Cyber & A&A Security Specialist - Hybrid Remote
Attainx
Cyber & A&A Security Specialist
Location: Hybrid (Reside within a commutable distance of Silver Spring, MD to work onsite as required)
Citizenship: US Citizenship Required
Security Clearance: Must have or the ability to obtain a Moderate Public Trust
AttainX, Inc. is in search of a highly energetic Cyber & A&A Security Specialist to join our team on a cyber security program supporting our US federal government client.
Basic Minimum Qualifications:
- Knowledge of DOC, NOAA, and NWS IT security policies and implementation standards or those of similar sized organizations AND comprehensive understanding of NIST guidance to include, but not limited to, NIST Special Publications and Federal Information Processing Standards.
- At least 5 years of recent experience (within the last 6 years) in applying IT security concepts, methodologies, principles, procedures and using industry-standard IT security tools.
- At least 5 years of recent experience (within the last 6 years) with enterprise architecture methodologies, concepts, procedures, principles, and tools.
- At least 5 years of recent experience (within the last 6 years) in contingency planning and backup and recovery best practices and application of NIST guidance in this area.
- At least 5 years of recent experience (within the last 6 years) in using technical testing tools (Tenable Security Center, ArcSight, IBM Big Fix, etc.).
- At least 5 years of performing assessments of Federal Information Systems using the Risk Management Framework.
- Ability to work in a cohesive team-oriented environment.
- Possess at least one of the following Certifications or be able to Obtain within six (6) months of hire:
- Certified Information Systems Security Professional (CISSP).
- Certified Information Systems Auditor (CISA).
- GIAC Certified Incident Handler (GCIH).
- GIAC Systems and Network Auditor (GSNA).
- Electronic Commerce Council Certified Ethical Hacker (CEH).
- ISC2 Certified in Governance, Risk and Compliance (CGRC).
- Security Certified Network Professional (SCNP).
- Security Certified Network Architect (SCNA).
Preferred Qualifications:
- Bachelor's Degree (or higher) in a related field
- Knowledge of assessing and securing cloud-hosted systems in accordance with federal security requirements
- Self-starter, highly motivated individual who adapts to a dynamic work environment
- Strong attention to detail with an ability to operate effectively across multiple priorities.
Key Responsibilities:
- Conduct full lifecycle Security Control Assessments and Authorization (A&A) activities for NWS FIPS 199 Low, Moderate, High, HVA, and hybrid systems in accordance with the NIST Risk Management Framework (RMF), NWS policy, NOAA, and DOC directives
- Validate information System Security Plans (SSPs), FIPS 200, control implementations, and supporting policies and procedures for accuracy, completeness, and NIST SP 800-53 compliance.
- Execute security control test procedures through documentation review, technical validation, and interviews with system stakeholders to determine control implementation status and effectiveness
- Collect, analyze, and document evidentiary artifacts (screenshots, test logs, interview notes) to validate control implementation and effectiveness.
- Utilize CSAM to retrieve POAMs, artifacts, and other pertinent documentation to assist with the A&A process and ensure accuracy of the A&A documentation uploaded in the tool
- Analyze and interpret vulnerability and configuration compliance scan results from tools like Tenable Nessus to identify control gaps, assess risk, and validate remediation actions.
- Develop and maintain pre-assessment and assessment deliverables, including Security Assessment Plans (SAPs), Security Control Assessment (SCA) workbooks, and kickoff deck briefings
- Document assessment results and risk determinations in Security Assessment Reports (SARs), Vulnerability Assessment Reports (VARs), and Authorization to Operate (ATO) briefing deck.
Skills: Cyber Security, Information Security, A&A
Non-Essential Functions: General Duty Requirements
About Us AttainX Inc. is CMMI Level 3, ISO 9001:2015 certified QMS, and a Gold Level SAFe Partner. For over 14 years, AttainX has delivered innovative IT and cloud-based solutions for a broad portfolio of federal clients, including USDA, NOAA, DOE, DHS, and DIA.
Benefits:
- Paid vacation
- Medical, dental, and vision coverage
- Matching 401(k) plan
- Tuition/training reimbursement
- Long & Short-Term Disability
Accommodations: Individuals with disabilities may request reasonable workplace accommodations by contacting AttainX Human Resources directly and specifying the nature of the support needed.
EEO Commitment: AttainX is an Equal Employment Opportunity employer and prohibits discrimination in the workplace based on Title VII of the Civil Rights Act, VEVRAA, Section 503, and other applicable laws. These protections extend to all applicants and employees.
Physical Demands: This position requires extended periods of sitting, computer use, and communication via phone or email. Occasional lifting of up to 10 pounds may be necessary. Vision abilities required include close, distance, and peripheral vision as well as depth perception
- ...seeking a Cybersecurity / Assessment and Authorization (A&A) Team Lead in Silver Spring, MD. This hybrid-remote position entails leading teams for federal cybersecurity programs, providing oversight for Security Assessment and Authorization activities. The ideal candidate...Remote work
- ...critical responsibilities in Vulnerability Management and Security Operations Center support. The analyst will be... ...experience, along with relevant security certifications. This role offers a hybrid working schedule, balancing on-site and remote work. #J-18808-Ljbffr...Remote work
- ...seeking Cybersecurity Analysts to develop, manage, and maintain the security posture of information systems in Washington, DC. The role... ...of cybersecurity experience, and a range of relevant certifications. A hybrid work schedule is available. #J-18808-Ljbffr Dark WolfSuggested
$72.8k - $130k
...Job Description - Cybersecurity Analyst - Hybrid in MN (2357994) Cybersecurity Analyst -... ...you’ll enjoy the flexibility of a hybrid-remote position* as you take on some tough challenges... ...risk alerts generated from enterprise security tools (e.g., SIEM, DLP, endpoint,...Remote workMinimum wageFull timeWork experience placementWork at officeLocal areaMonday to Friday- ...Cybersecurity Analyst (SOC) US Region (Remote / Hybrid) We have a new and exciting role... .... S-RM is a global intelligence and cyber security consultancy. Since 2005, we’ve helped... ...of intelligence analysts, technical specialists, software developers, investigators,...Remote jobWork at officeImmediate startFlexible hoursShift work
$135k - $158k
...ATTAINX INC in Silver Spring is seeking a Cyber & A&A Security Lead to provide leadership for federal cybersecurity programs. The role involves... ...experience, and relevant certifications. This position is hybrid, requiring on-site work two days a week and offers a salary...2 days per week- ...technical testing and a full suite of cyber engineering services to... ...solving our clients' toughest security challenges. But that'... ...team in Washington, D.C. (Hybrid; 1 Day On Site) This is a full... ...systems. Complete required A&A activities on assigned IT systems...Remote workFull timeWork experience placementLocal areaFlexible hours
- ...have a Bachelor's degree in a relevant field and significant experience in cybersecurity. The role supports cloud security and requires strong communication skills, with a hybrid work model involving both on-site and remote work as needed. #J-18808-Ljbffr Rividium IncRemote work
- ...Cybersecurity / Assessment and Authorization (A&A) Team Lead Location: Hybrid-Remote / Silver Spring, MD (2 days on-site... ...and technical oversight for Security Assessment and Authorization (SA&A)... ...leading teams of IT Security Specialists or Security Assessors. At least 5 years...Remote workTemporary work2 days per week
- ...Cybersecurity Senior Advisor - Grid Security at Southern California Edison... ...? Responsibilities Leads cyber security project delivery by... ...This position’s work mode is hybrid. The employee will report to... ...days with the option to work remotely on the remaining days. Unless...Remote workRelocation
$58k - $65k
...seeking a Resource Coordinator to support our Accounting & Assurance (A&A) department through the effective day-to-day coordination of... ...flexibility and work/life balance including fully virtual or hybrid work arrangements. Our collaborative work environment is strongly...Remote jobSummer workWork at officeLocal areaFlexible hoursShift work- ...following positions in Morrisville, NC. Director, Tech Cyber Security Specialist to partner with CISO, Technology Services across the... ...cyber-related matters. Requires B+7yrs. exp. Can work hybrid (In-office/remote). (ref. code(s) 002784). Qualified Applicants apply throughSH...Remote workWork at office
- ...Title: Senior Cybersecurity Analyst (Information System Security Manager - ISSM) Location: San Antonio, TX or... ...compliance enforcement across Cloud One programs. The hybrid role allows flexibility to work remotely but requires on-site presence at any approved SIPR facility...Remote workFull timeWork at office
- ...with a focus on leading complex security investigations, advancing... ...response effectiveness across hybrid environments. As a senior-level... ...with 4 days onsite and 1 day remote. Work Authorization: Work... ...systems. Monitors specific cyber threat actors to understand...Remote work
- ...Business Solutions US LLC is seeking a Director, Tech Cyber Security Specialist in Morrisville, NC Are you an innovative thinker? Do... ...coordination across multiple countries. • Can work hybrid (In-office/remote). Qualified Applicants apply through SH-ProfRecruitingcc...Remote workPermanent employmentWork at officeFlexible hours
- ...professional having broad information security/cyber security expertise or unique... ...Location: Deerfield, IL Hybrid Schedule: 4 days onsite / 1 day remote Work Authorization: Work... ...May indirectly supervise other Specialists. Provides subject matter expertise...Remote workHourly pay
- ...Digital Global Connectors in McLean, Virginia is seeking a Security Assessment & Authorization Lead to manage security assessment activities in a hybrid remote setting. The ideal candidate will have over 5 years of experience in FedRAMP processes, a solid understanding...Remote work
$37.4 - $56.11 per hour
...Systems Application Analyst II - ClinDoc / Orders Hybrid Full-time / Benefits Eligible Remote Opportunity Summa Health System is recognized as one of the region's top employers by a number of third party organizations, including NorthCoast 99. Exceptional...Remote workDaily paidFull timeTemporary workFlexible hours$86.9k - $198k
...Analyst The Opportunity: As a cyber warfare engineer, you... ...risk will support the security and resilience of... ...Assessment and Authorization (A&A) activities, direct development... ...happens in person or remotely. If this position is listed as remote or hybrid, you'll periodically...Remote workFull timeContract workPart timeLocal area- Koniag Information Security Services, LLC is looking for a Network Engineer in Washington, DC, to support KITS and government clients. This hybrid opportunity requires 3 days onsite and 2 days remote work. Ideal candidates will have a Bachelor's in Computer Science, 3+...Remote work
$130k - $150k
...seeking a proactive and knowledgeable Cyber Security Specialist to lead our information security efforts... ...management tools. Familiarity with hybrid IT/OT environments and protecting intellectual... ...time Business Hours: Core Location: Remote, California Reports to Chief...Remote workPermanent employmentFull timeContract workShift work$60k - $73k
...Ntiva Inc. is seeking a Vulnerability Management Analyst to assist Security Engineers by executing security remediation tasks and validating remediation outcomes. This hybrid-remote role emphasizes task execution with minimal onsite requirements, playing a crucial part...Remote work- ...Auto-Owners Insurance, located in Michigan, seeks an IT Security Engineer to enhance IT security compliance and address cybersecurity... ...protocols. This position requires initial in-person training with a hybrid work model, offering up to three work-from-home days per week....Remote workWork from home3 days per week
$90k - $100k
...Systems Administrator in Fort Worth, TX. This hybrid role involves managing and enhancing IT... .../Linux administration and experience in secure environments such as GCC High. The... ...medical coverage, 401K, and opportunities for remote work. #J-18808-Ljbffr Lynx Software Technologies...Remote work- ...Application Analyst / Clinical Application Analyst for their Professional Billing team. The role offers a hybrid work opportunity for local candidates or fully remote for experienced professionals. Responsibilities include supporting Epic applications, optimizing...Remote workLocal area
- ...Koitecc Solutions is seeking a Chief Information Security Officer to lead information security strategy at the University of Virginia... ...excellent communication skills, and a commitment to collaboration. A hybrid work model is available for the position. #J-18808-Ljbffr...Remote work
- ...and its government customer in Washington, DC. This hybrid role requires 3 days on-site and 2 days remote work. The ideal candidate should have a Bachelor's... ...and strong skills in routing, switching, and network security. An extraordinary benefits package including health...Remote work
- ...America Holdings is looking for an Accounts Receivable Applications Analyst based in Burlington, NC. This hybrid position includes three in-office days and two remote days each week. The successful candidate will perform detailed evaluations in Accounts Receivable and...Remote workWork at office2 days per week
- ...Verizon Communications is seeking a Network Security Adversary Emulation specialist in Irving, Texas. This hybrid role combines remote work with in-office days, focusing on proactive detection testing and supporting penetration testing efforts. The ideal candidate will...Remote workWork at office
$148k - $185k
...annual salary between $148,000 and $185,000. Candidates should possess at least 8 years of architecture experience and a relevant degree. The position offers full benefits and a hybrid work model, providing flexibility with remote work opportunities. #J-18808-Ljbffr...Remote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber & A&A Security Specialist - Hybrid Remote. Be the first to apply!
- cyber Silver Spring, MD
- remote medical billing part time Silver Spring, MD
- remote isolated Silver Spring, MD
- remote program manager Silver Spring, MD
- remote work from home Silver Spring, MD
- remote epic analyst Silver Spring, MD
- remote coding Silver Spring, MD
- remote weekend Silver Spring, MD
- remote legal Silver Spring, MD
- remote work part time Silver Spring, MD


