Senior Information System Security Specialist
TriTech Enterprise Systems
TriTech Enterprise Systems (TriTech) is seeking a 'Senior Information System Security Specialist' to support a Maryland State contract with the Maryland Health Benefit Exchange (MHBE ) . The candidate will perform internal and external penetration testing of networks, web applications, APIs, and cloud environments to identify security vulnerabilities, exploit paths, and perform other related tasks. In addition, this is a hybrid position where the candidate will work two days onsite after training.
The Maryland Health Benefit Exchange (MHBE), an independent unit of state government, provides accessible, affordable health coverage to Marylanders. MHBE administers Maryland Health Connection (MHC), the state’s health insurance marketplace. Through MHC, Maryland residents explore health insurance plans, compare rates, and determine their eligibility for advanced premium tax credits (APTC), cost-sharing reductions (CSR), and public assistance programs such as Medicaid and the Maryland Children’s Health Insurance Program (MCHP).
Duties / Responsibilities :
Conduct internal and external penetration testing of networks, web applications, APIs, and cloud environments to identify security vulnerabilities and exploit paths.
Perform red team engagements simulating real-world adversary tactics, techniques, and procedures (TTPs) aligned with MITRE ATT&CK.
Execute vulnerability assessments and validate remediation efforts through retesting and technical verification.
Develop comprehensive penetration testing reports, including executive summaries, risk ratings, proof-of-concept evidence, and actionable remediation guidance.
Perform threat modeling and attack surface analysis to identify high-risk exposure areas and privilege escalation pathways.
Conduct secure configuration reviews of operating systems, network infrastructure, cloud platforms, and identity systems.
Evaluate application security through dynamic and manual testing techniques, including authentication, session management, input validation, and access control testing.
Review source code for security weaknesses and secure coding gaps, particularly in C/C++, Python, Java, or similar languages.
Develop and maintain custom scripts or tooling to automate testing activities and enhance offensive security capabilities.
Support incident response activities by recreating attack chains, validating compromise scenarios, and identifying root causes. Assess Zero Trust implementations, micro-segmentation strategies, and identity-based security controls for effectiveness.
Conduct phishing simulations and social engineering exercises to evaluate user awareness and organizational resilience.
Provide technical briefings to executive leadership and technical stakeholders regarding risk posture and remediation prioritization. Collaborate with engineering, DevOps, and infrastructure teams to remediate identified vulnerabilities and strengthen security architecture. Contribute to the development of security policies, testing methodologies, and enterprise security standards. Support compliance efforts by mapping testing results to NIST, OWASP, CIS, or other applicable security frameworks.
Participate in continuous improvement of penetration testing methodologies, tools, and adversary emulation strategies.
Adhere to all security, change control, and MHBE Project Management Office (PMO) policies, processes, and methodologies.
Note: The candidate must be flexible to work overtime, on-site/off-site, as needed, including weekends, holidays, and off-hours.
Minimum Qualifications :
A minimum of eight (8) years of progressive experience in cybersecurity.
A minimum of five (5) years performing penetration testing or red team engagements.
A minimum of five (5) years conducting network penetration testing, web application and API testing, internal and external vulnerability assessments and threat modeling and attack path analysis.
A minimum of five (5) years developing and delivering formal penetration test reports, including executive summaries and technical remediation guidance.
A minimum of five (5) years supporting incident response investigations and validation testing.
A minimum of five (5) years with common penetration testing tools (e.g., Metasploit, Burp Suite, Nmap, Wireshark, Nessus, etc.).
Strong knowledge of Secure coding practices, Application security testing (SAST/DAST concepts), Network architecture and segmentation and Identity and access management concepts
A minimum of five (5) years of demonstrated scripting or development ability in at least one language (e.g., Python, C/C++, PowerShell, Bash).
A minimum of five (5) years of working with NIST Cybersecurity Framework, NIST 800-53 or similar federal control frameworks, MITRE ATT&CK and OWASP Top 10 A minimum of five (5) years of experience mapping findings to security control frameworks.
At least one recognized offensive security certification (e.g., OSCP, GPEN, GXPN, CEH, or major experience can substitute for certification).
Demonstrated ability to communicate technical findings to executive and non-technical audiences, and provide actionable remediation recommendations.
Demonstrated experience working in government or highly regulated environments.
Preferred Qualifications :
A Minimum ten (10) years of progressive experience in cybersecurity.
A minimum of eight (8) years of experience in Advanced Offensive Security:
Experience leading red team engagements.
Experience performing adversary emulation exercises.
Experience conducting phishing and social engineering simulations.
Experience performing purple team exercises.
A minimum of five (5) years of experience in Zero Trust & Architecture:
Experience designing or assessing Zero Trust implementations.
Experience evaluating micro-segmentation strategies and identity-centric controls.
A minimum of five (5) years of experience in Cloud & Modern Infrastructure:
Experience performing security assessments in AWS or Azure environments, Containerized environments (Docker/Kubernetes) and Infrastructure-as-Code deployments.
Experience testing CI/CD pipelines.
A minimum of ten (10) years of experience in Software Development Depth:
Strong low-level development knowledge (kernel, assembly, embedded systems) that supports advanced exploit analysis.
Experience reviewing source code in JAVA or other compiled languages for vulnerabilities.
A minimum of ten (10) years of experience in Government in the following:
Experience supporting federal or state government security programs.
Familiarity with FedRAMP, FISMA, or IRS Pub 1075 environments.
TriTech is an equal opportunity employer!
Powered by JazzHR
- ...Senior Information System Security Specialist TriTech Enterprise Systems (TriTech) is seeking a Senior Information System Security Specialist to support a Maryland State contract with the Maryland Health Benefit Exchange (MHBE). The candidate will perform internal and...Information SystemSeniorContract workFlexible hours
- ...Position Title: Systems Security Specialist (Senior) Job ID- RFR#146 Client- State of MD Contract 3+ Start Date: ASAP Work Location... ...Response and Forensics evaluation using security information and event management (SIEM) tools. Ensure that...Information SystemSeniorContract workFor contractorsImmediate startRemote workFlexible hours
$200k - $250k
...Senior Information Systems Security Engineer (ISSE) Make an Impact. Secure the Nation's Most Critical Systems. Helm Point Solutions is a woman-owned cybersecurity and physical security firm committed to protecting the infrastructure that underpins national security...Information SystemSenior$200k - $250k
...Senior Information Systems Security Engineer (ISSE) Linthicum, MD • Government/Military Clearance Required: TS/SCI with Polygraph Full-Time | Fully Funded | $200K - $250K Make an Impact. Secure the Nation's Most Critical Systems. Helm Point...Information SystemSeniorFull time$7.5k
...Senior Information Systems Security Officer Location: Central Maryland Security Clearance Required: Security Clearance with appropriate Polygraph Preferred Job Brief: Evaluating security solutions to ensure compliance with requirements for processing classified...Information SystemSeniorImmediate startFlexible hours$131.3k - $237.35k
...Description As a Senior Information Security Systems Engineer (ISSE) you will join a small team of security engineers providing Information Assurance (IA) Architecture Analysis and Security Engineering Support for the implementation and fielding of the National Leadership...Information SystemSeniorLocal areaImmediate start$121k - $191k
...announce an exciting opportunity for an onsite System/ Network Administrator to join our... ...and cybersecurity support for Viasat's Information System. In this role, you will get... ...activities related to possible computer security violations/incidents, respond to queries...Information SystemSeniorLocal areaRemote work- ...Help Desk Specialist (Senior) Job ID#: 26-2279 Clearance: N/A Location... ...technical support, systems administration, and end-user... ...accordance with organizational security and operational standards.... ...and Maryland Department of Information Technology (DoIT) security...Information SystemSeniorWork at officeLocal areaRemote work
$157k - $171k
...Senior Cyber Security Engineer Baltimore, Maryland About Us DLH delivers improved health... ...through science research and development, systems engineering and integration, and... ...the National Institute on Aging (NIA) Information System Security Office (ISSO) by designing...Information SystemSeniorTemporary workWork at officeFlexible hours- ...Job Title : Linux Systems Administrator Duration : 12 Months... ...modify file permissions and security access lists. Test new releases... .... Adhere to strict Information Systems security guidelines in... ...3 (Principal) or Level 4 (Senior Principal), depending on the...Information SystemFull timeContract work
- ...Senior Data Analyst Location: Baltimore, Maryland Work Style: Hybrid (3 days on... ...file organization, indexing methods, and security procedures for specific user... ...university with a major in Computer Science, Information Systems, Engineering, Business, or other related...Information SystemSeniorContract workWork from home
- ...Title: SharePoint Developer (Senior) Location: Baltimore,... ..., and the ability to deliver secure, scalable, and user-focused... ...solutions across various internal systems and departmental applications... ...justice or public safety information systems. Knowledge of Remedy...Information SystemSeniorLocal area
- ...(From Section 1 Above) Duties / Responsibilities Systems Security Specialist Develop and implement cloud security controls, cloud-based... ...Incident Response and Forensics evaluation using security information and event management (SIEM) tools. Ensure that the...Information SystemFor contractorsRemote workFlexible hours
- ...Senior Systems Security Specialist (Penetration Testing & Offensive Security) Multi-year Contract Onsite/Hybrid - Baltimore, Maryland We are seeking a Senior Systems Security Specialist to lead and execute offensive security initiatives, including advanced...SeniorContract work
$123.4k - $185k
...opportunities to work on revolutionary systems that impact people's lives around... .... In rapidly changing global security environments, Northrop Grumman brings informed insights and secure technological... ...Solutions team is seeking a Senior Principal Computer Systems Analyst...Information SystemSeniorFull timeRemote workRelocationFlexible hoursShift workWeekend work$87.91k - $153.87k
...Senior Security Risk Analyst (HYBRID) HUNT VALLEY, MD, US, 21031 McCormick employees –... ...standards across all disciplines of the information security domain that support McCormick'... ...compliance checks, automated vulnerability systems, and other internally or externally...Information SystemSeniorPermanent employmentImmediate start- ...Senior Executive Protection Security Specialist Preferred Qualifications Advanced degree (e.g. CPA, CFA, MBA) Ability to obtain and maintain a secret or top secret clearance Certifications: Certified Protection Professional (CPP), Physical Security Professional...Senior
$77k - $202k
...actionable insights, enabling informed decision-making and driving... ...building data infrastructure and systems to enable efficient data... ...architecture strategies. As a Senior Associate you analyze complex... ...with data governance and data security policies - Collaborating with...Information SystemSeniorFull timeH1b$60 - $65 per hour
...Job Title: Systems Security Specialist (Senior) - Cybersecurity Penetration Tester Job Location: Baltimore, MD (2 days onsite / week) Duration: Long term contract Payrange : $60 - $65/hr Benefits for Eligible Employees - Health Insurance...SeniorLong term contract2 days per week$106.37k - $158.88k
...transformation. We are seeking talented Information Technology professionals to join the Waste... ...clients, servers, network devices, and security devices across the enterprise. Responds... ...security audit and intrusion detection system logs for system and network anomalies and...Information SystemSeniorTemporary workWork at officeLocal areaWeekend workAfternoon shift- ...Job Summary: The Senior Business Analyst will support the Electronic Patient Health Record (EPHR) system and associated medical technology platforms. This role involves... ...requirements, with a focus on healthcare information systems and compliance. Location:Maryland...Information SystemSenior
- ...About the job Senior Quality Assurance Consultant Location: Baltimore, MD, USA... ...Developers, User Groups, Business Analysts, System Administrators, SMEs, and other project... ..., application integration, and information system performance, and corresponding documentation...Information SystemSeniorFull timeContract workFor contractors
- ...*Greetings from My3Tech*** Position: Senior Technical Project Manager Location... ..., development, implementation, and system maintenance (preferably across multiple... ...Director of Project Management and the Chief Information Officer d. Manages allocation of...Information SystemSeniorFor contractors
- ...expertise in all facets of Information Operations, making sure our... ...and deployment of information systems crucial to the intelligence... ...that pose a threat to national security, such as drug smuggling,... ...Overseeing the work of Intelligence Specialists – Enlisted Sailors (no...Information SystemPart timeWorldwide
- ...iQuasar is seeking to fill the Industrial Security Specialist position for our customer in Hanover,... ...of the NISP and provide CI information and guidance to internal and external... ...experience with security-related data systems such as the National Industrial Security...Information SystemContract workTemporary workFor contractorsWork at officeRemote workWork from homeFlexible hours1 day per week
$123.4k - $185k
...opportunities to work on revolutionary systems that impact people's lives around... .... In rapidly changing global security environments, Northrop Grumman brings informed insights and secure... ...external customers, vendors, and senior leadership, both verbally and in...Information SystemSeniorFull timeInternshipRemote workWorldwideRelocation packageFlexible hoursShift workWeekend work- ...Role : Fullstack Developer (Senior) Key Details: • Work is onsite; limited... ...justice and healthcare information systems. The ideal candidate will possess deep... ...configuration, performance tuning, and security ~ enforcement. ~ Investigate...Information SystemSeniorRemote work
- ...Qualifications/Education BS degree in Computer Science, Engineering, Physics, Physical Sciences, Information Security, Mathematics, Management Information Systems, or Business. Skills and Abilities Twenty (20) years of experience in technical specifications development...Information System
$40 - $45 per hour
...ensure a successful transition to the new system. Responsibilities: Data... ...data migration efforts, ensuring accuracy, security, and integrity of financial, billing, and... ...~ Bachelors degree in Computer Science, Information Systems, Business Administration, or related...Information SystemSeniorLocal area$154.05k - $278.48k
...Description As a Senior Information Security Systems Engineer (ISSE) you will join a small team of security engineers providing Information Assurance (IA) Architecture Analysis and Security Engineering Support for the implementation and fielding of the National Leadership...Information SystemLocal areaImmediate start
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Information System Security Specialist. Be the first to apply!
- network security consultant Baltimore, MD
- security specialist Baltimore, MD
- security systems specialist Baltimore, MD
- security coordinator Baltimore, MD
- security consultant Baltimore, MD
- physical security specialist Baltimore, MD
- security advisor Baltimore, MD
- entry level information security analyst Baltimore, MD
- security analyst remote Baltimore, MD
- senior information security analyst Baltimore, MD


