Senior Information System Security Specialist
TriTech Enterprise Systems
TriTech Enterprise Systems (TriTech) is seeking a 'Senior Information System Security Specialist' to support a Maryland State contract with the Maryland Health Benefit Exchange (MHBE ) . The candidate will perform internal and external penetration testing of networks, web applications, APIs, and cloud environments to identify security vulnerabilities, exploit paths, and perform other related tasks. In addition, this is a hybrid position where the candidate will work two days onsite after training.
The Maryland Health Benefit Exchange (MHBE), an independent unit of state government, provides accessible, affordable health coverage to Marylanders. MHBE administers Maryland Health Connection (MHC), the state’s health insurance marketplace. Through MHC, Maryland residents explore health insurance plans, compare rates, and determine their eligibility for advanced premium tax credits (APTC), cost-sharing reductions (CSR), and public assistance programs such as Medicaid and the Maryland Children’s Health Insurance Program (MCHP).
Duties / Responsibilities :
Conduct internal and external penetration testing of networks, web applications, APIs, and cloud environments to identify security vulnerabilities and exploit paths.
Perform red team engagements simulating real-world adversary tactics, techniques, and procedures (TTPs) aligned with MITRE ATT&CK.
Execute vulnerability assessments and validate remediation efforts through retesting and technical verification.
Develop comprehensive penetration testing reports, including executive summaries, risk ratings, proof-of-concept evidence, and actionable remediation guidance.
Perform threat modeling and attack surface analysis to identify high-risk exposure areas and privilege escalation pathways.
Conduct secure configuration reviews of operating systems, network infrastructure, cloud platforms, and identity systems.
Evaluate application security through dynamic and manual testing techniques, including authentication, session management, input validation, and access control testing.
Review source code for security weaknesses and secure coding gaps, particularly in C/C++, Python, Java, or similar languages.
Develop and maintain custom scripts or tooling to automate testing activities and enhance offensive security capabilities.
Support incident response activities by recreating attack chains, validating compromise scenarios, and identifying root causes. Assess Zero Trust implementations, micro-segmentation strategies, and identity-based security controls for effectiveness.
Conduct phishing simulations and social engineering exercises to evaluate user awareness and organizational resilience.
Provide technical briefings to executive leadership and technical stakeholders regarding risk posture and remediation prioritization. Collaborate with engineering, DevOps, and infrastructure teams to remediate identified vulnerabilities and strengthen security architecture. Contribute to the development of security policies, testing methodologies, and enterprise security standards. Support compliance efforts by mapping testing results to NIST, OWASP, CIS, or other applicable security frameworks.
Participate in continuous improvement of penetration testing methodologies, tools, and adversary emulation strategies.
Adhere to all security, change control, and MHBE Project Management Office (PMO) policies, processes, and methodologies.
Note: The candidate must be flexible to work overtime, on-site/off-site, as needed, including weekends, holidays, and off-hours.
Minimum Qualifications :
A minimum of eight (8) years of progressive experience in cybersecurity.
A minimum of five (5) years performing penetration testing or red team engagements.
A minimum of five (5) years conducting network penetration testing, web application and API testing, internal and external vulnerability assessments and threat modeling and attack path analysis.
A minimum of five (5) years developing and delivering formal penetration test reports, including executive summaries and technical remediation guidance.
A minimum of five (5) years supporting incident response investigations and validation testing.
A minimum of five (5) years with common penetration testing tools (e.g., Metasploit, Burp Suite, Nmap, Wireshark, Nessus, etc.).
Strong knowledge of Secure coding practices, Application security testing (SAST/DAST concepts), Network architecture and segmentation and Identity and access management concepts
A minimum of five (5) years of demonstrated scripting or development ability in at least one language (e.g., Python, C/C++, PowerShell, Bash).
A minimum of five (5) years of working with NIST Cybersecurity Framework, NIST 800-53 or similar federal control frameworks, MITRE ATT&CK and OWASP Top 10 A minimum of five (5) years of experience mapping findings to security control frameworks.
At least one recognized offensive security certification (e.g., OSCP, GPEN, GXPN, CEH, or major experience can substitute for certification).
Demonstrated ability to communicate technical findings to executive and non-technical audiences, and provide actionable remediation recommendations.
Demonstrated experience working in government or highly regulated environments.
Preferred Qualifications :
A Minimum ten (10) years of progressive experience in cybersecurity.
A minimum of eight (8) years of experience in Advanced Offensive Security:
Experience leading red team engagements.
Experience performing adversary emulation exercises.
Experience conducting phishing and social engineering simulations.
Experience performing purple team exercises.
A minimum of five (5) years of experience in Zero Trust & Architecture:
Experience designing or assessing Zero Trust implementations.
Experience evaluating micro-segmentation strategies and identity-centric controls.
A minimum of five (5) years of experience in Cloud & Modern Infrastructure:
Experience performing security assessments in AWS or Azure environments, Containerized environments (Docker/Kubernetes) and Infrastructure-as-Code deployments.
Experience testing CI/CD pipelines.
A minimum of ten (10) years of experience in Software Development Depth:
Strong low-level development knowledge (kernel, assembly, embedded systems) that supports advanced exploit analysis.
Experience reviewing source code in JAVA or other compiled languages for vulnerabilities.
A minimum of ten (10) years of experience in Government in the following:
Experience supporting federal or state government security programs.
Familiarity with FedRAMP, FISMA, or IRS Pub 1075 environments.
TriTech is an equal opportunity employer!
Powered by JazzHR
$94.49k - $131.16k
...'s see what we can achieve. Together. Summary The Senior Information Security Analyst is responsible for identifying, investigating, and... ...maintain security controls, which includes tuning detection systems, updating control policies, and automating processes....Information SystemSeniorWork at officeRemote workRelocationVisa sponsorshipRelocation package- ...Information System Security Specialist - Level II ACI is a professional services provider of engineering and technical services to the United States Government. We seek an experienced Information System Security Specialist to serve as a part of ACI's Government Programs...Information SystemContract workWork experience placementWork at officeLocal area
- ...Koitecc Solutions is seeking a Senior Information Security Systems Engineer (ISSE) to provide Information Assurance Architecture Analysis and Security Engineering Support. In this role, you will join a team to implement and support critical national security communications...Information SystemSenior
- ...A cybersecurity firm in Linthicum Heights, MD, seeks an experienced Information Systems Security Engineer (ISSE) to conduct security assessments and implement cybersecurity solutions to protect vital national security systems. The role requires at least 5 years of experience...Information SystemSeniorFlexible hours
$200k - $250k
...Senior Information Systems Security Engineer (ISSE) Make an Impact. Secure the Nation's Most Critical Systems. Helm Point Solutions is a woman-owned cybersecurity and physical security firm committed to protecting the infrastructure that underpins national security...Information SystemSenior- ...Children’s Health Insurance Program(MCHP). MHBEseeks a Senior Systems Security Specialist to plan, design, develop,administer,monitor, and govern... ...Incident Response and Forensics evaluation usingsecurity information and event management (SIEM) tools. Ensure that theMHBE...Information SystemSeniorFor contractorsRemote workFlexible hours
$200k - $250k
...Senior Information Systems Security Engineer (ISSE) Linthicum, MD • Government/Military Clearance Required: TS/SCI with Polygraph Full-Time | Fully Funded | $200K - $250K Make an Impact. Secure the Nation's Most Critical Systems. Helm Point...Information SystemSeniorFull time$7.5k
...Senior Information Systems Security Officer Location: Central Maryland Security Clearance Required: Security Clearance with appropriate Polygraph Preferred Job Brief: Evaluating security solutions to ensure compliance with requirements for processing classified...Information SystemSeniorImmediate startFlexible hours- ...Help Desk Specialist (Senior) Job ID#: 26-2279 Clearance: N/A Location... ...technical support, systems administration, and end-user... ...accordance with organizational security and operational standards.... ...and Maryland Department of Information Technology (DoIT) security...Information SystemSeniorWork at officeLocal areaRemote work
$157k - $171k
...Senior Cyber Security Engineer Baltimore, Maryland DLH delivers improved health and national... ...through science research and development, systems engineering and integration, and... ...the National Institute on Aging (NIA) Information System Security Office (ISSO) by designing...Information SystemSeniorTemporary workWork at officeFlexible hours- ...Title: SharePoint Developer (Senior) Location: Baltimore,... ..., and the ability to deliver secure, scalable, and user-focused... ...solutions across various internal systems and departmental applications... ...justice or public safety information systems. Knowledge of Remedy...Information SystemSeniorLocal area
- ...Senior Executive Protection Security Specialist Baltimore, Maryland Security Onsite NE4- NE4 Non Exempt Ladder Job Description Preferred Qualifications Advanced degree (e.g. CPA, CFA, MBA) Ability to obtain and maintain a secret or top secret...Senior
- ...Job Summary We are seeking a highly experienced Senior System Security Specialist to lead advanced offensive security assessments, penetration testing engagements, red team operations, and security architecture evaluations. This role will be responsible for identifying...Senior
- ...Senior Systems Security Specialist (Penetration Testing & Offensive Security) Multi-year Contract Onsite/Hybrid - Baltimore, Maryland We are seeking a Senior Systems Security Specialist to lead and execute offensive security initiatives, including advanced...SeniorContract work
- ...place to work. We are looking to hire an Senior Security Risk Analyst immediately in a Hybrid (5... ...across all disciplines of the information security domain that support McCormick’... ...compliance checks, automated vulnerability systems, and other internally or externally reported...Information SystemSeniorPermanent employmentImmediate start
$60 - $65 per hour
...Job Title: Systems Security Specialist (Senior) - Cybersecurity Penetration Tester Job Location: Baltimore, MD (2 days onsite / week) Duration: Long term contract Payrange : $60 - $65/hr Benefits for Eligible Employees - Health Insurance...SeniorLong term contract2 days per week- ...Government Services in Baltimore is seeking a Records Management Specialist III for full-time employment. The role involves providing... ...management experience and familiarity with automated information systems. This position offers a supportive work environment with opportunities...Information SystemSeniorFull time
$77k - $202k
...actionable insights, enabling informed decision-making and driving... ...building data infrastructure and systems to enable efficient data... ...architecture strategies. As a Senior Associate you analyze complex... ...with data governance and data security policies - Collaborating with...Information SystemSeniorFull timeH1b$133.3k - $304.5k
...Services Organization – Other Tax – Senior Technical Product Owner –... ...is healthy, growing, and secure. If you have a passion for rallying... ...needs and pain points to inform product development decisions... ...design direction for large-scale systems Experience in one or more of the...Information SystemSeniorSummer holidayFlexible hours$55 - $60 per hour
...Job Title: UI/UX Developer (Senior) Location: Baltimore, MD Pay: $55/hr-$60/hr Duties: Design... ...college or university with a major in Computer Science, Information Systems, Engineering, Business, or other related scientific or technical...Information SystemSeniorWork experience placement- ...About the job Senior Quality Assurance Consultant Location: Baltimore, MD, USA... ...Developers, User Groups, Business Analysts, System Administrators, SMEs, and other project... ..., application integration, and information system performance, and corresponding documentation...Information SystemSeniorFull timeContract workFor contractors
$60k - $80k
...health, strengthen national security, and make government services... ...driven decisions, modernizing systems or safeguarding critical programs... ...and detail-oriented Senior Medical Coder to support our... ...submitted. Record all process information in system in accordance with...Information SystemSeniorContract workFor contractorsLive inWork at office- ...Qualifications/Education BS degree in Computer Science, Engineering, Physics, Physical Sciences, Information Security, Mathematics, Management Information Systems, or Business. Skills and Abilities Ten (10) years of experience in technical specifications development...Information System
- ...expertise in all facets of Information Operations, making sure our... ...and deployment of information systems crucial to the intelligence... ...that pose a threat to national security, such as drug smuggling,... ...Overseeing the work of Intelligence Specialists – Enlisted Sailors (no...Information SystemPart timeWorldwide
- ...We are seeking an experienced Senior Application Architect to design... ...portfolio of mission-critical systems. This role will be responsible for developing scalable, secure, and high-performing... ...Framework) certification. Certified Information Systems Auditor (CISA) or CITA...Information SystemSenior
- ...installations. Education: BS degree in Computer Science, Engineering, Physics, Physical Sciences, Information Security, Mathematics, Management Information Systems, or Business. Experience: One (1) year of experience in technical specifications development, process...Information System
- ...Senior Business Analyst (Accela) Client is seeking a qualified... ...the Clients Land Management Systems and processes. This requires... ...consolidates, and communicates information from the Subject Matter Experts... .... Maintain the security and confidentiality of any proprietary...Information SystemSeniorWork at officeRemote work
$94.04k - $141.06k
...connect with you via @zebra.com email accounts. Applications are only accepted through our applicant tracking system and only accept personal identifying information through that system. Our Talent Acquisition team will not ask for you to provide personal identifying...Information SystemSeniorPermanent employmentLocal areaRemote work- ...Senior DevOps Engineer Spruce InfoTech is the leading service... ...(6) + years' experience as a systems and or software architect, specifically... ...Degree in Computer Science, Information Systems, Engineering and/or... ...sessions. Prior Social Security Administration (SSA)...Information SystemSenior
- ...regulations; Proficient with Microsoft Office Suite or related software; Knowledge of and experience with varied human resource information systems; and platforms to include Lattice, Docusign, and ADP Workforce Now; Excellent verbal and written communication skills....Information SystemSeniorTemporary workSummer workWork at officeFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Information System Security Specialist. Be the first to apply!
- security coordinator Baltimore, MD
- network security consultant Baltimore, MD
- security specialist Baltimore, MD
- security advisor Baltimore, MD
- security systems specialist Baltimore, MD
- senior information security analyst Baltimore, MD
- security consultant Baltimore, MD
- senior accounts payable Baltimore, MD
- senior brand designer Baltimore, MD
- senior business analyst contract Baltimore, MD


