Job Description Are you graduating this year? Are you ready to fast-track your career and make an impact from day one? Aramark's Management Accelerator Program (MAP) is your launchpad to leadership. Designed for recent graduates, MAP is an immersive experience that blends operations and people management with professional development, mentorship, and community building. Most MAP roles offer the opportunity to lead a team in your first job out of school! You'll gain the skills, confidence, and experience to thrive in a fast-paced, people-first environment. MAP participants chart their own course to leadership. Whether you stay in your current account after the program, explore a new line of business, relocate to a different city, or pivot between operations and functional roles your journey is yours to design. Ready to MAP your future? Apply now and take the first step toward a career that accelerates your potential. Aramark Student Nutrition provides food and nutrition services to over 350 school districts in the U.S. It offers public and private education institutions a variety of dining options including breakfast and lunch programs, after-school snacks, catering, nutrition education and retail operations. We partner with schools to create culinary experiences that propel students to success. Our goal is to provide healthy, nutritional meals with a stellar dining experience for our communities. For more information on Aramark's Student Nutrition food service programs, please visit Aramark Student Nutrition . The Food Service Manager is a management position responsible for developing and implementing dining solutions to meet customer needs and tastes. Oversees and manages dining operations where customers order prepared foods from a menu. Compensation Data COMPENSATION: The salary range for this position is $55,000.00 to $55,000.00 . If both numbers are the same, that is the amount that Aramark expects to offer. This is Aramark's good faith and reasonable estimate of the compensation for this position as of the time of posting. BENEFITS: Aramark offers comprehensive benefit programs and services for eligible employees including medical, dental, vision, and work/life resources. Additional benefits may include retirement savings plans like 401(k) and paid days off such as parental leave and disability coverage. Benefits vary by location and are subject to any legal requirements or limitations, employee eligibility status, and where the employee lives and/or works. For more information about Aramark benefits, click here Aramark Careers - Benefits & Compensation . There is no predetermined application window for this position, the position will close once a qualified candidate is selected. Qualified applicants with arrest or conviction records will be considered for employment in accordance with applicable law, including, but not limited to, the Los Angeles County Fair Chance Ordinance for Employers, the California Fair Chance Act, and the San Francisco Fair Chance Ordinance to the extent that those laws apply to the opportunity. Job Responsibilities Leadership Use Aramark's coaching model to engage and develop team members to their fullest potential Reward and recognize employees Ensure individual and team performance meets objectives and client expectations Plan and lead daily team briefings Ensure safety and sanitation standards in all operations Client Relationship Identify client needs and communicate operational progress Financial Performance Ensure the completion and maintenance of P&L statements Deliver client and company financial targets Adopt all Aramark processes and systems, understand performance metrics, data, order and inventory trends; educate teams on key levers to improve margins Productivity Bring value through efficient operations, appropriate cost controls, and profit management Follow the Operational Excellence fundamentals by meeting and maintaining food and labor initiatives Ensure entire team is trained and able to implement Supervise team regarding production, quality and control Compliance Maintain a safe and healthy environment for clients, customers and employees Follow all applicable policies, rules and regulations, including but not limited to those relating to safety, health, wage and hour Additional Responsibilities Lead the front of the house of the dining operation (Cafeteria/ Residential Dining Facility) in conjunction with the Food Service Director Plans, directs, and coordinates food service activities in order to deliver a finished product to the customer At Aramark, developing new skills and doing what it takes to get the job done make a positive impact for our employees and for our customers. In order to meet our commitments, job duties may change or new ones may be assigned without formal notice. Qualifications Ideal applicants will graduate between December 2025 and August 2026. The program starts between May and August 2026 based on the area of the business. All degree requirements must be completed prior to the start of the program. Students with a degree or background in hospitality, business, culinary, food service, or facilities management preferred Candidates with excellent verbal, written, and professional communication skills Candidates willing to work flexible hours, which may include nights, weekends or holidays Must be eligible to work in the U.S. without sponsorship About Aramark Our Mission Rooted in service and united by our purpose, we strive to do great things for each other, our partners, our communities, and our planet. At Aramark, we believe that every employee should enjoy equal employment opportunity and be free to participate in all aspects of the company. We do not discriminate on the basis of race, color, religion, national origin, age, sex, gender, pregnancy, disability, sexual orientation, gender identity, genetic information, military status, protected veteran status or other characteristics protected by applicable law. About Aramark The people of Aramark proudly serve millions of guests every day through food and facilities in 15 countries around the world. Rooted in service and united by our purpose, we strive to do great things for each other, our partners, our communities, and our planet. We believe a career should develop your talents, fuel your passions, and empower your professional growth. So, no matter what you're pursuing - a new challenge, a sense of belonging, or just a great place to work - our focus is helping you reach your full potential. Learn more about working here at or connect with us on Facebook , Instagram and Twitter .
09/26/2026
Full time
Job Description Are you graduating this year? Are you ready to fast-track your career and make an impact from day one? Aramark's Management Accelerator Program (MAP) is your launchpad to leadership. Designed for recent graduates, MAP is an immersive experience that blends operations and people management with professional development, mentorship, and community building. Most MAP roles offer the opportunity to lead a team in your first job out of school! You'll gain the skills, confidence, and experience to thrive in a fast-paced, people-first environment. MAP participants chart their own course to leadership. Whether you stay in your current account after the program, explore a new line of business, relocate to a different city, or pivot between operations and functional roles your journey is yours to design. Ready to MAP your future? Apply now and take the first step toward a career that accelerates your potential. Aramark Student Nutrition provides food and nutrition services to over 350 school districts in the U.S. It offers public and private education institutions a variety of dining options including breakfast and lunch programs, after-school snacks, catering, nutrition education and retail operations. We partner with schools to create culinary experiences that propel students to success. Our goal is to provide healthy, nutritional meals with a stellar dining experience for our communities. For more information on Aramark's Student Nutrition food service programs, please visit Aramark Student Nutrition . The Food Service Manager is a management position responsible for developing and implementing dining solutions to meet customer needs and tastes. Oversees and manages dining operations where customers order prepared foods from a menu. Compensation Data COMPENSATION: The salary range for this position is $55,000.00 to $55,000.00 . If both numbers are the same, that is the amount that Aramark expects to offer. This is Aramark's good faith and reasonable estimate of the compensation for this position as of the time of posting. BENEFITS: Aramark offers comprehensive benefit programs and services for eligible employees including medical, dental, vision, and work/life resources. Additional benefits may include retirement savings plans like 401(k) and paid days off such as parental leave and disability coverage. Benefits vary by location and are subject to any legal requirements or limitations, employee eligibility status, and where the employee lives and/or works. For more information about Aramark benefits, click here Aramark Careers - Benefits & Compensation . There is no predetermined application window for this position, the position will close once a qualified candidate is selected. Qualified applicants with arrest or conviction records will be considered for employment in accordance with applicable law, including, but not limited to, the Los Angeles County Fair Chance Ordinance for Employers, the California Fair Chance Act, and the San Francisco Fair Chance Ordinance to the extent that those laws apply to the opportunity. Job Responsibilities Leadership Use Aramark's coaching model to engage and develop team members to their fullest potential Reward and recognize employees Ensure individual and team performance meets objectives and client expectations Plan and lead daily team briefings Ensure safety and sanitation standards in all operations Client Relationship Identify client needs and communicate operational progress Financial Performance Ensure the completion and maintenance of P&L statements Deliver client and company financial targets Adopt all Aramark processes and systems, understand performance metrics, data, order and inventory trends; educate teams on key levers to improve margins Productivity Bring value through efficient operations, appropriate cost controls, and profit management Follow the Operational Excellence fundamentals by meeting and maintaining food and labor initiatives Ensure entire team is trained and able to implement Supervise team regarding production, quality and control Compliance Maintain a safe and healthy environment for clients, customers and employees Follow all applicable policies, rules and regulations, including but not limited to those relating to safety, health, wage and hour Additional Responsibilities Lead the front of the house of the dining operation (Cafeteria/ Residential Dining Facility) in conjunction with the Food Service Director Plans, directs, and coordinates food service activities in order to deliver a finished product to the customer At Aramark, developing new skills and doing what it takes to get the job done make a positive impact for our employees and for our customers. In order to meet our commitments, job duties may change or new ones may be assigned without formal notice. Qualifications Ideal applicants will graduate between December 2025 and August 2026. The program starts between May and August 2026 based on the area of the business. All degree requirements must be completed prior to the start of the program. Students with a degree or background in hospitality, business, culinary, food service, or facilities management preferred Candidates with excellent verbal, written, and professional communication skills Candidates willing to work flexible hours, which may include nights, weekends or holidays Must be eligible to work in the U.S. without sponsorship About Aramark Our Mission Rooted in service and united by our purpose, we strive to do great things for each other, our partners, our communities, and our planet. At Aramark, we believe that every employee should enjoy equal employment opportunity and be free to participate in all aspects of the company. We do not discriminate on the basis of race, color, religion, national origin, age, sex, gender, pregnancy, disability, sexual orientation, gender identity, genetic information, military status, protected veteran status or other characteristics protected by applicable law. About Aramark The people of Aramark proudly serve millions of guests every day through food and facilities in 15 countries around the world. Rooted in service and united by our purpose, we strive to do great things for each other, our partners, our communities, and our planet. We believe a career should develop your talents, fuel your passions, and empower your professional growth. So, no matter what you're pursuing - a new challenge, a sense of belonging, or just a great place to work - our focus is helping you reach your full potential. Learn more about working here at or connect with us on Facebook , Instagram and Twitter .
Job Description Job Description QED Systems, LLC, is currently recruiting an Information Security Specialist , to join our team at the Pentagon in Arlington, VA to support our HQDA G-3/5/7 Support Services contract. Job Duties: Provide support with the execution of the G-3/5/7 Information Security Program, which includes the classification/declassification program and security education and training programs. Develop, present, and facilitate security training for all security disciplines, including Information Security, OPSEC, Personnel Security, and Antiterrorism/Force Protection (AT/FP). Develop and prepare Security Classification Guides (SCGs) for administrative and formatting purposes in coordination with the responsible Directorate and Security Manager to ensure SCGs are reviewed and updated every five years IAW DoDM 5200.45 prior to the Original Classification Authority (OCA) signature. Conduct in-person security training for new personnel and provide tailored security training across the G-3/5/7 as required. Develop and prepare draft SOPs that incorporate specific implementation guidance, requirements, and all essential guidance to ensure standardization throughout the G-3/5/7. Each SOP will be reviewed annually to ensure it is up to date and reflects current policies. Final SOPs will be delivered in both hard copy and electronic formats. The Government will provide resource data as required. Perform designated security staff assistance visits, covering all security disciplines. Assist with the execution of the G-3/5/7 Information Security Program (ISP), including the classification/declassification program and security education and training initiatives. Support the G-3/5/7 Automatic Declassification and Mandatory Declassification Program and establish professional contacts within the declassification community. Collaborate with G-3/5/7 Directorates, Chief of Security, and/or government Program Managers to develop and publish G-3/5/7 security procedures and documents. Conduct security reviews of documents intended for public release in coordination with the G-3/5/7. Conduct Secure Room Assessments in conjunction with the Physical Security Officer. Develop materials and products for the security education and awareness training program. Support the G-3/5/7 Security Division program by conducting Preliminary Inquiries and with in-processing and out-processing. Required Skills & Experience: Detail-oriented with excellent technical, verbal, and written communication skills. Must have the ability to work within Government-provided software packages with emphasis on MS Office products, for example, Outlook, Word, SharePoint, PowerPoint, and Excel. Must be able to think critically and apply analytical methodologies to raw data to present clear and precise recommendations. Ability to focus on Mission requirements while tracking multiple competing priorities. Require minimal supervision in the fast-paced, critical environment of the Army Headquarters. Must be proficient in the Enterprise Task Management Software Solution (ETMS2) (formerly Task Management Tool). Ability to clearly articulate analysis through both oral and written communication. Ability to provide executive, technical, and administrative support to senior leaders. Experience with Multinational, Interagency on the Army/Joint Staff and/or Major Army Commands in Policy, Bi-lateral exchanges, proficient in planning and execution of working groups. Operational experience using standard automated toolsets to perform duties. Ability to assist with drafting Army EXORDs, FRAGOs, meeting minutes and EXSUMs and strategic documents. Demonstrated experience with the policy development lifecycle. Strong understanding of Army regulations and processes. Demonstrated expertise in Physical Security, including facility access control, alarm systems, security containers, and restricted area management in accordance with DoD and Army policies and regulations. Experience in classification management, including original and derivative classification, proper marking, downgrading, declassification, and destruction of classified materials. Proven ability to conduct security inspections, staff assistance visits, self-assessments, and compliance reviews to ensure security programs adhere to DOW and Army policies and regulations. Demonstrated experience in security training, program support, and assessments across multiple security disciplines. Familiarity with OPSEC, Personnel Security, AT/FP, and declassification procedures, with the ability to integrate these into a comprehensive security program. Required Clearance: ACTIVE CLEARANCE LEVEL REQUIRED: Top Secret w/ SCI eligibility Qualifications: Bachelor's degree required. Minimum of five (5) years' experience with managing Information Security Program for safeguarding of classified and sensitive information within Department of War (DOW) or Army environment. Prior experience supporting Army command level security programs, including collaboration with security managers, subject matter experts, and HQ level stakeholders. Travel: Less than 10 % travel is expected for this position. Travel may include continental United States and outside continental United States locations. Work Environment: This position will be co-located with the customer and other contractors in Government office spaces. While not generally authorized, telework may be required due to exceptional circumstances (extreme weather, pandemic, etc.). Physical Demands: Physical demands of this position include ability to: Be independently mobile. Communicate effectively with co-workers and customers. Withstand prolonged periods of sitting at a desk and computer use. Reasonable accommodation will be provided to enable individuals with disabilities to perform the essential functions. Position Type/Expected Hours of Work: This is a full time position, Monday through Friday. Flexibility around core hours. Travel may occur outside of normal core hours. Additional Information: Please note this job description is not intended to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Assigned tasks may vary, with or without prior notice, to effectively meet client requirements. Total Compensation: QED offers a competitive compensation package for full-time employees. Our total compensation package is value-based and negotiable depending upon the candidate's specific skills and applicable relevant experience. Benefits include: Paid Time Off (PTO) 11 Paid Holidays 401(k) Matching Medical, Dental & Vision Benefits Life Insurance, AD&D, and Short-Term & Long-Term Disability Professional Growth Opportunities Additional Benefits Estimated Salary Range : $120,000.00 - $130,000.00, annually. This is not a guarantee of compensation or salary. This represents the typical range for fully qualified candidates for this position based on experience, geographic location, and other factors. The final offer amount may vary. QED Systems, LLC is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to sex, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law. QED Systems, LLC is an Equal Employment Opportunity and Affirmative Action Employer - Minority/Disabled/Veteran/Female
09/26/2026
Full time
Job Description Job Description QED Systems, LLC, is currently recruiting an Information Security Specialist , to join our team at the Pentagon in Arlington, VA to support our HQDA G-3/5/7 Support Services contract. Job Duties: Provide support with the execution of the G-3/5/7 Information Security Program, which includes the classification/declassification program and security education and training programs. Develop, present, and facilitate security training for all security disciplines, including Information Security, OPSEC, Personnel Security, and Antiterrorism/Force Protection (AT/FP). Develop and prepare Security Classification Guides (SCGs) for administrative and formatting purposes in coordination with the responsible Directorate and Security Manager to ensure SCGs are reviewed and updated every five years IAW DoDM 5200.45 prior to the Original Classification Authority (OCA) signature. Conduct in-person security training for new personnel and provide tailored security training across the G-3/5/7 as required. Develop and prepare draft SOPs that incorporate specific implementation guidance, requirements, and all essential guidance to ensure standardization throughout the G-3/5/7. Each SOP will be reviewed annually to ensure it is up to date and reflects current policies. Final SOPs will be delivered in both hard copy and electronic formats. The Government will provide resource data as required. Perform designated security staff assistance visits, covering all security disciplines. Assist with the execution of the G-3/5/7 Information Security Program (ISP), including the classification/declassification program and security education and training initiatives. Support the G-3/5/7 Automatic Declassification and Mandatory Declassification Program and establish professional contacts within the declassification community. Collaborate with G-3/5/7 Directorates, Chief of Security, and/or government Program Managers to develop and publish G-3/5/7 security procedures and documents. Conduct security reviews of documents intended for public release in coordination with the G-3/5/7. Conduct Secure Room Assessments in conjunction with the Physical Security Officer. Develop materials and products for the security education and awareness training program. Support the G-3/5/7 Security Division program by conducting Preliminary Inquiries and with in-processing and out-processing. Required Skills & Experience: Detail-oriented with excellent technical, verbal, and written communication skills. Must have the ability to work within Government-provided software packages with emphasis on MS Office products, for example, Outlook, Word, SharePoint, PowerPoint, and Excel. Must be able to think critically and apply analytical methodologies to raw data to present clear and precise recommendations. Ability to focus on Mission requirements while tracking multiple competing priorities. Require minimal supervision in the fast-paced, critical environment of the Army Headquarters. Must be proficient in the Enterprise Task Management Software Solution (ETMS2) (formerly Task Management Tool). Ability to clearly articulate analysis through both oral and written communication. Ability to provide executive, technical, and administrative support to senior leaders. Experience with Multinational, Interagency on the Army/Joint Staff and/or Major Army Commands in Policy, Bi-lateral exchanges, proficient in planning and execution of working groups. Operational experience using standard automated toolsets to perform duties. Ability to assist with drafting Army EXORDs, FRAGOs, meeting minutes and EXSUMs and strategic documents. Demonstrated experience with the policy development lifecycle. Strong understanding of Army regulations and processes. Demonstrated expertise in Physical Security, including facility access control, alarm systems, security containers, and restricted area management in accordance with DoD and Army policies and regulations. Experience in classification management, including original and derivative classification, proper marking, downgrading, declassification, and destruction of classified materials. Proven ability to conduct security inspections, staff assistance visits, self-assessments, and compliance reviews to ensure security programs adhere to DOW and Army policies and regulations. Demonstrated experience in security training, program support, and assessments across multiple security disciplines. Familiarity with OPSEC, Personnel Security, AT/FP, and declassification procedures, with the ability to integrate these into a comprehensive security program. Required Clearance: ACTIVE CLEARANCE LEVEL REQUIRED: Top Secret w/ SCI eligibility Qualifications: Bachelor's degree required. Minimum of five (5) years' experience with managing Information Security Program for safeguarding of classified and sensitive information within Department of War (DOW) or Army environment. Prior experience supporting Army command level security programs, including collaboration with security managers, subject matter experts, and HQ level stakeholders. Travel: Less than 10 % travel is expected for this position. Travel may include continental United States and outside continental United States locations. Work Environment: This position will be co-located with the customer and other contractors in Government office spaces. While not generally authorized, telework may be required due to exceptional circumstances (extreme weather, pandemic, etc.). Physical Demands: Physical demands of this position include ability to: Be independently mobile. Communicate effectively with co-workers and customers. Withstand prolonged periods of sitting at a desk and computer use. Reasonable accommodation will be provided to enable individuals with disabilities to perform the essential functions. Position Type/Expected Hours of Work: This is a full time position, Monday through Friday. Flexibility around core hours. Travel may occur outside of normal core hours. Additional Information: Please note this job description is not intended to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Assigned tasks may vary, with or without prior notice, to effectively meet client requirements. Total Compensation: QED offers a competitive compensation package for full-time employees. Our total compensation package is value-based and negotiable depending upon the candidate's specific skills and applicable relevant experience. Benefits include: Paid Time Off (PTO) 11 Paid Holidays 401(k) Matching Medical, Dental & Vision Benefits Life Insurance, AD&D, and Short-Term & Long-Term Disability Professional Growth Opportunities Additional Benefits Estimated Salary Range : $120,000.00 - $130,000.00, annually. This is not a guarantee of compensation or salary. This represents the typical range for fully qualified candidates for this position based on experience, geographic location, and other factors. The final offer amount may vary. QED Systems, LLC is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to sex, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law. QED Systems, LLC is an Equal Employment Opportunity and Affirmative Action Employer - Minority/Disabled/Veteran/Female
Job Description Job Description Work Type: On-site / Hybrid - Ashburn, VA client site 3-5 days per week Industry Category: ServiceNow / Configuration Management Employment Type: Full-Time Contract Clearance Requirement: Limited CBP Background Investigation (BI) required prior to onboarding Position Overview Our client is seeking an experienced ServiceNow CMDB Implementation Specialist to support an enterprise-scale Configuration Management Database implementation. This position will support business-driven CMDB planning, organizational alignment, CI modeling, governance, data quality, and best-practice implementation. The specialist will work across application owners, IT operations, security, architects, platform administrators, and other stakeholders to define CMDB requirements, establish governance and data-quality standards, support integrations and testing, and drive adoption across the organization. Key Responsibilities Requirements and Analysis Elicit stakeholder needs across Application Owners, IT Operations, Security, and other groups to identify required CIs, critical attributes, and inter-CI relationships. Document business requirements into clear functional and non-functional artifacts, including use cases, user stories, and acceptance criteria. Analyze existing data sources and identify gaps, inconsistencies, and migration challenges associated with moving data into the CMDB. Data Model Design and Definition Define CMDB classes and attributes, including servers, applications, databases, enumeration values, and ownership fields, in collaboration with Architects and Platform Administrators. Establish CI relationships such as "runs on," "connects to," and "is composed of" to accurately represent the enterprise environment. Normalize and standardize data to promote CMDB consistency and integrity. Support CI lifecycle management and organizational CMDB ownership models. Process Definition and Integration Map CMDB-related Incident, Change, Problem, and Asset Management processes to ensure the CMDB effectively supports ITSM workflows. Define data-governance policies for data ownership, entry, updates, and quality assurance. Specify integration requirements for automated discovery tools, ticketing systems, monitoring platforms, and other enterprise data sources. Apply ServiceNow CSDM and service-mapping principles to support an effective enterprise CMDB structure. Data Quality, Validation, and Testing Define data-quality rules and metrics for accuracy, completeness, and consistency. Establish processes for ongoing CMDB monitoring, remediation, and continuous improvement. Plan and conduct User Acceptance Testing with business users. Develop test cases to validate functional requirements and expected business outcomes. Reporting and KPIs Identify reporting requirements and dashboards that provide environmental insights, decision support, and compliance monitoring. Define CMDB-enabled KPIs, including metrics such as Mean Time to Repair and change success rates. Establish standards for measuring CMDB health, data quality, and operational effectiveness. Training, Adoption, and Ongoing Support Develop CMDB training materials, standards, procedures, and supporting documentation. Deliver training sessions to user groups to drive adoption and proficiency. Provide ongoing support and clarification regarding CMDB functionality, processes, and data usage. Communication and Stakeholder Management Facilitate workshops to gather requirements, resolve conflicts, and establish cross-functional consensus. Lead stakeholder discussions and cross-team alignment sessions. Translate business requirements and technical concepts between business and technical teams. Collaborate across large, federated, or regulated organizational environments. Requirements Minimum Qualifications U.S. citizenship required. At least 10 years of overall information technology experience . Bachelor's or Master's degree. Four additional years of relevant experience may substitute for a Bachelor's degree, or two additional years of relevant experience may substitute for a Master's degree. At least 5 years of enterprise ITSM, CMDB, or Configuration Management experience , including demonstrated expertise in CMDB planning, modeling, governance, and data-quality frameworks. Experience designing CI classes, relationships, and lifecycle-management processes for complex organizations. Proficiency with ServiceNow CMDB, automated discovery, and CSDM . Strong understanding of service-mapping principles and organizational CMDB ownership models. Ability to lead workshops, stakeholder discussions, and cross-team alignment sessions. Excellent analytical, communication, documentation, facilitation, and standards-development capabilities. Experience working within large, federated, or regulated environments. Must be able to obtain the required Limited CBP Background Investigation (BI) prior to onboarding . Must be local to the Ashburn, Virginia area and willing to work from the client site 3-5 days per week . Must be legally authorized to work in the United States without employer sponsorship, now or in the future. Preferred Qualifications ITIL v4 or v5 certification. Prior federal contracting environment experience. Experience with enterprise architecture, IT operations, and data governance. Benefits Compensation $200,000-$230,000 per year as a W2 , negotiable for the right candidate. Benefits Medical insurance Dental insurance Vision insurance 401(k)
09/26/2026
Full time
Job Description Job Description Work Type: On-site / Hybrid - Ashburn, VA client site 3-5 days per week Industry Category: ServiceNow / Configuration Management Employment Type: Full-Time Contract Clearance Requirement: Limited CBP Background Investigation (BI) required prior to onboarding Position Overview Our client is seeking an experienced ServiceNow CMDB Implementation Specialist to support an enterprise-scale Configuration Management Database implementation. This position will support business-driven CMDB planning, organizational alignment, CI modeling, governance, data quality, and best-practice implementation. The specialist will work across application owners, IT operations, security, architects, platform administrators, and other stakeholders to define CMDB requirements, establish governance and data-quality standards, support integrations and testing, and drive adoption across the organization. Key Responsibilities Requirements and Analysis Elicit stakeholder needs across Application Owners, IT Operations, Security, and other groups to identify required CIs, critical attributes, and inter-CI relationships. Document business requirements into clear functional and non-functional artifacts, including use cases, user stories, and acceptance criteria. Analyze existing data sources and identify gaps, inconsistencies, and migration challenges associated with moving data into the CMDB. Data Model Design and Definition Define CMDB classes and attributes, including servers, applications, databases, enumeration values, and ownership fields, in collaboration with Architects and Platform Administrators. Establish CI relationships such as "runs on," "connects to," and "is composed of" to accurately represent the enterprise environment. Normalize and standardize data to promote CMDB consistency and integrity. Support CI lifecycle management and organizational CMDB ownership models. Process Definition and Integration Map CMDB-related Incident, Change, Problem, and Asset Management processes to ensure the CMDB effectively supports ITSM workflows. Define data-governance policies for data ownership, entry, updates, and quality assurance. Specify integration requirements for automated discovery tools, ticketing systems, monitoring platforms, and other enterprise data sources. Apply ServiceNow CSDM and service-mapping principles to support an effective enterprise CMDB structure. Data Quality, Validation, and Testing Define data-quality rules and metrics for accuracy, completeness, and consistency. Establish processes for ongoing CMDB monitoring, remediation, and continuous improvement. Plan and conduct User Acceptance Testing with business users. Develop test cases to validate functional requirements and expected business outcomes. Reporting and KPIs Identify reporting requirements and dashboards that provide environmental insights, decision support, and compliance monitoring. Define CMDB-enabled KPIs, including metrics such as Mean Time to Repair and change success rates. Establish standards for measuring CMDB health, data quality, and operational effectiveness. Training, Adoption, and Ongoing Support Develop CMDB training materials, standards, procedures, and supporting documentation. Deliver training sessions to user groups to drive adoption and proficiency. Provide ongoing support and clarification regarding CMDB functionality, processes, and data usage. Communication and Stakeholder Management Facilitate workshops to gather requirements, resolve conflicts, and establish cross-functional consensus. Lead stakeholder discussions and cross-team alignment sessions. Translate business requirements and technical concepts between business and technical teams. Collaborate across large, federated, or regulated organizational environments. Requirements Minimum Qualifications U.S. citizenship required. At least 10 years of overall information technology experience . Bachelor's or Master's degree. Four additional years of relevant experience may substitute for a Bachelor's degree, or two additional years of relevant experience may substitute for a Master's degree. At least 5 years of enterprise ITSM, CMDB, or Configuration Management experience , including demonstrated expertise in CMDB planning, modeling, governance, and data-quality frameworks. Experience designing CI classes, relationships, and lifecycle-management processes for complex organizations. Proficiency with ServiceNow CMDB, automated discovery, and CSDM . Strong understanding of service-mapping principles and organizational CMDB ownership models. Ability to lead workshops, stakeholder discussions, and cross-team alignment sessions. Excellent analytical, communication, documentation, facilitation, and standards-development capabilities. Experience working within large, federated, or regulated environments. Must be able to obtain the required Limited CBP Background Investigation (BI) prior to onboarding . Must be local to the Ashburn, Virginia area and willing to work from the client site 3-5 days per week . Must be legally authorized to work in the United States without employer sponsorship, now or in the future. Preferred Qualifications ITIL v4 or v5 certification. Prior federal contracting environment experience. Experience with enterprise architecture, IT operations, and data governance. Benefits Compensation $200,000-$230,000 per year as a W2 , negotiable for the right candidate. Benefits Medical insurance Dental insurance Vision insurance 401(k)
Job Description Job Description Overview DRT Strategies delivers expert management consulting and information technology (IT) solutions to large federal agencies, state and local government and commercial clients in health care, technology, and financial services industries. The three letters of our name, DRT, stand for Driving Resolution Together, which is the core philosophy on which the company was founded. That is, we collaborate with our clients to solve their most pressing challenges - together. We are problem solvers dedicated to your success, combining Fortune 500 experience with small business responsiveness. We have established a reputation with our clients as a forward-thinking consulting firm with demonstrated success in implementing solutions that lead to meaningful results. Our world-class consultants unite people to work collaboratively to achieve project goals and make vision a reality. Project Description: The project provides Scientific writing and medical editing support to the FDA Center for Biologics and Research (CBER). The project supports the FDA's mission to ensure that safe and effective biologics are available to the American people. Job Summary: The Scientific Writer will support FDA CBER review staff prepare post-market memorandum, draft regulatory history, and/or backgrounder documents. Contractor staff will edit and format review memos, manuscripts, and policy documents as well as attend and summarize meetings with FDA stakeholders as needed. The position requires thorough understanding of FDA review process, attention to detail, reliability, consistency, and interaction with FDA stakeholders across several Offices and Divisions. Responsibilities: Work with FDA stakeholders in their review of complex scientific documents including post-market memoranda, manuscripts, policy documents, committee briefings, and slide presentations. Draft scientific content including study protocols, white papers, presentations, and manuscripts for submission to peer-reviewed journals. Perform copy editing for grammar, punctuation, style, and internal consistency. Analyze and evaluate the requirements for assigned writing and editing tasks. Perform literature searches as needed to assist with editing and revision of document content. Draft, Perform routine quality checks on the work of other medical writers/editors. Assist in the development of visual communication aids including graphs, figures, and infographics. Work with a team of editors and writers to manage document control, edit and format for consistency and one voice. Help customers to identify ineffective or inefficient process areas and to make improvement recommendations. Assist DRT to identify other areas where our Health Science practitioners can help current and future customers Check document for 508 Compliance. Work with FDA stakeholders on requirement gathering, project scope, risks and deliverables. Assist with overall project support as needed. Required Experience: 5+ years of scientific writing and copy-editing experience. Experience in synthesizing and disseminating scientific information regarding complex issues, decisions, or policies. Familiarity with a style guide (e.g., AP, Chicago, or AMA). Excellent organizational, time management, and communication skills, demonstrated experience working independently as well as in a team environment. Ability to take scientific meeting minutes and synthesize discussion points for stakeholders Computer skills: MS Office and reference software. Intermediate experience and/or certification in Microsoft Word with willingness to learn new features. Preferred Experience: Prior experience working on vaccines and/or product review process . Experience editing guidelines or other policy documents for the federal government. Familiarity with SharePoint, EndNote, and Visual Basic. Familiarity with 508 compliance. Familiarity with FDA regulation of drugs and biological products and EUA and BLA review processes. Ability to understand and follow scientific discussion on drugs, side effects, placebo effects, adverse events, and labeling. Education & Training: Master's or PhD degree in biomedical sciences Work Authorization, Clearance Requirement, & Additional Information: This position requires the ability to obtain and maintain a U.S. government Public Trust clearance. Due to contract requirements, candidates must be U.S. citizens or lawful permanent residents (green card holders) to be eligible. No agencies, third parties, or Corp-to-Corp submissions. Salary Range: $100,000-$130,000 Salary commensurate with experience. DRT Strategies, Inc. (DRT) follows the guidelines outlined by the Equal Employment Opportunity Commission (EEOC) to provide all employees and qualified applicants employment without regard to race, color, religion, sex (including pregnancy, childbirth, or related conditions, transgender status, and sexual orientation), national origin, age, genetic information, disability, protected veteran status, or any other protected characteristic under federal, state, or local law. Reasonable accommodations for applicants and employees with disabilities will be provided. If a reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact Human Resources by emailing , or by dialing . For additional information, please review the Know Your Rights: Workplace Discrimination is Illegal, E-Verify (English), E-Verify (Spanish). Right to Work (English), Right to Work (Spanish). Please be aware of recruitment fraud where malicious individuals might pose as DRT Strategies. Only job postings and emails from are authentic and legitimate communications regarding DRT Strategies employment opportunities. Please contact Human Resources at if you believe you have received a fraudulent email. Powered by JazzHR 0srjAWaiQN
09/26/2026
Full time
Job Description Job Description Overview DRT Strategies delivers expert management consulting and information technology (IT) solutions to large federal agencies, state and local government and commercial clients in health care, technology, and financial services industries. The three letters of our name, DRT, stand for Driving Resolution Together, which is the core philosophy on which the company was founded. That is, we collaborate with our clients to solve their most pressing challenges - together. We are problem solvers dedicated to your success, combining Fortune 500 experience with small business responsiveness. We have established a reputation with our clients as a forward-thinking consulting firm with demonstrated success in implementing solutions that lead to meaningful results. Our world-class consultants unite people to work collaboratively to achieve project goals and make vision a reality. Project Description: The project provides Scientific writing and medical editing support to the FDA Center for Biologics and Research (CBER). The project supports the FDA's mission to ensure that safe and effective biologics are available to the American people. Job Summary: The Scientific Writer will support FDA CBER review staff prepare post-market memorandum, draft regulatory history, and/or backgrounder documents. Contractor staff will edit and format review memos, manuscripts, and policy documents as well as attend and summarize meetings with FDA stakeholders as needed. The position requires thorough understanding of FDA review process, attention to detail, reliability, consistency, and interaction with FDA stakeholders across several Offices and Divisions. Responsibilities: Work with FDA stakeholders in their review of complex scientific documents including post-market memoranda, manuscripts, policy documents, committee briefings, and slide presentations. Draft scientific content including study protocols, white papers, presentations, and manuscripts for submission to peer-reviewed journals. Perform copy editing for grammar, punctuation, style, and internal consistency. Analyze and evaluate the requirements for assigned writing and editing tasks. Perform literature searches as needed to assist with editing and revision of document content. Draft, Perform routine quality checks on the work of other medical writers/editors. Assist in the development of visual communication aids including graphs, figures, and infographics. Work with a team of editors and writers to manage document control, edit and format for consistency and one voice. Help customers to identify ineffective or inefficient process areas and to make improvement recommendations. Assist DRT to identify other areas where our Health Science practitioners can help current and future customers Check document for 508 Compliance. Work with FDA stakeholders on requirement gathering, project scope, risks and deliverables. Assist with overall project support as needed. Required Experience: 5+ years of scientific writing and copy-editing experience. Experience in synthesizing and disseminating scientific information regarding complex issues, decisions, or policies. Familiarity with a style guide (e.g., AP, Chicago, or AMA). Excellent organizational, time management, and communication skills, demonstrated experience working independently as well as in a team environment. Ability to take scientific meeting minutes and synthesize discussion points for stakeholders Computer skills: MS Office and reference software. Intermediate experience and/or certification in Microsoft Word with willingness to learn new features. Preferred Experience: Prior experience working on vaccines and/or product review process . Experience editing guidelines or other policy documents for the federal government. Familiarity with SharePoint, EndNote, and Visual Basic. Familiarity with 508 compliance. Familiarity with FDA regulation of drugs and biological products and EUA and BLA review processes. Ability to understand and follow scientific discussion on drugs, side effects, placebo effects, adverse events, and labeling. Education & Training: Master's or PhD degree in biomedical sciences Work Authorization, Clearance Requirement, & Additional Information: This position requires the ability to obtain and maintain a U.S. government Public Trust clearance. Due to contract requirements, candidates must be U.S. citizens or lawful permanent residents (green card holders) to be eligible. No agencies, third parties, or Corp-to-Corp submissions. Salary Range: $100,000-$130,000 Salary commensurate with experience. DRT Strategies, Inc. (DRT) follows the guidelines outlined by the Equal Employment Opportunity Commission (EEOC) to provide all employees and qualified applicants employment without regard to race, color, religion, sex (including pregnancy, childbirth, or related conditions, transgender status, and sexual orientation), national origin, age, genetic information, disability, protected veteran status, or any other protected characteristic under federal, state, or local law. Reasonable accommodations for applicants and employees with disabilities will be provided. If a reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact Human Resources by emailing , or by dialing . For additional information, please review the Know Your Rights: Workplace Discrimination is Illegal, E-Verify (English), E-Verify (Spanish). Right to Work (English), Right to Work (Spanish). Please be aware of recruitment fraud where malicious individuals might pose as DRT Strategies. Only job postings and emails from are authentic and legitimate communications regarding DRT Strategies employment opportunities. Please contact Human Resources at if you believe you have received a fraudulent email. Powered by JazzHR 0srjAWaiQN
Job Description Job Description We are an employee-centric company that truly values our team members and the contributions they make to our customers and the missions they support. We pride ourselves on being forward-leaning thinkers and on building teams that are, and continue to be, technically proficient across a broad range of cyber mission areas. OneZero full-time employees receive a highly competitive benefits package, including health, dental, vision, and life insurance, a 401(k) with company matching, paid time off and holidays, an employee referral program, and educational assistance. Additional details are available on our website: Position Title : Security Control Assessor (SME), Level IIILocation: USCG Surface Forces Logistics Center, 2401 Hawkins Point Road, Baltimore, MD 21226. Work may also be performed at the SFLC satellite offices at 707 East Ordnance Road, approximately one mile from the primary site, and at other sites as determined necessary by the Contracting Officer's Representative (COR).Clearance:No security clearance required. This position does not involve access to classified information or classified IT systems.S. citizenship is required in accordance with HSAR 3052.204-71 Alternate I.Position SummaryThe Security Control Assessor (SCA) provides independent security control assessment and authorization support to the USCG SFLC Business Operations Division in support of Surface Domain Operational Technology (OT) and Platform IT systems. The role is the assessment authority on the team: it evaluates whether security and privacy controls are implemented correctly, operating as intended, and producing the intended outcome, and it provides the evidence the Authorizing Official relies on to make risk decisions.This is the senior assessment position on the task order and is distinct from the ISSO roles, which own and maintain the authorization packages. The SCA assesses; the ISSOs prepare and sustain. The position is expected to operate with a high degree of independence and to advise the OT Security Manager (ISSM) directly.Key ResponsibilitiesSupport the OT Security Manager (ISSM) and staff in establishing and maintaining the programs, procedures, and policies that protect Government Sensitive But Unclassified (SBU) information.Perform independent assessments of SFLC Operational Technology to verify that applicable security and privacy controls are implemented correctly, operating as intended, and producing the desired outcome.Provide security assessment and authorization consultation services to the ISSM, on site.Review existing policies, procedures, and guidelines for compliance with DHS, USCG, and DoD cybersecurity policy; draft or revise SFLC policy documentation for ISSM review, approval, and organizational implementation.Assist in preparing RMF security authorization documentation for submission to the Authorizing Official (AO).Maintain security assessment information and supporting documentation within Government-designated systems and repositories.Create and validate SFLC security assessment and authorization accounts within Government-designated systems and tools.Update and maintain assessment and authorization status within Government-designated tracking systems and databases.Upload, track, and update Plans of Action and Milestones (POA recommend POA&M updates based on assessment results and maintain traceability from identified vulnerabilities through to the applicable POA&M.Conduct vulnerability scans of SFLC OT, networks, devices, and associated components using Government-approved tools.Provide assistance to system administrators in remediating vulnerabilities identified through scanning.Provide vulnerability and risk management support in conjunction with assessment and authorization activities.Maintain the enterprise tracking log for electronic spillage activities in accordance with Government policy.Support the destruction of removable media generated during assessment activities in accordance with Government procedures.Support cybersecurity strategic planning and continuous monitoring activities, evaluating enterprise services through assessment of priorities and risk.Provide bi-weekly status reports to the SFLC OT Security Manager (ISSM).Conduct a monthly project status update briefing to the ISSM at SFLC Baltimore.Required QualificationsExperienceTen (10) or more years of progressive cybersecurity experience, including at least five (5) years performing security control assessments or independent A&A validation in a federal environment.Demonstrated experience executing NIST SP 800-37 RMF end to end, including control assessment against NIST SP 800-53A.Experience assessing systems to a formal authorization decision and producing assessment artifacts relied upon by an Authorizing Official.Experience conducting and interpreting vulnerability scans and translating findings into risk-based recommendations and POA&M entries.Experience drafting and revising organizational cybersecurity policy for Government review and adoption.CertificationMust hold and maintain at least one active certification approved for Information Assurance Management (IAM) Level II or Level III. Any one of the following satisfies the requirement:CISSP - Certified Information Systems Security Professional (or CISSP Associate)CISM - Certified Information Security ManagerCGRC - Governance, Risk and Compliance Certification (formerly CAP)CASP+ - CompTIA Advanced Security PractitionerGSLC - GIAC Security Leadership CertificationCCISO - EC-Council Certified Chief Information Security Officer (Level III only)Certification requirements are subject to confirmation against COMDTINST M2620.2 (series) Appendix D, the controlling USCG certification matrix. Verify the accepted certification list with the Program Manager before extending an offer.Evidence of active certification in good standing is required prior to onboarding. Waivers and exceptions to certification requirements will not be granted.Certifications must remain current, active, and in good standing throughout performance. Loss, lapse, or revocation of a required certification is grounds for removal from the contract. Continuing education required to maintain certification is at the employee's and company's expense.Ability to work independently and advise a Government security manager at the senior level.Strong written communication: the role produces bi-weekly written reporting and briefs the ISSM monthly.Ability to read, write, speak, and understand English fluently.Preferred QualificationsPrior USCG, DHS, or DoD assessment experience, particularly with Surface Domain OT or Platform IT systems.Familiarity with COMDTINST M2620.2 (series) and COMDTINST 5500.13 (series).Experience assessing OT/ICS or PIT systems where conventional endpoint tooling cannot be deployed.CGRC (formerly CAP), CISA, or GSNA in addition to the required baseline certification.Experience supporting DHS SELC-aligned programs.Master's degree in cybersecurity, information systems, or a related field.Technical SkillsNIST SP 800-37 (RMF), 800-53 / 53A / 53B, 800-137 (ISCM), FIPS 199 and FIPS 200DHS 4300A Sensitive Systems Handbook and the DHS Systems Engineering Life Cycle (SELC)Government-designated A&A repositories and tracking tools (e.g., eMASS or successor)DISA Security Technical Implementation Guides (STIGs) and Security Requirements Guides (SRGs)Government-approved vulnerability scanning and compliance tooling (e.g., ACAS/Nessus, SCAP-validated scanners)POA&M development, tracking, and closure, including waiver and risk acceptance packagesOperational Technology (OT), Platform IT (PIT), and industrial control system environments, including constraints on agent-based toolingNIST SP 800-30 risk assessment methodology and NIST SP 800-115 technical assessment techniquesElectronic spillage handling and removable media sanitization proceduresSecurity ClearanceNo security clearance required. This position does not involve access to classified information or classified IT systems.S. citizenship is required in accordance with HSAR 3052.204-71 Alternate I.A favorably adjudicated Tier 1 background investigation (or higher) is required. Candidates without an existing investigation on file must complete an Electronic Application (eApp) for investigation processing.Note to recruiting: per the task order, the position is not billable until the selected candidate is fully cleared, has a CAC in hand, and has reported to the work site. Fill timelines should assume 30-90 days for investigation and CAC issuance.EducationBachelor 's degree in cybersecurity, computer science, information systems, engineering, or a related field.Work EnvironmentPrimarily on-site at SFLC Baltimore. On-site presence is required for the monthly status briefing to the ISSM and for participation in change management boards, technical exchange meetings, and Government working groups.The Government furnishes workspace, telephone, a Standard Workstation, and copy/fax access.Remote work may be authorized at the sole discretion of the Government. If authorized, compliant hardware, software, and internet service are contractor- furnished.Occasional travel outside the local commuting area may be required for training and associated off-site meetings, subject to advance COR approval and reimbursed per the Federal Travel Regulations. The 707 East Ordnance Road satellite office is within the local commuting area.OneZero Solutions, LLC is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, pregnancy, genetic information, disability, status as a protected veteran, or any other protected category under applicable federal, state, and local laws.To request an accommodation . click apply for full job details
09/26/2026
Full time
Job Description Job Description We are an employee-centric company that truly values our team members and the contributions they make to our customers and the missions they support. We pride ourselves on being forward-leaning thinkers and on building teams that are, and continue to be, technically proficient across a broad range of cyber mission areas. OneZero full-time employees receive a highly competitive benefits package, including health, dental, vision, and life insurance, a 401(k) with company matching, paid time off and holidays, an employee referral program, and educational assistance. Additional details are available on our website: Position Title : Security Control Assessor (SME), Level IIILocation: USCG Surface Forces Logistics Center, 2401 Hawkins Point Road, Baltimore, MD 21226. Work may also be performed at the SFLC satellite offices at 707 East Ordnance Road, approximately one mile from the primary site, and at other sites as determined necessary by the Contracting Officer's Representative (COR).Clearance:No security clearance required. This position does not involve access to classified information or classified IT systems.S. citizenship is required in accordance with HSAR 3052.204-71 Alternate I.Position SummaryThe Security Control Assessor (SCA) provides independent security control assessment and authorization support to the USCG SFLC Business Operations Division in support of Surface Domain Operational Technology (OT) and Platform IT systems. The role is the assessment authority on the team: it evaluates whether security and privacy controls are implemented correctly, operating as intended, and producing the intended outcome, and it provides the evidence the Authorizing Official relies on to make risk decisions.This is the senior assessment position on the task order and is distinct from the ISSO roles, which own and maintain the authorization packages. The SCA assesses; the ISSOs prepare and sustain. The position is expected to operate with a high degree of independence and to advise the OT Security Manager (ISSM) directly.Key ResponsibilitiesSupport the OT Security Manager (ISSM) and staff in establishing and maintaining the programs, procedures, and policies that protect Government Sensitive But Unclassified (SBU) information.Perform independent assessments of SFLC Operational Technology to verify that applicable security and privacy controls are implemented correctly, operating as intended, and producing the desired outcome.Provide security assessment and authorization consultation services to the ISSM, on site.Review existing policies, procedures, and guidelines for compliance with DHS, USCG, and DoD cybersecurity policy; draft or revise SFLC policy documentation for ISSM review, approval, and organizational implementation.Assist in preparing RMF security authorization documentation for submission to the Authorizing Official (AO).Maintain security assessment information and supporting documentation within Government-designated systems and repositories.Create and validate SFLC security assessment and authorization accounts within Government-designated systems and tools.Update and maintain assessment and authorization status within Government-designated tracking systems and databases.Upload, track, and update Plans of Action and Milestones (POA recommend POA&M updates based on assessment results and maintain traceability from identified vulnerabilities through to the applicable POA&M.Conduct vulnerability scans of SFLC OT, networks, devices, and associated components using Government-approved tools.Provide assistance to system administrators in remediating vulnerabilities identified through scanning.Provide vulnerability and risk management support in conjunction with assessment and authorization activities.Maintain the enterprise tracking log for electronic spillage activities in accordance with Government policy.Support the destruction of removable media generated during assessment activities in accordance with Government procedures.Support cybersecurity strategic planning and continuous monitoring activities, evaluating enterprise services through assessment of priorities and risk.Provide bi-weekly status reports to the SFLC OT Security Manager (ISSM).Conduct a monthly project status update briefing to the ISSM at SFLC Baltimore.Required QualificationsExperienceTen (10) or more years of progressive cybersecurity experience, including at least five (5) years performing security control assessments or independent A&A validation in a federal environment.Demonstrated experience executing NIST SP 800-37 RMF end to end, including control assessment against NIST SP 800-53A.Experience assessing systems to a formal authorization decision and producing assessment artifacts relied upon by an Authorizing Official.Experience conducting and interpreting vulnerability scans and translating findings into risk-based recommendations and POA&M entries.Experience drafting and revising organizational cybersecurity policy for Government review and adoption.CertificationMust hold and maintain at least one active certification approved for Information Assurance Management (IAM) Level II or Level III. Any one of the following satisfies the requirement:CISSP - Certified Information Systems Security Professional (or CISSP Associate)CISM - Certified Information Security ManagerCGRC - Governance, Risk and Compliance Certification (formerly CAP)CASP+ - CompTIA Advanced Security PractitionerGSLC - GIAC Security Leadership CertificationCCISO - EC-Council Certified Chief Information Security Officer (Level III only)Certification requirements are subject to confirmation against COMDTINST M2620.2 (series) Appendix D, the controlling USCG certification matrix. Verify the accepted certification list with the Program Manager before extending an offer.Evidence of active certification in good standing is required prior to onboarding. Waivers and exceptions to certification requirements will not be granted.Certifications must remain current, active, and in good standing throughout performance. Loss, lapse, or revocation of a required certification is grounds for removal from the contract. Continuing education required to maintain certification is at the employee's and company's expense.Ability to work independently and advise a Government security manager at the senior level.Strong written communication: the role produces bi-weekly written reporting and briefs the ISSM monthly.Ability to read, write, speak, and understand English fluently.Preferred QualificationsPrior USCG, DHS, or DoD assessment experience, particularly with Surface Domain OT or Platform IT systems.Familiarity with COMDTINST M2620.2 (series) and COMDTINST 5500.13 (series).Experience assessing OT/ICS or PIT systems where conventional endpoint tooling cannot be deployed.CGRC (formerly CAP), CISA, or GSNA in addition to the required baseline certification.Experience supporting DHS SELC-aligned programs.Master's degree in cybersecurity, information systems, or a related field.Technical SkillsNIST SP 800-37 (RMF), 800-53 / 53A / 53B, 800-137 (ISCM), FIPS 199 and FIPS 200DHS 4300A Sensitive Systems Handbook and the DHS Systems Engineering Life Cycle (SELC)Government-designated A&A repositories and tracking tools (e.g., eMASS or successor)DISA Security Technical Implementation Guides (STIGs) and Security Requirements Guides (SRGs)Government-approved vulnerability scanning and compliance tooling (e.g., ACAS/Nessus, SCAP-validated scanners)POA&M development, tracking, and closure, including waiver and risk acceptance packagesOperational Technology (OT), Platform IT (PIT), and industrial control system environments, including constraints on agent-based toolingNIST SP 800-30 risk assessment methodology and NIST SP 800-115 technical assessment techniquesElectronic spillage handling and removable media sanitization proceduresSecurity ClearanceNo security clearance required. This position does not involve access to classified information or classified IT systems.S. citizenship is required in accordance with HSAR 3052.204-71 Alternate I.A favorably adjudicated Tier 1 background investigation (or higher) is required. Candidates without an existing investigation on file must complete an Electronic Application (eApp) for investigation processing.Note to recruiting: per the task order, the position is not billable until the selected candidate is fully cleared, has a CAC in hand, and has reported to the work site. Fill timelines should assume 30-90 days for investigation and CAC issuance.EducationBachelor 's degree in cybersecurity, computer science, information systems, engineering, or a related field.Work EnvironmentPrimarily on-site at SFLC Baltimore. On-site presence is required for the monthly status briefing to the ISSM and for participation in change management boards, technical exchange meetings, and Government working groups.The Government furnishes workspace, telephone, a Standard Workstation, and copy/fax access.Remote work may be authorized at the sole discretion of the Government. If authorized, compliant hardware, software, and internet service are contractor- furnished.Occasional travel outside the local commuting area may be required for training and associated off-site meetings, subject to advance COR approval and reimbursed per the Federal Travel Regulations. The 707 East Ordnance Road satellite office is within the local commuting area.OneZero Solutions, LLC is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, pregnancy, genetic information, disability, status as a protected veteran, or any other protected category under applicable federal, state, and local laws.To request an accommodation . click apply for full job details
Job Description Job Description Dark Wolf Solutions is seeking Security Control Assessor/Representatives (SCA/Rs) to lead security control assessments across high-priority projects. Working at the intersection of cybersecurity engineering, cloud architecture, and DevSecOps prototyping, you will evaluate security controls for cutting-edge AI/LLM technologies across multiple classification levels. This position is ideal for a pragmatic cloud assessor or SCAR who excels in fast-paced DevSecOps environments, understands AWS cloud security, and is eager to shape the cybersecurity posture of next-generation DoD AI capabilities.This position will be based out of Arlington, VA. Additional responsibilities include: Key Responsibilities Execute formal SCA/R duties. Lead security assessment efforts, establishing reusable security playbooks and assessment frameworks for rapid AI deployment into enterprise workflows. Evaluate technical control effectiveness across AWS cloud infrastructure, DevSecOps pipelines, microservices, containerized workloads, and GenAI/LLM application stacks. Partner directly with cybersecurity engineering and DevSecOps prototyping teams to integrate security controls early in the development lifecycle. Review, author, and maintain assessment packages-including System Security Plans (SSPs), Security Assessment Plans (SAPs), Security Assessment Reports (SARs), and POA&Ms-tailored to rapid prototyping and AI systems. Assess technical security risks specific to AI/LLM implementations, such as API exposure, vector database access controls, model integration surface area, and software supply chain dependencies. Support continuous monitoring (ConMon), technical risk evaluations, and cloud architecture reviews across multi-tenant, multi-classification environments. Coordinate with Authorizing Officials (AOs), program managers, and engineering leads to deliver decision-ready risk briefings and ATO recommendations. Provide technical input and oversight for cybersecurity engineering and penetration testing activities across prototype projects. Required Qualifications Active Top Secret security clearance Current DoD 8570/8140 IAM Level II or Level III certification (e.g., Security+, CySA+, CISM, CISSP, CCISO, CAP/CISC) 3-5+ years of experience conducting security control assessments, compliance testing, or A&A/RMF activities for DoD or federal information systems Solid operational understanding of core AWS cloud services (EC2, S3, IAM, VPCs, Security Groups, Security Hub) and how security controls function within cloud-native and CI/CD pipeline environments. Strong working knowledge of NIST SP 800-53 (Rev. 4/5), NIST SP 800-37 (RMF), DoD Cloud Computing SRG, and FedRAMP baselines. Demonstrated experience writing and evaluating core RMF artifacts (SSPs, SAPs, SARs, POA&Ms) Exceptional written and verbal communication skills, with the ability to articulate technical risk clearly to executive stakeholders, Authorizing Officials, and engineering teams. Hands-on experience navigating government GRC repositories, such as eMASS or XACTA. Desired Qualifications Hands-on experience mapping security controls to the NIST AI Risk Management Framework (AI RMF), the OWASP Top 10 for LLM Applications, or the DoD Responsible AI (RAI) Guidelines. Familiarity evaluating secure design patterns for autonomous AI Agents (e.g., tool-calling permissions, sandboxing agent execution environments, prompt boundaries, and ReAct/LangGraph architectures). Experience assessing cloud-managed AI ecosystems and foundation model platforms (e.g., AWS Bedrock, AWS SageMaker, Hugging Face Enterprise, or self-hosted open-source models). Understanding of data protection, access controls, and boundary security for RAG pipelines and vector databases (e.g., OpenSearch Vector Engine, Pinecone, Milvus, or PostgreSQL pgvector). Familiarity evaluating risks unique to LLMs-including prompt injection, data poisoning, model inversion, insecure output handling, and open-source supply chain vulnerabilities in AI libraries (PyTorch, LangChain, LlamaIndex). Exposure to LLM guardrail platforms, evaluation frameworks, or AI security tools (e.g., Promptfoo, Garak, Giskard, NeMo Guardrails) used to test model robustness and output safety. Experience with cATO methodologies, Infrastructure as Code (IaC) templates (Terraform, CloudFormation), and container security (AWS EKS/ECS, Docker). Active AWS Certifications (e.g., AWS Certified Security - Specialty or AWS Certified Solutions Architect). Background or familiarity with offensive security, penetration testing The salary range for this position is estimated to be between $135,000.00 - $150,000.00, commensurate on experience and technical skillset. We are proud to be an EEO/AA employer Minorities/Women/Veterans/Disabled and other protected categories. In compliance with federal law, all persons hired will be required to verify identity, confirm US Citizenship, and complete the required employment eligibility verification upon hire. We are strictly looking for direct, full-time W2 employees. We do not engage with third-party staffing agencies, C2C, or 1099 independent contractors for this role.
09/26/2026
Full time
Job Description Job Description Dark Wolf Solutions is seeking Security Control Assessor/Representatives (SCA/Rs) to lead security control assessments across high-priority projects. Working at the intersection of cybersecurity engineering, cloud architecture, and DevSecOps prototyping, you will evaluate security controls for cutting-edge AI/LLM technologies across multiple classification levels. This position is ideal for a pragmatic cloud assessor or SCAR who excels in fast-paced DevSecOps environments, understands AWS cloud security, and is eager to shape the cybersecurity posture of next-generation DoD AI capabilities.This position will be based out of Arlington, VA. Additional responsibilities include: Key Responsibilities Execute formal SCA/R duties. Lead security assessment efforts, establishing reusable security playbooks and assessment frameworks for rapid AI deployment into enterprise workflows. Evaluate technical control effectiveness across AWS cloud infrastructure, DevSecOps pipelines, microservices, containerized workloads, and GenAI/LLM application stacks. Partner directly with cybersecurity engineering and DevSecOps prototyping teams to integrate security controls early in the development lifecycle. Review, author, and maintain assessment packages-including System Security Plans (SSPs), Security Assessment Plans (SAPs), Security Assessment Reports (SARs), and POA&Ms-tailored to rapid prototyping and AI systems. Assess technical security risks specific to AI/LLM implementations, such as API exposure, vector database access controls, model integration surface area, and software supply chain dependencies. Support continuous monitoring (ConMon), technical risk evaluations, and cloud architecture reviews across multi-tenant, multi-classification environments. Coordinate with Authorizing Officials (AOs), program managers, and engineering leads to deliver decision-ready risk briefings and ATO recommendations. Provide technical input and oversight for cybersecurity engineering and penetration testing activities across prototype projects. Required Qualifications Active Top Secret security clearance Current DoD 8570/8140 IAM Level II or Level III certification (e.g., Security+, CySA+, CISM, CISSP, CCISO, CAP/CISC) 3-5+ years of experience conducting security control assessments, compliance testing, or A&A/RMF activities for DoD or federal information systems Solid operational understanding of core AWS cloud services (EC2, S3, IAM, VPCs, Security Groups, Security Hub) and how security controls function within cloud-native and CI/CD pipeline environments. Strong working knowledge of NIST SP 800-53 (Rev. 4/5), NIST SP 800-37 (RMF), DoD Cloud Computing SRG, and FedRAMP baselines. Demonstrated experience writing and evaluating core RMF artifacts (SSPs, SAPs, SARs, POA&Ms) Exceptional written and verbal communication skills, with the ability to articulate technical risk clearly to executive stakeholders, Authorizing Officials, and engineering teams. Hands-on experience navigating government GRC repositories, such as eMASS or XACTA. Desired Qualifications Hands-on experience mapping security controls to the NIST AI Risk Management Framework (AI RMF), the OWASP Top 10 for LLM Applications, or the DoD Responsible AI (RAI) Guidelines. Familiarity evaluating secure design patterns for autonomous AI Agents (e.g., tool-calling permissions, sandboxing agent execution environments, prompt boundaries, and ReAct/LangGraph architectures). Experience assessing cloud-managed AI ecosystems and foundation model platforms (e.g., AWS Bedrock, AWS SageMaker, Hugging Face Enterprise, or self-hosted open-source models). Understanding of data protection, access controls, and boundary security for RAG pipelines and vector databases (e.g., OpenSearch Vector Engine, Pinecone, Milvus, or PostgreSQL pgvector). Familiarity evaluating risks unique to LLMs-including prompt injection, data poisoning, model inversion, insecure output handling, and open-source supply chain vulnerabilities in AI libraries (PyTorch, LangChain, LlamaIndex). Exposure to LLM guardrail platforms, evaluation frameworks, or AI security tools (e.g., Promptfoo, Garak, Giskard, NeMo Guardrails) used to test model robustness and output safety. Experience with cATO methodologies, Infrastructure as Code (IaC) templates (Terraform, CloudFormation), and container security (AWS EKS/ECS, Docker). Active AWS Certifications (e.g., AWS Certified Security - Specialty or AWS Certified Solutions Architect). Background or familiarity with offensive security, penetration testing The salary range for this position is estimated to be between $135,000.00 - $150,000.00, commensurate on experience and technical skillset. We are proud to be an EEO/AA employer Minorities/Women/Veterans/Disabled and other protected categories. In compliance with federal law, all persons hired will be required to verify identity, confirm US Citizenship, and complete the required employment eligibility verification upon hire. We are strictly looking for direct, full-time W2 employees. We do not engage with third-party staffing agencies, C2C, or 1099 independent contractors for this role.
Job Description Job Description Make a difference here. UltraViolet Cyber is a leading platform-enabled unified security operations company providing a comprehensive suite of security operations solutions. Founded and operated by security practitioners with decades of experience, the UltraViolet Cyber security-as-code platform combines technology innovation and human expertise to make advanced real-time cybersecurity accessible for all organizations by eliminating risks of separate red and blue teams. By creating continuously optimized identification, detection, and resilience from today's dynamic threat landscape, UltraViolet Cyber provides both managed and custom-tailored unified security operations solutions to the Fortune 500, Federal Government, and Commercial clients. UltraViolet Cyber is headquartered in McLean, Virginia, with global offices across the U.S. and in India. UltraViolet Cyber is seeking to hire a Senior Security Control Assessor (SCA) to act as an independent evaluator to ensure the effectiveness of management, operational, and technical security controls. The candidate will lead cybersecurity compliance assessments, identify control gaps and vulnerabilities, and recommend risk-mitigation strategies to support enterprise system authorization. What You'll Do: Assessment Execution: Plan and execute comprehensive security control assessments in accordance with frameworks like the Risk Management Framework (RMF) and FISMA. Testing & Evaluation: Review system configurations, evaluate evidence, and perform technical testing (e.g., vulnerability scanning) to validate security posture. Documentation & Reporting: Compile assessment results into Security Assessment Reports (SARs) and generate risk determinations for Authorizing Officials (AOs). Remediation & Tracking: Identify control weaknesses and support the development of Plans of Action and Milestones (POA&Ms). Team Leadership: Guide junior assessors, review deliverables, and coordinate assessment activities with ISSOs, system owners, and stakeholders. What You've Done: US Citizenship is required for this role. Education: Bachelor's degree in cybersecurity, computer science, information systems, or a related field. (Or 6 years of experience equivalency) Experience: 7+ years of hands-on experience in cybersecurity, audit, or compliance, with specialized focus on RMF and NIST 800-series publications. Regulatory Expertise: Deep understanding of statutory guidance such as NIST SP 800-53, NIST SP 800-53A, and FISMA. Certifications: Industry-recognized credentials such as the Certified Information Systems Security Professional (CISSP), Certified Information Systems Auditor (CISA), or Certified Authorization Professional (CAP). Background Investigation: This role requires a Federal background investigation. A current or prior DHS suitability is highly preferred. What We Offer: 401(k), including an employer match of 100% of the first 3% contributed and 50% of the next 2% contributed Medical, Dental, and Vision Insurance (available on the 1st day of the month following your first day of employment) Group Term Life, Short-Term Disability, Long-Term Disability Voluntary Life, Hospital Indemnity, Accident, and/or Critical Illness Participation in the Discretionary Time Off (DTO) Program 11 Paid Holidays Annually UltraViolet Cyber maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect our company's differing products, services, industries and lines of business. Candidates are typically placed into the range based on the preceding factors. We sincerely thank all applicants in advance for submitting their interest in this position. We know your time is valuable. UltraViolet Cyber welcomes and encourages diversity in the workplace regardless of race, gender, religion, age, sexual orientation, gender identity, disability, or veteran status. If you want to make an impact, UltraViolet Cyber is the place for you! We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
09/26/2026
Full time
Job Description Job Description Make a difference here. UltraViolet Cyber is a leading platform-enabled unified security operations company providing a comprehensive suite of security operations solutions. Founded and operated by security practitioners with decades of experience, the UltraViolet Cyber security-as-code platform combines technology innovation and human expertise to make advanced real-time cybersecurity accessible for all organizations by eliminating risks of separate red and blue teams. By creating continuously optimized identification, detection, and resilience from today's dynamic threat landscape, UltraViolet Cyber provides both managed and custom-tailored unified security operations solutions to the Fortune 500, Federal Government, and Commercial clients. UltraViolet Cyber is headquartered in McLean, Virginia, with global offices across the U.S. and in India. UltraViolet Cyber is seeking to hire a Senior Security Control Assessor (SCA) to act as an independent evaluator to ensure the effectiveness of management, operational, and technical security controls. The candidate will lead cybersecurity compliance assessments, identify control gaps and vulnerabilities, and recommend risk-mitigation strategies to support enterprise system authorization. What You'll Do: Assessment Execution: Plan and execute comprehensive security control assessments in accordance with frameworks like the Risk Management Framework (RMF) and FISMA. Testing & Evaluation: Review system configurations, evaluate evidence, and perform technical testing (e.g., vulnerability scanning) to validate security posture. Documentation & Reporting: Compile assessment results into Security Assessment Reports (SARs) and generate risk determinations for Authorizing Officials (AOs). Remediation & Tracking: Identify control weaknesses and support the development of Plans of Action and Milestones (POA&Ms). Team Leadership: Guide junior assessors, review deliverables, and coordinate assessment activities with ISSOs, system owners, and stakeholders. What You've Done: US Citizenship is required for this role. Education: Bachelor's degree in cybersecurity, computer science, information systems, or a related field. (Or 6 years of experience equivalency) Experience: 7+ years of hands-on experience in cybersecurity, audit, or compliance, with specialized focus on RMF and NIST 800-series publications. Regulatory Expertise: Deep understanding of statutory guidance such as NIST SP 800-53, NIST SP 800-53A, and FISMA. Certifications: Industry-recognized credentials such as the Certified Information Systems Security Professional (CISSP), Certified Information Systems Auditor (CISA), or Certified Authorization Professional (CAP). Background Investigation: This role requires a Federal background investigation. A current or prior DHS suitability is highly preferred. What We Offer: 401(k), including an employer match of 100% of the first 3% contributed and 50% of the next 2% contributed Medical, Dental, and Vision Insurance (available on the 1st day of the month following your first day of employment) Group Term Life, Short-Term Disability, Long-Term Disability Voluntary Life, Hospital Indemnity, Accident, and/or Critical Illness Participation in the Discretionary Time Off (DTO) Program 11 Paid Holidays Annually UltraViolet Cyber maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect our company's differing products, services, industries and lines of business. Candidates are typically placed into the range based on the preceding factors. We sincerely thank all applicants in advance for submitting their interest in this position. We know your time is valuable. UltraViolet Cyber welcomes and encourages diversity in the workplace regardless of race, gender, religion, age, sexual orientation, gender identity, disability, or veteran status. If you want to make an impact, UltraViolet Cyber is the place for you! We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Job Description Job Description Configuration Management Engineer Full Time, Fort Detrick, MD (Hybrid)SECRET Referral Bonus: $1000Sign On Bonus: up to $2,500.00Job Description:Semper Valens Solutions is looking for a Configuration Management Engineer to lead enterprise CM capability development for the Wideband Control Strategic Portfolio supporting critical DoD satellite communication systems. This role will design and implement modern CM infrastructure, establish unified processes across distributed teams, and drive digital transformation from legacy systems to enterprise CMDB architecture.This is a strategic infrastructure role, not a maintenance position. You'll architect solutions, build frameworks, and establish sustainable CM capabilities that position the organization for long-term success. The role requires technical depth in JIRA/Confluence CMDB design, strong stakeholder influence skills, and proven experience establishing CM processes in complex System of Systems environments.Key Responsibilities:Enterprise CMDB DevelopmentDesign and implement Configuration Management Database in JIRA for multi-domain System of Systems environmentArchitect CI taxonomy and identification schemes supporting integrated configuration visibilityEstablish baseline management frameworks and versioning strategiesDevelop relationship mapping enabling impact analysis and dependency trackingProcess Framework DesignCreate systematic change control workflows integrating with configuration item managementDesign change classification schemes with appropriate governance and approval structuresEstablish configuration audit frameworks supporting compliance and quality assuranceImplement lifecycle tracking for proactive technology refresh planningOrganizational EnablementTrain and mentor users across multiple Integrated Product Teams on CM tools and methodologiesDevelop comprehensive documentation supporting varied technical skill levelsBuild stakeholder alignment and drive adoption through expertise and demonstrated valueCreate sustainable CM capability through knowledge transfer and skill developmentStrategic LeadershipAdvance organizational CM maturity through measured capability improvementsEstablish metrics and reporting frameworks providing executive visibilityDefine accountability structures for configuration ownership and stewardshipLead digital transformation from legacy CM approaches to modern integrated systemsEducation/Experience Requirements:Bachelor 's degree in Engineering, Computer Science, Information Systems, or related technical field(OR Associate degree + 5 years relevant experience, OR relevant certifications + demonstrated experience)Specific experience with DoD processes and procedures is preferred.Willing to travel in performance of required work responsibilities.Clearance Requirement:DoD Secret Clearance required (active or eligible) Preferred Qualifications:Active Secret clearanceAWS, DevSecOps experienceOracle, SQL db, and or PostgreSQL experience SAE EIA-649B or DoD CM standards familiarityIL5 or classified environment experienceSystem of Systems (SoS) configuration managementSatellite systems or space operations domain knowledgeTechnology lifecycle and obsolescence managementCMII, ITIL Expert, or Atlassian certifications10+ years CM experienceAbout Semper Valens Solutions:Semper Valens Solutions, Inc. (SVS) is a Service-Disabled Veteran Owned Small Business (SDVOSB) providing Cost Effective Software and Systems Engineering, Field Support, Training and Full Life cycle Support Management to the DOD and VA community. At Semper Valens, our vision is to remain a creative, cutting edge and cost-effective solutions provider where our shared intellect, industry experience, and technology excellence, make a positive difference in our customer's success. Our solutions help bridge the gap between IT and business prioritizations to optimize budgets, risks, and operational processes. We search for outstanding technical professionals, hiring at all levels of the experience spectrum; intermediate, journeyman and senior. Consider us for your career plan. Semper Valens Solutions is an Equal Opportunity EmployerSemper Valens Solutions proactively fulfills its role as an equal opportunity employer. We do not discriminate against any employee or applicant for employment because of race, color, sex, religion, age, sexual orientation, gender identity and expression, national origin, marital/parental status, pregnancy/childbirth, or related conditions, physical or mental disability, genetic information, status as a Disabled Veteran, Recently Separated Veteran, Active-Duty Wartime or Campaign Badge Veteran, Armed Forces Services Medal, or any other characteristic protected by law. If you require a reasonable accommodation to apply for a position with Semper Valens Solutions through its online applicant system, please contact Semper Valens Solutions Human Resources Department at .Semper Valens Solutions is an affirmative action/equal opportunity employer - minorities, females, disabled, and protected veterans are urged to apply. Applicants have rights under Federal Employment Laws. All Jobs at Semper Valens Solutions:
09/26/2026
Full time
Job Description Job Description Configuration Management Engineer Full Time, Fort Detrick, MD (Hybrid)SECRET Referral Bonus: $1000Sign On Bonus: up to $2,500.00Job Description:Semper Valens Solutions is looking for a Configuration Management Engineer to lead enterprise CM capability development for the Wideband Control Strategic Portfolio supporting critical DoD satellite communication systems. This role will design and implement modern CM infrastructure, establish unified processes across distributed teams, and drive digital transformation from legacy systems to enterprise CMDB architecture.This is a strategic infrastructure role, not a maintenance position. You'll architect solutions, build frameworks, and establish sustainable CM capabilities that position the organization for long-term success. The role requires technical depth in JIRA/Confluence CMDB design, strong stakeholder influence skills, and proven experience establishing CM processes in complex System of Systems environments.Key Responsibilities:Enterprise CMDB DevelopmentDesign and implement Configuration Management Database in JIRA for multi-domain System of Systems environmentArchitect CI taxonomy and identification schemes supporting integrated configuration visibilityEstablish baseline management frameworks and versioning strategiesDevelop relationship mapping enabling impact analysis and dependency trackingProcess Framework DesignCreate systematic change control workflows integrating with configuration item managementDesign change classification schemes with appropriate governance and approval structuresEstablish configuration audit frameworks supporting compliance and quality assuranceImplement lifecycle tracking for proactive technology refresh planningOrganizational EnablementTrain and mentor users across multiple Integrated Product Teams on CM tools and methodologiesDevelop comprehensive documentation supporting varied technical skill levelsBuild stakeholder alignment and drive adoption through expertise and demonstrated valueCreate sustainable CM capability through knowledge transfer and skill developmentStrategic LeadershipAdvance organizational CM maturity through measured capability improvementsEstablish metrics and reporting frameworks providing executive visibilityDefine accountability structures for configuration ownership and stewardshipLead digital transformation from legacy CM approaches to modern integrated systemsEducation/Experience Requirements:Bachelor 's degree in Engineering, Computer Science, Information Systems, or related technical field(OR Associate degree + 5 years relevant experience, OR relevant certifications + demonstrated experience)Specific experience with DoD processes and procedures is preferred.Willing to travel in performance of required work responsibilities.Clearance Requirement:DoD Secret Clearance required (active or eligible) Preferred Qualifications:Active Secret clearanceAWS, DevSecOps experienceOracle, SQL db, and or PostgreSQL experience SAE EIA-649B or DoD CM standards familiarityIL5 or classified environment experienceSystem of Systems (SoS) configuration managementSatellite systems or space operations domain knowledgeTechnology lifecycle and obsolescence managementCMII, ITIL Expert, or Atlassian certifications10+ years CM experienceAbout Semper Valens Solutions:Semper Valens Solutions, Inc. (SVS) is a Service-Disabled Veteran Owned Small Business (SDVOSB) providing Cost Effective Software and Systems Engineering, Field Support, Training and Full Life cycle Support Management to the DOD and VA community. At Semper Valens, our vision is to remain a creative, cutting edge and cost-effective solutions provider where our shared intellect, industry experience, and technology excellence, make a positive difference in our customer's success. Our solutions help bridge the gap between IT and business prioritizations to optimize budgets, risks, and operational processes. We search for outstanding technical professionals, hiring at all levels of the experience spectrum; intermediate, journeyman and senior. Consider us for your career plan. Semper Valens Solutions is an Equal Opportunity EmployerSemper Valens Solutions proactively fulfills its role as an equal opportunity employer. We do not discriminate against any employee or applicant for employment because of race, color, sex, religion, age, sexual orientation, gender identity and expression, national origin, marital/parental status, pregnancy/childbirth, or related conditions, physical or mental disability, genetic information, status as a Disabled Veteran, Recently Separated Veteran, Active-Duty Wartime or Campaign Badge Veteran, Armed Forces Services Medal, or any other characteristic protected by law. If you require a reasonable accommodation to apply for a position with Semper Valens Solutions through its online applicant system, please contact Semper Valens Solutions Human Resources Department at .Semper Valens Solutions is an affirmative action/equal opportunity employer - minorities, females, disabled, and protected veterans are urged to apply. Applicants have rights under Federal Employment Laws. All Jobs at Semper Valens Solutions:
Global Enterprise Services, LLC
Fort George G Meade, Maryland
Job Description Job Description GES is seeking an experienced Release and Deployment Lead to join our Defense Enclave Services (DES) team, who will support an extensive digital modernization program critical to Defense Information Systems Agency (DISA) and Department of Defense (DoD) Fourth Estate Agencies. The Release and Deployment Lead will be responsible for Overseeing and managing the supervision of a minimum of 12 personnel. They will interface between the Team of Personnel and report to Leadership. Provide input regarding the management activities and work closely with cross-functional teams to architect and deliver robust, scalable, and secure solutions for MECM and Intune. CLEARANCE REQUIRMENT: Must possess an active DoD Secret or above. (US Citizenship required) 40hrs per week on site Start as soon aspossible Tentative end date 30 November (pending contract status) PRIMARY RESPONSIBILITIES: This position is on-site at Ft. Meade, MD. The specific schedule may be adjusted based on mission and customer needs. Prepare, test, and deploy software updates using MECM/Intune Management Console. Skillset in Patching of servers & workstations from MECM and Intune. Remotely log into the end users' endpoint (desktops and/or servers) to perform technical software configuration, rebooting, and other actions. Provide support implementation,troubleshootingand maintenance support. Rapidly distinguish isolated user problems. Operate,maintain, validate, troubleshoot, and resolve issues associated with client agent health for all MECM/Intune solutions ensuring that collection management isoptimizedto minimize collection evaluation times. Guides strategy, engineering, design, and project management of multi-user computer platforms to include MECM and Intune. Troubleshoot and resolve complex endpoint hardware and software problems for multi- usercomputer platforms. Coordinate with customers and stakeholders to collect data, conduct analysis, develop, and implement solutions associated with incident tickets and requirements. Establish comprehensive availability and capacity managementsolutionusing lessons learned for MECM/Intune Applications and packages. Develop solutions to complex technical issues and software remediation. Provide follow-up reports (technical findings, feedback, resolution steps taken) for root cause analysis, engineering technicalassessmentand process improvement initiatives. Mentor Software Packagers (in problem resolution activities andresolvesmore complex technology issues.) Possess detailed knowledge of MECM and Intune todemonstratethe ability toleverageand appropriately integrate those technologies within the current On Prem and Cloud environments. Balances technology integration alternatives and recommends action with consideration to both technical efficiency and effectiveness. Develop andmaintaineffective working relationships with all areas of the organization,groupsand personnel. Coordinate with the Operations Lead, Ops functional team, and the government representatives to prioritize user feedback that builds framework for endpoint requirements. Implement flexible cross training to provide systems management, software packaging, training, IAVM & POAM, and testing. Create presentations and briefing status to key stakeholders. Required Qualifications Bachelor's degree and 8+ years of prior relevant experience;additionalyears of experience could be considered in lieu of a degree. Proven experience managing Client and Server system engineering resources supporting operations and sustainment teams. Possess and applyexpertisein multiple complex work assignments. Assignments may be broad in nature, requiring originality and innovation indetermininghow toaccomplishtasks. Ability tooperatewith appreciable latitude in developingmethodologyand presenting solutions to problems with TTP development. Ability to contribute to deliverables and performance metrics where applicable. Familiarity with active directory/group policy Must have a DoD IAT II (Sec+) or higher, prior to start. Experience with Scripting/Automation using PowerShell and/or other scripting languages. Experience troubleshooting issues in an expanding Cloud environment. A consultative/advisory mindset with the ability to guide Software Packagers with complex MECM/Intune package building. Experience in troubleshooting application issues in a Cloud and On Prem environment. Incident Management, Problem Management, Change Request Management handling experience Collaboration skillset with the MECM/Intune Release and Deployment Team in implementingnew technologyinitiatives,standardsmajor changes or upgrades to production environments.
09/26/2026
Full time
Job Description Job Description GES is seeking an experienced Release and Deployment Lead to join our Defense Enclave Services (DES) team, who will support an extensive digital modernization program critical to Defense Information Systems Agency (DISA) and Department of Defense (DoD) Fourth Estate Agencies. The Release and Deployment Lead will be responsible for Overseeing and managing the supervision of a minimum of 12 personnel. They will interface between the Team of Personnel and report to Leadership. Provide input regarding the management activities and work closely with cross-functional teams to architect and deliver robust, scalable, and secure solutions for MECM and Intune. CLEARANCE REQUIRMENT: Must possess an active DoD Secret or above. (US Citizenship required) 40hrs per week on site Start as soon aspossible Tentative end date 30 November (pending contract status) PRIMARY RESPONSIBILITIES: This position is on-site at Ft. Meade, MD. The specific schedule may be adjusted based on mission and customer needs. Prepare, test, and deploy software updates using MECM/Intune Management Console. Skillset in Patching of servers & workstations from MECM and Intune. Remotely log into the end users' endpoint (desktops and/or servers) to perform technical software configuration, rebooting, and other actions. Provide support implementation,troubleshootingand maintenance support. Rapidly distinguish isolated user problems. Operate,maintain, validate, troubleshoot, and resolve issues associated with client agent health for all MECM/Intune solutions ensuring that collection management isoptimizedto minimize collection evaluation times. Guides strategy, engineering, design, and project management of multi-user computer platforms to include MECM and Intune. Troubleshoot and resolve complex endpoint hardware and software problems for multi- usercomputer platforms. Coordinate with customers and stakeholders to collect data, conduct analysis, develop, and implement solutions associated with incident tickets and requirements. Establish comprehensive availability and capacity managementsolutionusing lessons learned for MECM/Intune Applications and packages. Develop solutions to complex technical issues and software remediation. Provide follow-up reports (technical findings, feedback, resolution steps taken) for root cause analysis, engineering technicalassessmentand process improvement initiatives. Mentor Software Packagers (in problem resolution activities andresolvesmore complex technology issues.) Possess detailed knowledge of MECM and Intune todemonstratethe ability toleverageand appropriately integrate those technologies within the current On Prem and Cloud environments. Balances technology integration alternatives and recommends action with consideration to both technical efficiency and effectiveness. Develop andmaintaineffective working relationships with all areas of the organization,groupsand personnel. Coordinate with the Operations Lead, Ops functional team, and the government representatives to prioritize user feedback that builds framework for endpoint requirements. Implement flexible cross training to provide systems management, software packaging, training, IAVM & POAM, and testing. Create presentations and briefing status to key stakeholders. Required Qualifications Bachelor's degree and 8+ years of prior relevant experience;additionalyears of experience could be considered in lieu of a degree. Proven experience managing Client and Server system engineering resources supporting operations and sustainment teams. Possess and applyexpertisein multiple complex work assignments. Assignments may be broad in nature, requiring originality and innovation indetermininghow toaccomplishtasks. Ability tooperatewith appreciable latitude in developingmethodologyand presenting solutions to problems with TTP development. Ability to contribute to deliverables and performance metrics where applicable. Familiarity with active directory/group policy Must have a DoD IAT II (Sec+) or higher, prior to start. Experience with Scripting/Automation using PowerShell and/or other scripting languages. Experience troubleshooting issues in an expanding Cloud environment. A consultative/advisory mindset with the ability to guide Software Packagers with complex MECM/Intune package building. Experience in troubleshooting application issues in a Cloud and On Prem environment. Incident Management, Problem Management, Change Request Management handling experience Collaboration skillset with the MECM/Intune Release and Deployment Team in implementingnew technologyinitiatives,standardsmajor changes or upgrades to production environments.
Job Description Job Description Dark Wolf Solutions is seeking a Senior Security Control Assessor Representative (SCAR) to conduct independent comprehensive assessments of the management, operation, and technical security controls and control enhancements employed within, or inherited by, an Information technology (IT) system to determine the overall effectiveness of the controls. The SCAR will perform reviews of security artifacts for system authorizations, assessing both the technical and functional adequacy as required for application and software cybersecurity readiness. The SCAR candidate must have prior experience in authorizing tools/applications, systems, and/or enclaves. Additionally, knowledge of network security, technologies, processes, and practices designed for the prevention of damage to, protection of, and restoration of computers, communications systems, services, and various types of communications technologies. The SCAR candidate must be knowledgeable and proficient in assessing DoD GovCloud environments to include testing controls and validating artifacts. A successful candidate will have a strong foundational understanding of NIST, DOD, and DAF cybersecurity focused guidance. This position can be based out of any Dark Wolf Office location and will be a hybrid schedule. Additional responsibilities include: Key Responsibilities: Evaluating IT infrastructure in terms of risk to the organization and defining artifacts required to meet Federal, DoD and DAF requirements Assessing IT systems and architecture to ensure compliance with the Risk Management Framework (RMF), NIST Cybersecurity Framework (CSF), NIST 800-53 revision 5 and applicable guidance Supporting the system/application assessment and authorization (A&A) effort, to include assessing and guiding the quality and completeness of A&A activities, tasks and resulting artifacts mandated by governing DoD and AF policies, and applicable mandates Collecting, reviewing and verifying documented business processes within process narratives or flowcharts, identifying risks and validating proficiency of mitigating controls Reviewing risk and control matrices and testing plans for key controls and determines effectiveness Identifying control gaps, reviewing and testing the design of existing controls. Formulating clear and concise conclusions on internal controls and business process efficiency Recommending policies and procedures to ensure information systems reliability and accessibility and to prevent and defend against unauthorized access to systems, networks, and data Conducting risk and vulnerability assessments of installed information systems to identify vulnerabilities, risks, and protection needs Reviewing Plans of Actions & Milestones (POA&Ms) Providing recommendations and reports to the Security Control Assessor (SCA), Authorizing Official (AO), Chief Information Security Officer (CISO) Reviewing network and systems design to ensure accuracy Ensuring the rigorous application of information security/cybersecurity policies, principles, and practices in the delivery of all IT services Required Qualifications: 15+ years of relevant Cyber experience 15+ years prior experience as a Security Control Assessor/Representative RMF Engineer, ISSO, ISSM and/or information assurance engineer Cloud Platform experience with at least one service offering from AWS, Azure, or Google GCP Hands-on eMASS and/or Xacta experience completing full system lifecycle activities Experience with Air Force risk management policies/procedures, to include, DODI 8510.01, AFI 17-101 Experience with Cloud Computing Security Requirements Guide (CC SRG) Knowledgeable with DoD DevSecOps Fundamentals Playbook Experience evaluating information security compliance against STIGs Ability to clearly articulate ideas Strong technical writing abilities to author reports for AO and CISO dissemination Exudes confidence in providing briefings, presentations, and in conducting/guiding meetings with senior leadership and stakeholders Ability to use prior experience and knowledge to address new situations Certification requirements (at least one of the following): SecurityX / CASP+, CCISO, CGRC/CAP, CISA, CISM, CISSO, CISSP, CISSP-ISSEP, Cloud+, CySA+, FITSP-A, GCSA, GSEC, GSLC, GSNA, PenTest+, Security+ B.A. or B.S. Information Security, Computer Science or related discipline US Citizenship and currently possess a Top Secret security clearance Desired Qualifications: Experience with Fast Track ATO Handbook & AF Continuous ATO Playbook Familiarity with CI/CD Pipelines DevSecOps experience Sharepoint, JIRA, Confluence familiarity The salary range for this position is $140,000.00 - $145,000.00 commensurate on experience and technical skillset. We are open to considering a variety of levels of experience for these projects and potential for 1099 hourly opportunity. We are proud to be an EEO/AA Employer Minorities/Women/Veterans/Disabled and other protected categories. In compliance with federal law, all persons hired will be required to verify identity, confirm US Citizenship, and complete the required employment eligibility verification upon hire.
09/26/2026
Full time
Job Description Job Description Dark Wolf Solutions is seeking a Senior Security Control Assessor Representative (SCAR) to conduct independent comprehensive assessments of the management, operation, and technical security controls and control enhancements employed within, or inherited by, an Information technology (IT) system to determine the overall effectiveness of the controls. The SCAR will perform reviews of security artifacts for system authorizations, assessing both the technical and functional adequacy as required for application and software cybersecurity readiness. The SCAR candidate must have prior experience in authorizing tools/applications, systems, and/or enclaves. Additionally, knowledge of network security, technologies, processes, and practices designed for the prevention of damage to, protection of, and restoration of computers, communications systems, services, and various types of communications technologies. The SCAR candidate must be knowledgeable and proficient in assessing DoD GovCloud environments to include testing controls and validating artifacts. A successful candidate will have a strong foundational understanding of NIST, DOD, and DAF cybersecurity focused guidance. This position can be based out of any Dark Wolf Office location and will be a hybrid schedule. Additional responsibilities include: Key Responsibilities: Evaluating IT infrastructure in terms of risk to the organization and defining artifacts required to meet Federal, DoD and DAF requirements Assessing IT systems and architecture to ensure compliance with the Risk Management Framework (RMF), NIST Cybersecurity Framework (CSF), NIST 800-53 revision 5 and applicable guidance Supporting the system/application assessment and authorization (A&A) effort, to include assessing and guiding the quality and completeness of A&A activities, tasks and resulting artifacts mandated by governing DoD and AF policies, and applicable mandates Collecting, reviewing and verifying documented business processes within process narratives or flowcharts, identifying risks and validating proficiency of mitigating controls Reviewing risk and control matrices and testing plans for key controls and determines effectiveness Identifying control gaps, reviewing and testing the design of existing controls. Formulating clear and concise conclusions on internal controls and business process efficiency Recommending policies and procedures to ensure information systems reliability and accessibility and to prevent and defend against unauthorized access to systems, networks, and data Conducting risk and vulnerability assessments of installed information systems to identify vulnerabilities, risks, and protection needs Reviewing Plans of Actions & Milestones (POA&Ms) Providing recommendations and reports to the Security Control Assessor (SCA), Authorizing Official (AO), Chief Information Security Officer (CISO) Reviewing network and systems design to ensure accuracy Ensuring the rigorous application of information security/cybersecurity policies, principles, and practices in the delivery of all IT services Required Qualifications: 15+ years of relevant Cyber experience 15+ years prior experience as a Security Control Assessor/Representative RMF Engineer, ISSO, ISSM and/or information assurance engineer Cloud Platform experience with at least one service offering from AWS, Azure, or Google GCP Hands-on eMASS and/or Xacta experience completing full system lifecycle activities Experience with Air Force risk management policies/procedures, to include, DODI 8510.01, AFI 17-101 Experience with Cloud Computing Security Requirements Guide (CC SRG) Knowledgeable with DoD DevSecOps Fundamentals Playbook Experience evaluating information security compliance against STIGs Ability to clearly articulate ideas Strong technical writing abilities to author reports for AO and CISO dissemination Exudes confidence in providing briefings, presentations, and in conducting/guiding meetings with senior leadership and stakeholders Ability to use prior experience and knowledge to address new situations Certification requirements (at least one of the following): SecurityX / CASP+, CCISO, CGRC/CAP, CISA, CISM, CISSO, CISSP, CISSP-ISSEP, Cloud+, CySA+, FITSP-A, GCSA, GSEC, GSLC, GSNA, PenTest+, Security+ B.A. or B.S. Information Security, Computer Science or related discipline US Citizenship and currently possess a Top Secret security clearance Desired Qualifications: Experience with Fast Track ATO Handbook & AF Continuous ATO Playbook Familiarity with CI/CD Pipelines DevSecOps experience Sharepoint, JIRA, Confluence familiarity The salary range for this position is $140,000.00 - $145,000.00 commensurate on experience and technical skillset. We are open to considering a variety of levels of experience for these projects and potential for 1099 hourly opportunity. We are proud to be an EEO/AA Employer Minorities/Women/Veterans/Disabled and other protected categories. In compliance with federal law, all persons hired will be required to verify identity, confirm US Citizenship, and complete the required employment eligibility verification upon hire.
Job Description Job Description Dark Wolf Solutions is seeking Security Control Assessor/Representatives (SCA/Rs) to lead security control assessments across high-priority projects. Working at the intersection of cybersecurity engineering, cloud architecture, and DevSecOps prototyping, you will evaluate security controls for cutting-edge AI/LLM technologies across multiple classification levels. This position is ideal for a pragmatic cloud assessor or SCAR who excels in fast-paced DevSecOps environments, understands AWS cloud security, and is eager to shape the cybersecurity posture of next-generation DoD AI capabilities.This position will be based out of Arlington, VA with hybrid/remote opportunities. Additional responsibilities include: Key Responsibilities Execute formal SCA/R duties. Lead security assessment efforts, establishing reusable security playbooks and assessment frameworks for rapid AI deployment into enterprise workflows. Evaluate technical control effectiveness across AWS cloud infrastructure, DevSecOps pipelines, microservices, containerized workloads, and GenAI/LLM application stacks. Bridge the gap between OffSec and development by applying software design best practices. Lead technical exchange meetings (TEMs), participate in Discovery & Framing workshops, and maintain effective communication with cross-functional teams and stakeholders. Act as the primary subject matter expert and lead developer for custom offensive tooling, integrating disparate capabilities into a cohesive, mission-ready platform. Review, author, and maintain assessment packages-including System Security Plans (SSPs), Security Assessment Plans (SAPs), Security Assessment Reports (SARs), and POA&Ms-tailored to rapid prototyping and AI systems. Assess technical security risks specific to AI/LLM implementations, such as API exposure, vector database access controls, model integration surface area, and software supply chain dependencies. Support continuous monitoring (ConMon), technical risk evaluations, and cloud architecture reviews across multi-tenant, multi-classification environments. Coordinate with Authorizing Officials (AOs), program managers, and engineering leads to deliver decision-ready risk briefings and ATO recommendations. Provide technical input and oversight for cybersecurity engineering and penetration testing activities across prototype projects. Required Qualifications Active Top Secret security clearance Current DoD 8570/8140 IAM Level II or Level III certification (e.g., Security+, CySA+, CISM, CISSP, CCISO, CAP/CISC) 5-7+ years of experience conducting security control assessments, compliance testing, or A&A/RMF activities for DoD or federal information systems Solid operational understanding of core AWS cloud services (EC2, S3, IAM, VPCs, Security Groups, Security Hub) and how security controls function within cloud-native and CI/CD pipeline environments. Experience with GitLab CI/CD (pipeline design, runners, artifact management) and AWS Cloud services (EC2, VPC, IAM, S3). Strong working knowledge of NIST SP 800-53 (Rev. 4/5), NIST SP 800-37 (RMF), DoD Cloud Computing SRG, and FedRAMP baselines. Demonstrated experience writing and evaluating core RMF artifacts (SSPs, SAPs, SARs, POA&Ms) Exceptional written and verbal communication skills, with the ability to articulate technical risk clearly to executive stakeholders, Authorizing Officials, and engineering teams. Hands-on experience navigating government GRC repositories, such as eMASS or XACTA. Desired Qualifications Hands-on experience mapping security controls to the NIST AI Risk Management Framework (AI RMF), the OWASP Top 10 for LLM Applications, or the DoD Responsible AI (RAI) Guidelines. Familiarity evaluating secure design patterns for autonomous AI Agents (e.g., tool-calling permissions, sandboxing agent execution environments, prompt boundaries, and ReAct/LangGraph architectures). Experience assessing cloud-managed AI ecosystems and foundation model platforms (e.g., AWS Bedrock, AWS SageMaker, Hugging Face Enterprise, or self-hosted open-source models). Understanding of data protection, access controls, and boundary security for RAG pipelines and vector databases (e.g., OpenSearch Vector Engine, Pinecone, Milvus, or PostgreSQL pgvector). Familiarity evaluating risks unique to LLMs-including prompt injection, data poisoning, model inversion, insecure output handling, and open-source supply chain vulnerabilities in AI libraries (PyTorch, LangChain, LlamaIndex). Exposure to LLM guardrail platforms, evaluation frameworks, or AI security tools (e.g., Promptfoo, Garak, Giskard, NeMo Guardrails) used to test model robustness and output safety. Experience with cATO methodologies, Infrastructure as Code (IaC) templates (Terraform, CloudFormation), and container security (AWS EKS/ECS, Docker). Active AWS Certifications (e.g., AWS Certified Security - Specialty or AWS Certified Solutions Architect). Background or familiarity with offensive security, penetration testing The salary range for this position is estimated to be between $135,000.00 - $160,000.00, commensurate on experience and technical skillset. We are proud to be an EEO/AA employer Minorities/Women/Veterans/Disabled and other protected categories. In compliance with federal law, all persons hired will be required to verify identity, confirm US Citizenship, and complete the required employment eligibility verification upon hire. We are strictly looking for direct, full-time W2 employees. We do not engage with third-party staffing agencies, C2C, or 1099 independent contractors for this role.
09/26/2026
Full time
Job Description Job Description Dark Wolf Solutions is seeking Security Control Assessor/Representatives (SCA/Rs) to lead security control assessments across high-priority projects. Working at the intersection of cybersecurity engineering, cloud architecture, and DevSecOps prototyping, you will evaluate security controls for cutting-edge AI/LLM technologies across multiple classification levels. This position is ideal for a pragmatic cloud assessor or SCAR who excels in fast-paced DevSecOps environments, understands AWS cloud security, and is eager to shape the cybersecurity posture of next-generation DoD AI capabilities.This position will be based out of Arlington, VA with hybrid/remote opportunities. Additional responsibilities include: Key Responsibilities Execute formal SCA/R duties. Lead security assessment efforts, establishing reusable security playbooks and assessment frameworks for rapid AI deployment into enterprise workflows. Evaluate technical control effectiveness across AWS cloud infrastructure, DevSecOps pipelines, microservices, containerized workloads, and GenAI/LLM application stacks. Bridge the gap between OffSec and development by applying software design best practices. Lead technical exchange meetings (TEMs), participate in Discovery & Framing workshops, and maintain effective communication with cross-functional teams and stakeholders. Act as the primary subject matter expert and lead developer for custom offensive tooling, integrating disparate capabilities into a cohesive, mission-ready platform. Review, author, and maintain assessment packages-including System Security Plans (SSPs), Security Assessment Plans (SAPs), Security Assessment Reports (SARs), and POA&Ms-tailored to rapid prototyping and AI systems. Assess technical security risks specific to AI/LLM implementations, such as API exposure, vector database access controls, model integration surface area, and software supply chain dependencies. Support continuous monitoring (ConMon), technical risk evaluations, and cloud architecture reviews across multi-tenant, multi-classification environments. Coordinate with Authorizing Officials (AOs), program managers, and engineering leads to deliver decision-ready risk briefings and ATO recommendations. Provide technical input and oversight for cybersecurity engineering and penetration testing activities across prototype projects. Required Qualifications Active Top Secret security clearance Current DoD 8570/8140 IAM Level II or Level III certification (e.g., Security+, CySA+, CISM, CISSP, CCISO, CAP/CISC) 5-7+ years of experience conducting security control assessments, compliance testing, or A&A/RMF activities for DoD or federal information systems Solid operational understanding of core AWS cloud services (EC2, S3, IAM, VPCs, Security Groups, Security Hub) and how security controls function within cloud-native and CI/CD pipeline environments. Experience with GitLab CI/CD (pipeline design, runners, artifact management) and AWS Cloud services (EC2, VPC, IAM, S3). Strong working knowledge of NIST SP 800-53 (Rev. 4/5), NIST SP 800-37 (RMF), DoD Cloud Computing SRG, and FedRAMP baselines. Demonstrated experience writing and evaluating core RMF artifacts (SSPs, SAPs, SARs, POA&Ms) Exceptional written and verbal communication skills, with the ability to articulate technical risk clearly to executive stakeholders, Authorizing Officials, and engineering teams. Hands-on experience navigating government GRC repositories, such as eMASS or XACTA. Desired Qualifications Hands-on experience mapping security controls to the NIST AI Risk Management Framework (AI RMF), the OWASP Top 10 for LLM Applications, or the DoD Responsible AI (RAI) Guidelines. Familiarity evaluating secure design patterns for autonomous AI Agents (e.g., tool-calling permissions, sandboxing agent execution environments, prompt boundaries, and ReAct/LangGraph architectures). Experience assessing cloud-managed AI ecosystems and foundation model platforms (e.g., AWS Bedrock, AWS SageMaker, Hugging Face Enterprise, or self-hosted open-source models). Understanding of data protection, access controls, and boundary security for RAG pipelines and vector databases (e.g., OpenSearch Vector Engine, Pinecone, Milvus, or PostgreSQL pgvector). Familiarity evaluating risks unique to LLMs-including prompt injection, data poisoning, model inversion, insecure output handling, and open-source supply chain vulnerabilities in AI libraries (PyTorch, LangChain, LlamaIndex). Exposure to LLM guardrail platforms, evaluation frameworks, or AI security tools (e.g., Promptfoo, Garak, Giskard, NeMo Guardrails) used to test model robustness and output safety. Experience with cATO methodologies, Infrastructure as Code (IaC) templates (Terraform, CloudFormation), and container security (AWS EKS/ECS, Docker). Active AWS Certifications (e.g., AWS Certified Security - Specialty or AWS Certified Solutions Architect). Background or familiarity with offensive security, penetration testing The salary range for this position is estimated to be between $135,000.00 - $160,000.00, commensurate on experience and technical skillset. We are proud to be an EEO/AA employer Minorities/Women/Veterans/Disabled and other protected categories. In compliance with federal law, all persons hired will be required to verify identity, confirm US Citizenship, and complete the required employment eligibility verification upon hire. We are strictly looking for direct, full-time W2 employees. We do not engage with third-party staffing agencies, C2C, or 1099 independent contractors for this role.
Job Description Job Description Dark Wolf Solutions is seeking a Senior Security Control Assessor Representative (SCAR) to conduct independent comprehensive assessments of the management, operation, and technical security controls and control enhancements employed within, or inherited by, an Information technology (IT) system to determine the overall effectiveness of the controls. The SCAR will perform reviews of security artifacts for system authorizations, assessing both the technical and functional adequacy as required for application and software cybersecurity readiness. The SCAR candidate must have prior experience in authorizing tools/applications, systems, and/or enclaves. Additionally, knowledge of network security, technologies, processes, and practices designed for the prevention of damage to, protection of, and restoration of computers, communications systems, services, and various types of communications technologies. The SCAR candidate must be knowledgeable and proficient in assessing DoD GovCloud environments to include testing controls and validating artifacts. A successful candidate will have a strong foundational understanding of NIST, DOD, and DAF cybersecurity focused guidance. This position can be based out of any Dark Wolf Office location and will be a hybrid schedule. Additional responsibilities include: Key Responsibilities: Evaluating IT infrastructure in terms of risk to the organization and defining artifacts required to meet Federal, DoD and DAF requirements Assessing IT systems and architecture to ensure compliance with the Risk Management Framework (RMF), NIST Cybersecurity Framework (CSF), NIST 800-53 revision 5 and applicable guidance Supporting the system/application assessment and authorization (A&A) effort, to include assessing and guiding the quality and completeness of A&A activities, tasks and resulting artifacts mandated by governing DoD and AF policies, and applicable mandates Collecting, reviewing and verifying documented business processes within process narratives or flowcharts, identifying risks and validating proficiency of mitigating controls Reviewing risk and control matrices and testing plans for key controls and determines effectiveness Identifying control gaps, reviewing and testing the design of existing controls. Formulating clear and concise conclusions on internal controls and business process efficiency Recommending policies and procedures to ensure information systems reliability and accessibility and to prevent and defend against unauthorized access to systems, networks, and data Conducting risk and vulnerability assessments of installed information systems to identify vulnerabilities, risks, and protection needs Reviewing Plans of Actions & Milestones (POA&Ms) Providing recommendations and reports to the Security Control Assessor (SCA), Authorizing Official (AO), Chief Information Security Officer (CISO) Reviewing network and systems design to ensure accuracy Ensuring the rigorous application of information security/cybersecurity policies, principles, and practices in the delivery of all IT services Required Qualifications: 15+ years of relevant Cyber experience 15+ years prior experience as a Security Control Assessor/Representative RMF Engineer, ISSO, ISSM and/or information assurance engineer Cloud Platform experience with at least one service offering from AWS, Azure, or Google GCP Hands-on eMASS and/or Xacta experience completing full system lifecycle activities Experience with Air Force risk management policies/procedures, to include, DODI 8510.01, AFI 17-101 Experience with Cloud Computing Security Requirements Guide (CC SRG) Knowledgeable with DoD DevSecOps Fundamentals Playbook Experience evaluating information security compliance against STIGs Ability to clearly articulate ideas Strong technical writing abilities to author reports for AO and CISO dissemination Exudes confidence in providing briefings, presentations, and in conducting/guiding meetings with senior leadership and stakeholders Ability to use prior experience and knowledge to address new situations Certification requirements (at least one of the following): SecurityX / CASP+, CCISO, CGRC/CAP, CISA, CISM, CISSO, CISSP, CISSP-ISSEP, Cloud+, CySA+, FITSP-A, GCSA, GSEC, GSLC, GSNA, PenTest+, Security+ B.A. or B.S. Information Security, Computer Science or related discipline US Citizenship and currently possess a Top Secret security clearance Desired Qualifications: Experience with Fast Track ATO Handbook & AF Continuous ATO Playbook Familiarity with CI/CD Pipelines DevSecOps experience Sharepoint, JIRA, Confluence familiarity The salary range for this position is $140,000.00 - $145,000.00 commensurate on experience and technical skillset. We are open to considering a variety of levels of experience for these projects and potential for 1099 hourly opportunity. We are proud to be an EEO/AA Employer Minorities/Women/Veterans/Disabled and other protected categories. In compliance with federal law, all persons hired will be required to verify identity, confirm US Citizenship, and complete the required employment eligibility verification upon hire.
09/26/2026
Full time
Job Description Job Description Dark Wolf Solutions is seeking a Senior Security Control Assessor Representative (SCAR) to conduct independent comprehensive assessments of the management, operation, and technical security controls and control enhancements employed within, or inherited by, an Information technology (IT) system to determine the overall effectiveness of the controls. The SCAR will perform reviews of security artifacts for system authorizations, assessing both the technical and functional adequacy as required for application and software cybersecurity readiness. The SCAR candidate must have prior experience in authorizing tools/applications, systems, and/or enclaves. Additionally, knowledge of network security, technologies, processes, and practices designed for the prevention of damage to, protection of, and restoration of computers, communications systems, services, and various types of communications technologies. The SCAR candidate must be knowledgeable and proficient in assessing DoD GovCloud environments to include testing controls and validating artifacts. A successful candidate will have a strong foundational understanding of NIST, DOD, and DAF cybersecurity focused guidance. This position can be based out of any Dark Wolf Office location and will be a hybrid schedule. Additional responsibilities include: Key Responsibilities: Evaluating IT infrastructure in terms of risk to the organization and defining artifacts required to meet Federal, DoD and DAF requirements Assessing IT systems and architecture to ensure compliance with the Risk Management Framework (RMF), NIST Cybersecurity Framework (CSF), NIST 800-53 revision 5 and applicable guidance Supporting the system/application assessment and authorization (A&A) effort, to include assessing and guiding the quality and completeness of A&A activities, tasks and resulting artifacts mandated by governing DoD and AF policies, and applicable mandates Collecting, reviewing and verifying documented business processes within process narratives or flowcharts, identifying risks and validating proficiency of mitigating controls Reviewing risk and control matrices and testing plans for key controls and determines effectiveness Identifying control gaps, reviewing and testing the design of existing controls. Formulating clear and concise conclusions on internal controls and business process efficiency Recommending policies and procedures to ensure information systems reliability and accessibility and to prevent and defend against unauthorized access to systems, networks, and data Conducting risk and vulnerability assessments of installed information systems to identify vulnerabilities, risks, and protection needs Reviewing Plans of Actions & Milestones (POA&Ms) Providing recommendations and reports to the Security Control Assessor (SCA), Authorizing Official (AO), Chief Information Security Officer (CISO) Reviewing network and systems design to ensure accuracy Ensuring the rigorous application of information security/cybersecurity policies, principles, and practices in the delivery of all IT services Required Qualifications: 15+ years of relevant Cyber experience 15+ years prior experience as a Security Control Assessor/Representative RMF Engineer, ISSO, ISSM and/or information assurance engineer Cloud Platform experience with at least one service offering from AWS, Azure, or Google GCP Hands-on eMASS and/or Xacta experience completing full system lifecycle activities Experience with Air Force risk management policies/procedures, to include, DODI 8510.01, AFI 17-101 Experience with Cloud Computing Security Requirements Guide (CC SRG) Knowledgeable with DoD DevSecOps Fundamentals Playbook Experience evaluating information security compliance against STIGs Ability to clearly articulate ideas Strong technical writing abilities to author reports for AO and CISO dissemination Exudes confidence in providing briefings, presentations, and in conducting/guiding meetings with senior leadership and stakeholders Ability to use prior experience and knowledge to address new situations Certification requirements (at least one of the following): SecurityX / CASP+, CCISO, CGRC/CAP, CISA, CISM, CISSO, CISSP, CISSP-ISSEP, Cloud+, CySA+, FITSP-A, GCSA, GSEC, GSLC, GSNA, PenTest+, Security+ B.A. or B.S. Information Security, Computer Science or related discipline US Citizenship and currently possess a Top Secret security clearance Desired Qualifications: Experience with Fast Track ATO Handbook & AF Continuous ATO Playbook Familiarity with CI/CD Pipelines DevSecOps experience Sharepoint, JIRA, Confluence familiarity The salary range for this position is $140,000.00 - $145,000.00 commensurate on experience and technical skillset. We are open to considering a variety of levels of experience for these projects and potential for 1099 hourly opportunity. We are proud to be an EEO/AA Employer Minorities/Women/Veterans/Disabled and other protected categories. In compliance with federal law, all persons hired will be required to verify identity, confirm US Citizenship, and complete the required employment eligibility verification upon hire.
Job Description Job Description At Wyetech, you'll be at the center of an award-winning corporate culture, breaking technological barriers and solving real-world problems for our federal government customers. We are committed to hiring the best of the best, and in return, we offer a world-class, truly unique employee experience that is rare within our industry. We are seeking a Configuration Manager to implement and maintain configuration management and version control processes for hardware and software systems across the full lifecycle. This role ensures configuration integrity and traceability, manages baselines, enforces standardized processes, utilizes CM tools, and supports audits and change control. Due to federal contract requirements, United States Citizenship and position appropriate security clearance is required. (e.g. Active TS/SCI security clearance with agency appropriate polygraph). Capabilities Lead the development and enforcement of hardware and software version control processes, policies, and procedures Establish and maintain configuration baselines and ensure proper versioning of all configuration items (CIs) Manage end-to-end configuration control processes, including change tracking, impact analysis, approvals, and audit readiness Utilize configuration management tools (e.g., DOORS, Eclipse) to store, track, and manage configuration items Support build, integration, testing, and release environments, ensuring configuration integrity and traceability Develop and document CM processes, including automated build and release procedures aligned with standards Perform configuration audits, support Change Control Board (CCB) activities, and ensure end-to-end configuration traceability Required Qualifications TS/SCI with agency appropriate poly Six (6) years of experience in configuration management and version control on programs/contracts of similar scope, type, and complexity Bachelor's degree in technical or business discipline from an accredited college or university (or four (4) additional years of CM experience in lieu of degree) Required Technical Skills Experience implementing and managing hardware and software configuration baselines and version control systems If supporting a developmental program: at least one (1) year of experience using a source code control system (e.g., Git, SVN, or equivalent) in a similar environment The Benefits Package Wyetech believes in generously supporting employees as they prepare for retirement. The company automatically contributes 20% of each employee's gross compensation to a Simplified Employee Pension (SEP) IRA, with no requirement for employee matching. All contributions are fully vested from day one, ensuring immediate ownership of retirement funds. Additional benefits include: Wyetech provides a generous PTO plan of up to 200 hours annually, aligned with applicable state leave regulations. Employees have the flexibility to adjust their PTO allocation at the start of each calendar year, ensuring it meets their evolving needs. Full-time employees have the option to participate in a variety of voluntary benefit plans including: A Choice of Medical Plan Options, some with Health Savings Account (HSA) Vision and Dental Life and AD&D Benefits Short and Long-Term Disability Hospital Indemnity, Accident, and Critical Illness Insurances Optional Identity Theft and Legal Protection Services Company Environment & Perks Employee Referral Bonus Eligibility up to $10,000 Mobility Among Wyetech-supported Contracts Various contract and work locations throughout Maryland, Virginia, Colorado, Texas, Utah, Alaska, Hawaii and OCONUS Various team-building events throughout the year such as: monthly lunches, summer company picnic, and an annual holiday party. Employees receive two complementary branded clothing orders annually. Pay Range: $42.82 - $57.99 per hour Hourly pay rates listed for this position serve as a general guideline and are not a guarantee of compensation. Compensation will vary dependent upon factors including but not limited to: Government contract rates; education; relevant prior work experience, knowledge, skills, and competencies; certifications, and geographic location. Hourly pay rates reflect the pre-benefit gross wage amounts. Wyetech, LLC is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Affirmative Action Statement: Wyetech, LLC is committed to the principles of affirmative action in all hiring and employment for minorities, women, individuals with disabilities, and protected veterans. Accommodations: Wyetech, LLC is committed to providing an inclusive and accessible hiring process. If you need any accommodations during the application or interview process, please contact Brittney Wood. at 844-WYETECH x727 or . We are happy to provide reasonable accommodations to ensure equal access to all candidates. We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
09/26/2026
Full time
Job Description Job Description At Wyetech, you'll be at the center of an award-winning corporate culture, breaking technological barriers and solving real-world problems for our federal government customers. We are committed to hiring the best of the best, and in return, we offer a world-class, truly unique employee experience that is rare within our industry. We are seeking a Configuration Manager to implement and maintain configuration management and version control processes for hardware and software systems across the full lifecycle. This role ensures configuration integrity and traceability, manages baselines, enforces standardized processes, utilizes CM tools, and supports audits and change control. Due to federal contract requirements, United States Citizenship and position appropriate security clearance is required. (e.g. Active TS/SCI security clearance with agency appropriate polygraph). Capabilities Lead the development and enforcement of hardware and software version control processes, policies, and procedures Establish and maintain configuration baselines and ensure proper versioning of all configuration items (CIs) Manage end-to-end configuration control processes, including change tracking, impact analysis, approvals, and audit readiness Utilize configuration management tools (e.g., DOORS, Eclipse) to store, track, and manage configuration items Support build, integration, testing, and release environments, ensuring configuration integrity and traceability Develop and document CM processes, including automated build and release procedures aligned with standards Perform configuration audits, support Change Control Board (CCB) activities, and ensure end-to-end configuration traceability Required Qualifications TS/SCI with agency appropriate poly Six (6) years of experience in configuration management and version control on programs/contracts of similar scope, type, and complexity Bachelor's degree in technical or business discipline from an accredited college or university (or four (4) additional years of CM experience in lieu of degree) Required Technical Skills Experience implementing and managing hardware and software configuration baselines and version control systems If supporting a developmental program: at least one (1) year of experience using a source code control system (e.g., Git, SVN, or equivalent) in a similar environment The Benefits Package Wyetech believes in generously supporting employees as they prepare for retirement. The company automatically contributes 20% of each employee's gross compensation to a Simplified Employee Pension (SEP) IRA, with no requirement for employee matching. All contributions are fully vested from day one, ensuring immediate ownership of retirement funds. Additional benefits include: Wyetech provides a generous PTO plan of up to 200 hours annually, aligned with applicable state leave regulations. Employees have the flexibility to adjust their PTO allocation at the start of each calendar year, ensuring it meets their evolving needs. Full-time employees have the option to participate in a variety of voluntary benefit plans including: A Choice of Medical Plan Options, some with Health Savings Account (HSA) Vision and Dental Life and AD&D Benefits Short and Long-Term Disability Hospital Indemnity, Accident, and Critical Illness Insurances Optional Identity Theft and Legal Protection Services Company Environment & Perks Employee Referral Bonus Eligibility up to $10,000 Mobility Among Wyetech-supported Contracts Various contract and work locations throughout Maryland, Virginia, Colorado, Texas, Utah, Alaska, Hawaii and OCONUS Various team-building events throughout the year such as: monthly lunches, summer company picnic, and an annual holiday party. Employees receive two complementary branded clothing orders annually. Pay Range: $42.82 - $57.99 per hour Hourly pay rates listed for this position serve as a general guideline and are not a guarantee of compensation. Compensation will vary dependent upon factors including but not limited to: Government contract rates; education; relevant prior work experience, knowledge, skills, and competencies; certifications, and geographic location. Hourly pay rates reflect the pre-benefit gross wage amounts. Wyetech, LLC is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Affirmative Action Statement: Wyetech, LLC is committed to the principles of affirmative action in all hiring and employment for minorities, women, individuals with disabilities, and protected veterans. Accommodations: Wyetech, LLC is committed to providing an inclusive and accessible hiring process. If you need any accommodations during the application or interview process, please contact Brittney Wood. at 844-WYETECH x727 or . We are happy to provide reasonable accommodations to ensure equal access to all candidates. We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Job Description Job Description This position is being recruited in support of a current proposal opportunity and is contingent upon Quivera Enterprises being awarded the contract. Wichita Tribal Enterprises (WTE), a Quivera Enterprises subsidiary, is seeking an experienced Change Control & Configuration Manager - Intermediate to support Indian Affairs (IA) and Office of Information Technology (OIT) programs, projects, and operational initiatives. The Change Control & Configuration Manager provides specialized expertise in configuration management, change control, and release management while managing assigned IT projects throughout the project lifecycle. This position serves as an intermediate-level Project Manager and coordinates Government, business, technical, security, vendor, and contractor stakeholders to manage scope, schedule, cost, quality, risk, configuration, change, documentation, compliance, and delivery performance. The position is responsible for maintaining effective Change and Configuration Management (CCM) processes, ensuring configuration information and records remain accurate and current, coordinating change and release activities, supporting Configuration Control Board (CCB) activities, and helping ensure compliance with applicable NIST, Department of the Interior (DOI), Indian Affairs (IA), and OIT requirements. In addition to Change and Configuration Management expertise, the successful candidate must bring substantive experience in at least one complementary IT delivery discipline: Quality & Test Management, IT Asset Management, or Business Analysis & Requirements Management. Working with the Contracting Officer's Representative (COR), Federal Task Lead, project teams, vendors, and other stakeholders, the Change Control & Configuration Manager manages resources, risks, dependencies, and customer relationships and supports successful delivery in accordance with task order requirements, federal standards, and DOI and IA policies and procedures. DUTIES AND RESPONSIBILITIES Change & Configuration Management Maintain the OIT Configuration Management Plan and associated processes, procedures, standards, templates, and supporting documentation in accordance with applicable NIST, DOI, IA, and OIT requirements. Support configuration management activities using the IA Configuration Management Database (CMDB), approved repositories, enterprise systems, and authorized manual processes. Support configuration identification, configuration control, status accounting, verification, and audit activities. Ensure Configuration Items (CIs) and associated records remain current, complete, accurate, traceable, and appropriately maintained. Maintain and validate configuration baselines, records, documentation, and supporting artifacts. Coordinate change-control activities from request intake and analysis through review, approval, implementation, validation, and closure. Coordinate release-management activities using available automated and manual tools and processes. Support implementation and continuous improvement of configuration management services, concepts, tools, policies, standards, processes, and procedures. Facilitate Configuration Control Board (CCB) meetings, including meeting preparation, agenda development, change documentation, decision tracking, action items, approvals, and follow-up activities. Document CCB decisions and coordinate implementation and tracking of approved changes. Evaluate proposed changes for potential impacts to scope, schedule, cost, security, operations, configuration items, dependencies, and project outcomes. Coordinate configuration-management audits and support responses to internal and external audit requests. Track audit findings, corrective actions, remediation activities, and associated documentation through resolution. Analyze configuration, change, and release-management processes and recommend opportunities to improve efficiency, data quality, traceability, governance, compliance, and service delivery. Develop and maintain CCM reports, dashboards, metrics, workflows, process models, procedures, and other management artifacts. Coordinate with IT Asset Management, Quality Management, security, service management, business analysis, and technical teams to maintain alignment between configuration records and operational activities. Project Management Manage assigned IT projects throughout the project lifecycle, including initiation, planning, execution, monitoring and control, deployment, transition, and closeout. Apply Project Management Institute (PMI) principles, Project Management Body of Knowledge (PMBOK) practices, Agile methodologies, Waterfall methodologies, and hybrid approaches appropriate to project requirements. Lead and facilitate Program Increment (PI) Planning activities and associated planning, coordination, and follow-up. Develop and maintain project plans, schedules, roadmaps, guides, templates, forms, governance artifacts, decision records, status reports, and other required project documentation. Coordinate information collection, review, approval, version control, and maintenance of project records. Facilitate Agile ceremonies and maintain project and sprint backlogs in alignment with organizational priorities. Coordinate personnel, vendors, technical teams, Government stakeholders, and other resources required to achieve project objectives. Establish and track milestones, dependencies, deliverables, action items, and performance requirements. Monitor project expenditures, compare actual costs against approved budgets, develop projections, and analyze cost, schedule, and performance requirements. Identify, assess, document, track, mitigate, and resolve risks, issues, dependencies, and impediments. Develop mitigation and contingency plans and escalate significant risks and issues in a timely manner. Collaborate with technical teams, vendors, CORs, Federal Task Leads, and other Government stakeholders to support successful project delivery and contract compliance. Maintain project plans, status reports, decision records, test plans, governance artifacts, dashboards, and other required documentation. Conduct stakeholder analysis and develop project communications plans that support project objectives, decision-making, organizational readiness, and stakeholder coordination. Monitor project performance and recommend corrective actions when scope, schedule, cost, quality, risk, compliance, or delivery requirements are at risk. Functional & Delivery Integration Apply Change and Configuration Management expertise within an integrated project-management environment. Provide substantive functional support in at least one complementary discipline: Quality & Test Management IT Asset & Software License Management Business Analysis & Requirements Management Integrate change and configuration activities with applicable project requirements, schedules, testing, releases, assets, risks, security requirements, and implementation activities. Coordinate across Government, business, technical, security, vendor, and contractor teams to support requirements, delivery, risk, quality, change, documentation, and project outcomes. Identify dependencies between configuration items, approved changes, releases, requirements, assets, testing activities, and project deliverables. Support modernization and service-delivery improvements by applying consistent configuration, change-control, governance, and project-management practices. REQUIRED EXPERIENCE AND QUALIFICATIONS Minimum of five (5) years of project management experience. Current Project Management Professional (PMP) certification. Demonstrated experience with Change Control, Configuration Management, and/or Release Management in an enterprise IT environment. Experience supporting configuration-management plans, configuration identification, status accounting, configuration records, CCB processes, change control, release management, and configuration audits. Experience working with Configuration Management Databases (CMDBs), configuration repositories, or comparable enterprise configuration-management systems. Strong experience with Agile and Waterfall project management methodologies. Hands-on experience leading Program Increment (PI) Planning activities. In-depth knowledge of IT project management principles and practices, including those established by PMI and PMBOK. Demonstrated hands-on experience in at least one complementary IT delivery discipline: Quality & Test Management, IT Asset Management, or Business Analysis & Requirements Management. Experience developing and maintaining project schedules, boards, backlogs, work items, dashboards, and related project artifacts. Knowledge of Federal Enterprise Architecture (FEA), Capital Planning and Investment Control (CPIC), System Development Life Cycle (SDLC), IT security management, and risk management. Knowledge of federal IT investment laws, regulations, and processes, including the Federal Information Technology Acquisition Reform Act (FITARA), Clinger-Cohen Act of 1996, E-Government Act of 2002, and Federal Information Security Modernization Act (FISMA). Experience reviewing and analyzing cost, schedule, and performance requirements for federal IT investments. . click apply for full job details
09/26/2026
Full time
Job Description Job Description This position is being recruited in support of a current proposal opportunity and is contingent upon Quivera Enterprises being awarded the contract. Wichita Tribal Enterprises (WTE), a Quivera Enterprises subsidiary, is seeking an experienced Change Control & Configuration Manager - Intermediate to support Indian Affairs (IA) and Office of Information Technology (OIT) programs, projects, and operational initiatives. The Change Control & Configuration Manager provides specialized expertise in configuration management, change control, and release management while managing assigned IT projects throughout the project lifecycle. This position serves as an intermediate-level Project Manager and coordinates Government, business, technical, security, vendor, and contractor stakeholders to manage scope, schedule, cost, quality, risk, configuration, change, documentation, compliance, and delivery performance. The position is responsible for maintaining effective Change and Configuration Management (CCM) processes, ensuring configuration information and records remain accurate and current, coordinating change and release activities, supporting Configuration Control Board (CCB) activities, and helping ensure compliance with applicable NIST, Department of the Interior (DOI), Indian Affairs (IA), and OIT requirements. In addition to Change and Configuration Management expertise, the successful candidate must bring substantive experience in at least one complementary IT delivery discipline: Quality & Test Management, IT Asset Management, or Business Analysis & Requirements Management. Working with the Contracting Officer's Representative (COR), Federal Task Lead, project teams, vendors, and other stakeholders, the Change Control & Configuration Manager manages resources, risks, dependencies, and customer relationships and supports successful delivery in accordance with task order requirements, federal standards, and DOI and IA policies and procedures. DUTIES AND RESPONSIBILITIES Change & Configuration Management Maintain the OIT Configuration Management Plan and associated processes, procedures, standards, templates, and supporting documentation in accordance with applicable NIST, DOI, IA, and OIT requirements. Support configuration management activities using the IA Configuration Management Database (CMDB), approved repositories, enterprise systems, and authorized manual processes. Support configuration identification, configuration control, status accounting, verification, and audit activities. Ensure Configuration Items (CIs) and associated records remain current, complete, accurate, traceable, and appropriately maintained. Maintain and validate configuration baselines, records, documentation, and supporting artifacts. Coordinate change-control activities from request intake and analysis through review, approval, implementation, validation, and closure. Coordinate release-management activities using available automated and manual tools and processes. Support implementation and continuous improvement of configuration management services, concepts, tools, policies, standards, processes, and procedures. Facilitate Configuration Control Board (CCB) meetings, including meeting preparation, agenda development, change documentation, decision tracking, action items, approvals, and follow-up activities. Document CCB decisions and coordinate implementation and tracking of approved changes. Evaluate proposed changes for potential impacts to scope, schedule, cost, security, operations, configuration items, dependencies, and project outcomes. Coordinate configuration-management audits and support responses to internal and external audit requests. Track audit findings, corrective actions, remediation activities, and associated documentation through resolution. Analyze configuration, change, and release-management processes and recommend opportunities to improve efficiency, data quality, traceability, governance, compliance, and service delivery. Develop and maintain CCM reports, dashboards, metrics, workflows, process models, procedures, and other management artifacts. Coordinate with IT Asset Management, Quality Management, security, service management, business analysis, and technical teams to maintain alignment between configuration records and operational activities. Project Management Manage assigned IT projects throughout the project lifecycle, including initiation, planning, execution, monitoring and control, deployment, transition, and closeout. Apply Project Management Institute (PMI) principles, Project Management Body of Knowledge (PMBOK) practices, Agile methodologies, Waterfall methodologies, and hybrid approaches appropriate to project requirements. Lead and facilitate Program Increment (PI) Planning activities and associated planning, coordination, and follow-up. Develop and maintain project plans, schedules, roadmaps, guides, templates, forms, governance artifacts, decision records, status reports, and other required project documentation. Coordinate information collection, review, approval, version control, and maintenance of project records. Facilitate Agile ceremonies and maintain project and sprint backlogs in alignment with organizational priorities. Coordinate personnel, vendors, technical teams, Government stakeholders, and other resources required to achieve project objectives. Establish and track milestones, dependencies, deliverables, action items, and performance requirements. Monitor project expenditures, compare actual costs against approved budgets, develop projections, and analyze cost, schedule, and performance requirements. Identify, assess, document, track, mitigate, and resolve risks, issues, dependencies, and impediments. Develop mitigation and contingency plans and escalate significant risks and issues in a timely manner. Collaborate with technical teams, vendors, CORs, Federal Task Leads, and other Government stakeholders to support successful project delivery and contract compliance. Maintain project plans, status reports, decision records, test plans, governance artifacts, dashboards, and other required documentation. Conduct stakeholder analysis and develop project communications plans that support project objectives, decision-making, organizational readiness, and stakeholder coordination. Monitor project performance and recommend corrective actions when scope, schedule, cost, quality, risk, compliance, or delivery requirements are at risk. Functional & Delivery Integration Apply Change and Configuration Management expertise within an integrated project-management environment. Provide substantive functional support in at least one complementary discipline: Quality & Test Management IT Asset & Software License Management Business Analysis & Requirements Management Integrate change and configuration activities with applicable project requirements, schedules, testing, releases, assets, risks, security requirements, and implementation activities. Coordinate across Government, business, technical, security, vendor, and contractor teams to support requirements, delivery, risk, quality, change, documentation, and project outcomes. Identify dependencies between configuration items, approved changes, releases, requirements, assets, testing activities, and project deliverables. Support modernization and service-delivery improvements by applying consistent configuration, change-control, governance, and project-management practices. REQUIRED EXPERIENCE AND QUALIFICATIONS Minimum of five (5) years of project management experience. Current Project Management Professional (PMP) certification. Demonstrated experience with Change Control, Configuration Management, and/or Release Management in an enterprise IT environment. Experience supporting configuration-management plans, configuration identification, status accounting, configuration records, CCB processes, change control, release management, and configuration audits. Experience working with Configuration Management Databases (CMDBs), configuration repositories, or comparable enterprise configuration-management systems. Strong experience with Agile and Waterfall project management methodologies. Hands-on experience leading Program Increment (PI) Planning activities. In-depth knowledge of IT project management principles and practices, including those established by PMI and PMBOK. Demonstrated hands-on experience in at least one complementary IT delivery discipline: Quality & Test Management, IT Asset Management, or Business Analysis & Requirements Management. Experience developing and maintaining project schedules, boards, backlogs, work items, dashboards, and related project artifacts. Knowledge of Federal Enterprise Architecture (FEA), Capital Planning and Investment Control (CPIC), System Development Life Cycle (SDLC), IT security management, and risk management. Knowledge of federal IT investment laws, regulations, and processes, including the Federal Information Technology Acquisition Reform Act (FITARA), Clinger-Cohen Act of 1996, E-Government Act of 2002, and Federal Information Security Modernization Act (FISMA). Experience reviewing and analyzing cost, schedule, and performance requirements for federal IT investments. . click apply for full job details
Job Description Job Description About Us AGE Solutions is a premier technology and professional services company, providing in-depth consulting, advanced technology solutions, and essential services throughout the U.S. government, defense, and intelligence sectors. Prioritizing innovation and client-focused solutions, we assist major agencies in addressing intricate issues and ensuring a more secure future. AGE Solutions is looking for Senior Security Control Assessors to join our team in support of a cybersecurity risk management and assessment program with our DoD customer. Responsibilities: Conduct cybersecurity assessments, audits, and inspections for DoD organizations and partners handling DoD information or connecting to the DoDIN. Evaluate systems and Defensive Cyberspace Operations using cyber threat emulation and performance-based testing. Adhere to policies and processes for each assessment type. Support assessment development and execution to ensure security expertise is properly applied. Coordinate logistics, test plans, and scope with the SCA Team Lead. Perform vulnerability assessments, capture results using STIG Viewer or designated tools, and document findings in eMASS. Analyze security gaps and provide mitigation recommendations. Validate cybersecurity controls, TTPs, STIGs, RMF controls, and compliance with DoD policies and guidelines. Provide risk analysis and assessment results for authorization recommendations. Participate in daily assessment reviews, in-briefs, and out-briefs, sharing findings with the SCA-R. Mentor and guide personnel by providing technical expertise, best practices, and professional development support to enhance team capabilities and knowledge. Requirements: Bachelor's degree (IT-related field preferred) Eight (8) years of overall experience in cybersecurity or network security position Five (5) years of experience in a Certification and Accreditation/A&A role Must have and maintain an active DoD Top Secret clearance with SCI eligibility Must be able and willing to travel up to approximately 85% of the time, inside and outside the continental United States and internationally (CONUS / OCONUS) DoD 8570 IA Technical (IAT) Level III certification Demonstrated experience with STIGs (Security Technical Implementation Guides), Security Requirement Guides (SRGs), Plan of Action and Milestones (POA&Ms) and cybersecurity best practices Advanced understanding of the RMF process, NIST SP 800- 37, NIST SP 800-53, CNSSI 1253 Demonstrated experience with relevant tools such as eMASS, STIG Viewer, Nessus, ACAS, SCAP, or HBSS Advanced understanding of key technologies areas/domain such as: Network, Mobility, Windows, UNIX, Cloud Environments and Cloud Native Tools/Services, Host Based Security System (HBSS)/Endpoint Security Solutions (ESS), Databases, Applications Strong written and verbal communication skills for reporting assessment findings. Compensation: $95,000 - $105,000 This posting is part of a pipeline for future opportunities supporting the current TASS contract. Employment is contingent upon position availability and government customer approval. AGE Solutions is actively engaging talent and encourages incumbents and new candidates to express interest to be considered if/when opportunities may become available. At AGE Solutions, we reward performance, invest in growth, and share success. Our benefits support the whole person, professionally, financially, and personally. 26 Days Paid Leave: Includes vacation, sick, personal time, and holidays. You choose how to use it. Performance Bonuses: Performance bonuses are awarded based on individual contributions and company-wide results, aligning recognition with impact. 401(k) with Match: We match 3% of your contributions with immediate vesting. Financial Protection: Company-paid life insurance up to $300K and options for additional coverage for you and your dependents. Health Benefits: Multiple medical plans, dental, vision, FSA and HSA options to fit your needs. Parental Leave: 15 days of fully paid leave for new parents, because family matters. Military Differential Pay: We bridge the gap for employees on active duty, so they don't take a financial hit while serving. Professional Growth: Paid training and certifications, tuition reimbursement, and the tools and tech to get the job done right. Shared Success: In the event of a company sale, our CEO has committed to returning 80% of net proceeds to employees. This ensures our team shares in the long term value they help create. At AGE, you'll do work that matters, supported by a company that delivers for its people.
09/26/2026
Full time
Job Description Job Description About Us AGE Solutions is a premier technology and professional services company, providing in-depth consulting, advanced technology solutions, and essential services throughout the U.S. government, defense, and intelligence sectors. Prioritizing innovation and client-focused solutions, we assist major agencies in addressing intricate issues and ensuring a more secure future. AGE Solutions is looking for Senior Security Control Assessors to join our team in support of a cybersecurity risk management and assessment program with our DoD customer. Responsibilities: Conduct cybersecurity assessments, audits, and inspections for DoD organizations and partners handling DoD information or connecting to the DoDIN. Evaluate systems and Defensive Cyberspace Operations using cyber threat emulation and performance-based testing. Adhere to policies and processes for each assessment type. Support assessment development and execution to ensure security expertise is properly applied. Coordinate logistics, test plans, and scope with the SCA Team Lead. Perform vulnerability assessments, capture results using STIG Viewer or designated tools, and document findings in eMASS. Analyze security gaps and provide mitigation recommendations. Validate cybersecurity controls, TTPs, STIGs, RMF controls, and compliance with DoD policies and guidelines. Provide risk analysis and assessment results for authorization recommendations. Participate in daily assessment reviews, in-briefs, and out-briefs, sharing findings with the SCA-R. Mentor and guide personnel by providing technical expertise, best practices, and professional development support to enhance team capabilities and knowledge. Requirements: Bachelor's degree (IT-related field preferred) Eight (8) years of overall experience in cybersecurity or network security position Five (5) years of experience in a Certification and Accreditation/A&A role Must have and maintain an active DoD Top Secret clearance with SCI eligibility Must be able and willing to travel up to approximately 85% of the time, inside and outside the continental United States and internationally (CONUS / OCONUS) DoD 8570 IA Technical (IAT) Level III certification Demonstrated experience with STIGs (Security Technical Implementation Guides), Security Requirement Guides (SRGs), Plan of Action and Milestones (POA&Ms) and cybersecurity best practices Advanced understanding of the RMF process, NIST SP 800- 37, NIST SP 800-53, CNSSI 1253 Demonstrated experience with relevant tools such as eMASS, STIG Viewer, Nessus, ACAS, SCAP, or HBSS Advanced understanding of key technologies areas/domain such as: Network, Mobility, Windows, UNIX, Cloud Environments and Cloud Native Tools/Services, Host Based Security System (HBSS)/Endpoint Security Solutions (ESS), Databases, Applications Strong written and verbal communication skills for reporting assessment findings. Compensation: $95,000 - $105,000 This posting is part of a pipeline for future opportunities supporting the current TASS contract. Employment is contingent upon position availability and government customer approval. AGE Solutions is actively engaging talent and encourages incumbents and new candidates to express interest to be considered if/when opportunities may become available. At AGE Solutions, we reward performance, invest in growth, and share success. Our benefits support the whole person, professionally, financially, and personally. 26 Days Paid Leave: Includes vacation, sick, personal time, and holidays. You choose how to use it. Performance Bonuses: Performance bonuses are awarded based on individual contributions and company-wide results, aligning recognition with impact. 401(k) with Match: We match 3% of your contributions with immediate vesting. Financial Protection: Company-paid life insurance up to $300K and options for additional coverage for you and your dependents. Health Benefits: Multiple medical plans, dental, vision, FSA and HSA options to fit your needs. Parental Leave: 15 days of fully paid leave for new parents, because family matters. Military Differential Pay: We bridge the gap for employees on active duty, so they don't take a financial hit while serving. Professional Growth: Paid training and certifications, tuition reimbursement, and the tools and tech to get the job done right. Shared Success: In the event of a company sale, our CEO has committed to returning 80% of net proceeds to employees. This ensures our team shares in the long term value they help create. At AGE, you'll do work that matters, supported by a company that delivers for its people.
VMR Strategic Solutions
Fort George G Meade, Maryland
Job Description Job Description Job Type:Full time Location: Fort Meade, MD Clearance: Top Secret SCI with Polygraph Job Description: VMR Strategic Solutions is seeking a Cyberspace Joint Operation Planner III to perform in-depth joint targeting and cybersecurity planning process. Gathers information and develops detailed Operational Plans and Orders supporting requirements. Conducts strategic and operational-level planning across the full range of operations for integrated information and cyberspace operations. Duties Provides input for the development of Plans, CONOPs, COAs, TTPs and other related documents related to command conducting Offensive Cyber Operations (OCO) and Information Operations (IO). Understands, analyzes, and evaluates current and emerging threats within US Cyber Command tasked mission areas of responsibility. Knowledgeable of/understands Mission Relevant Terrain - in Cyberspace (MRT - C). Expert in the planning and conduct of OCO and IO. Knowledge and experience in Combat Mission Team (CMT) and Combat Support Team (CST) C2, management, and employment. Monitors and reviews strategies, doctrine, policies, directives, and instructions from higher echelon headquarters and makes recommendations to ensure compliance and/or consideration in planning efforts Develops plans and orders through the application of operational art and operational design, and by using the JOPP, within the milestones, deliverables, and interaction points for plans developed using Adaptive Planning and Execution (APEX) activities Provides input to briefings, transitioning concepts to execution, and assisting in the coordination of joint operational planning in support of training, exercises, combat, and contingency plans and operations Develops/integrates cyberspace capabilities into deliberate, contingency, operation, and crisis action plans Provides input to address shortfalls, prioritize and validate requirements, and be prepared to modify development planning efforts based on the changing cyberspace environment Contributes to the development of exercise scenarios, exercise operational plans, and other required documentation to support planning and execution to accomplish exercise training priorities Participates in Joint Planning Groups (JPGs), and Operational Planning Groups/Teams (OPG/OPTs) Qualifications Required education and experience: Minimum 10 years of experience as a Joint Operations Planner and a complete working knowledge of the JPP, JOPES, and APEX planning formats and guidance. Minimum of bachelor's degree from an accredited college or university. Minimum specialized education in military joint operations planning through the JPME II from a CJCS accredited joint education program listed in CJCSI 1800.01E. The JIOPC, or other similar military operations planning courses, may be substituted for JPME II. Understands Cyber Mission and grasps implications of policy and operations in cyberspace. Experience in fast-paced environment directly supporting the senior leadership of an organization. Demonstrated maturity in communications, professional in manner. Possesses judgment and discretion handling sensitive information and need to know. Demonstrated initiative in executing past roles and responsibilities. Strong attention to detail and organizational skills. Excellent communications skills. Strong analytical and problem-solving skills Four years of planning experience may be substituted with completion of an advanced Service planner school (SAMS, SAASS, JAWS, etc.) Required Clearance TS/SCI with current Polygraph
09/26/2026
Full time
Job Description Job Description Job Type:Full time Location: Fort Meade, MD Clearance: Top Secret SCI with Polygraph Job Description: VMR Strategic Solutions is seeking a Cyberspace Joint Operation Planner III to perform in-depth joint targeting and cybersecurity planning process. Gathers information and develops detailed Operational Plans and Orders supporting requirements. Conducts strategic and operational-level planning across the full range of operations for integrated information and cyberspace operations. Duties Provides input for the development of Plans, CONOPs, COAs, TTPs and other related documents related to command conducting Offensive Cyber Operations (OCO) and Information Operations (IO). Understands, analyzes, and evaluates current and emerging threats within US Cyber Command tasked mission areas of responsibility. Knowledgeable of/understands Mission Relevant Terrain - in Cyberspace (MRT - C). Expert in the planning and conduct of OCO and IO. Knowledge and experience in Combat Mission Team (CMT) and Combat Support Team (CST) C2, management, and employment. Monitors and reviews strategies, doctrine, policies, directives, and instructions from higher echelon headquarters and makes recommendations to ensure compliance and/or consideration in planning efforts Develops plans and orders through the application of operational art and operational design, and by using the JOPP, within the milestones, deliverables, and interaction points for plans developed using Adaptive Planning and Execution (APEX) activities Provides input to briefings, transitioning concepts to execution, and assisting in the coordination of joint operational planning in support of training, exercises, combat, and contingency plans and operations Develops/integrates cyberspace capabilities into deliberate, contingency, operation, and crisis action plans Provides input to address shortfalls, prioritize and validate requirements, and be prepared to modify development planning efforts based on the changing cyberspace environment Contributes to the development of exercise scenarios, exercise operational plans, and other required documentation to support planning and execution to accomplish exercise training priorities Participates in Joint Planning Groups (JPGs), and Operational Planning Groups/Teams (OPG/OPTs) Qualifications Required education and experience: Minimum 10 years of experience as a Joint Operations Planner and a complete working knowledge of the JPP, JOPES, and APEX planning formats and guidance. Minimum of bachelor's degree from an accredited college or university. Minimum specialized education in military joint operations planning through the JPME II from a CJCS accredited joint education program listed in CJCSI 1800.01E. The JIOPC, or other similar military operations planning courses, may be substituted for JPME II. Understands Cyber Mission and grasps implications of policy and operations in cyberspace. Experience in fast-paced environment directly supporting the senior leadership of an organization. Demonstrated maturity in communications, professional in manner. Possesses judgment and discretion handling sensitive information and need to know. Demonstrated initiative in executing past roles and responsibilities. Strong attention to detail and organizational skills. Excellent communications skills. Strong analytical and problem-solving skills Four years of planning experience may be substituted with completion of an advanced Service planner school (SAMS, SAASS, JAWS, etc.) Required Clearance TS/SCI with current Polygraph
Job Description Job Description Dark Wolf Solutions is seeking a Senior Security Control Assessor Representative (SCAR) to conduct independent comprehensive assessments of the management, operation, and technical security controls and control enhancements employed within, or inherited by, an Information technology (IT) system to determine the overall effectiveness of the controls. The SCAR will perform reviews of security artifacts for system authorizations, assessing both the technical and functional adequacy as required for application and software cybersecurity readiness. The SCAR candidate must have prior experience in authorizing tools/applications, systems, and/or enclaves. Additionally, knowledge of network security, technologies, processes, and practices designed for the prevention of damage to, protection of, and restoration of computers, communications systems, services, and various types of communications technologies. The SCAR candidate must be knowledgeable and proficient in assessing DoD GovCloud environments to include testing controls and validating artifacts. A successful candidate will have a strong foundational understanding of NIST, DOD, and DAF cybersecurity focused guidance. This position can be based out of any Dark Wolf Office location and will be a hybrid schedule. Additional responsibilities include: Key Responsibilities: Evaluating IT infrastructure in terms of risk to the organization and defining artifacts required to meet Federal, DoD and DAF requirements Assessing IT systems and architecture to ensure compliance with the Risk Management Framework (RMF), NIST Cybersecurity Framework (CSF), NIST 800-53 revision 5 and applicable guidance Supporting the system/application assessment and authorization (A&A) effort, to include assessing and guiding the quality and completeness of A&A activities, tasks and resulting artifacts mandated by governing DoD and AF policies, and applicable mandates Collecting, reviewing and verifying documented business processes within process narratives or flowcharts, identifying risks and validating proficiency of mitigating controls Reviewing risk and control matrices and testing plans for key controls and determines effectiveness Identifying control gaps, reviewing and testing the design of existing controls. Formulating clear and concise conclusions on internal controls and business process efficiency Recommending policies and procedures to ensure information systems reliability and accessibility and to prevent and defend against unauthorized access to systems, networks, and data Conducting risk and vulnerability assessments of installed information systems to identify vulnerabilities, risks, and protection needs Reviewing Plans of Actions & Milestones (POA&Ms) Providing recommendations and reports to the Security Control Assessor (SCA), Authorizing Official (AO), Chief Information Security Officer (CISO) Reviewing network and systems design to ensure accuracy Ensuring the rigorous application of information security/cybersecurity policies, principles, and practices in the delivery of all IT services Required Qualifications: 15+ years of relevant Cyber experience 15+ years prior experience as a Security Control Assessor/Representative RMF Engineer, ISSO, ISSM and/or information assurance engineer Cloud Platform experience with at least one service offering from AWS, Azure, or Google GCP Hands-on eMASS and/or Xacta experience completing full system lifecycle activities Experience with Air Force risk management policies/procedures, to include, DODI 8510.01, AFI 17-101 Experience with Cloud Computing Security Requirements Guide (CC SRG) Knowledgeable with DoD DevSecOps Fundamentals Playbook Experience evaluating information security compliance against STIGs Ability to clearly articulate ideas Strong technical writing abilities to author reports for AO and CISO dissemination Exudes confidence in providing briefings, presentations, and in conducting/guiding meetings with senior leadership and stakeholders Ability to use prior experience and knowledge to address new situations Certification requirements (at least one of the following): SecurityX / CASP+, CCISO, CGRC/CAP, CISA, CISM, CISSO, CISSP, CISSP-ISSEP, Cloud+, CySA+, FITSP-A, GCSA, GSEC, GSLC, GSNA, PenTest+, Security+ B.A. or B.S. Information Security, Computer Science or related discipline US Citizenship and currently possess a Top Secret security clearance Desired Qualifications: Experience with Fast Track ATO Handbook & AF Continuous ATO Playbook Familiarity with CI/CD Pipelines DevSecOps experience Sharepoint, JIRA, Confluence familiarity The salary range for this position is $140,000.00 - $145,000.00 commensurate on experience and technical skillset. We are open to considering a variety of levels of experience for these projects and potential for 1099 hourly opportunity. We are proud to be an EEO/AA Employer Minorities/Women/Veterans/Disabled and other protected categories. In compliance with federal law, all persons hired will be required to verify identity, confirm US Citizenship, and complete the required employment eligibility verification upon hire.
09/26/2026
Full time
Job Description Job Description Dark Wolf Solutions is seeking a Senior Security Control Assessor Representative (SCAR) to conduct independent comprehensive assessments of the management, operation, and technical security controls and control enhancements employed within, or inherited by, an Information technology (IT) system to determine the overall effectiveness of the controls. The SCAR will perform reviews of security artifacts for system authorizations, assessing both the technical and functional adequacy as required for application and software cybersecurity readiness. The SCAR candidate must have prior experience in authorizing tools/applications, systems, and/or enclaves. Additionally, knowledge of network security, technologies, processes, and practices designed for the prevention of damage to, protection of, and restoration of computers, communications systems, services, and various types of communications technologies. The SCAR candidate must be knowledgeable and proficient in assessing DoD GovCloud environments to include testing controls and validating artifacts. A successful candidate will have a strong foundational understanding of NIST, DOD, and DAF cybersecurity focused guidance. This position can be based out of any Dark Wolf Office location and will be a hybrid schedule. Additional responsibilities include: Key Responsibilities: Evaluating IT infrastructure in terms of risk to the organization and defining artifacts required to meet Federal, DoD and DAF requirements Assessing IT systems and architecture to ensure compliance with the Risk Management Framework (RMF), NIST Cybersecurity Framework (CSF), NIST 800-53 revision 5 and applicable guidance Supporting the system/application assessment and authorization (A&A) effort, to include assessing and guiding the quality and completeness of A&A activities, tasks and resulting artifacts mandated by governing DoD and AF policies, and applicable mandates Collecting, reviewing and verifying documented business processes within process narratives or flowcharts, identifying risks and validating proficiency of mitigating controls Reviewing risk and control matrices and testing plans for key controls and determines effectiveness Identifying control gaps, reviewing and testing the design of existing controls. Formulating clear and concise conclusions on internal controls and business process efficiency Recommending policies and procedures to ensure information systems reliability and accessibility and to prevent and defend against unauthorized access to systems, networks, and data Conducting risk and vulnerability assessments of installed information systems to identify vulnerabilities, risks, and protection needs Reviewing Plans of Actions & Milestones (POA&Ms) Providing recommendations and reports to the Security Control Assessor (SCA), Authorizing Official (AO), Chief Information Security Officer (CISO) Reviewing network and systems design to ensure accuracy Ensuring the rigorous application of information security/cybersecurity policies, principles, and practices in the delivery of all IT services Required Qualifications: 15+ years of relevant Cyber experience 15+ years prior experience as a Security Control Assessor/Representative RMF Engineer, ISSO, ISSM and/or information assurance engineer Cloud Platform experience with at least one service offering from AWS, Azure, or Google GCP Hands-on eMASS and/or Xacta experience completing full system lifecycle activities Experience with Air Force risk management policies/procedures, to include, DODI 8510.01, AFI 17-101 Experience with Cloud Computing Security Requirements Guide (CC SRG) Knowledgeable with DoD DevSecOps Fundamentals Playbook Experience evaluating information security compliance against STIGs Ability to clearly articulate ideas Strong technical writing abilities to author reports for AO and CISO dissemination Exudes confidence in providing briefings, presentations, and in conducting/guiding meetings with senior leadership and stakeholders Ability to use prior experience and knowledge to address new situations Certification requirements (at least one of the following): SecurityX / CASP+, CCISO, CGRC/CAP, CISA, CISM, CISSO, CISSP, CISSP-ISSEP, Cloud+, CySA+, FITSP-A, GCSA, GSEC, GSLC, GSNA, PenTest+, Security+ B.A. or B.S. Information Security, Computer Science or related discipline US Citizenship and currently possess a Top Secret security clearance Desired Qualifications: Experience with Fast Track ATO Handbook & AF Continuous ATO Playbook Familiarity with CI/CD Pipelines DevSecOps experience Sharepoint, JIRA, Confluence familiarity The salary range for this position is $140,000.00 - $145,000.00 commensurate on experience and technical skillset. We are open to considering a variety of levels of experience for these projects and potential for 1099 hourly opportunity. We are proud to be an EEO/AA Employer Minorities/Women/Veterans/Disabled and other protected categories. In compliance with federal law, all persons hired will be required to verify identity, confirm US Citizenship, and complete the required employment eligibility verification upon hire.
Academy for the Love of Learning
Santa Fe, New Mexico
Job Description Job Description Title : Information Technology Lead Hours : 36 hours per week Location: primarily on-site at Santa Fe office with some remote possibility Reports to : Chief of Staff About the Role The Information Technology Lead is responsible for maintaining all aspects of the Academy for the Love of Learning's (ALL) technical infrastructure. They will maintain the network, hardware, software, and stack of digital platforms that ALL relies on for its operations and programmatic work and will ensure seamless functionality for both in-person and remote staff. The IT Lead will work with the management team to understand ALL's current and future technical needs and will proactively develop strategies to meet them. About Us The Academy for the Love of Learning is a nonprofit organization based in Santa Fe, New Mexico, focused on reimagining the ways we approach learning and dedicated to nurturing the natural love of learning in individuals of all ages and locations. We seek to encourage and cultivate the powers of critical thought, imagination, curiosity, an innate sense of purpose, wonder and inspiration, and an ongoing awakening of the heart. The overarching intent of our work is to help stimulate and support the rebirth and renewal of learning in America. The heart of our work is creating space for transformation. Whether through in-depth programming with in-person groups or guided practices available online, our work remains centered on the unleashing of the love of learning no matter who or where you are. The organization aims to inspire young people and adults by fostering a learning environment rooted in compassion, awareness, freedom, and discovery. Our work is centered around creating engaging experiences for learners of all ages, encouraging them to explore their unique potential and connect deeply with the process of learning. For more information about our history, programs, and mission, please see our website. Responsibilities Network & Infrastructure: The IT Lead will maintain and optimize secure and reliable networks, localized servers, Wi-Fi systems on ALL's Santa Fe campus. They will also maintain and optimize a secure and reliable cloud environment and manage remote access protocols to ensure staff stay connected securely from anywhere. This will include managing ALL's Google Workspace account and systems for email, calendar, file-sharing, messaging, and other team-wide digital tools. They will oversee the full lifecycle of all technical hardware issued to staff (laptops, tablets, mobile devices), including coordinating physical repairs and provisioning for new onsite or remote hires. Security & Compliance: The IT Lead will be responsible for identifying and implementing robust security protocols for ALL networks, systems, and machines. This may include protocols for MFA, encryption, use of personal devices, and other cybersecurity protocols. They will also be responsible for data privacy and will support web developers and other consultants as needed to ensure privacy compliance. Campus Technology: The IT Lead will be responsible for maintaining technical systems related to the operations of ALL's Santa Fe campus, including its internal security cameras, audio/video systems, meeting room systems, and printers. They will maintain the conference room A/V systems and provide live technical support for important internal programmatic events, presentations, and/or hybrid meetings. In collaboration with other operational staff, the IT Lead will work with external vendors who provide internet, phones, security, and other essential operational services that integrate with ALL's technical systems. Strategy, Budget & Project Management: The IT Lead will work with management to understand ALL's vision for programmatic work and will develop a 1-3 year technology roadmap to ensure that ALL has appropriate and reliable systems in place to implement that work. This may include offering virtual or hybrid programs or developing an online learning community environment. They will create and manage annual budgets for IT needs, tracking monthly expenses and working with the Finance Director to reconcile the annual budget. They will create and manage project plans for any repairs or upgrades to digital systems, working with the Executive Director, Chief of Staff, and Operations Team to ensure smooth ongoing operations. Staff Support: The IT Lead will act as primary point of contact for technical issues, providing patient support to a hybrid team with varying technical needs levels of familiarity with different tech systems. They will create and maintain "how-to" guides for hybrid workflows and for campus equipment to empower staff to solve common issues independently. Other Duties: The IT Lead will participate as a member of the Operations Team. As a member of ALL staff, they will participate in regular staff meetings and periodic staff retreats, support ALL events where appropriate, and communicate updates to colleagues. Qualifications Required A minimum of 3-5 years of experience in IT management or senior systems administration Expert knowledge of IT best practices, policies, and regulations Demonstrated experience managing cloud ecosystems (Google/MS365) and Mobile Device Management tools Expert proficiency with Mac operating systems and standard office technology Proficiency with client/server technology and network architecture Proficiency with Video Conferencing hardware and software Proficiency with Audio/Video systems Demonstrated ability to set and manage shifting priorities and handle multiple projects and deadlines, both in the physical office and in a remote environment Demonstrated ability to think and plan strategically, proactively problem-solve, and analytically make decisions Demonstrated organizational skills and attention to detail Demonstrated ability to work independently and as a supportive team member Flexibility regarding work schedule; ability to respond to unexpected urgent situations Ability to drive a vehicle (current driver's license); Ability to lift up to 40 pounds; Qualities we seek Excellent communication skills (written and verbal); Interpersonal skill and the ability build professional relationships with warmth and enthusiasm; Willingness and enthusiasm for problem-solving and troubleshooting; Comfort with uncertainty and willingness to adapt; Open to new ideas, feels a connection with ALL's mission, and willing to explore pedagogy; Collaborative approach and the ability to work across functions and within a team; Desire and ability to communicate and work with racial, ethnic, socioeconomic, and gender diverse communities; Willingness to hold themselves and others accountable while being sensitive to diverse perspectives The capacity for self-reflection A 'can do' attitude and willingness to pitch in where needed Academy for the Love of Learning is an equal opportunity employer and does not discriminate in its selection of candidates for employment on the basis of race, color, national origin, religion, sex or sexual orientation, marital status, disability, age, military service, family medical history, legal source of income, gender identity, political affiliation, or family leave obligations. This role description is not a contract of employment. Employment is at-will and otherwise subject to the terms of the Academy's Employee Manual. Academy for the Love of Learning has a comprehensive benefits package that includes paid vacation, holidays, sick leave, health and dental insurance, an employer-sponsored retirement plan, and more.
09/26/2026
Full time
Job Description Job Description Title : Information Technology Lead Hours : 36 hours per week Location: primarily on-site at Santa Fe office with some remote possibility Reports to : Chief of Staff About the Role The Information Technology Lead is responsible for maintaining all aspects of the Academy for the Love of Learning's (ALL) technical infrastructure. They will maintain the network, hardware, software, and stack of digital platforms that ALL relies on for its operations and programmatic work and will ensure seamless functionality for both in-person and remote staff. The IT Lead will work with the management team to understand ALL's current and future technical needs and will proactively develop strategies to meet them. About Us The Academy for the Love of Learning is a nonprofit organization based in Santa Fe, New Mexico, focused on reimagining the ways we approach learning and dedicated to nurturing the natural love of learning in individuals of all ages and locations. We seek to encourage and cultivate the powers of critical thought, imagination, curiosity, an innate sense of purpose, wonder and inspiration, and an ongoing awakening of the heart. The overarching intent of our work is to help stimulate and support the rebirth and renewal of learning in America. The heart of our work is creating space for transformation. Whether through in-depth programming with in-person groups or guided practices available online, our work remains centered on the unleashing of the love of learning no matter who or where you are. The organization aims to inspire young people and adults by fostering a learning environment rooted in compassion, awareness, freedom, and discovery. Our work is centered around creating engaging experiences for learners of all ages, encouraging them to explore their unique potential and connect deeply with the process of learning. For more information about our history, programs, and mission, please see our website. Responsibilities Network & Infrastructure: The IT Lead will maintain and optimize secure and reliable networks, localized servers, Wi-Fi systems on ALL's Santa Fe campus. They will also maintain and optimize a secure and reliable cloud environment and manage remote access protocols to ensure staff stay connected securely from anywhere. This will include managing ALL's Google Workspace account and systems for email, calendar, file-sharing, messaging, and other team-wide digital tools. They will oversee the full lifecycle of all technical hardware issued to staff (laptops, tablets, mobile devices), including coordinating physical repairs and provisioning for new onsite or remote hires. Security & Compliance: The IT Lead will be responsible for identifying and implementing robust security protocols for ALL networks, systems, and machines. This may include protocols for MFA, encryption, use of personal devices, and other cybersecurity protocols. They will also be responsible for data privacy and will support web developers and other consultants as needed to ensure privacy compliance. Campus Technology: The IT Lead will be responsible for maintaining technical systems related to the operations of ALL's Santa Fe campus, including its internal security cameras, audio/video systems, meeting room systems, and printers. They will maintain the conference room A/V systems and provide live technical support for important internal programmatic events, presentations, and/or hybrid meetings. In collaboration with other operational staff, the IT Lead will work with external vendors who provide internet, phones, security, and other essential operational services that integrate with ALL's technical systems. Strategy, Budget & Project Management: The IT Lead will work with management to understand ALL's vision for programmatic work and will develop a 1-3 year technology roadmap to ensure that ALL has appropriate and reliable systems in place to implement that work. This may include offering virtual or hybrid programs or developing an online learning community environment. They will create and manage annual budgets for IT needs, tracking monthly expenses and working with the Finance Director to reconcile the annual budget. They will create and manage project plans for any repairs or upgrades to digital systems, working with the Executive Director, Chief of Staff, and Operations Team to ensure smooth ongoing operations. Staff Support: The IT Lead will act as primary point of contact for technical issues, providing patient support to a hybrid team with varying technical needs levels of familiarity with different tech systems. They will create and maintain "how-to" guides for hybrid workflows and for campus equipment to empower staff to solve common issues independently. Other Duties: The IT Lead will participate as a member of the Operations Team. As a member of ALL staff, they will participate in regular staff meetings and periodic staff retreats, support ALL events where appropriate, and communicate updates to colleagues. Qualifications Required A minimum of 3-5 years of experience in IT management or senior systems administration Expert knowledge of IT best practices, policies, and regulations Demonstrated experience managing cloud ecosystems (Google/MS365) and Mobile Device Management tools Expert proficiency with Mac operating systems and standard office technology Proficiency with client/server technology and network architecture Proficiency with Video Conferencing hardware and software Proficiency with Audio/Video systems Demonstrated ability to set and manage shifting priorities and handle multiple projects and deadlines, both in the physical office and in a remote environment Demonstrated ability to think and plan strategically, proactively problem-solve, and analytically make decisions Demonstrated organizational skills and attention to detail Demonstrated ability to work independently and as a supportive team member Flexibility regarding work schedule; ability to respond to unexpected urgent situations Ability to drive a vehicle (current driver's license); Ability to lift up to 40 pounds; Qualities we seek Excellent communication skills (written and verbal); Interpersonal skill and the ability build professional relationships with warmth and enthusiasm; Willingness and enthusiasm for problem-solving and troubleshooting; Comfort with uncertainty and willingness to adapt; Open to new ideas, feels a connection with ALL's mission, and willing to explore pedagogy; Collaborative approach and the ability to work across functions and within a team; Desire and ability to communicate and work with racial, ethnic, socioeconomic, and gender diverse communities; Willingness to hold themselves and others accountable while being sensitive to diverse perspectives The capacity for self-reflection A 'can do' attitude and willingness to pitch in where needed Academy for the Love of Learning is an equal opportunity employer and does not discriminate in its selection of candidates for employment on the basis of race, color, national origin, religion, sex or sexual orientation, marital status, disability, age, military service, family medical history, legal source of income, gender identity, political affiliation, or family leave obligations. This role description is not a contract of employment. Employment is at-will and otherwise subject to the terms of the Academy's Employee Manual. Academy for the Love of Learning has a comprehensive benefits package that includes paid vacation, holidays, sick leave, health and dental insurance, an employer-sponsored retirement plan, and more.
Job Description Job Description Job Description Technical Team Lead - Business Intelligence Platform Columbia, MD Full Time TS/SCI with Polygraph Required Position: Technical Team Lead (Software Engineer, Level 3) Location: Columbia, MD (on-site) Category: Software Engineering / Technical Leadership / Data Engineering Clearance Requirement: Active TS/SCI with Polygraph Compensation: $200,000 - $250,000 (annualized USD) Experience Requirement: 12+ years with a Bachelor's degree, OR 10+ years with a Master's degree, OR 4 additional years of relevant experience in lieu of a degree Description Serve as the Technical Team Lead for the Mission Intelligence (MI) team, supporting data engineering, analytics, and automation initiatives. The MI team operates a business intelligence platform that enables enterprise-wide, data-driven decision-making. Your primary responsibility is to ensure the reliability, availability, and quality of this high-impact platform. This is a leadership-leaning role with real engineering teeth: you'll mentor engineers, unblock execution, set technical direction, and quietly hold the line on quality across the platform. Responsibilities Gather stakeholder requirements, assess available data, and develop solutions for delivering key metrics. Break down complex work into actionable steps that demonstrate consistent progress. Remove technical obstacles, manage expectations, and support team execution. Define and communicate task scope through clear documentation and tracking systems. Enable the team to integrate Site Reliability Engineering practices into the operational platform. Mentor and guide junior software engineers and data scientists. Produce project management materials such as agendas, meeting notes, and design decision records. Skills Requirements Strong customer-service orientation. Experience leading technical teams. Effective interpersonal skills for collaborating across diverse backgrounds and skill sets. Familiarity with enterprise-scale software deployment architectures. Experience or exposure to Site Reliability Engineering (SRE) principles. Willingness to contribute to internal and customer-facing documentation. Nice to Haves Experience with Apache NiFi. Experience with Elasticsearch and Kibana. Familiarity with Kubernetes. Knowledge of map-reduce analytic environments (e.g., Hadoop). Experience with frontend UI development. Production-grade software development experience in Java and Python. Experience productizing software as containers with Docker/Kubernetes. Compensation Employment Policy Salary is determined by multiple factors, including location, education, experience, skills, and organizational requirements. The projected compensation range for this position is $200,000 - $250,000 (annualized USD). Benefits Overview At Intezra, Inc., we offer a comprehensive benefits package designed to support long-term career growth and work-life balance: Three CareFirst medical plans available; Intezra pays up to 100% of healthcare premiums and up to 100% of deductibles (based on plan selection) for employees and dependents Intezra pays 100% for CareFirst Dental and Vision plans for employees and dependents 401(k): 15% company contribution (no match required) PTO: 160 hours, increasing with seniority 12 Floating Holidays 4 Code Red Days EEO Statement Intezra, Inc. provides equal employment opportunities to all employees and applicants and prohibits discrimination and harassment of any kind without regard to race, color, religion, age, sex, national origin, disability status, genetics, pregnancy, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state, or local laws. About Us Intezra Inc. is a small business prime contractor for all realms of cyber and AI/ML development, from tactical-level tools and capabilities to enterprise-level infrastructure and operations. Our leadership team and staff have helped solve the most complex challenges for the intelligence community for over 15 years. , About Intezra, Inc. Intezra Inc. is a small business prime contractor for all realms of cyber and AI/ML development, from tactical-level tools and capabilities to enterprise-level infrastructure and operations. Our leadership team and staff have helped solve the most complex challenges for the intelligence community for over 15 years.
09/26/2026
Full time
Job Description Job Description Job Description Technical Team Lead - Business Intelligence Platform Columbia, MD Full Time TS/SCI with Polygraph Required Position: Technical Team Lead (Software Engineer, Level 3) Location: Columbia, MD (on-site) Category: Software Engineering / Technical Leadership / Data Engineering Clearance Requirement: Active TS/SCI with Polygraph Compensation: $200,000 - $250,000 (annualized USD) Experience Requirement: 12+ years with a Bachelor's degree, OR 10+ years with a Master's degree, OR 4 additional years of relevant experience in lieu of a degree Description Serve as the Technical Team Lead for the Mission Intelligence (MI) team, supporting data engineering, analytics, and automation initiatives. The MI team operates a business intelligence platform that enables enterprise-wide, data-driven decision-making. Your primary responsibility is to ensure the reliability, availability, and quality of this high-impact platform. This is a leadership-leaning role with real engineering teeth: you'll mentor engineers, unblock execution, set technical direction, and quietly hold the line on quality across the platform. Responsibilities Gather stakeholder requirements, assess available data, and develop solutions for delivering key metrics. Break down complex work into actionable steps that demonstrate consistent progress. Remove technical obstacles, manage expectations, and support team execution. Define and communicate task scope through clear documentation and tracking systems. Enable the team to integrate Site Reliability Engineering practices into the operational platform. Mentor and guide junior software engineers and data scientists. Produce project management materials such as agendas, meeting notes, and design decision records. Skills Requirements Strong customer-service orientation. Experience leading technical teams. Effective interpersonal skills for collaborating across diverse backgrounds and skill sets. Familiarity with enterprise-scale software deployment architectures. Experience or exposure to Site Reliability Engineering (SRE) principles. Willingness to contribute to internal and customer-facing documentation. Nice to Haves Experience with Apache NiFi. Experience with Elasticsearch and Kibana. Familiarity with Kubernetes. Knowledge of map-reduce analytic environments (e.g., Hadoop). Experience with frontend UI development. Production-grade software development experience in Java and Python. Experience productizing software as containers with Docker/Kubernetes. Compensation Employment Policy Salary is determined by multiple factors, including location, education, experience, skills, and organizational requirements. The projected compensation range for this position is $200,000 - $250,000 (annualized USD). Benefits Overview At Intezra, Inc., we offer a comprehensive benefits package designed to support long-term career growth and work-life balance: Three CareFirst medical plans available; Intezra pays up to 100% of healthcare premiums and up to 100% of deductibles (based on plan selection) for employees and dependents Intezra pays 100% for CareFirst Dental and Vision plans for employees and dependents 401(k): 15% company contribution (no match required) PTO: 160 hours, increasing with seniority 12 Floating Holidays 4 Code Red Days EEO Statement Intezra, Inc. provides equal employment opportunities to all employees and applicants and prohibits discrimination and harassment of any kind without regard to race, color, religion, age, sex, national origin, disability status, genetics, pregnancy, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state, or local laws. About Us Intezra Inc. is a small business prime contractor for all realms of cyber and AI/ML development, from tactical-level tools and capabilities to enterprise-level infrastructure and operations. Our leadership team and staff have helped solve the most complex challenges for the intelligence community for over 15 years. , About Intezra, Inc. Intezra Inc. is a small business prime contractor for all realms of cyber and AI/ML development, from tactical-level tools and capabilities to enterprise-level infrastructure and operations. Our leadership team and staff have helped solve the most complex challenges for the intelligence community for over 15 years.