Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior Information System Security Specialist

TriTech Enterprise Systems

TriTech Enterprise Systems (TriTech) is seeking a 'Senior Information System Security Specialist' to support a Maryland State contract with the Maryland Health Benefit Exchange (MHBE ) . The candidate will perform internal and external penetration testing of networks, web applications, APIs, and cloud environments to identify security vulnerabilities, exploit paths, and perform other related tasks. In addition, this is a hybrid position where the candidate will work two days onsite after training.

The Maryland Health Benefit Exchange (MHBE), an independent unit of state government, provides accessible, affordable health coverage to Marylanders. MHBE administers Maryland Health Connection (MHC), the state’s health insurance marketplace. Through MHC, Maryland residents explore health insurance plans, compare rates, and determine their eligibility for advanced premium tax credits (APTC), cost-sharing reductions (CSR), and public assistance programs such as Medicaid and the Maryland Children’s Health Insurance Program (MCHP).

Duties / Responsibilities :

  • Conduct internal and external penetration testing of networks, web applications, APIs, and cloud environments to identify security vulnerabilities and exploit paths.

  • Perform red team engagements simulating real-world adversary tactics, techniques, and procedures (TTPs) aligned with MITRE ATT&CK.

  • Execute vulnerability assessments and validate remediation efforts through retesting and technical verification.

  • Develop comprehensive penetration testing reports, including executive summaries, risk ratings, proof-of-concept evidence, and actionable remediation guidance.

  • Perform threat modeling and attack surface analysis to identify high-risk exposure areas and privilege escalation pathways.

  • Conduct secure configuration reviews of operating systems, network infrastructure, cloud platforms, and identity systems.

  • Evaluate application security through dynamic and manual testing techniques, including authentication, session management, input validation, and access control testing.

  • Review source code for security weaknesses and secure coding gaps, particularly in C/C++, Python, Java, or similar languages.

  • Develop and maintain custom scripts or tooling to automate testing activities and enhance offensive security capabilities.

  • Support incident response activities by recreating attack chains, validating compromise scenarios, and identifying root causes. Assess Zero Trust implementations, micro-segmentation strategies, and identity-based security controls for effectiveness.

  • Conduct phishing simulations and social engineering exercises to evaluate user awareness and organizational resilience.

  • Provide technical briefings to executive leadership and technical stakeholders regarding risk posture and remediation prioritization. Collaborate with engineering, DevOps, and infrastructure teams to remediate identified vulnerabilities and strengthen security architecture. Contribute to the development of security policies, testing methodologies, and enterprise security standards. Support compliance efforts by mapping testing results to NIST, OWASP, CIS, or other applicable security frameworks.

  • Participate in continuous improvement of penetration testing methodologies, tools, and adversary emulation strategies.

  • Adhere to all security, change control, and MHBE Project Management Office (PMO) policies, processes, and methodologies.

  • Note: The candidate must be flexible to work overtime, on-site/off-site, as needed, including weekends, holidays, and off-hours.

Minimum Qualifications :

  • A minimum of eight (8) years of progressive experience in cybersecurity.

  • A minimum of five (5) years performing penetration testing or red team engagements.

  • A minimum of five (5) years conducting network penetration testing, web application and API testing, internal and external vulnerability assessments and threat modeling and attack path analysis.

  • A minimum of five (5) years developing and delivering formal penetration test reports, including executive summaries and technical remediation guidance.

  • A minimum of five (5) years supporting incident response investigations and validation testing.

  • A minimum of five (5) years with common penetration testing tools (e.g., Metasploit, Burp Suite, Nmap, Wireshark, Nessus, etc.).

  • Strong knowledge of Secure coding practices, Application security testing (SAST/DAST concepts), Network architecture and segmentation and Identity and access management concepts

  • A minimum of five (5) years of demonstrated scripting or development ability in at least one language (e.g., Python, C/C++, PowerShell, Bash).

  • A minimum of five (5) years of working with NIST Cybersecurity Framework, NIST 800-53 or similar federal control frameworks, MITRE ATT&CK and OWASP Top 10 A minimum of five (5) years of experience mapping findings to security control frameworks.

  • At least one recognized offensive security certification (e.g., OSCP, GPEN, GXPN, CEH, or major experience can substitute for certification).

  • Demonstrated ability to communicate technical findings to executive and non-technical audiences, and provide actionable remediation recommendations.

  • Demonstrated experience working in government or highly regulated environments.

Preferred Qualifications :

  • A Minimum ten (10) years of progressive experience in cybersecurity.

  • A minimum of eight (8) years of experience in Advanced Offensive Security:

  • Experience leading red team engagements.

  • Experience performing adversary emulation exercises.

  • Experience conducting phishing and social engineering simulations.

  • Experience performing purple team exercises.

  • A minimum of five (5) years of experience in Zero Trust & Architecture:

  • Experience designing or assessing Zero Trust implementations.

  • Experience evaluating micro-segmentation strategies and identity-centric controls.

  • A minimum of five (5) years of experience in Cloud & Modern Infrastructure:

  • Experience performing security assessments in AWS or Azure environments, Containerized environments (Docker/Kubernetes) and Infrastructure-as-Code deployments.

  • Experience testing CI/CD pipelines.

  • A minimum of ten (10) years of experience in Software Development Depth:

  • Strong low-level development knowledge (kernel, assembly, embedded systems) that supports advanced exploit analysis.

  • Experience reviewing source code in JAVA or other compiled languages for vulnerabilities.

  • A minimum of ten (10) years of experience in Government in the following:

  • Experience supporting federal or state government security programs.

  • Familiarity with FedRAMP, FISMA, or IRS Pub 1075 environments.

TriTech is an equal opportunity employer!

Powered by JazzHR

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Senior Information System Security Specialist in Baltimore, MD vacancy
  •  ...Senior Information System Security Specialist TriTech Enterprise Systems (TriTech) is seeking a Senior Information System Security Specialist to support a Maryland State contract with the Maryland Health Benefit Exchange (MHBE). The candidate will perform internal and... 
    Information System
    Senior
    Contract work
    Flexible hours

    TriTech Enterprise

    Baltimore, MD
    1 day ago
  •  ...Position Title: Systems Security Specialist (Senior) Job ID- RFR#146 Client- State of MD Contract 3+ Start Date: ASAP Work Location...  ...Response and Forensics evaluation using security information and event management (SIEM) tools. Ensure that... 
    Information System
    Senior
    Contract work
    For contractors
    Immediate start
    Remote work
    Flexible hours

    HonorVet Technologies

    Baltimore, MD
    2 days ago
  • $200k - $250k

     ...Senior Information Systems Security Engineer (ISSE) Make an Impact. Secure the Nation's Most Critical Systems. Helm Point Solutions is a woman-owned cybersecurity and physical security firm committed to protecting the infrastructure that underpins national security... 
    Information System
    Senior

    Helm Point Solutions

    Linthicum Heights, MD
    20 hours ago
  • $200k - $250k

     ...Senior Information Systems Security Engineer (ISSE) Linthicum, MD • Government/Military Clearance Required: TS/SCI with Polygraph Full-Time | Fully Funded | $200K - $250K Make an Impact. Secure the Nation's Most Critical Systems. Helm Point... 
    Information System
    Senior
    Full time

    Helm Point Solutions

    Baltimore, MD
    20 hours ago
  • $7.5k

     ...Senior Information Systems Security Officer Location: Central Maryland Security Clearance Required: Security Clearance with appropriate Polygraph Preferred Job Brief: Evaluating security solutions to ensure compliance with requirements for processing classified... 
    Information System
    Senior
    Immediate start
    Flexible hours

    RealmOne

    Baltimore, MD
    4 days ago
  • $131.3k - $237.35k

     ...Description As a Senior Information Security Systems Engineer (ISSE) you will join a small team of security engineers providing Information Assurance (IA) Architecture Analysis and Security Engineering Support for the implementation and fielding of the National Leadership... 
    Information System
    Senior
    Local area
    Immediate start

    Leidos

    Baltimore, MD
    3 days ago
  • $121k - $191k

     ...announce an exciting opportunity for an onsite System/ Network Administrator to join our...  ...and cybersecurity support for Viasat's Information System. In this role, you will get...  ...activities related to possible computer security violations/incidents, respond to queries... 
    Information System
    Senior
    Local area
    Remote work

    ViaSat

    Linthicum Heights, MD
    3 days ago
  •  ...Help Desk Specialist (Senior) Job ID#: 26-2279 Clearance: N/A Location...  ...technical support, systems administration, and end-user...  ...accordance with organizational security and operational standards....  ...and Maryland Department of Information Technology (DoIT) security... 
    Information System
    Senior
    Work at office
    Local area
    Remote work

    Navitas

    Baltimore, MD
    15 hours ago
  • $157k - $171k

     ...Senior Cyber Security Engineer Baltimore, Maryland About Us DLH delivers improved health...  ...through science research and development, systems engineering and integration, and...  ...the National Institute on Aging (NIA) Information System Security Office (ISSO) by designing... 
    Information System
    Senior
    Temporary work
    Work at office
    Flexible hours

    DLH Corporation

    Baltimore, MD
    4 days ago
  •  ...Job Title : Linux Systems Administrator Duration : 12 Months...  ...modify file permissions and security access lists. Test new releases...  .... Adhere to strict Information Systems security guidelines in...  ...3 (Principal) or Level 4 (Senior Principal), depending on the... 
    Information System
    Full time
    Contract work

    Artech

    Linthicum Heights, MD
    2 days ago
  •  ...Senior Data Analyst Location: Baltimore, Maryland Work Style: Hybrid (3 days on...  ...file organization, indexing methods, and security procedures for specific user...  ...university with a major in Computer Science, Information Systems, Engineering, Business, or other related... 
    Information System
    Senior
    Contract work
    Work from home

    Staffing the Universe

    Baltimore, MD
    25 days ago
  •  ...Title: SharePoint Developer (Senior) Location: Baltimore,...  ..., and the ability to deliver secure, scalable, and user-focused...  ...solutions across various internal systems and departmental applications...  ...justice or public safety information systems. Knowledge of Remedy... 
    Information System
    Senior
    Local area

    GlobalPoint

    Baltimore, MD
    4 days ago
  •  ...(From Section 1 Above) Duties / Responsibilities Systems Security Specialist Develop and implement cloud security controls, cloud-based...  ...Incident Response and Forensics evaluation using security information and event management (SIEM) tools. Ensure that the... 
    Information System
    For contractors
    Remote work
    Flexible hours

    HonorVet Technologies

    Baltimore, MD
    4 days ago
  •  ...Senior Systems Security Specialist (Penetration Testing & Offensive Security) Multi-year Contract Onsite/Hybrid - Baltimore, Maryland We are seeking a Senior Systems Security Specialist to lead and execute offensive security initiatives, including advanced... 
    Senior
    Contract work

    ASCENDING LLC

    Baltimore, MD
    20 hours ago
  • $123.4k - $185k

     ...opportunities to work on revolutionary systems that impact people's lives around...  .... In rapidly changing global security environments, Northrop Grumman brings informed insights and secure technological...  ...Solutions team is seeking a Senior Principal Computer Systems Analyst... 
    Information System
    Senior
    Full time
    Remote work
    Relocation
    Flexible hours
    Shift work
    Weekend work

    Northrop Grumman

    Linthicum Heights, MD
    2 days ago
  • $87.91k - $153.87k

     ...Senior Security Risk Analyst (HYBRID) HUNT VALLEY, MD, US, 21031 McCormick employees –...  ...standards across all disciplines of the information security domain that support McCormick'...  ...compliance checks, automated vulnerability systems, and other internally or externally... 
    Information System
    Senior
    Permanent employment
    Immediate start

    McCormick

    Cockeysville, MD
    20 hours ago
  •  ...Senior Executive Protection Security Specialist Preferred Qualifications Advanced degree (e.g. CPA, CFA, MBA) Ability to obtain and maintain a secret or top secret clearance Certifications: Certified Protection Professional (CPP), Physical Security Professional... 
    Senior

    Constellation Energy

    Baltimore, MD
    20 hours ago
  • $77k - $202k

     ...actionable insights, enabling informed decision-making and driving...  ...building data infrastructure and systems to enable efficient data...  ...architecture strategies. As a Senior Associate you analyze complex...  ...with data governance and data security policies - Collaborating with... 
    Information System
    Senior
    Full time
    H1b

    PwC

    Baltimore, MD
    4 days ago
  • $60 - $65 per hour

     ...Job Title: Systems Security Specialist (Senior) - Cybersecurity Penetration Tester Job Location: Baltimore, MD (2 days onsite / week) Duration: Long term contract Payrange : $60 - $65/hr Benefits for Eligible Employees - Health Insurance... 
    Senior
    Long term contract
    2 days per week

    Edify Technologies India Pvt Ltd

    Baltimore, MD
    1 day ago
  • $106.37k - $158.88k

     ...transformation. We are seeking talented Information Technology professionals to join the Waste...  ...clients, servers, network devices, and security devices across the enterprise. Responds...  ...security audit and intrusion detection system logs for system and network anomalies and... 
    Information System
    Senior
    Temporary work
    Work at office
    Local area
    Weekend work
    Afternoon shift

    Waste Management , Inc.

    Elkridge, MD
    1 day ago
  •  ...Job Summary: The Senior Business Analyst will support the Electronic Patient Health Record (EPHR) system and associated medical technology platforms. This role involves...  ...requirements, with a focus on healthcare information systems and compliance. Location:Maryland... 
    Information System
    Senior

    vTech Solution

    Baltimore, MD
    1 day ago
  •  ...About the job Senior Quality Assurance Consultant Location: Baltimore, MD, USA...  ...Developers, User Groups, Business Analysts, System Administrators, SMEs, and other project...  ..., application integration, and information system performance, and corresponding documentation... 
    Information System
    Senior
    Full time
    Contract work
    For contractors

    Quantum Strides LLC

    Baltimore, MD
    20 hours ago
  •  ...*Greetings from My3Tech*** Position: Senior Technical Project Manager Location...  ..., development, implementation, and system maintenance (preferably across multiple...  ...Director of Project Management and the Chief Information Officer d. Manages allocation of... 
    Information System
    Senior
    For contractors

    My3Tech Inc

    Baltimore, MD
    2 days ago
  •  ...expertise in all facets of Information Operations, making sure our...  ...and deployment of information systems crucial to the intelligence...  ...that pose a threat to national security, such as drug smuggling,...  ...Overseeing the work of Intelligence Specialists – Enlisted Sailors (no... 
    Information System
    Part time
    Worldwide

    U.S. Navy

    Towson, MD
    2 days ago
  •  ...iQuasar is seeking to fill the Industrial Security Specialist position for our customer in Hanover,...  ...of the NISP and provide CI information and guidance to internal and external...  ...experience with security-related data systems such as the National Industrial Security... 
    Information System
    Contract work
    Temporary work
    For contractors
    Work at office
    Remote work
    Work from home
    Flexible hours
    1 day per week

    iQuasar

    Baltimore, MD
    4 days ago
  • $123.4k - $185k

     ...opportunities to work on revolutionary systems that impact people's lives around...  .... In rapidly changing global security environments, Northrop Grumman brings informed insights and secure...  ...external customers, vendors, and senior leadership, both verbally and in... 
    Information System
    Senior
    Full time
    Internship
    Remote work
    Worldwide
    Relocation package
    Flexible hours
    Shift work
    Weekend work

    Northrop Grumman

    Baltimore, MD
    2 days ago
  •  ...Role : Fullstack Developer (Senior) Key Details: • Work is onsite; limited...  ...justice and healthcare information systems. The ideal candidate will possess deep...  ...configuration, performance tuning, and security ~ enforcement. ~ Investigate... 
    Information System
    Senior
    Remote work

    GlobalPoint

    Baltimore, MD
    4 days ago
  •  ...Qualifications/Education BS degree in Computer Science, Engineering, Physics, Physical Sciences, Information Security, Mathematics, Management Information Systems, or Business. Skills and Abilities Twenty (20) years of experience in technical specifications development... 
    Information System

    Fullscope

    Linthicum Heights, MD
    3 hours ago
  • $40 - $45 per hour

     ...ensure a successful transition to the new system. Responsibilities: Data...  ...data migration efforts, ensuring accuracy, security, and integrity of financial, billing, and...  ...~ Bachelors degree in Computer Science, Information Systems, Business Administration, or related... 
    Information System
    Senior
    Local area

    Cynet Systems

    Baltimore, MD
    20 hours ago
  • $154.05k - $278.48k

     ...Description As a Senior Information Security Systems Engineer (ISSE) you will join a small team of security engineers providing Information Assurance (IA) Architecture Analysis and Security Engineering Support for the implementation and fielding of the National Leadership... 
    Information System
    Local area
    Immediate start

    Leidos

    Linthicum Heights, MD
    4 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Information System Security Specialist. Be the first to apply!