Cybersecurity Specialist

LMI Consulting, LLC

Frederick (MD)

On-site

USD 86,000 - 125,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

LMI is seeking a Cybersecurity Specialist to support the Integrated Clinical System PMO and protect DoD medical devices within a RMF framework. You will perform risk assessments, security testing, and incident response in collaboration with DoD and vendors, ensuring safeguards meet DoD standards.

The role requires U.S. citizenship, ability to obtain a Public Trust (NACI), and a hybrid work setup with on-site work three days per week at Fort Detrick, MD. Preference for active Secret clearance.

Qualifications

  • Bachelor's degree in a related discipline or a minimum of four years' experience.
  • Ability to obtain a Public Trust Clearance (NACI); U.S. citizen; active Secret Clearance preferred.
  • CompTIA Security+ certification required.
  • Experience with internal controls and IT risk assessment/mitigation procedures.
  • Technical experience with security-related technologies such as encryption and remote access.
  • Familiarity with the 8 domains of CISSP CBK.

Responsibilities

  • Ensure security safeguards across deployed medical device portfolios.
  • Conduct information security assessments and testing; identify gaps and remediation plans.
  • Produce risk assessment reports and maintain RMF documentation.
  • Perform IV&V testing and record POAM data for DoD system.
  • Identify remediation strategies with leadership to enforce security requirements.
  • Assist in scoping, planning, and conducting third-party security assessments.

Skills

RMF (Risk Management Framework)
Information security assessments
Public Trust readiness
CompTIA Security+
Security controls & risk mgmt
DoD RMF knowledge

Education

Bachelor's degree or 4+ years experience

Tools

Encryption tech
Remote access tools
Antivirus systems

Job description

Cybersecurity Specialist
Job Locations

US-MD-Fort Detrick

Overview

LMI is seeking a Cybersecurity Specialist to support the Integrated Clinical System PMO's mission to develop, manage and perform end to end life cycle logistics on medical equipment to protect and sustain the Warfighter's and their families for the Nation. The Cybersecurity Specialist will work directly with DoD and vendors running tests and evaluations on their medical equipment operating systems that will be sitting on the DoD network validating that the systems meet the DoD Risk Management Framework (RMF) requirements ensure the system is not vulnerable to inside and outside threats.

This position requires the ability to obtain a Public Trust Clearance (NACI). You must be a U.S. citizen. The position can be performed in a hybrid remote capacity with onsite requirements needed @ 3 days/week at the client site in Frederick, MD.

LMI is a new breed of digital solutions provider dedicated to accelerating government impact with innovation and speed. Investing in technology and prototypes ahead of need, LMI brings commercial-grade platforms and mission-ready AI to federal agencies at commercial speed.

Leveraging our mission-ready technology and solutions, proven expertise in federal deployment, and strategic relationships, we enhance outcomes for the government, efficiently and effectively. With a focus on agility and collaboration, LMI serves the defense, space, healthcare, and energy sectors-helping agencies navigate complexity and outpace change. Headquartered in Tysons, Virginia, LMI is committed to delivering impactful results that strengthen missions and drive lasting value.

Responsibilities
  • This position is responsible for working with LMI's team supporting our DoD customer to ensure the appropriate administrative, physical and technical information security safeguards are implemented across a portfolio of deployed military medical devices.
  • Under general guidance of the Team Lead and the client, the incumbent will conduct information security assessments and testing to ensure the proper implementation of security controls across the environment. This includes populating defined security/risk assessments, identifying gaps and compensating controls, identifying remediation plans, and publishing management reports of results. This position may also participate in incident response investigations, help identify opportunities for product improvement, maintain policies and procedures that are designed to be operationally effective and efficient, and monitor compliance to policies, laws and regulations. The security specialist works with the DoD client to select and deploy technical controls to meet specific security requirements, and defines processes and standards to ensure that security configurations are maintained.
  • Conduct evaluations of technical and non-technical security safeguards to demonstrate and document compliance with the DoD's Risk Management Framework (RMF) requirements for security and interoperability.
  • Perform information security risk assessments as part of the project lifecycle to ensure that new medical device technology conforms to security standards against internal and external threats.
  • Perform Independent verification and validation (IV&V) testing, to include documentation of Plan of Action and Milestones (POAM) data within the DoD system.
  • Perform risk assessments of information and technology systems by conducting accurate and thorough assessments of the potential risks and vulnerabilities to the confidentiality, integrity, and availability of information and technology systems.
  • Work with security leadership and stakeholders to identify remediation strategies and plans to enforce security requirements and address risks identified in the risk assessment process.
  • Along with the Security Architect, advise during application development or acquisition projects to ensure that security controls are implemented as planned.
  • Work with other security department members and stakeholders in scoping, planning and conducting third-party penetration testing, code reviews, or security assessments during the information security process.
  • Perform risk assessments of third-party technology systems by conducting accurate and thorough assessments of the potential risks and vulnerabilities to the confidentiality, integrity, and availability of DoD information and technology systems.
  • Produce information security risk assessment reports that identify gaps with DoD Security Policies & Standards and propose remediation plans.
  • Assist in conducting information system activity reviews and participate in Risk Management Framework (RMF) testing exercises and activities: Monitor and test application and network activity for assurance that systems of controls are in place and effective, and for compliance to DoD policies and federal regulations.
Qualifications
  • Bachelor's degree in a related discipline or a minimum of four (4) years of experience
  • Ability to obtain a Public Trust Clearance (NACI). You must be a U.S. citizen; active Secret Clearance preferred
  • CompTIA Security + Certifications
  • Working knowledge internal controls & IT Risk Assessment and Mitigation procedures
  • Technical experience in security-related technologies such as encryption, remote access, anti-virus systems, etc.
  • A basic knowledge of the 8 domains of the Common Body of Knowledge for information security:
    • Security & Risk Management
    • Asset Security
    • Security Engineering
    • Communications and Network Security
    • Identity and Access Management
    • Security Assessment and Testing
    • Security Operations
    • Software Development Security
  • Desired: Experience with medical devices or a working knowledge of security frameworks such as HIPAA, HITRUST, NIST, ISO or other industry standards that are relevant to the DoD medical enterprise

Target salary range: $86,126 - $125,000

Disclaimer:

The salary range displayed represents the typical salary range for this position and is not a guarantee of compensation. Individual salaries are determined by various factors including, but not limited to location, internal equity, business considerations, client contract requirements, and candidate qualifications, such as education, experience, skills, and security clearances.

Equal Opportunity

LMI is an Equal Opportunity Employer. LMI is committed to the fair treatment of all and to our policy of providing applicants and employees with equal employment opportunities. LMI recruits, hires, trains, and promotes people without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, pregnancy, disability, age, protected veteran status, citizenship status, genetic information, or any other characteristic protected by applicable federal, state, or local law. If you are a person with a disability needing assistance with the application process, please contact accommodations@lmi.org Colorado Residents: In any materials you submit, you may redact or remove age-identifying information such as age, date of birth, or dates of school attendance or graduation. You will not be penalized for redacting or removing this information.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

DoD RMF Cybersecurity Specialist (Hybrid)
DoD RMF Cybersecurity Specialist (Hybrid)

LMI Consulting, LLC • Frederick (MD)

On-site
USD 86,000 - 125,000
Cybersecurity Specialist
Cybersecurity Specialist

LMI • Frederick (MD)

Hybrid
USD 86,000 - 125,000
Cybersecurity Information System Security Engineer - Clearance Required
Cybersecurity Information System Security Engineer - Clearance Required

LMI Consulting, LLC • Fort Belvoir (VA)

On-site
USD 92,075 - 158,138
Information Assurance Specialist - Clearance Required
Information Assurance Specialist - Clearance Required

LMI Consulting, LLC • United States

On-site
USD 149,000 - 182,000
Senior Cyber ISSE: RMF/ATO & Cloud Security (Secret)
Senior Cyber ISSE: RMF/ATO & Cloud Security (Secret)

LMI Consulting, LLC • Fort Belvoir (VA)

On-site
USD 92,075 - 158,138
Technical Workforce Management SME
Technical Workforce Management SME

LMI Consulting, LLC • United States

On-site
USD 90,000 - 120,000
Senior DevSecOps / Platform Engineer - Clearance Required
Senior DevSecOps / Platform Engineer - Clearance Required

LMI Consulting, LLC • United States

On-site
USD 125,000 - 175,000
Platform Engineer
Platform Engineer

LMI Consulting, LLC • United States

On-site
USD 135,000 - 230,000
Technical Program Manager (Software Development) - TS/SCI with Polygraph Required
Technical Program Manager (Software Development) - TS/SCI with Polygraph Required

LMI Consulting, LLC • McLean (VA)

On-site
USD 150,000 - 225,000
Army Information Systems Security Engineer (ISSE)
Army Information Systems Security Engineer (ISSE)

LMI Consulting, LLC • United States

On-site
USD 115,000 - 175,000