-quality, executive-level briefs and collaborating effectively across services and nations to support informed decision-making at the highest levels. The ability to conduct independent research, evaluate technical strategies, and work proficiently in Microsoft Office will be critical for success in this role. If you meet these qualifications and are ready to make an impact, we encourage you to apply today! At Prevailance, we recognize that our employees are our greatest asset. We offer a comprehensive benefits package designed to support the health, financial well-being, and work-life balance of our employees and their families. Medical + Dental + Vision Personal Time Off (PTO) 11 Paid Holidays 401(k) Retirement Plan with Company Matching Contributions Life & Disability Insurance Supplemental Health Benefits Accident Insurance Critical Illness Insurance Hospital Indemnity Insurance TRICARE Supplement Insurance Education Reimbursement Program Computing Device Reimbursement Program Prevailance, Inc. is an Equal Opportunity/Affirmative Action Employer. All qualified candidates will receive consideration for employment and will not be discriminated against based on race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability, age, pregnancy, genetic information, citizenship status, marital status or any other consideration prohibited by law or contract. Prevailance, Inc. participates in E-Verify and is VEVRAA Compliant.
09/16/2026
Full time
Job Description Job Description Description: Status: Position Filled - Accepting Applications for Ready Replacement Pool (RRP) consideration. Prevailance is seeking an experienced, mission-focused professional to serve as a Senior Operations Analyst in support of the CJCS J6 Directorate for Cyber and Command, Control, Communications, and Computers Integration ( DDC5I ). The Senior Operations Analyst will support the CJCS J6 Directorate by applying operational expertise to develop executive-level briefing materials, conduct visual analyses, and enable DoD leadership to make informed decisions. The role focuses on advancing Cyber and C4 capabilities, including CJADC2 and information operations ( IO ), and contributes to integrating requirements and assessments aimed at building an interdependent joint force. The Analyst will work within a small, agile team environment to conduct high-level staff coordination and detailed technical analysis. Key Responsibilities : Perform requirements analysis and feasibility studies for critical Cyber and C4 projects Provide support to Joint Staff Communities of Interest and coordinate with various services and organizations Develop technology conceptual designs, conduct special studies and analyses, and assess technical approaches for system improvement Lead staff coordination at Joint Staff and Combatant Command levels, ensuring findings are integrated into actionable insights Requirements: Operational Experience : At least 5 years of military experience, preferably on a Combatant Command ( COCOM ), Major Command, or Joint Staff. Experience as an action officer on a major staff, with multi-service or multinational exposure, is preferred Command and Control (C2) : 4-6 years in Command and Control at the strategic and operational levels Writing Skills : Proven experience in crafting briefing papers for flag/general officers ( FO/GO ) and strong communications skills Technical Proficiency : Skilled in Microsoft Office ( especially PowerPoint and SharePoint ) for information management, COI calendar management, and report production Analytical Experience : Experience in supporting major concept studies, conducting independent research, and working across services and organizations to define requirements, perform traceability, and evaluate improvement strategies Database Knowledge : Familiarity with SQL, Access, and other databases is a plus but not required Education: BA or BS degree required; MA or MS degree preferred (four years of relevant experience may substitute for a BA/BS) Clearance Eligibility: Must be able to obtain and maintain a TOP SECRET / SCI security clearance Ideal Candidate : A mission-focused professional with substantial military background, strategic-level C2 experience, and action officer expertise on a major staff. The candidate should be capable of producing high-quality, executive-level briefs and collaborating effectively across services and nations to support informed decision-making at the highest levels. The ability to conduct independent research, evaluate technical strategies, and work proficiently in Microsoft Office will be critical for success in this role. If you meet these qualifications and are ready to make an impact, we encourage you to apply today! At Prevailance, we recognize that our employees are our greatest asset. We offer a comprehensive benefits package designed to support the health, financial well-being, and work-life balance of our employees and their families. Medical + Dental + Vision Personal Time Off (PTO) 11 Paid Holidays 401(k) Retirement Plan with Company Matching Contributions Life & Disability Insurance Supplemental Health Benefits Accident Insurance Critical Illness Insurance Hospital Indemnity Insurance TRICARE Supplement Insurance Education Reimbursement Program Computing Device Reimbursement Program Prevailance, Inc. is an Equal Opportunity/Affirmative Action Employer. All qualified candidates will receive consideration for employment and will not be discriminated against based on race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability, age, pregnancy, genetic information, citizenship status, marital status or any other consideration prohibited by law or contract. Prevailance, Inc. participates in E-Verify and is VEVRAA Compliant.
SENIOR Operations Research Analyst OR OA
Heartland Consulting Pearl City, Hawaii
Job Description Job Description NOW HIRING ON-SITE FULL TIMESenior Operations Research AnalystNavy Warfighting Analysis Theater Undersea Warfare Norfolk, VALocationClearanceScheduleTravelNSA Hampton Roads / Naval Station Norfolk (on-site)Active Top Secret / SCI required at startFull-timeNone requiredAbout the RoleHeartland Consulting is hiring a Senior Operations Research Analyst to sit on-site with Commander, Submarine Group Two (COMSUBGRU TWO) in its role as Theater Undersea Warfare Commander (TUSWC) for U.S. Second Fleet. The analyst is the command's embedded OA/OR capability - the person who finds where analysis can improve TUSWC planning, builds the methods, trains the staff to use them, and leaves behind documented processes the watch floor can run without the contractor in the room.This is not a remote study contract and not a generic "data analyst" seat. You will work in a classified Navy staff environment, handle operational data, brief seniors (including flag-level audiences), and institutionalize operations-analysis methods for maritime homeland defense and theater undersea warfare.Heartland is the incumbent on this effort. The current analyst is in the seat today. We are recruiting the successor now so the command has a clean, qualified handoff and no gap in on-site support.What You Will DoProvide on-site operations analysis / operations research support to the TUSWC staff at COMSUBGRU TWO.Identify opportunities to insert OA/OR into the TUSWC planning process and improve operational effectiveness.Collect, clean, manage, and employ operational datasets for trend analysis and predictive analytics.Formulate and solve optimization problems (linear, nonlinear, network, and integer programming) that inform planning choices.Build and use stochastic models (Markov chains, Poisson processes, queueing, renewal processes) and simulation with design-of-experiments techniques.Apply systems analysis, including risk-benefit and cost-benefit analysis, to deployment, requirements, and course-of-action questions.Employ OA/OR tools in live TUSWC planning and operations - not only after-action studies.Develop and document methods, processes, and procedures the TUSWC staff can implement.Train TUSWC staff on those methods and leave behind usable SOPs, briefs, and implementation products.Liaise with other TUSWC staffs, OA/OR subject-matter experts, and tool developers.Deliver the contract products: OA/OR Support Plan Brief (30 days after award), monthly progress and financial status reports, interim progress reviews, a final annotated brief, and a Final OA/OR Implementation Plan.Brief results independently, in writing and orally, including annotated PowerPoint for senior leadership with read-aheads.Required QualificationsThese are the contract minimums. Candidates who do not meet them cannot be placed on this task.Education: Bachelor's degree in Operations Research or Operations Analysis. (The contract is specific - related degrees such as mathematics, statistics, or engineering do not substitute for this requirement.)Preferred: Master of Science in Operations Research or Operations Analysis (NPS Curriculum 360 / 355 or civilian equivalent).Experience: Ten (10) years applying operations research / operations analysis to Navy warfighting analysis.Demonstrated skill in mathematics and computation, including programming for complex analysis, algorithm development, and simulation.Demonstrated skill in data preparation (collect, clean, manipulate) and statistical / probability analysis of decision problems.Demonstrated skill in optimization, stochastic modeling, simulation with design of experiments, and systems analysis.Proven ability to conduct independent analysis and present results orally and in writing to operational customers.Clearance: Active Top Secret / SCI. U.S. citizenship required. Ability to obtain NATO briefings after hire. Must be eligible for a DISS Visit Access Request to COMSUBGRU TWO.Ability to work full-time on-site at NSA Hampton Roads / Naval Station Norfolk (Building NH-13 / TUSWC spaces). No remote option for this seat.Desired QualificationsNavy 3211P / 3211Q operations-analysis subspecialty, or equivalent civilian utilization tour at a Fleet, TYCOM, numbered-fleet, OPNAV N81, UWDC Tactical Analysis Group, CNA field, NUWC, or TUSWC staff.Direct undersea warfare, theater ASW, maritime homeland defense, or submarine-force staff experience.Prior on-site embed at a Navy operational staff (not only laboratory or headquarters studies).Experience training operators or staff officers on analytic methods and leaving durable process documentation.Familiarity with SIPRNet collaboration, OPSEC, and handling of classified / CUI / PPBE data.Tools such as Python, R, MATLAB, Julia, or equivalent; optimization solvers; discrete-event or combat simulation; and standard Navy briefing products.Experience briefing O-6 / flag / SES audiences.Work EnvironmentPrimary workplace: COMSUBGRU TWO, 1430 Mitscher Avenue, Norfolk, VA 23551 (NSA Hampton Roads).Classification: work up to TOP SECRET / SCI; incidental TS/SCI research into models; meetings at TS/SCI; NATO information access.Government intends to provide NIPR and SIPR access on site. Contractor provides personal analytic tools unless otherwise furnished.Travel is not part of this task. Other direct costs are not authorized.Analysis, methods, algorithms, code, and data developed on contract become U.S. Government property.Compensation and BenefitsFinal Compensation is based on Education and Experience.Compensation is competitive for a TS/SCI, on-site Navy warfighting OR seat in Hampton Roads and is commensurate with education, clearance, and directly relevant experience. Heartland typically provides:Health, dental, and vision insurance401(k) with company matchPaid time off and paid federal holidaysSupport for professional affiliations (MORS, INFORMS) when mission allowsFinal offer depends on qualifications, clearance currency, and start-date availability. Target start is aligned to contract award / 29 September 2026, with an earlier overlap preferred so the outgoing analyst can conduct a structured turnover.How to ApplyApply HERE to this job posting, orEmail a résumé (PDF) and a one-page letter that maps your education and ten-year Navy-warfighting OR experience to the required skill list above. State clearance level, investigation date or last PR date if known, and earliest start date.Apply: line: Senior OR Analyst - COMSUBGRU TWO TUSWC - Last Name Website: citizens only. Heartland Consulting is a Veteran-Owned Small Business and an Equal Opportunity Employer. We do not discriminate on the basis of race, color, religion, sex, national origin, age, disability, veteran status, or any other protected status. This position requires an active U.S. security clearance; clearance eligibility is a bona fide occupational qualification.
09/16/2026
Full time
Job Description Job Description NOW HIRING ON-SITE FULL TIMESenior Operations Research AnalystNavy Warfighting Analysis Theater Undersea Warfare Norfolk, VALocationClearanceScheduleTravelNSA Hampton Roads / Naval Station Norfolk (on-site)Active Top Secret / SCI required at startFull-timeNone requiredAbout the RoleHeartland Consulting is hiring a Senior Operations Research Analyst to sit on-site with Commander, Submarine Group Two (COMSUBGRU TWO) in its role as Theater Undersea Warfare Commander (TUSWC) for U.S. Second Fleet. The analyst is the command's embedded OA/OR capability - the person who finds where analysis can improve TUSWC planning, builds the methods, trains the staff to use them, and leaves behind documented processes the watch floor can run without the contractor in the room.This is not a remote study contract and not a generic "data analyst" seat. You will work in a classified Navy staff environment, handle operational data, brief seniors (including flag-level audiences), and institutionalize operations-analysis methods for maritime homeland defense and theater undersea warfare.Heartland is the incumbent on this effort. The current analyst is in the seat today. We are recruiting the successor now so the command has a clean, qualified handoff and no gap in on-site support.What You Will DoProvide on-site operations analysis / operations research support to the TUSWC staff at COMSUBGRU TWO.Identify opportunities to insert OA/OR into the TUSWC planning process and improve operational effectiveness.Collect, clean, manage, and employ operational datasets for trend analysis and predictive analytics.Formulate and solve optimization problems (linear, nonlinear, network, and integer programming) that inform planning choices.Build and use stochastic models (Markov chains, Poisson processes, queueing, renewal processes) and simulation with design-of-experiments techniques.Apply systems analysis, including risk-benefit and cost-benefit analysis, to deployment, requirements, and course-of-action questions.Employ OA/OR tools in live TUSWC planning and operations - not only after-action studies.Develop and document methods, processes, and procedures the TUSWC staff can implement.Train TUSWC staff on those methods and leave behind usable SOPs, briefs, and implementation products.Liaise with other TUSWC staffs, OA/OR subject-matter experts, and tool developers.Deliver the contract products: OA/OR Support Plan Brief (30 days after award), monthly progress and financial status reports, interim progress reviews, a final annotated brief, and a Final OA/OR Implementation Plan.Brief results independently, in writing and orally, including annotated PowerPoint for senior leadership with read-aheads.Required QualificationsThese are the contract minimums. Candidates who do not meet them cannot be placed on this task.Education: Bachelor's degree in Operations Research or Operations Analysis. (The contract is specific - related degrees such as mathematics, statistics, or engineering do not substitute for this requirement.)Preferred: Master of Science in Operations Research or Operations Analysis (NPS Curriculum 360 / 355 or civilian equivalent).Experience: Ten (10) years applying operations research / operations analysis to Navy warfighting analysis.Demonstrated skill in mathematics and computation, including programming for complex analysis, algorithm development, and simulation.Demonstrated skill in data preparation (collect, clean, manipulate) and statistical / probability analysis of decision problems.Demonstrated skill in optimization, stochastic modeling, simulation with design of experiments, and systems analysis.Proven ability to conduct independent analysis and present results orally and in writing to operational customers.Clearance: Active Top Secret / SCI. U.S. citizenship required. Ability to obtain NATO briefings after hire. Must be eligible for a DISS Visit Access Request to COMSUBGRU TWO.Ability to work full-time on-site at NSA Hampton Roads / Naval Station Norfolk (Building NH-13 / TUSWC spaces). No remote option for this seat.Desired QualificationsNavy 3211P / 3211Q operations-analysis subspecialty, or equivalent civilian utilization tour at a Fleet, TYCOM, numbered-fleet, OPNAV N81, UWDC Tactical Analysis Group, CNA field, NUWC, or TUSWC staff.Direct undersea warfare, theater ASW, maritime homeland defense, or submarine-force staff experience.Prior on-site embed at a Navy operational staff (not only laboratory or headquarters studies).Experience training operators or staff officers on analytic methods and leaving durable process documentation.Familiarity with SIPRNet collaboration, OPSEC, and handling of classified / CUI / PPBE data.Tools such as Python, R, MATLAB, Julia, or equivalent; optimization solvers; discrete-event or combat simulation; and standard Navy briefing products.Experience briefing O-6 / flag / SES audiences.Work EnvironmentPrimary workplace: COMSUBGRU TWO, 1430 Mitscher Avenue, Norfolk, VA 23551 (NSA Hampton Roads).Classification: work up to TOP SECRET / SCI; incidental TS/SCI research into models; meetings at TS/SCI; NATO information access.Government intends to provide NIPR and SIPR access on site. Contractor provides personal analytic tools unless otherwise furnished.Travel is not part of this task. Other direct costs are not authorized.Analysis, methods, algorithms, code, and data developed on contract become U.S. Government property.Compensation and BenefitsFinal Compensation is based on Education and Experience.Compensation is competitive for a TS/SCI, on-site Navy warfighting OR seat in Hampton Roads and is commensurate with education, clearance, and directly relevant experience. Heartland typically provides:Health, dental, and vision insurance401(k) with company matchPaid time off and paid federal holidaysSupport for professional affiliations (MORS, INFORMS) when mission allowsFinal offer depends on qualifications, clearance currency, and start-date availability. Target start is aligned to contract award / 29 September 2026, with an earlier overlap preferred so the outgoing analyst can conduct a structured turnover.How to ApplyApply HERE to this job posting, orEmail a résumé (PDF) and a one-page letter that maps your education and ten-year Navy-warfighting OR experience to the required skill list above. State clearance level, investigation date or last PR date if known, and earliest start date.Apply: line: Senior OR Analyst - COMSUBGRU TWO TUSWC - Last Name Website: citizens only. Heartland Consulting is a Veteran-Owned Small Business and an Equal Opportunity Employer. We do not discriminate on the basis of race, color, religion, sex, national origin, age, disability, veteran status, or any other protected status. This position requires an active U.S. security clearance; clearance eligibility is a bona fide occupational qualification.
Security Controls Assessor
Oneida Technical Solutions Shaw A F B, South Carolina
Job Description Job Description Oneida Technical Solutions, LLC (OTS), was founded in 2014 and quickly established itself as a reliable partner capable of providing a variety of information technology and cyber solutions across highly complex, highly regulated and highly secure environments, including the U.S. Department of Defense (DoD), healthcare, higher education, law enforcement, retail, casino gaming and more.Our innovative cyber capabilities and programs have made us trusted partners for IT modernization projects, implementing upgrades and accelerating the delivery of new solutions for the DoD and commercial industries with consumer-driven technology.OTS is seeking a Security Controls Assessor in providing cybersecurity support to AFCENT - this role is onsite at Shaw AFB in Sumter, SC.In this role you will perform comprehensive IT security control assessments on AFCENT systems and software applications. Assessments shall require physical travel to various contractor and Government sites inside and outside the continental United States (CONUS and OCONUS). Assessments shall determine the condition of the management, operational, and technical security controls employed within or inherited by an information system or software to determine the overall effectiveness of the controls (i.e., the extent to which the controls are implemented correctly, operating as intended, and producing the desired outcome with respect to meeting the security requirements for the system).Duties for this role include, but are not limited to:Perform initial and continual security control assessment and validation for AFCENT networks, systems, and software applications.Utilize DOD approved tools such as, but not limited to - Assured Compliance Assessment Solution (ACAS), Nessus, Host Based Security Systems (HBSS), Continuous Monitoring Risk Scoring (CMRS), Online Compliance Reporting System (OCRS), and SolarWinds - to generate initial and continuous monitoring reports.Complete reports to support risk decisions from the AO, both as required and as requested.Provide an assessment on the severity of weaknesses or deficiencies discovered in the information system or software application and its environment of operation and recommend corrective actions to address identified vulnerabilities.Review the System Security Plan (SSP), prior to initiating the security control assessment and ensure the plan provides a set of security controls for the information system or software application that meet the stated security requirements.Advise the Information System Owner (ISO) concerning the impact values for confidentiality, integrity, and availability for the information on a system or software application.Evaluate threats and vulnerabilities to information systems or software application to ascertain the need for additional safeguards.Assist in creating, reviewing, and approving the information system or software application security assessment plan, which is comprised of the SSP, the Security Controls Traceability Matrix (SCTM), and the Security Control Assessment Procedure.Ensure security control assessments are completed for each information system or software application and ensure controls are working as intended and these controls protect the confidentiality, integrity and availability of IT resources at the appropriate levels.Assist with preparing the final Security Assessment Report (SAR) containing the results and findings from the assessment at the conclusion of each security control assessment activity.Ensure a Plan of Action and Milestones (POA&M) is initiated by the Information System Security Officer (ISSO) for the information system based on findings and recommendations from the SAR.Evaluate security control assessment documentation and provide written recommendations for security authorization to the AO.Provide expertise to execute vulnerability assessments on Platform IT systems.Assist with assembling and submitting the security authorization artifacts to the AO (consisting of, at a minimum, the SSP, the SAR, the POA&M, and a Risk Assessment Report (RAR).Assess the proposed changes to information systems or software application, their environment of operation, and mission needs to determine if they are security-relevant and could therefore affect system authorization.Utilize the RMF methodology to successfully implement an information technology process which shall effectively protect the element's information assets and its ability to perform its mission.Provide guidance to other assessors on the policies and procedures of the job; Provide detailed assessment findings using Government-specified processes and procedure.Provide solutions and recommendations to remedy security vulnerabilities, threats, to ultimately improve the protection of IT resources and to execute the AFCENT mission.Utilize assessment results to identify trends and to improve IA training, policies and processes.Develop reports and trend analysis's to support risk assessment decisions.Qualified candidates must meet the following mandatory requirements:Must possess and maintain a Secret ClearanceProof of IAT-III or IAM-III CertificationSenior (III) and higher positions (Preferred):- MA/MS in related field AND 3 or more years' relevant experience; or- BS in related field AND 5 or more years' relevant IT experience; or- 7 or more years' relevant IT experience.Mid-level (II) or lower positions:- BS in related field AND 1 or more years' relevant experience; or- Associates in related field and 3 or more years' relevant IT experience; or- 5 or more years' of relevant IT experience.Oneida Technical Solutions, LLC. is an equal opportunity employer and will consider all qualified applicants for employment without regard to race, color, religion, sex, national origin, age, disability, marital status, veteran status, sexual orientation, gender identity, genetic information or any other protected characteristic under applicable law. Job Posted by ApplicantPro
09/15/2026
Full time
Job Description Job Description Oneida Technical Solutions, LLC (OTS), was founded in 2014 and quickly established itself as a reliable partner capable of providing a variety of information technology and cyber solutions across highly complex, highly regulated and highly secure environments, including the U.S. Department of Defense (DoD), healthcare, higher education, law enforcement, retail, casino gaming and more.Our innovative cyber capabilities and programs have made us trusted partners for IT modernization projects, implementing upgrades and accelerating the delivery of new solutions for the DoD and commercial industries with consumer-driven technology.OTS is seeking a Security Controls Assessor in providing cybersecurity support to AFCENT - this role is onsite at Shaw AFB in Sumter, SC.In this role you will perform comprehensive IT security control assessments on AFCENT systems and software applications. Assessments shall require physical travel to various contractor and Government sites inside and outside the continental United States (CONUS and OCONUS). Assessments shall determine the condition of the management, operational, and technical security controls employed within or inherited by an information system or software to determine the overall effectiveness of the controls (i.e., the extent to which the controls are implemented correctly, operating as intended, and producing the desired outcome with respect to meeting the security requirements for the system).Duties for this role include, but are not limited to:Perform initial and continual security control assessment and validation for AFCENT networks, systems, and software applications.Utilize DOD approved tools such as, but not limited to - Assured Compliance Assessment Solution (ACAS), Nessus, Host Based Security Systems (HBSS), Continuous Monitoring Risk Scoring (CMRS), Online Compliance Reporting System (OCRS), and SolarWinds - to generate initial and continuous monitoring reports.Complete reports to support risk decisions from the AO, both as required and as requested.Provide an assessment on the severity of weaknesses or deficiencies discovered in the information system or software application and its environment of operation and recommend corrective actions to address identified vulnerabilities.Review the System Security Plan (SSP), prior to initiating the security control assessment and ensure the plan provides a set of security controls for the information system or software application that meet the stated security requirements.Advise the Information System Owner (ISO) concerning the impact values for confidentiality, integrity, and availability for the information on a system or software application.Evaluate threats and vulnerabilities to information systems or software application to ascertain the need for additional safeguards.Assist in creating, reviewing, and approving the information system or software application security assessment plan, which is comprised of the SSP, the Security Controls Traceability Matrix (SCTM), and the Security Control Assessment Procedure.Ensure security control assessments are completed for each information system or software application and ensure controls are working as intended and these controls protect the confidentiality, integrity and availability of IT resources at the appropriate levels.Assist with preparing the final Security Assessment Report (SAR) containing the results and findings from the assessment at the conclusion of each security control assessment activity.Ensure a Plan of Action and Milestones (POA&M) is initiated by the Information System Security Officer (ISSO) for the information system based on findings and recommendations from the SAR.Evaluate security control assessment documentation and provide written recommendations for security authorization to the AO.Provide expertise to execute vulnerability assessments on Platform IT systems.Assist with assembling and submitting the security authorization artifacts to the AO (consisting of, at a minimum, the SSP, the SAR, the POA&M, and a Risk Assessment Report (RAR).Assess the proposed changes to information systems or software application, their environment of operation, and mission needs to determine if they are security-relevant and could therefore affect system authorization.Utilize the RMF methodology to successfully implement an information technology process which shall effectively protect the element's information assets and its ability to perform its mission.Provide guidance to other assessors on the policies and procedures of the job; Provide detailed assessment findings using Government-specified processes and procedure.Provide solutions and recommendations to remedy security vulnerabilities, threats, to ultimately improve the protection of IT resources and to execute the AFCENT mission.Utilize assessment results to identify trends and to improve IA training, policies and processes.Develop reports and trend analysis's to support risk assessment decisions.Qualified candidates must meet the following mandatory requirements:Must possess and maintain a Secret ClearanceProof of IAT-III or IAM-III CertificationSenior (III) and higher positions (Preferred):- MA/MS in related field AND 3 or more years' relevant experience; or- BS in related field AND 5 or more years' relevant IT experience; or- 7 or more years' relevant IT experience.Mid-level (II) or lower positions:- BS in related field AND 1 or more years' relevant experience; or- Associates in related field and 3 or more years' relevant IT experience; or- 5 or more years' of relevant IT experience.Oneida Technical Solutions, LLC. is an equal opportunity employer and will consider all qualified applicants for employment without regard to race, color, religion, sex, national origin, age, disability, marital status, veteran status, sexual orientation, gender identity, genetic information or any other protected characteristic under applicable law. Job Posted by ApplicantPro
Security Control Assessor (SCA)
LV8D Solutions Chantilly, Virginia
Job Description Job Description Mission Context LV8D Solutions supports national security space and intelligence customers delivering next-generation sensing and exploitation capabilities. The role of a Security Control Assessor (SCA) is focused on providing information security Assessment and Authorization (A&A) support throughout the mission program's lifecycle. Position Overview LV8D Solutions is seeking a SCA to conduct independent assessments of the management, operational, and technical security controls employed within or inherited by an information technology (IT) system to determine the overall effectiveness of the security controls. A Security Control Assessor (SCA) performs comprehensive INFOSEC assessment of management, operational, and technical security controls to determine overall effectiveness of the controls for A&A determination throughout a program's system lifecycle. SCAs provide an assessment of the severity of weakness or deficiencies discovered in the Information System (IS) and its environment of operation and recommend corrective actions to address identified vulnerabilities. Prior to initiating the security control assessment, the SCA reviews the System Security Plan (SSP) to ensure the plan provides a set of security controls for the ISs that meet the stated security requirements. Additionally, the SCA must verify that all allocated controls have an acceptable status (i.e., implemented, excepted, or inherited) with appropriate documented details and provides responses in the Government's Risk Management Framework (RMF) tools. Interested candidates need to thrive in an innovative, fast-paced environment; are highly motivated and not afraid to take on uncharted territory; possess strong communication, leadership, and organizational skills; and be able to prioritize their time to be effective in a dynamic environment. Requirements Key Responsibilities Reviews IS for compliance with applicable Intelligence Community (IC), Department of War (DoW), and National Directorate (ND) guidance, and make recommendations to the Government. Provides ISs security advice and guidance Joint Analytical Workstation (JAW) applicable IC, DoW, and NDs and guidance to Government and industry partners for the protection of data at all classification levels including Sensitive Compartmented Information (SCI). Evaluates threats and vulnerabilities to ISs to ascertain the need for additional safeguards and recommend approval, disapproval, or waiver(s) for IS processing national security data at industry and/or Government facilities. Supports development and implementation of directives and guidance for policies. Provides input for consideration in the promulgation of future ISs security policy. Supports and/or conduct site visits and assessments to inspect and verify IS reports. Ensures security control assessments are completed for each IS. Supports the preparation and delivery of presentations, briefings, reports, and memoranda associated with the RMF process. Uses the RMF system of record to complete RMF workflow duties and maintain the asset documentation repository. Establishes and maintains means and methods to track RMF process workflow activities to inform task volume, velocity, and duration of activities. Prepares the final Security Assessment Report (SAR) containing the results and findings from the assessment at the conclusion of each security control assessment activity and the Authorization Recommendation. Ensures appropriate IS security requirements including applicable Interface Control Documents (ICDs), DoW Instructions, NDs and other guidance are addressed and applied and appropriate documentation is prepared by the system owners or programs. The documentation will be contained in the Security Assessment Package, including, but not limited to, the Concept of Operations (CONOP), SSP, Systems Requirements Traceability Matrix, Risk Management Matrix, Test Results, interface control documents, requests for changes, test plans, and other related program security documentation. Collaborates with Information Security Officers (ISOs) and Common Control Providers to initiate Plan of Action and Milestones (POAMs) for ISs based on findings and recommendations from the SAR. Reviews and approves the IS Security Assessment Plan which is comprised of the Security Controls Traceability Matrix and the Security Control Assessment Procedures. Tracks the completion of the SAR. Reviews, coordinates, and responds to security issues as requested by the Government. Provides A&A support to the Government for the protection of special programs and tactical operations related activities. Supplies the effort needed to conduct the reviews and write reports to support Integrated Security Assessment Program (ISAP) or Technical Information Systems Security Reviews (TISSRs). Required Qualifications Practical experience performing information systems A&A as defined in applicable ICDs and guidance Practical experience utilizing risk management strategies for information technology solutions Technical understanding of emerging technologies and their implementation within Government system and network environments Knowledge of information technology concepts used in the evaluation of security performance and integrity of state-of-the-art applications, communications systems, hardware, software, satellite control systems, and information processing systems Technical understanding of information technology systems, software, and networks Ability to effectively coordinate A&A activities of industry and Government information systems to meet acquisition milestone requirements Effective technical report and general correspondence writing ability Ability to manage and track systems or programs involved in the A&A process Experience developing and implementing security related directives and guidance for Information Assurance, Information Technology, and Information Management Experience working with a mixed level skill team to ensure that appropriate knowledge and skill transfer occurs High school's degree and 7+ years of relevant experience, or Associate's degree and 7+ years of relevant experience, or Bachelor's degree and 5+ years of relevant experience, or Master's degree and 3+ years of relevant experience Certifications Must have one of the following IAM Level 2 Certification: CGRC (Previously CAP) CASP CISM CISSP GSLC CCISO Security Requirements U.S. Citizenship Active Top Secret/Sensitive Compartmented Information (TS/SCI) clearance Active Counterintelligence (CI) or Full Scope (FS) Polygraph Work Environment On-site work in a government or contractor facility Occasional travel (up to 10%) This position is dependent on a contract seat being awarded. About LV8D Solutions LV8D Solutions is an elite Systems Engineering and Technical Advisory (SETA) company that delivers advanced systems engineering, integration, acquisition, mission operations, network communications, and cybersecurity support to our defense and intelligence customers. Founded in 2019, we apply our deep technical expertise, understanding, and mission-first mindset to design, acquire, and implement complex, high-impact solutions for our Intelligence Community (IC) and Department of War (DoW) customers. We specialize in every aspect of our customers' space and ground mission systems while offering exceptional work-life balance and an exemplary compensation and total rewards package designed to recruit, train, and retain top talent and committed to national defense and career growth. Equal Employment Opportunity Statement LV8D Solutions LLC is an Equal Opportunity Employer committed to diversity and inclusion. All qualified applicants will receive consideration without regard to race, religion, gender, national origin, disability, veteran status, or other protected categories. Benefits Performance & Recognition Period of Performance (PoP) Bonus Opportunities Performance-based bonus opportunities tied to contract or organizational performance. Retention Incentive Benefit Bounty Receive a payout for unused annual company contributions designated for health insurance premiums and professional training. Referral Bonus Earn up to $5,000 for each successful employee referral. Customer Recognition Letter of Appreciation (LoA) Bonus Opportunities Bonus opportunities based on customer recognition received through Letters of Appreciation. Milestone Rewards Celebrate your career achievements with anniversary awards on your 1st, 5th, 10th, and 20th years of service. Financial & Retirement Benefits Profit Sharing Receive an annual contribution equal to 4% of your W-2 gross earnings into your 401 (k), with immediate vesting. 401(k) Company Match The company matches your 401 (k) contributions dollar-for-dollar up to 6% of your monthly contribution, with immediate vesting. Career Development The company invests in your professional growth through: Annual financial support for professional training and industry certifications. Enhanced financial support for employees actively pursuing a degree at an accredited institution. Work-Life Balance . click apply for full job details
09/15/2026
Full time
Job Description Job Description Mission Context LV8D Solutions supports national security space and intelligence customers delivering next-generation sensing and exploitation capabilities. The role of a Security Control Assessor (SCA) is focused on providing information security Assessment and Authorization (A&A) support throughout the mission program's lifecycle. Position Overview LV8D Solutions is seeking a SCA to conduct independent assessments of the management, operational, and technical security controls employed within or inherited by an information technology (IT) system to determine the overall effectiveness of the security controls. A Security Control Assessor (SCA) performs comprehensive INFOSEC assessment of management, operational, and technical security controls to determine overall effectiveness of the controls for A&A determination throughout a program's system lifecycle. SCAs provide an assessment of the severity of weakness or deficiencies discovered in the Information System (IS) and its environment of operation and recommend corrective actions to address identified vulnerabilities. Prior to initiating the security control assessment, the SCA reviews the System Security Plan (SSP) to ensure the plan provides a set of security controls for the ISs that meet the stated security requirements. Additionally, the SCA must verify that all allocated controls have an acceptable status (i.e., implemented, excepted, or inherited) with appropriate documented details and provides responses in the Government's Risk Management Framework (RMF) tools. Interested candidates need to thrive in an innovative, fast-paced environment; are highly motivated and not afraid to take on uncharted territory; possess strong communication, leadership, and organizational skills; and be able to prioritize their time to be effective in a dynamic environment. Requirements Key Responsibilities Reviews IS for compliance with applicable Intelligence Community (IC), Department of War (DoW), and National Directorate (ND) guidance, and make recommendations to the Government. Provides ISs security advice and guidance Joint Analytical Workstation (JAW) applicable IC, DoW, and NDs and guidance to Government and industry partners for the protection of data at all classification levels including Sensitive Compartmented Information (SCI). Evaluates threats and vulnerabilities to ISs to ascertain the need for additional safeguards and recommend approval, disapproval, or waiver(s) for IS processing national security data at industry and/or Government facilities. Supports development and implementation of directives and guidance for policies. Provides input for consideration in the promulgation of future ISs security policy. Supports and/or conduct site visits and assessments to inspect and verify IS reports. Ensures security control assessments are completed for each IS. Supports the preparation and delivery of presentations, briefings, reports, and memoranda associated with the RMF process. Uses the RMF system of record to complete RMF workflow duties and maintain the asset documentation repository. Establishes and maintains means and methods to track RMF process workflow activities to inform task volume, velocity, and duration of activities. Prepares the final Security Assessment Report (SAR) containing the results and findings from the assessment at the conclusion of each security control assessment activity and the Authorization Recommendation. Ensures appropriate IS security requirements including applicable Interface Control Documents (ICDs), DoW Instructions, NDs and other guidance are addressed and applied and appropriate documentation is prepared by the system owners or programs. The documentation will be contained in the Security Assessment Package, including, but not limited to, the Concept of Operations (CONOP), SSP, Systems Requirements Traceability Matrix, Risk Management Matrix, Test Results, interface control documents, requests for changes, test plans, and other related program security documentation. Collaborates with Information Security Officers (ISOs) and Common Control Providers to initiate Plan of Action and Milestones (POAMs) for ISs based on findings and recommendations from the SAR. Reviews and approves the IS Security Assessment Plan which is comprised of the Security Controls Traceability Matrix and the Security Control Assessment Procedures. Tracks the completion of the SAR. Reviews, coordinates, and responds to security issues as requested by the Government. Provides A&A support to the Government for the protection of special programs and tactical operations related activities. Supplies the effort needed to conduct the reviews and write reports to support Integrated Security Assessment Program (ISAP) or Technical Information Systems Security Reviews (TISSRs). Required Qualifications Practical experience performing information systems A&A as defined in applicable ICDs and guidance Practical experience utilizing risk management strategies for information technology solutions Technical understanding of emerging technologies and their implementation within Government system and network environments Knowledge of information technology concepts used in the evaluation of security performance and integrity of state-of-the-art applications, communications systems, hardware, software, satellite control systems, and information processing systems Technical understanding of information technology systems, software, and networks Ability to effectively coordinate A&A activities of industry and Government information systems to meet acquisition milestone requirements Effective technical report and general correspondence writing ability Ability to manage and track systems or programs involved in the A&A process Experience developing and implementing security related directives and guidance for Information Assurance, Information Technology, and Information Management Experience working with a mixed level skill team to ensure that appropriate knowledge and skill transfer occurs High school's degree and 7+ years of relevant experience, or Associate's degree and 7+ years of relevant experience, or Bachelor's degree and 5+ years of relevant experience, or Master's degree and 3+ years of relevant experience Certifications Must have one of the following IAM Level 2 Certification: CGRC (Previously CAP) CASP CISM CISSP GSLC CCISO Security Requirements U.S. Citizenship Active Top Secret/Sensitive Compartmented Information (TS/SCI) clearance Active Counterintelligence (CI) or Full Scope (FS) Polygraph Work Environment On-site work in a government or contractor facility Occasional travel (up to 10%) This position is dependent on a contract seat being awarded. About LV8D Solutions LV8D Solutions is an elite Systems Engineering and Technical Advisory (SETA) company that delivers advanced systems engineering, integration, acquisition, mission operations, network communications, and cybersecurity support to our defense and intelligence customers. Founded in 2019, we apply our deep technical expertise, understanding, and mission-first mindset to design, acquire, and implement complex, high-impact solutions for our Intelligence Community (IC) and Department of War (DoW) customers. We specialize in every aspect of our customers' space and ground mission systems while offering exceptional work-life balance and an exemplary compensation and total rewards package designed to recruit, train, and retain top talent and committed to national defense and career growth. Equal Employment Opportunity Statement LV8D Solutions LLC is an Equal Opportunity Employer committed to diversity and inclusion. All qualified applicants will receive consideration without regard to race, religion, gender, national origin, disability, veteran status, or other protected categories. Benefits Performance & Recognition Period of Performance (PoP) Bonus Opportunities Performance-based bonus opportunities tied to contract or organizational performance. Retention Incentive Benefit Bounty Receive a payout for unused annual company contributions designated for health insurance premiums and professional training. Referral Bonus Earn up to $5,000 for each successful employee referral. Customer Recognition Letter of Appreciation (LoA) Bonus Opportunities Bonus opportunities based on customer recognition received through Letters of Appreciation. Milestone Rewards Celebrate your career achievements with anniversary awards on your 1st, 5th, 10th, and 20th years of service. Financial & Retirement Benefits Profit Sharing Receive an annual contribution equal to 4% of your W-2 gross earnings into your 401 (k), with immediate vesting. 401(k) Company Match The company matches your 401 (k) contributions dollar-for-dollar up to 6% of your monthly contribution, with immediate vesting. Career Development The company invests in your professional growth through: Annual financial support for professional training and industry certifications. Enhanced financial support for employees actively pursuing a degree at an accredited institution. Work-Life Balance . click apply for full job details
Software Configuration Manager
TekSynap Arlington, Virginia
Job Description Job Description Overview WORK ENVIRONMENT The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of the job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions. Location: Arlington, VA Type of environment: Varies Noise level: Low Work schedule: Schedule is day shift Monday - Friday. May be requested to work evenings and weekends to meet program and contract needs. Amount of Travel: Less than 10% WORK AUTHORIZATION/SECURITY CLEARANCE U.S. Citizen Ability to receive a Public Trust clearance WAGE INFORMATION Target salary range: $145,000 - $175,000. The salary range displayed is an estimate and will be determined on several factors regarding the individual's particular combination of education, knowledge, skills, competencies and experience, as well as contract parameters and organizational requirements. The displayed salary is one component of the total compensation package for employees. PHYSICAL DEMANDS The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. While performing the duties of this job, the employee is regularly required to use hands to handle, feel, touch; reach with hands and arms; talk and hear. The employee is regularly required to stand; walk; sit; climb or balance; and stoop, kneel, crouch, or crawl. The employee is regularly required to lift up to 10 pounds. The employee is frequently required to lift up to 25 pounds; and up to 50 pounds. The vision requirements include close vision, distance vision, peripheral vision, depth perception, and ability to adjust focus. OTHER INFORMATION Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice This position supports an upcoming government contract proposal and is contingent upon contract award and government approval. Candidates must meet all stated requirements and may be required to sign a Letter of Commitment (LOC). Responsibilities We are seeking SCM Manager to join our team supporting the Federal Deposit Insurance Corporation (FDIC) in Arlington, VA. You will be a member of technical team where excellent customer service and professional expertise are required. REQUIRED QUALIFICATIONS Experience Seven or more years of experience with modern Configuration Management tools, frameworks and architecture. Three or more years using scripting languages such as Perl, Ruby and Python. Expertise in installation, Configuration and administration of industry SCM standard tools; (i.e., Telelogic Synergy/CM, StarTeam, PVCS-Dimensions, MKS IM and SI, ClearCase/ClearQuest/UCM, Maven, Cruise Control, Anthill, etc.). Strong Shell/Perl/Python Scripting expertise. Experience in processing complex service requests, such as setting up project builds or creating new scripts, with appropriate controls. Possesses working knowledge and hands-on experience with Java/J2EE technology, Microsoft VB/.NET Technology platforms. Hands-on experience in customizing SCM tools to reflect a process workflow by creating and maintaining UserExits/Triggers, User Roles, Notification mechanisms, etc. Hands-on experience with creating or customizing build automation tools Windows Server, Linux and UNIX environments. Must possess a working knowledge of software development lifecycles and how they pertain to change/version control, creation and identification of baselines, and reporting of software Configuration management metrics. Familiar with Java and object-oriented design principles. Experience using SQL and relational Databases. Extensive knowledge of SOA principles. Experience administering Subversion or other version control systems. Strong Windows/Linux/Unix experience is a must. Demonstrated experience supporting government agencies, customers, or contracts within federal environments. This includes the Intelligence Community (IC), Department of Defense (DoD), Federal Civil agencies, and military organizations. Prior experience supporting the same or similar contract, with an in-depth understanding of the customer environment, requirements, and operational landscape, is highly desirable. Education Bachelor's degree or equivalent experience, advanced degree preferred. Clearance Ability to receive a Public Trust clearance RESPONSIBILITIES Identify Tools, technologies, and processes to improve the reliability, repeatability, and efficiency of Software builds and Releases. Manage and control multiple source code repositories. Validate Application Configurations and source code changes from one build to the next for multiple complex applications. Oversee the efficient migration of source code between development, test, staging, and production. Develop required scripts or code to automate and integrate chosen Configuration Management tools. Work with the systems administration team to automate Application Deployment and Configuration to production Ensure the traceability of source code artifacts to development, test, and production build versions. Install and Configure Applications in the development and test environments. Track, control, and report status of all Software changes to management. Train and mentor others on effective and proficient use of automated build and Deployment systems. Familiarity with scripting and the automation of Software build and Deployment packages. Familiar and comfortable with modern Software Applications and Software development best practices. The mission of FDIC's Chief Information Officer Organization (CIOO) is to provide scalable, efficient technology that enables continuous access to data securely. In support of this mission, FDIC established ServiceNow as an enterprise platform in 2016 and has since implemented six product suites across the ServiceNow platform. The use of cloud platforms like ServiceNow is a key component of the FDIC's ongoing IT Modernization Program, which emphasizes accelerated cloud adoption to support mission needs. The IT Modernization Program is intended to align the FDIC's IT program with key Federal priorities, including the Federal Cloud Smart Strategy. Qualifications TekSynap is a fast growing high-tech company that understands both the pace of technology today and the need to have a comprehensive well planned information management environment. "Technology moving at the speed of thought" embodies these principles - the need to nimbly utilize the best that information technology offers to meet the business needs of our Federal Government customers. Apply now to explore jobs with us at . We offer our full-time employees a competitive benefits package to include health, dental, vision, 401K, life insurance, short-term and long-term disability plans, vacation time and holidays. TekSynap is a drug-free workplace. We reserve the right to conduct drug testing in accordance with federal, state, and local laws. All employees and candidates may be subject to drug screening if deemed necessary to ensure a safe and compliant working environment. By applying to a role at TekSynap you are providing consent to receive text messages regarding your interview and employment status. If at any time you would like to opt out of text messaging, respond "STOP". As part of the application process, you agree that TekSynap Corporation may retain and use your name, e-mail, and contact information for purposes related to employment consideration. EQUAL EMPLOYMENT OPPORTUNITY In order to provide equal employment and advancement opportunities to all individuals, employment decisions will be based on merit, qualifications, and abilities. TekSynap does not discriminate against any person because of race, color, creed, religion, sex, sexual orientation, gender identity, protected veteran status, national origin, disability, age, genetic information or any other characteristic protected by law (referred to as "protected status"). This nondiscrimination policy extends to all terms, conditions, and privileges of employment as well as the use of all company facilities, participation in all company-sponsored activities, and all employment actions such as promotions, compensation, benefits, and termination of employment. TekSynap is committed to ensuring that our online application process provides an equal employment opportunity to all job seekers, including individuals with disabilities. If you believe you need a reasonable accommodation in order to search for a job opening or to submit an application, please contact for assistance.
09/15/2026
Full time
Job Description Job Description Overview WORK ENVIRONMENT The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of the job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions. Location: Arlington, VA Type of environment: Varies Noise level: Low Work schedule: Schedule is day shift Monday - Friday. May be requested to work evenings and weekends to meet program and contract needs. Amount of Travel: Less than 10% WORK AUTHORIZATION/SECURITY CLEARANCE U.S. Citizen Ability to receive a Public Trust clearance WAGE INFORMATION Target salary range: $145,000 - $175,000. The salary range displayed is an estimate and will be determined on several factors regarding the individual's particular combination of education, knowledge, skills, competencies and experience, as well as contract parameters and organizational requirements. The displayed salary is one component of the total compensation package for employees. PHYSICAL DEMANDS The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. While performing the duties of this job, the employee is regularly required to use hands to handle, feel, touch; reach with hands and arms; talk and hear. The employee is regularly required to stand; walk; sit; climb or balance; and stoop, kneel, crouch, or crawl. The employee is regularly required to lift up to 10 pounds. The employee is frequently required to lift up to 25 pounds; and up to 50 pounds. The vision requirements include close vision, distance vision, peripheral vision, depth perception, and ability to adjust focus. OTHER INFORMATION Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice This position supports an upcoming government contract proposal and is contingent upon contract award and government approval. Candidates must meet all stated requirements and may be required to sign a Letter of Commitment (LOC). Responsibilities We are seeking SCM Manager to join our team supporting the Federal Deposit Insurance Corporation (FDIC) in Arlington, VA. You will be a member of technical team where excellent customer service and professional expertise are required. REQUIRED QUALIFICATIONS Experience Seven or more years of experience with modern Configuration Management tools, frameworks and architecture. Three or more years using scripting languages such as Perl, Ruby and Python. Expertise in installation, Configuration and administration of industry SCM standard tools; (i.e., Telelogic Synergy/CM, StarTeam, PVCS-Dimensions, MKS IM and SI, ClearCase/ClearQuest/UCM, Maven, Cruise Control, Anthill, etc.). Strong Shell/Perl/Python Scripting expertise. Experience in processing complex service requests, such as setting up project builds or creating new scripts, with appropriate controls. Possesses working knowledge and hands-on experience with Java/J2EE technology, Microsoft VB/.NET Technology platforms. Hands-on experience in customizing SCM tools to reflect a process workflow by creating and maintaining UserExits/Triggers, User Roles, Notification mechanisms, etc. Hands-on experience with creating or customizing build automation tools Windows Server, Linux and UNIX environments. Must possess a working knowledge of software development lifecycles and how they pertain to change/version control, creation and identification of baselines, and reporting of software Configuration management metrics. Familiar with Java and object-oriented design principles. Experience using SQL and relational Databases. Extensive knowledge of SOA principles. Experience administering Subversion or other version control systems. Strong Windows/Linux/Unix experience is a must. Demonstrated experience supporting government agencies, customers, or contracts within federal environments. This includes the Intelligence Community (IC), Department of Defense (DoD), Federal Civil agencies, and military organizations. Prior experience supporting the same or similar contract, with an in-depth understanding of the customer environment, requirements, and operational landscape, is highly desirable. Education Bachelor's degree or equivalent experience, advanced degree preferred. Clearance Ability to receive a Public Trust clearance RESPONSIBILITIES Identify Tools, technologies, and processes to improve the reliability, repeatability, and efficiency of Software builds and Releases. Manage and control multiple source code repositories. Validate Application Configurations and source code changes from one build to the next for multiple complex applications. Oversee the efficient migration of source code between development, test, staging, and production. Develop required scripts or code to automate and integrate chosen Configuration Management tools. Work with the systems administration team to automate Application Deployment and Configuration to production Ensure the traceability of source code artifacts to development, test, and production build versions. Install and Configure Applications in the development and test environments. Track, control, and report status of all Software changes to management. Train and mentor others on effective and proficient use of automated build and Deployment systems. Familiarity with scripting and the automation of Software build and Deployment packages. Familiar and comfortable with modern Software Applications and Software development best practices. The mission of FDIC's Chief Information Officer Organization (CIOO) is to provide scalable, efficient technology that enables continuous access to data securely. In support of this mission, FDIC established ServiceNow as an enterprise platform in 2016 and has since implemented six product suites across the ServiceNow platform. The use of cloud platforms like ServiceNow is a key component of the FDIC's ongoing IT Modernization Program, which emphasizes accelerated cloud adoption to support mission needs. The IT Modernization Program is intended to align the FDIC's IT program with key Federal priorities, including the Federal Cloud Smart Strategy. Qualifications TekSynap is a fast growing high-tech company that understands both the pace of technology today and the need to have a comprehensive well planned information management environment. "Technology moving at the speed of thought" embodies these principles - the need to nimbly utilize the best that information technology offers to meet the business needs of our Federal Government customers. Apply now to explore jobs with us at . We offer our full-time employees a competitive benefits package to include health, dental, vision, 401K, life insurance, short-term and long-term disability plans, vacation time and holidays. TekSynap is a drug-free workplace. We reserve the right to conduct drug testing in accordance with federal, state, and local laws. All employees and candidates may be subject to drug screening if deemed necessary to ensure a safe and compliant working environment. By applying to a role at TekSynap you are providing consent to receive text messages regarding your interview and employment status. If at any time you would like to opt out of text messaging, respond "STOP". As part of the application process, you agree that TekSynap Corporation may retain and use your name, e-mail, and contact information for purposes related to employment consideration. EQUAL EMPLOYMENT OPPORTUNITY In order to provide equal employment and advancement opportunities to all individuals, employment decisions will be based on merit, qualifications, and abilities. TekSynap does not discriminate against any person because of race, color, creed, religion, sex, sexual orientation, gender identity, protected veteran status, national origin, disability, age, genetic information or any other characteristic protected by law (referred to as "protected status"). This nondiscrimination policy extends to all terms, conditions, and privileges of employment as well as the use of all company facilities, participation in all company-sponsored activities, and all employment actions such as promotions, compensation, benefits, and termination of employment. TekSynap is committed to ensuring that our online application process provides an equal employment opportunity to all job seekers, including individuals with disabilities. If you believe you need a reasonable accommodation in order to search for a job opening or to submit an application, please contact for assistance.
Security Control Assessor II
P-11 Security Inc Arlington, Virginia
Job Description Job Description Description: P-11 Security is seeking a SCA who is responsible for conducting a comprehensive assessment of the management, operational, and technical security controls employed within or inherited by an IS to determine the overall effectiveness of the controls (i.e., the extent to which the controls are implemented correctly, operating as intended, and producing the desired outcome with respect to meeting the security requirements for the system). SCAs also provide an assessment of the severity of weaknesses or deficiencies discovered in the IS and its environment of operation and recommend corrective actions to address identified vulnerabilities. Responsibilities will cover Collateral, Sensitive Compartmented Information (SCI) and Special Access Program (SAP) activities within the customer's area of responsibility. Performance shall include: Perform oversight of the development, implementation and evaluation of IS security program policy; special emphasis placed upon integration of existing SAP network infrastructure Perform assessment of ISs, based upon the Risk Management Framework (RMF) methodology in accordance with the Joint Special Access Program (SAP) Implementation Guide (JSIG) Advise the Information System Owner (ISO), Information Data Owner (IDO), Program Security Officer (PSO), and the Delegated and/or Authorizing Official (DAO/AO) on any assessment and authorization issues Evaluate Authorization packages and make recommendation to the AO and/or DAO for authorization Evaluate IS threats and vulnerabilities to determine whether additional safeguards are required Advise the Government concerning the impact levels for Confidentiality, Integrity, and Availability for the information on a system Ensure security assessments are completed and results documented and prepare the Security Assessment Report (SAR) for the Authorization boundary Initiate a Plan of Action and Milestones (POA&M) with identified weaknesses for each Authorization Boundaries assessed, based on findings and recommendations from the SAR Evaluate security assessment documentation and provide written recommendations for security authorization to the Government Discuss recommendation for authorization and submit the security authorization package to the AO/DAO Assess proposed changes to Authorization boundaries operating environment and mission needs to determine the continuation to operate. Review and concur with all sanitization and clearing procedures in accordance with Government guidance and/or policy Assist the Government compliance inspections Assist the Government with security incidents that relate to cybersecurity and ensure that the proper and corrective measures have been taken Ensure organization are addressing and conducting all phases of the system development life cycle (SDLC) Evaluate Hardware and Software to determine security impact that it might have on Authorization boundaries Evaluate the effectiveness and implementation of Continuous Monitoring Plans Represent the customer on inspection teams Requirements: Experience: 7 - 9 years related experience Minimum of four (4) years' experience in SAP, SCI or Collateral Information Systems (IS) Security and the implementation of regulations identified in the description of duties. Prior performance in the role of ISSO and ISSM or SCA Education : Bachelor's degree in a related discipline or equivalent experience (4 years) Certifications: Must meet position and certification requirements outlined in DoD Directive 8570.01-M for Information Assurance Technician Level III or Information Assurance Manager Level II within 6 months of the date of hire Security Clearance: Current Top Secret Clearance with SCI Eligibility Eligibility for access to Special Access Program Information Willingness to submit to a Counterintelligence polygraph Other Requirements: Must be able to regularly lift 50lbs
09/15/2026
Full time
Job Description Job Description Description: P-11 Security is seeking a SCA who is responsible for conducting a comprehensive assessment of the management, operational, and technical security controls employed within or inherited by an IS to determine the overall effectiveness of the controls (i.e., the extent to which the controls are implemented correctly, operating as intended, and producing the desired outcome with respect to meeting the security requirements for the system). SCAs also provide an assessment of the severity of weaknesses or deficiencies discovered in the IS and its environment of operation and recommend corrective actions to address identified vulnerabilities. Responsibilities will cover Collateral, Sensitive Compartmented Information (SCI) and Special Access Program (SAP) activities within the customer's area of responsibility. Performance shall include: Perform oversight of the development, implementation and evaluation of IS security program policy; special emphasis placed upon integration of existing SAP network infrastructure Perform assessment of ISs, based upon the Risk Management Framework (RMF) methodology in accordance with the Joint Special Access Program (SAP) Implementation Guide (JSIG) Advise the Information System Owner (ISO), Information Data Owner (IDO), Program Security Officer (PSO), and the Delegated and/or Authorizing Official (DAO/AO) on any assessment and authorization issues Evaluate Authorization packages and make recommendation to the AO and/or DAO for authorization Evaluate IS threats and vulnerabilities to determine whether additional safeguards are required Advise the Government concerning the impact levels for Confidentiality, Integrity, and Availability for the information on a system Ensure security assessments are completed and results documented and prepare the Security Assessment Report (SAR) for the Authorization boundary Initiate a Plan of Action and Milestones (POA&M) with identified weaknesses for each Authorization Boundaries assessed, based on findings and recommendations from the SAR Evaluate security assessment documentation and provide written recommendations for security authorization to the Government Discuss recommendation for authorization and submit the security authorization package to the AO/DAO Assess proposed changes to Authorization boundaries operating environment and mission needs to determine the continuation to operate. Review and concur with all sanitization and clearing procedures in accordance with Government guidance and/or policy Assist the Government compliance inspections Assist the Government with security incidents that relate to cybersecurity and ensure that the proper and corrective measures have been taken Ensure organization are addressing and conducting all phases of the system development life cycle (SDLC) Evaluate Hardware and Software to determine security impact that it might have on Authorization boundaries Evaluate the effectiveness and implementation of Continuous Monitoring Plans Represent the customer on inspection teams Requirements: Experience: 7 - 9 years related experience Minimum of four (4) years' experience in SAP, SCI or Collateral Information Systems (IS) Security and the implementation of regulations identified in the description of duties. Prior performance in the role of ISSO and ISSM or SCA Education : Bachelor's degree in a related discipline or equivalent experience (4 years) Certifications: Must meet position and certification requirements outlined in DoD Directive 8570.01-M for Information Assurance Technician Level III or Information Assurance Manager Level II within 6 months of the date of hire Security Clearance: Current Top Secret Clearance with SCI Eligibility Eligibility for access to Special Access Program Information Willingness to submit to a Counterintelligence polygraph Other Requirements: Must be able to regularly lift 50lbs
Information Security Specialist
QED Systems LLC Ft Myer, Virginia
Job Description Job Description QED Systems, LLC, is currently recruiting an Information Security Specialist , to join our team at the Pentagon in Arlington, VA to support our HQDA G-3/5/7 Support Services contract. Job Duties: Provide support with the execution of the G-3/5/7 Information Security Program, which includes the classification/declassification program and security education and training programs. Develop, present, and facilitate security training for all security disciplines, including Information Security, OPSEC, Personnel Security, and Antiterrorism/Force Protection (AT/FP). Develop and prepare Security Classification Guides (SCGs) for administrative and formatting purposes in coordination with the responsible Directorate and Security Manager to ensure SCGs are reviewed and updated every five years IAW DoDM 5200.45 prior to the Original Classification Authority (OCA) signature. Conduct in-person security training for new personnel and provide tailored security training across the G-3/5/7 as required. Develop and prepare draft SOPs that incorporate specific implementation guidance, requirements, and all essential guidance to ensure standardization throughout the G-3/5/7. Each SOP will be reviewed annually to ensure it is up to date and reflects current policies. Final SOPs will be delivered in both hard copy and electronic formats. The Government will provide resource data as required. Perform designated security staff assistance visits, covering all security disciplines. Assist with the execution of the G-3/5/7 Information Security Program (ISP), including the classification/declassification program and security education and training initiatives. Support the G-3/5/7 Automatic Declassification and Mandatory Declassification Program and establish professional contacts within the declassification community. Collaborate with G-3/5/7 Directorates, Chief of Security, and/or government Program Managers to develop and publish G-3/5/7 security procedures and documents. Conduct security reviews of documents intended for public release in coordination with the G-3/5/7. Conduct Secure Room Assessments in conjunction with the Physical Security Officer. Develop materials and products for the security education and awareness training program. Support the G-3/5/7 Security Division program by conducting Preliminary Inquiries and with in-processing and out-processing. Required Skills & Experience: Detail-oriented with excellent technical, verbal, and written communication skills. Must have the ability to work within Government-provided software packages with emphasis on MS Office products, for example, Outlook, Word, SharePoint, PowerPoint, and Excel. Must be able to think critically and apply analytical methodologies to raw data to present clear and precise recommendations. Ability to focus on Mission requirements while tracking multiple competing priorities. Require minimal supervision in the fast-paced, critical environment of the Army Headquarters. Must be proficient in the Enterprise Task Management Software Solution (ETMS2) (formerly Task Management Tool). Ability to clearly articulate analysis through both oral and written communication. Ability to provide executive, technical, and administrative support to senior leaders. Experience with Multinational, Interagency on the Army/Joint Staff and/or Major Army Commands in Policy, Bi-lateral exchanges, proficient in planning and execution of working groups. Operational experience using standard automated toolsets to perform duties. Ability to assist with drafting Army EXORDs, FRAGOs, meeting minutes and EXSUMs and strategic documents. Demonstrated experience with the policy development lifecycle. Strong understanding of Army regulations and processes. Demonstrated expertise in Physical Security, including facility access control, alarm systems, security containers, and restricted area management in accordance with DoD and Army policies and regulations. Experience in classification management, including original and derivative classification, proper marking, downgrading, declassification, and destruction of classified materials. Proven ability to conduct security inspections, staff assistance visits, self-assessments, and compliance reviews to ensure security programs adhere to DOW and Army policies and regulations. Demonstrated experience in security training, program support, and assessments across multiple security disciplines. Familiarity with OPSEC, Personnel Security, AT/FP, and declassification procedures, with the ability to integrate these into a comprehensive security program. Required Clearance: ACTIVE CLEARANCE LEVEL REQUIRED: Top Secret w/ SCI eligibility Qualifications: Bachelor's degree required. Minimum of five (5) years' experience with managing Information Security Program for safeguarding of classified and sensitive information within Department of War (DOW) or Army environment. Prior experience supporting Army command level security programs, including collaboration with security managers, subject matter experts, and HQ level stakeholders. Travel: Less than 10 % travel is expected for this position. Travel may include continental United States and outside continental United States locations. Work Environment: This position will be co-located with the customer and other contractors in Government office spaces. While not generally authorized, telework may be required due to exceptional circumstances (extreme weather, pandemic, etc.). Physical Demands: Physical demands of this position include ability to: Be independently mobile. Communicate effectively with co-workers and customers. Withstand prolonged periods of sitting at a desk and computer use. Reasonable accommodation will be provided to enable individuals with disabilities to perform the essential functions. Position Type/Expected Hours of Work: This is a full time position, Monday through Friday. Flexibility around core hours. Travel may occur outside of normal core hours. Additional Information: Please note this job description is not intended to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Assigned tasks may vary, with or without prior notice, to effectively meet client requirements. Total Compensation: QED offers a competitive compensation package for full-time employees. Our total compensation package is value-based and negotiable depending upon the candidate's specific skills and applicable relevant experience. Benefits include: Paid Time Off (PTO) 11 Paid Holidays 401(k) Matching Medical, Dental & Vision Benefits Life Insurance, AD&D, and Short-Term & Long-Term Disability Professional Growth Opportunities Additional Benefits Estimated Salary Range : $120,000.00 - $130,000.00, annually. This is not a guarantee of compensation or salary. This represents the typical range for fully qualified candidates for this position based on experience, geographic location, and other factors. The final offer amount may vary. QED Systems, LLC is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to sex, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law. QED Systems, LLC is an Equal Employment Opportunity and Affirmative Action Employer - Minority/Disabled/Veteran/Female
09/15/2026
Full time
Job Description Job Description QED Systems, LLC, is currently recruiting an Information Security Specialist , to join our team at the Pentagon in Arlington, VA to support our HQDA G-3/5/7 Support Services contract. Job Duties: Provide support with the execution of the G-3/5/7 Information Security Program, which includes the classification/declassification program and security education and training programs. Develop, present, and facilitate security training for all security disciplines, including Information Security, OPSEC, Personnel Security, and Antiterrorism/Force Protection (AT/FP). Develop and prepare Security Classification Guides (SCGs) for administrative and formatting purposes in coordination with the responsible Directorate and Security Manager to ensure SCGs are reviewed and updated every five years IAW DoDM 5200.45 prior to the Original Classification Authority (OCA) signature. Conduct in-person security training for new personnel and provide tailored security training across the G-3/5/7 as required. Develop and prepare draft SOPs that incorporate specific implementation guidance, requirements, and all essential guidance to ensure standardization throughout the G-3/5/7. Each SOP will be reviewed annually to ensure it is up to date and reflects current policies. Final SOPs will be delivered in both hard copy and electronic formats. The Government will provide resource data as required. Perform designated security staff assistance visits, covering all security disciplines. Assist with the execution of the G-3/5/7 Information Security Program (ISP), including the classification/declassification program and security education and training initiatives. Support the G-3/5/7 Automatic Declassification and Mandatory Declassification Program and establish professional contacts within the declassification community. Collaborate with G-3/5/7 Directorates, Chief of Security, and/or government Program Managers to develop and publish G-3/5/7 security procedures and documents. Conduct security reviews of documents intended for public release in coordination with the G-3/5/7. Conduct Secure Room Assessments in conjunction with the Physical Security Officer. Develop materials and products for the security education and awareness training program. Support the G-3/5/7 Security Division program by conducting Preliminary Inquiries and with in-processing and out-processing. Required Skills & Experience: Detail-oriented with excellent technical, verbal, and written communication skills. Must have the ability to work within Government-provided software packages with emphasis on MS Office products, for example, Outlook, Word, SharePoint, PowerPoint, and Excel. Must be able to think critically and apply analytical methodologies to raw data to present clear and precise recommendations. Ability to focus on Mission requirements while tracking multiple competing priorities. Require minimal supervision in the fast-paced, critical environment of the Army Headquarters. Must be proficient in the Enterprise Task Management Software Solution (ETMS2) (formerly Task Management Tool). Ability to clearly articulate analysis through both oral and written communication. Ability to provide executive, technical, and administrative support to senior leaders. Experience with Multinational, Interagency on the Army/Joint Staff and/or Major Army Commands in Policy, Bi-lateral exchanges, proficient in planning and execution of working groups. Operational experience using standard automated toolsets to perform duties. Ability to assist with drafting Army EXORDs, FRAGOs, meeting minutes and EXSUMs and strategic documents. Demonstrated experience with the policy development lifecycle. Strong understanding of Army regulations and processes. Demonstrated expertise in Physical Security, including facility access control, alarm systems, security containers, and restricted area management in accordance with DoD and Army policies and regulations. Experience in classification management, including original and derivative classification, proper marking, downgrading, declassification, and destruction of classified materials. Proven ability to conduct security inspections, staff assistance visits, self-assessments, and compliance reviews to ensure security programs adhere to DOW and Army policies and regulations. Demonstrated experience in security training, program support, and assessments across multiple security disciplines. Familiarity with OPSEC, Personnel Security, AT/FP, and declassification procedures, with the ability to integrate these into a comprehensive security program. Required Clearance: ACTIVE CLEARANCE LEVEL REQUIRED: Top Secret w/ SCI eligibility Qualifications: Bachelor's degree required. Minimum of five (5) years' experience with managing Information Security Program for safeguarding of classified and sensitive information within Department of War (DOW) or Army environment. Prior experience supporting Army command level security programs, including collaboration with security managers, subject matter experts, and HQ level stakeholders. Travel: Less than 10 % travel is expected for this position. Travel may include continental United States and outside continental United States locations. Work Environment: This position will be co-located with the customer and other contractors in Government office spaces. While not generally authorized, telework may be required due to exceptional circumstances (extreme weather, pandemic, etc.). Physical Demands: Physical demands of this position include ability to: Be independently mobile. Communicate effectively with co-workers and customers. Withstand prolonged periods of sitting at a desk and computer use. Reasonable accommodation will be provided to enable individuals with disabilities to perform the essential functions. Position Type/Expected Hours of Work: This is a full time position, Monday through Friday. Flexibility around core hours. Travel may occur outside of normal core hours. Additional Information: Please note this job description is not intended to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Assigned tasks may vary, with or without prior notice, to effectively meet client requirements. Total Compensation: QED offers a competitive compensation package for full-time employees. Our total compensation package is value-based and negotiable depending upon the candidate's specific skills and applicable relevant experience. Benefits include: Paid Time Off (PTO) 11 Paid Holidays 401(k) Matching Medical, Dental & Vision Benefits Life Insurance, AD&D, and Short-Term & Long-Term Disability Professional Growth Opportunities Additional Benefits Estimated Salary Range : $120,000.00 - $130,000.00, annually. This is not a guarantee of compensation or salary. This represents the typical range for fully qualified candidates for this position based on experience, geographic location, and other factors. The final offer amount may vary. QED Systems, LLC is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to sex, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law. QED Systems, LLC is an Equal Employment Opportunity and Affirmative Action Employer - Minority/Disabled/Veteran/Female
Security Control Assessor (SME), Level III
OneZero Solutions Curtis Bay, Maryland
Job Description Job Description We are an employee-centric company that truly values our team members and the contributions they make to our customers and the missions they support. We pride ourselves on being forward-leaning thinkers and on building teams that are, and continue to be, technically proficient across a broad range of cyber mission areas. OneZero full-time employees receive a highly competitive benefits package, including health, dental, vision, and life insurance, a 401(k) with company matching, paid time off and holidays, an employee referral program, and educational assistance. Additional details are available on our website: Position Title : Security Control Assessor (SME), Level IIILocation: USCG Surface Forces Logistics Center, 2401 Hawkins Point Road, Baltimore, MD 21226. Work may also be performed at the SFLC satellite offices at 707 East Ordnance Road, approximately one mile from the primary site, and at other sites as determined necessary by the Contracting Officer's Representative (COR).Clearance:No security clearance required. This position does not involve access to classified information or classified IT systems.S. citizenship is required in accordance with HSAR 3052.204-71 Alternate I.Position SummaryThe Security Control Assessor (SCA) provides independent security control assessment and authorization support to the USCG SFLC Business Operations Division in support of Surface Domain Operational Technology (OT) and Platform IT systems. The role is the assessment authority on the team: it evaluates whether security and privacy controls are implemented correctly, operating as intended, and producing the intended outcome, and it provides the evidence the Authorizing Official relies on to make risk decisions.This is the senior assessment position on the task order and is distinct from the ISSO roles, which own and maintain the authorization packages. The SCA assesses; the ISSOs prepare and sustain. The position is expected to operate with a high degree of independence and to advise the OT Security Manager (ISSM) directly.Key ResponsibilitiesSupport the OT Security Manager (ISSM) and staff in establishing and maintaining the programs, procedures, and policies that protect Government Sensitive But Unclassified (SBU) information.Perform independent assessments of SFLC Operational Technology to verify that applicable security and privacy controls are implemented correctly, operating as intended, and producing the desired outcome.Provide security assessment and authorization consultation services to the ISSM, on site.Review existing policies, procedures, and guidelines for compliance with DHS, USCG, and DoD cybersecurity policy; draft or revise SFLC policy documentation for ISSM review, approval, and organizational implementation.Assist in preparing RMF security authorization documentation for submission to the Authorizing Official (AO).Maintain security assessment information and supporting documentation within Government-designated systems and repositories.Create and validate SFLC security assessment and authorization accounts within Government-designated systems and tools.Update and maintain assessment and authorization status within Government-designated tracking systems and databases.Upload, track, and update Plans of Action and Milestones (POA recommend POA&M updates based on assessment results and maintain traceability from identified vulnerabilities through to the applicable POA&M.Conduct vulnerability scans of SFLC OT, networks, devices, and associated components using Government-approved tools.Provide assistance to system administrators in remediating vulnerabilities identified through scanning.Provide vulnerability and risk management support in conjunction with assessment and authorization activities.Maintain the enterprise tracking log for electronic spillage activities in accordance with Government policy.Support the destruction of removable media generated during assessment activities in accordance with Government procedures.Support cybersecurity strategic planning and continuous monitoring activities, evaluating enterprise services through assessment of priorities and risk.Provide bi-weekly status reports to the SFLC OT Security Manager (ISSM).Conduct a monthly project status update briefing to the ISSM at SFLC Baltimore.Required QualificationsExperienceTen (10) or more years of progressive cybersecurity experience, including at least five (5) years performing security control assessments or independent A&A validation in a federal environment.Demonstrated experience executing NIST SP 800-37 RMF end to end, including control assessment against NIST SP 800-53A.Experience assessing systems to a formal authorization decision and producing assessment artifacts relied upon by an Authorizing Official.Experience conducting and interpreting vulnerability scans and translating findings into risk-based recommendations and POA&M entries.Experience drafting and revising organizational cybersecurity policy for Government review and adoption.CertificationMust hold and maintain at least one active certification approved for Information Assurance Management (IAM) Level II or Level III. Any one of the following satisfies the requirement:CISSP - Certified Information Systems Security Professional (or CISSP Associate)CISM - Certified Information Security ManagerCGRC - Governance, Risk and Compliance Certification (formerly CAP)CASP+ - CompTIA Advanced Security PractitionerGSLC - GIAC Security Leadership CertificationCCISO - EC-Council Certified Chief Information Security Officer (Level III only)Certification requirements are subject to confirmation against COMDTINST M2620.2 (series) Appendix D, the controlling USCG certification matrix. Verify the accepted certification list with the Program Manager before extending an offer.Evidence of active certification in good standing is required prior to onboarding. Waivers and exceptions to certification requirements will not be granted.Certifications must remain current, active, and in good standing throughout performance. Loss, lapse, or revocation of a required certification is grounds for removal from the contract. Continuing education required to maintain certification is at the employee's and company's expense.Ability to work independently and advise a Government security manager at the senior level.Strong written communication: the role produces bi-weekly written reporting and briefs the ISSM monthly.Ability to read, write, speak, and understand English fluently.Preferred QualificationsPrior USCG, DHS, or DoD assessment experience, particularly with Surface Domain OT or Platform IT systems.Familiarity with COMDTINST M2620.2 (series) and COMDTINST 5500.13 (series).Experience assessing OT/ICS or PIT systems where conventional endpoint tooling cannot be deployed.CGRC (formerly CAP), CISA, or GSNA in addition to the required baseline certification.Experience supporting DHS SELC-aligned programs.Master's degree in cybersecurity, information systems, or a related field.Technical SkillsNIST SP 800-37 (RMF), 800-53 / 53A / 53B, 800-137 (ISCM), FIPS 199 and FIPS 200DHS 4300A Sensitive Systems Handbook and the DHS Systems Engineering Life Cycle (SELC)Government-designated A&A repositories and tracking tools (e.g., eMASS or successor)DISA Security Technical Implementation Guides (STIGs) and Security Requirements Guides (SRGs)Government-approved vulnerability scanning and compliance tooling (e.g., ACAS/Nessus, SCAP-validated scanners)POA&M development, tracking, and closure, including waiver and risk acceptance packagesOperational Technology (OT), Platform IT (PIT), and industrial control system environments, including constraints on agent-based toolingNIST SP 800-30 risk assessment methodology and NIST SP 800-115 technical assessment techniquesElectronic spillage handling and removable media sanitization proceduresSecurity ClearanceNo security clearance required. This position does not involve access to classified information or classified IT systems.S. citizenship is required in accordance with HSAR 3052.204-71 Alternate I.A favorably adjudicated Tier 1 background investigation (or higher) is required. Candidates without an existing investigation on file must complete an Electronic Application (eApp) for investigation processing.Note to recruiting: per the task order, the position is not billable until the selected candidate is fully cleared, has a CAC in hand, and has reported to the work site. Fill timelines should assume 30-90 days for investigation and CAC issuance.EducationBachelor 's degree in cybersecurity, computer science, information systems, engineering, or a related field.Work EnvironmentPrimarily on-site at SFLC Baltimore. On-site presence is required for the monthly status briefing to the ISSM and for participation in change management boards, technical exchange meetings, and Government working groups.The Government furnishes workspace, telephone, a Standard Workstation, and copy/fax access.Remote work may be authorized at the sole discretion of the Government. If authorized, compliant hardware, software, and internet service are contractor- furnished.Occasional travel outside the local commuting area may be required for training and associated off-site meetings, subject to advance COR approval and reimbursed per the Federal Travel Regulations. The 707 East Ordnance Road satellite office is within the local commuting area.OneZero Solutions, LLC is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, pregnancy, genetic information, disability, status as a protected veteran, or any other protected category under applicable federal, state, and local laws.To request an accommodation . click apply for full job details
09/15/2026
Full time
Job Description Job Description We are an employee-centric company that truly values our team members and the contributions they make to our customers and the missions they support. We pride ourselves on being forward-leaning thinkers and on building teams that are, and continue to be, technically proficient across a broad range of cyber mission areas. OneZero full-time employees receive a highly competitive benefits package, including health, dental, vision, and life insurance, a 401(k) with company matching, paid time off and holidays, an employee referral program, and educational assistance. Additional details are available on our website: Position Title : Security Control Assessor (SME), Level IIILocation: USCG Surface Forces Logistics Center, 2401 Hawkins Point Road, Baltimore, MD 21226. Work may also be performed at the SFLC satellite offices at 707 East Ordnance Road, approximately one mile from the primary site, and at other sites as determined necessary by the Contracting Officer's Representative (COR).Clearance:No security clearance required. This position does not involve access to classified information or classified IT systems.S. citizenship is required in accordance with HSAR 3052.204-71 Alternate I.Position SummaryThe Security Control Assessor (SCA) provides independent security control assessment and authorization support to the USCG SFLC Business Operations Division in support of Surface Domain Operational Technology (OT) and Platform IT systems. The role is the assessment authority on the team: it evaluates whether security and privacy controls are implemented correctly, operating as intended, and producing the intended outcome, and it provides the evidence the Authorizing Official relies on to make risk decisions.This is the senior assessment position on the task order and is distinct from the ISSO roles, which own and maintain the authorization packages. The SCA assesses; the ISSOs prepare and sustain. The position is expected to operate with a high degree of independence and to advise the OT Security Manager (ISSM) directly.Key ResponsibilitiesSupport the OT Security Manager (ISSM) and staff in establishing and maintaining the programs, procedures, and policies that protect Government Sensitive But Unclassified (SBU) information.Perform independent assessments of SFLC Operational Technology to verify that applicable security and privacy controls are implemented correctly, operating as intended, and producing the desired outcome.Provide security assessment and authorization consultation services to the ISSM, on site.Review existing policies, procedures, and guidelines for compliance with DHS, USCG, and DoD cybersecurity policy; draft or revise SFLC policy documentation for ISSM review, approval, and organizational implementation.Assist in preparing RMF security authorization documentation for submission to the Authorizing Official (AO).Maintain security assessment information and supporting documentation within Government-designated systems and repositories.Create and validate SFLC security assessment and authorization accounts within Government-designated systems and tools.Update and maintain assessment and authorization status within Government-designated tracking systems and databases.Upload, track, and update Plans of Action and Milestones (POA recommend POA&M updates based on assessment results and maintain traceability from identified vulnerabilities through to the applicable POA&M.Conduct vulnerability scans of SFLC OT, networks, devices, and associated components using Government-approved tools.Provide assistance to system administrators in remediating vulnerabilities identified through scanning.Provide vulnerability and risk management support in conjunction with assessment and authorization activities.Maintain the enterprise tracking log for electronic spillage activities in accordance with Government policy.Support the destruction of removable media generated during assessment activities in accordance with Government procedures.Support cybersecurity strategic planning and continuous monitoring activities, evaluating enterprise services through assessment of priorities and risk.Provide bi-weekly status reports to the SFLC OT Security Manager (ISSM).Conduct a monthly project status update briefing to the ISSM at SFLC Baltimore.Required QualificationsExperienceTen (10) or more years of progressive cybersecurity experience, including at least five (5) years performing security control assessments or independent A&A validation in a federal environment.Demonstrated experience executing NIST SP 800-37 RMF end to end, including control assessment against NIST SP 800-53A.Experience assessing systems to a formal authorization decision and producing assessment artifacts relied upon by an Authorizing Official.Experience conducting and interpreting vulnerability scans and translating findings into risk-based recommendations and POA&M entries.Experience drafting and revising organizational cybersecurity policy for Government review and adoption.CertificationMust hold and maintain at least one active certification approved for Information Assurance Management (IAM) Level II or Level III. Any one of the following satisfies the requirement:CISSP - Certified Information Systems Security Professional (or CISSP Associate)CISM - Certified Information Security ManagerCGRC - Governance, Risk and Compliance Certification (formerly CAP)CASP+ - CompTIA Advanced Security PractitionerGSLC - GIAC Security Leadership CertificationCCISO - EC-Council Certified Chief Information Security Officer (Level III only)Certification requirements are subject to confirmation against COMDTINST M2620.2 (series) Appendix D, the controlling USCG certification matrix. Verify the accepted certification list with the Program Manager before extending an offer.Evidence of active certification in good standing is required prior to onboarding. Waivers and exceptions to certification requirements will not be granted.Certifications must remain current, active, and in good standing throughout performance. Loss, lapse, or revocation of a required certification is grounds for removal from the contract. Continuing education required to maintain certification is at the employee's and company's expense.Ability to work independently and advise a Government security manager at the senior level.Strong written communication: the role produces bi-weekly written reporting and briefs the ISSM monthly.Ability to read, write, speak, and understand English fluently.Preferred QualificationsPrior USCG, DHS, or DoD assessment experience, particularly with Surface Domain OT or Platform IT systems.Familiarity with COMDTINST M2620.2 (series) and COMDTINST 5500.13 (series).Experience assessing OT/ICS or PIT systems where conventional endpoint tooling cannot be deployed.CGRC (formerly CAP), CISA, or GSNA in addition to the required baseline certification.Experience supporting DHS SELC-aligned programs.Master's degree in cybersecurity, information systems, or a related field.Technical SkillsNIST SP 800-37 (RMF), 800-53 / 53A / 53B, 800-137 (ISCM), FIPS 199 and FIPS 200DHS 4300A Sensitive Systems Handbook and the DHS Systems Engineering Life Cycle (SELC)Government-designated A&A repositories and tracking tools (e.g., eMASS or successor)DISA Security Technical Implementation Guides (STIGs) and Security Requirements Guides (SRGs)Government-approved vulnerability scanning and compliance tooling (e.g., ACAS/Nessus, SCAP-validated scanners)POA&M development, tracking, and closure, including waiver and risk acceptance packagesOperational Technology (OT), Platform IT (PIT), and industrial control system environments, including constraints on agent-based toolingNIST SP 800-30 risk assessment methodology and NIST SP 800-115 technical assessment techniquesElectronic spillage handling and removable media sanitization proceduresSecurity ClearanceNo security clearance required. This position does not involve access to classified information or classified IT systems.S. citizenship is required in accordance with HSAR 3052.204-71 Alternate I.A favorably adjudicated Tier 1 background investigation (or higher) is required. Candidates without an existing investigation on file must complete an Electronic Application (eApp) for investigation processing.Note to recruiting: per the task order, the position is not billable until the selected candidate is fully cleared, has a CAC in hand, and has reported to the work site. Fill timelines should assume 30-90 days for investigation and CAC issuance.EducationBachelor 's degree in cybersecurity, computer science, information systems, engineering, or a related field.Work EnvironmentPrimarily on-site at SFLC Baltimore. On-site presence is required for the monthly status briefing to the ISSM and for participation in change management boards, technical exchange meetings, and Government working groups.The Government furnishes workspace, telephone, a Standard Workstation, and copy/fax access.Remote work may be authorized at the sole discretion of the Government. If authorized, compliant hardware, software, and internet service are contractor- furnished.Occasional travel outside the local commuting area may be required for training and associated off-site meetings, subject to advance COR approval and reimbursed per the Federal Travel Regulations. The 707 East Ordnance Road satellite office is within the local commuting area.OneZero Solutions, LLC is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, pregnancy, genetic information, disability, status as a protected veteran, or any other protected category under applicable federal, state, and local laws.To request an accommodation . click apply for full job details
Senior Security Control Assessor Representative (SCAR)
Dark Wolf Solutions Herndon, Virginia
Job Description Job Description Dark Wolf Solutions is seeking a Senior Security Control Assessor Representative (SCAR) to conduct independent comprehensive assessments of the management, operation, and technical security controls and control enhancements employed within, or inherited by, an Information technology (IT) system to determine the overall effectiveness of the controls. The SCAR will perform reviews of security artifacts for system authorizations, assessing both the technical and functional adequacy as required for application and software cybersecurity readiness. The SCAR candidate must have prior experience in authorizing tools/applications, systems, and/or enclaves. Additionally, knowledge of network security, technologies, processes, and practices designed for the prevention of damage to, protection of, and restoration of computers, communications systems, services, and various types of communications technologies. The SCAR candidate must be knowledgeable and proficient in assessing DoD GovCloud environments to include testing controls and validating artifacts. A successful candidate will have a strong foundational understanding of NIST, DOD, and DAF cybersecurity focused guidance. This position can be based out of any Dark Wolf Office location and will be a hybrid schedule. Additional responsibilities include: Key Responsibilities: Evaluating IT infrastructure in terms of risk to the organization and defining artifacts required to meet Federal, DoD and DAF requirements Assessing IT systems and architecture to ensure compliance with the Risk Management Framework (RMF), NIST Cybersecurity Framework (CSF), NIST 800-53 revision 5 and applicable guidance Supporting the system/application assessment and authorization (A&A) effort, to include assessing and guiding the quality and completeness of A&A activities, tasks and resulting artifacts mandated by governing DoD and AF policies, and applicable mandates Collecting, reviewing and verifying documented business processes within process narratives or flowcharts, identifying risks and validating proficiency of mitigating controls Reviewing risk and control matrices and testing plans for key controls and determines effectiveness Identifying control gaps, reviewing and testing the design of existing controls. Formulating clear and concise conclusions on internal controls and business process efficiency Recommending policies and procedures to ensure information systems reliability and accessibility and to prevent and defend against unauthorized access to systems, networks, and data Conducting risk and vulnerability assessments of installed information systems to identify vulnerabilities, risks, and protection needs Reviewing Plans of Actions & Milestones (POA&Ms) Providing recommendations and reports to the Security Control Assessor (SCA), Authorizing Official (AO), Chief Information Security Officer (CISO) Reviewing network and systems design to ensure accuracy Ensuring the rigorous application of information security/cybersecurity policies, principles, and practices in the delivery of all IT services Required Qualifications: 15+ years of relevant Cyber experience 15+ years prior experience as a Security Control Assessor/Representative RMF Engineer, ISSO, ISSM and/or information assurance engineer Cloud Platform experience with at least one service offering from AWS, Azure, or Google GCP Hands-on eMASS and/or Xacta experience completing full system lifecycle activities Experience with Air Force risk management policies/procedures, to include, DODI 8510.01, AFI 17-101 Experience with Cloud Computing Security Requirements Guide (CC SRG) Knowledgeable with DoD DevSecOps Fundamentals Playbook Experience evaluating information security compliance against STIGs Ability to clearly articulate ideas Strong technical writing abilities to author reports for AO and CISO dissemination Exudes confidence in providing briefings, presentations, and in conducting/guiding meetings with senior leadership and stakeholders Ability to use prior experience and knowledge to address new situations Certification requirements (at least one of the following): SecurityX / CASP+, CCISO, CGRC/CAP, CISA, CISM, CISSO, CISSP, CISSP-ISSEP, Cloud+, CySA+, FITSP-A, GCSA, GSEC, GSLC, GSNA, PenTest+, Security+ B.A. or B.S. Information Security, Computer Science or related discipline US Citizenship and currently possess a Top Secret security clearance Desired Qualifications: Experience with Fast Track ATO Handbook & AF Continuous ATO Playbook Familiarity with CI/CD Pipelines DevSecOps experience Sharepoint, JIRA, Confluence familiarity The salary range for this position is $140,000.00 - $145,000.00 commensurate on experience and technical skillset. We are open to considering a variety of levels of experience for these projects and potential for 1099 hourly opportunity. We are proud to be an EEO/AA Employer Minorities/Women/Veterans/Disabled and other protected categories. In compliance with federal law, all persons hired will be required to verify identity, confirm US Citizenship, and complete the required employment eligibility verification upon hire.
09/15/2026
Full time
Job Description Job Description Dark Wolf Solutions is seeking a Senior Security Control Assessor Representative (SCAR) to conduct independent comprehensive assessments of the management, operation, and technical security controls and control enhancements employed within, or inherited by, an Information technology (IT) system to determine the overall effectiveness of the controls. The SCAR will perform reviews of security artifacts for system authorizations, assessing both the technical and functional adequacy as required for application and software cybersecurity readiness. The SCAR candidate must have prior experience in authorizing tools/applications, systems, and/or enclaves. Additionally, knowledge of network security, technologies, processes, and practices designed for the prevention of damage to, protection of, and restoration of computers, communications systems, services, and various types of communications technologies. The SCAR candidate must be knowledgeable and proficient in assessing DoD GovCloud environments to include testing controls and validating artifacts. A successful candidate will have a strong foundational understanding of NIST, DOD, and DAF cybersecurity focused guidance. This position can be based out of any Dark Wolf Office location and will be a hybrid schedule. Additional responsibilities include: Key Responsibilities: Evaluating IT infrastructure in terms of risk to the organization and defining artifacts required to meet Federal, DoD and DAF requirements Assessing IT systems and architecture to ensure compliance with the Risk Management Framework (RMF), NIST Cybersecurity Framework (CSF), NIST 800-53 revision 5 and applicable guidance Supporting the system/application assessment and authorization (A&A) effort, to include assessing and guiding the quality and completeness of A&A activities, tasks and resulting artifacts mandated by governing DoD and AF policies, and applicable mandates Collecting, reviewing and verifying documented business processes within process narratives or flowcharts, identifying risks and validating proficiency of mitigating controls Reviewing risk and control matrices and testing plans for key controls and determines effectiveness Identifying control gaps, reviewing and testing the design of existing controls. Formulating clear and concise conclusions on internal controls and business process efficiency Recommending policies and procedures to ensure information systems reliability and accessibility and to prevent and defend against unauthorized access to systems, networks, and data Conducting risk and vulnerability assessments of installed information systems to identify vulnerabilities, risks, and protection needs Reviewing Plans of Actions & Milestones (POA&Ms) Providing recommendations and reports to the Security Control Assessor (SCA), Authorizing Official (AO), Chief Information Security Officer (CISO) Reviewing network and systems design to ensure accuracy Ensuring the rigorous application of information security/cybersecurity policies, principles, and practices in the delivery of all IT services Required Qualifications: 15+ years of relevant Cyber experience 15+ years prior experience as a Security Control Assessor/Representative RMF Engineer, ISSO, ISSM and/or information assurance engineer Cloud Platform experience with at least one service offering from AWS, Azure, or Google GCP Hands-on eMASS and/or Xacta experience completing full system lifecycle activities Experience with Air Force risk management policies/procedures, to include, DODI 8510.01, AFI 17-101 Experience with Cloud Computing Security Requirements Guide (CC SRG) Knowledgeable with DoD DevSecOps Fundamentals Playbook Experience evaluating information security compliance against STIGs Ability to clearly articulate ideas Strong technical writing abilities to author reports for AO and CISO dissemination Exudes confidence in providing briefings, presentations, and in conducting/guiding meetings with senior leadership and stakeholders Ability to use prior experience and knowledge to address new situations Certification requirements (at least one of the following): SecurityX / CASP+, CCISO, CGRC/CAP, CISA, CISM, CISSO, CISSP, CISSP-ISSEP, Cloud+, CySA+, FITSP-A, GCSA, GSEC, GSLC, GSNA, PenTest+, Security+ B.A. or B.S. Information Security, Computer Science or related discipline US Citizenship and currently possess a Top Secret security clearance Desired Qualifications: Experience with Fast Track ATO Handbook & AF Continuous ATO Playbook Familiarity with CI/CD Pipelines DevSecOps experience Sharepoint, JIRA, Confluence familiarity The salary range for this position is $140,000.00 - $145,000.00 commensurate on experience and technical skillset. We are open to considering a variety of levels of experience for these projects and potential for 1099 hourly opportunity. We are proud to be an EEO/AA Employer Minorities/Women/Veterans/Disabled and other protected categories. In compliance with federal law, all persons hired will be required to verify identity, confirm US Citizenship, and complete the required employment eligibility verification upon hire.
Systems and Information Security Specialist
Hendall Inc Rockville, Maryland
Job Description Job Description OVERVIEW Hendall is currently seeking a Systems and Information Security Specialist experienced with the Federal Information Security Management Act (FISMA), U.S. Department of Health and Human Services (HHS), Office of Management and Budget (OMB), and the National Institute of Standards and Technology (NIST) regulations, policies, and guidelines. DUTIES The Systems and Information Security Specialist analyzes, defines, implements, and maintains all required procedures and security controls in accordance with Federal, and HHS regulations, policies, and guidelines. Specifically: Conduct Security Assessment and Authorization (SA&A) processes and procedures to attain Authorization To Operate (ATO) for supported information systemsRemediate security weaknesses through the implementation of Plan of Actions & Milestones (POA&Ms)Perform risk analyses which also includes risk assessment, mitigation and contingency planning.Develop and maintain information security policies, procedures and control techniques in accordance with FISMA and NIST Special Publications 800 SeriesDevelop and maintain BHSIS Information System Security Plan and IT PlanAssist with the preparation and maintenance of OMB required forms and other paperwork for major IT investmentsPerform periodic reviews to ensure compliance with existing information security and privacy requirements.Continuously monitor system(s) security controls and operational environmentComplete annual system self-assessments, and support quarterly and annual FISMA reporting requirementsConduct monthly Database, Application and Operating System vulnerability scans and report outcomes to clients' Chief Information System Officer (CISO)Perform annual penetration testing on client systems and provide test reports to clientsAct as liaison between clients' CISO and HendallMINIMUM QUALIFICATIONS Bachelor's degree in computer science, information systems or information technology3-5 years of professional experience in Federal IT SecurityCertified Information Systems Security Professional (CISSP) certification or similar (Preferred)Experience working in a Federal Information Processing Standard (FIP) 199 Moderate categorized system environmentStrong verbal and written communication skills Highly organized and detail oriented Ability to maintain and manage ATO-related controls and other information security artifactsPREFERRED QUALIFICATIONSExperience performing information security services within the Department of Health and Human Services and its operating divisions.Salary Range: $90,000/year to $110,000/yearFor a complete listing of benefits, please visit our careers page at Inc. is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability.
09/15/2026
Full time
Job Description Job Description OVERVIEW Hendall is currently seeking a Systems and Information Security Specialist experienced with the Federal Information Security Management Act (FISMA), U.S. Department of Health and Human Services (HHS), Office of Management and Budget (OMB), and the National Institute of Standards and Technology (NIST) regulations, policies, and guidelines. DUTIES The Systems and Information Security Specialist analyzes, defines, implements, and maintains all required procedures and security controls in accordance with Federal, and HHS regulations, policies, and guidelines. Specifically: Conduct Security Assessment and Authorization (SA&A) processes and procedures to attain Authorization To Operate (ATO) for supported information systemsRemediate security weaknesses through the implementation of Plan of Actions & Milestones (POA&Ms)Perform risk analyses which also includes risk assessment, mitigation and contingency planning.Develop and maintain information security policies, procedures and control techniques in accordance with FISMA and NIST Special Publications 800 SeriesDevelop and maintain BHSIS Information System Security Plan and IT PlanAssist with the preparation and maintenance of OMB required forms and other paperwork for major IT investmentsPerform periodic reviews to ensure compliance with existing information security and privacy requirements.Continuously monitor system(s) security controls and operational environmentComplete annual system self-assessments, and support quarterly and annual FISMA reporting requirementsConduct monthly Database, Application and Operating System vulnerability scans and report outcomes to clients' Chief Information System Officer (CISO)Perform annual penetration testing on client systems and provide test reports to clientsAct as liaison between clients' CISO and HendallMINIMUM QUALIFICATIONS Bachelor's degree in computer science, information systems or information technology3-5 years of professional experience in Federal IT SecurityCertified Information Systems Security Professional (CISSP) certification or similar (Preferred)Experience working in a Federal Information Processing Standard (FIP) 199 Moderate categorized system environmentStrong verbal and written communication skills Highly organized and detail oriented Ability to maintain and manage ATO-related controls and other information security artifactsPREFERRED QUALIFICATIONSExperience performing information security services within the Department of Health and Human Services and its operating divisions.Salary Range: $90,000/year to $110,000/yearFor a complete listing of benefits, please visit our careers page at Inc. is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability.

Modal Window

  • Home
  • Contact
  • About Us
  • FAQs
  • Terms & Conditions
  • Privacy
  • Employer
  • Post a Job
  • Search Resumes
  • Sign in
  • Job Seeker
  • Find Jobs
  • Create Resume
  • Sign in
  • IT blog
  • Facebook
  • Twitter
  • LinkedIn
  • Youtube
© 2008-2026 IT Job Board