onsite
IT Specialist InfoSec - Office of the Chief Information Officer
Security Engineer
Information security professional responsible for protecting federal systems through risk assessments, vulnerability management, incident response, and implementation of security controls on cloud platforms such as AWS.
About the role
Key Responsibilities
- Conduct risk assessments and security reviews of federal information systems to identify gaps and recommend mitigation strategies.
- Manage vulnerability scanning programs, prioritize findings, and coordinate remediation efforts across multiple agencies.
- Lead security incident response activities, including detection, analysis, containment, and post‑incident reporting.
- Develop, implement, and maintain security policies, standards, and procedures aligned with federal guidelines.
- Configure and monitor security controls on cloud environments, particularly AWS, ensuring compliance with NIST and FISMA requirements.
Requirements
- Bachelor’s degree in Computer Science, Information Security, or related field, or equivalent experience.
- 3+ years of hands‑on experience in information security, risk assessment, and vulnerability management.
- Proficiency with security tools (e.g., SIEM, IDS/IPS, vulnerability scanners) and cloud security services on AWS.
- Strong understanding of federal security frameworks such as NIST SP 800‑53, FISMA, and RMF.
- Excellent analytical, communication, and problem‑solving skills, with the ability to work collaboratively across agencies.