Information Systems Security Specialist

bcmcllc

Arlington (VA)

On-site

USD 140,000 - 210,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

401k with company match
Excellent benefits package

Job summary

bcmcllc seeks an Information Systems Security Specialist to support DHS HIRT investigations and risk management across IT systems. The role requires coordinating with ISSM and CISO, implementing RMF controls, and producing security documentation.

You will work with Linux and AWS environments, contribute to ATO efforts, and lead major technology assignments with cross-functional teams. Possess a TS/SCI clearance and U.S. citizenship to qualify.

Qualifications

  • U.S. citizenship is required.
  • Active TS/SCI clearance is required.
  • Must be able to obtain DHS suitability.
  • 5+ years of directly relevant information security management experience.
  • Hands-on experience with Linux or AWS.
  • Experience supporting RMF/ATO lifecycle, including security documentation and POAM management.
  • Knowledge of RMF/A&A documentation (SSP, Contingency, IAM, Configuration Management).
  • Experience with multiple complex assignments requiring innovation and initiative.
  • Knowledge of CND policies and network security.
  • Familiarity with Microsoft Office products.

Responsibilities

  • Support full RMF lifecycle management for IT systems.
  • Lead security management, staffing, and technical requirements.
  • Interface with senior management and clients during negotiations.
  • Develop security plans and align with DHS IT security standards.
  • Assist in lab security infrastructure planning and implementation.
  • Identify current security posture and design future security programs.
  • Coordinate with ISSM and CISO to support ATO requirements.
  • Contribute to risk analyses and major technology assignments.
  • Ensure effective POAM tracking and closure.

Skills

U.S. Citizenship
Active TS/SCI clearance
RMF knowledge
POAM management
Linux / AWS experience
Cross-project collaboration

Education

BS in Information Management/Cybersecurity/CS
High School Diploma + 7+ years experience

Tools

CSAM
Xacta
Archer
RegScale
Nessus
Splunk
ELK

Job description

DHS’s Hunt and Incident Response Team (HIRT) secures the Nation’s cyber and communications infrastructure. HIRT provides DHS’s front line response for cyber incidents and proactively hunts for malicious cyber activity. BCMC, as a prime contractor to DHS, performs HIRT investigations to develop a preliminary diagnosis of the severity of breaches. BCMC provides HIRT remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host‑based and network‑based cybersecurity analysis capabilities. We are seeking an Information Systems Security Specialist to support this critical customer mission.

Responsibilities
  • Work as part of a team of Information Assurance professionals to manage the full Risk Management Framework lifecycle for Information Technology systems
  • Assisting technical/management leadership on major tasks or technology assignments
  • Establishing goals and plans that meet project objectives
  • Assisting in direction and control activities, having overall responsibility for security management, methods, and staffing to ensure that technical requirements are met
  • Participating in client negotiations and interfacing with senior management
  • Supporting decision making and domain knowledge that may have a critical impact on overall project implementation
  • Providing support to plan, coordinate, and implement a cybersecurity lab’s information security
  • Providing support for facilitating and helping the lab identify its current security infrastructure and define future programs, design and implementation of security related to lab systems
  • Assisting the efforts of security staff to design, develop, engineer and implement solutions to security requirements
  • Implementing and development of the DHS IT security standards
  • Gathering and organizing technical information about the lab’s mission goals and needs, existing security products, and ongoing programs
  • Performing risk analyses which also includes risk assessment
  • Planning and leading major technology assignments
  • Evaluating performance results and recommends major changes affecting short‑term project growth and success
  • Functioning as a cyber technical expert across multiple project assignments
  • Working closely with ISSM and CISO to respond to Data Calls and satisfy requirements of ATOs
Required Skills
  • U.S. Citizenship
  • Must have an active TS/SCI clearance
  • Must be able to obtain DHS Suitability
  • 5+ years of directly relevant experience in information security management
  • Hands on experience with Linux operating systems or Amazon Web Services
  • Experience supporting the NIST Risk Management Framework (RMF) process and contributing to a full ATO effort from initiation through authorization, including development of security documentation, control implementation statements, supporting assessment (audit) activities, and performing full POA&M management
  • Beginning to end Knowledge of RMF and Assessment and Authorization (A&A) documentation to include SSP, Contingency, Incident & Configuration Management planning and execution
  • Experience working on multiple complex assignments which are broad in nature, requiring originality and innovation in determining how to accomplish tasks
  • Ability to apply a comprehensive knowledge across key tasks and high impact assignments
  • Knowledge of Computer Network Defense (CND) policies, procedures & regulations
  • Knowledge of defense‑in‑depth principles and network security architecture
  • Knowledge of ATO requirements and strong experience with POAMs
  • Knowledge of full range of Microsoft Office products (Word, Excel, Powerpoint, and Visio)
  • Knowledge of boundary protection and network segmentation
  • Knowledge of authentication and access management techniques
  • Experience with implementing and assessing security controls for hardware, software, and network deployments
  • Must be able to work collaboratively with internal and external stakeholders across physical locations
Desired Skills
  • Experience with Risk Management Framework software (CSAM, Xacta, Archer, RegScale)
  • Experience with host and network scanning software (Nessus, Security Center, Tenable Vulnerability Management, nmap, Wiz, burp)
  • Experience with Endpoint Protection tools like CrowdStrike or CarbonBlack
  • Working knowledge of SIEM tools like Splunk, SOAR, or ELK
  • Familiarity with role‑based account processing operations
  • Familiarity with zero trust architectures
  • Familiarity with scripting languages (python, AWS CLI, Lambda, bash, powershell)
Required Education

BS Information Management, Cybersecurity, Computer Science or related degree, or High School Diploma and 7+ years of information security management experience.

Desired Certifications
  • DoD 8140.01 IAT Level III
  • CISSP
  • AWS
  • Cisco
  • Microsoft
Benefits
  • Extremely competitive salary
  • 95% employer paid for employee medical, dental, & vision coverages
  • 100% employer paid for employee life, STD & LTD disability coverages
  • 401k with company match and profit sharing
  • Flexible Spending Account (FSA) for dependent & health care
  • 11 standard holidays & 3 weeks of annual leave
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Incident Response Expert
Cyber Incident Response Expert

bcmcllc • Arlington (VA)

On-site
USD 120,000 - 170,000
Competitive salary
Employer-paid health and life benefits
Information Security Manager III
Information Security Manager III

Jobtailor • Arlington (VA)

On-site
USD 102,000 - 108,000
Medical insurance
Dental insurance
Vision insurance
+5
Information Security Manager III
Information Security Manager III

castaliasystems • Arlington (VA)

On-site
USD 102,000 - 108,000
Medical, dental, and vision coverage
401k matching
Generous PTO
+3
Information Security Manager III
Information Security Manager III

Unknown Company • United States

On-site
USD 102,000 - 108,000
Medical coverage
Dental coverage
Vision coverage
+5
Host Forensics Analyst
Host Forensics Analyst

bcmcllc • Arlington (VA)

On-site
USD 85,000 - 110,000
95% employer paid medical, dental, & vision coverages
100% employer paid life, STD & LTD disability coverages
401k with company match and profit sharing
+1
Cyber Incident Manager - 1 year of experience
Cyber Incident Manager - 1 year of experience

bcmcllc • Arlington (VA)

On-site
USD 110,000 - 140,000
Extremely competitive salary
Employer-paid health coverage
Employer-paid life/STD/LTD
Cyber Case Manager II
Cyber Case Manager II

bcmcllc • Arlington (VA)

On-site
USD 80,000 - 100,000
Extremely competitive salary
95% employer paid medical, dental & vision
100% employer paid life, STD & LTD
+2
L3 Information Security Manager
L3 Information Security Manager

Base One Technologies • Arlington (VA)

On-site
USD 85,000 - 115,000
Information Security Specialist (Remote)
Information Security Specialist (Remote)

Harris Computer • North Dakota

On-site
USD 80,000 - 110,000
Competitive compensation package
Health Insurance (medical, dental, vision)
Paid Vacation
+1
Senior Information Security Analyst, SME
Senior Information Security Analyst, SME

DMI (Digital Management, Inc.) • Atlanta (GA)

On-site
USD 57,000 - 63,000
Health insurance
Career development
401k match
+2