A complete application in a minute — tailored resume and cover letter, ready to send.
BTI seeks a Security Specialist to lead federal security programs, applying NIST SP 800-53 Moderate baseline, FISMA, and FedRAMP controls. You will develop and maintain SSP/SAR/POA&M and integrate SAST/DAST/IAST into CI/CD pipelines with DevSecOps teams.
You will protect Federal Tax Information and sensitive data per IRS Publication 1075, implement encryption and audit logging, and contribute to incident response and contingency planning across environments.
Business Technology Integrators (BTI) is a Service-Disabled Veteran-Owned Small Business (SDVOSB) with more than 25 years of experience delivering innovative and reliable IT and engineering solutions to the Federal Government. BTI supports mission-critical programs across defense and civilian agencies, with core expertise in cybersecurity, program management, enterprise IT, and technical oversight services.
BTI is currently searching for a Security Specialist to fulfill the roles and responsibilities below:
The Security Specialist supports the establishment, operation, and continuous monitoring of the system's security posture in accordance with NIST SP 800-53 (Moderate baseline), FISMA, and FedRAMP requirements.
This role contributes to the development and maintenance of the System Security Plan (SSP), Security Assessment Report (SAR), Plan of Action and Milestones (POA&M) tracking, and contingency and incident response planning.
The Security Specialist integrates security scanning (SAST, DAST, IAST) into the CI/CD pipeline, reviews scan results, and coordinates remediation of vulnerabilities in accordance with CISA and DOL remediation timelines.
This role supports penetration testing activities, documents findings and mitigations, and verifies that critical and high vulnerabilities are resolved prior to production deployment.
The Security Specialist supports protection of Federal Tax Information (FTI) and other sensitive data in accordance with IRS Publication 1075, including FIPS-validated encryption at rest and in transit, access control enforcement, and audit logging.
This role also supports breach notification procedures, continuous monitoring tooling, and logging practices consistent with OMB M-21-31 and participates in annual contingency and incident response testing.
The Security Specialist coordinates with development, infrastructure, and AI enablement teams to ensure that new features, environments, and AI-based tools (including chatbots and automated resolution systems) are assessed for security risk, comply with applicable controls, and do not expose non-public Government data without proper authorization.