Cyber Security & Compliance Specialist
Melwood
Cyber Security & Compliance Specialist
Job Category: Support Services Requisition Number: CYBER007344
Posted: April 30, 2026
Full-Time
Melwood-PG Campus Upper Marlboro, MD 20772, USA
Job Details
The Cybersecurity and Compliance Specialist is responsible for protecting Melwood's information systems, data, and technology infrastructure through the ongoing implementation, monitoring, and management of enterprise cybersecurity controls and regulatory compliance programs. This role serves as the organization's primary internal subject matter expert on cybersecurity frameworks applicable to federal contractors and regulated nonprofit environments, working in close coordination with IT leadership and external compliance advisors to build and sustain a compliant, resilient, and continuously improving security posture. The Cybersecurity and Compliance Specialist supports the preparation and maintenance of required compliance documentation, manages the organization's security operations practices, and ensures that Melwood's technology environment meets its obligations to employees, program participants, funders, and government partners. This position requires an individual with both the technical hands-on capability to implement and monitor security controls and the analytical discipline to manage compliance programs, track remediation commitments, and communicate risk clearly and accurately to leadership.
Responsibilities:
- Manage the Cybersecurity Compliance Program: Develop, implement, and maintain the organization's cybersecurity compliance program across all applicable regulatory, contractual, and industry standards frameworks. Current primary obligations include federal contractor cybersecurity requirements, healthcare privacy and security standards, federal grants management requirements, and commercial assurance standards. Maintain required compliance documentation including the System Security Plan (SSP) and Plan of Action and Milestones (POA&M). Track remediation commitments, coordinate with IT staff and technology partners on control implementation, and prepare the organization for third-party assessments and audits across all applicable compliance domains.
- Conduct Security Assessments and Gap Analysis: Perform ongoing assessments of the organization's security posture against all applicable regulatory, contractual, and standards frameworks. Identify control gaps, document findings, assign remediation ownership, and track closure through to completion. Support external assessors, auditors, and certification bodies with documentation, evidence, and technical response regardless of which framework or standard is driving the review
- Manage Vulnerability and Patch Programs: Administer the organization's vulnerability management program including scheduled scanning, findings triage, remediation coordination, and reporting. Work with IT infrastructure and application teams to ensure security patches are applied within required timeframes consistent with applicable framework obligations and organizational risk tolerance. Ensure that exceptions are documented, justified, and approved by appropriate authority
- Support Continuous Security Monitoring and Incident Response: Support continuous security monitoring through the organization's security platforms and endpoint protection tools. Investigate alerts, analyze anomalies, and coordinate incident response activities. Maintain the organizational incident response plan and ensure it reflects current regulatory reporting obligations. Prepare and submit required incident reports in accordance with all applicable federal, state, contractual, and regulatory requirements, which may include healthcare privacy laws, federal contractor obligations, and grants management standards.
- Manage Data Classification and Regulated Data Protection: Support the identification, classification, and protection of all regulated information categories across organizational systems. Current regulated categories include Controlled Unclassified Information, Protected Health Information, and Personally Identifiable Information subject to federal and state privacy requirements. Implement and maintain appropriate data classification controls, access restrictions, and monitoring in coordination with IT and business stakeholders. Monitor applicable state and federal privacy regulations for changes that affect organizational obligations and bring material changes to the attention of IT leadership
- Manage Third-Party and Vendor Risk: Evaluate technology vendors and third-party service providers for cybersecurity compliance and risk posture across all applicable frameworks. Review vendor agreements for appropriate security, data handling, and regulatory flow-down obligations including Business Associate Agreements for vendors handling Protected Health Information. Assess software configurations and embedded technology features for compliance with organizational data classification policies and all applicable regulatory requirements, not limited to federal contractor standards.
- Deliver Security Training and Awareness: Develop and deliver cybersecurity awareness training for all staff covering responsible technology use, data protection obligations across all applicable regulatory categories, threat recognition, and incident reporting procedures. Ensure training content reflects the full scope of the organization's regulatory environment and is accessible to staff across all roles and technical literacy levels. Maintain documented training completion records and coordinate role-specific training for IT staff and employees with access to regulated data.
- Maintain Security Documentation and Reporting: Produce accurate and timely security documentation and reporting for internal leadership and external reviewers across all applicable compliance domains. Documentation may include compliance status reports, risk registers, audit evidence packages, remediation tracking, and regulatory submissions. Communicate security, risk and compliance status clearly and concisely to non-technical audiences including organizational leadership, legal counsel, and program leadership. Ensure that reporting reflects the full scope of the organization's compliance obligations and does not treat any single framework as the exclusive measure of the organization's security posture
Qualifications:
- Bachelors degree in information Technology, Information technology, computer science or a related field is required.
- 5+ years in a cyber security or related position is required
- Certified information systems security professional and 5 years of experience will be considered if the candidate does not have a degree.
- Experience in a federal contracting environment is preferred.
Equal Opportunity Employer This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.
$150k - $175k
...Join WWT today! What will you be doing? World Wide Technology, Inc. (WWT) is seeking a highly driven and experienced Cyber Security Specialist to join our dynamic Security Sales team. In this role, you will collaborate closely with cross-functional teams to develop...SuggestedFull timeRemote workShift work$57.5k - $140k
NASA Federal Credit Union is in search of an experienced Regulatory Compliance Analyst with a track record of maintaining awareness of regulatory requirements, risk management issues and best practices affecting financial institution operations. The Compliance Analyst...SuggestedFull timeTemporary workWork at officeImmediate startRemote workFlexible hours- ...in Upper Marlboro, MD, is looking for a Cybersecurity and Compliance Specialist to protect information systems and manage compliance programs... ...in cybersecurity. Responsibilities include conducting security assessments, managing compliance documentation, and supporting...Suggested
$36 - $50 per hour
...dealership team that values technical expertise, efficiency, and career growth. Responsibilities Inspect automotive vehicles to ensure compliance to emission standards and governmental regulations. Inspects truck accessories, air lines and electric circuits, and reports...Suggested$36 - $50 per hour
...Automotive in Greenbelt, Maryland, is seeking a Licensed State Vehicle Inspector. This position involves inspecting vehicles for safety compliance and reporting repairs. Applicants must have a Maryland Vehicle Inspectors License and a high school diploma. The role offers...SuggestedHourly pay$80k - $120k
SAIC is looking for a Network Engineer to join their team in Upper Marlboro, MD. The individual will handle operations of multi-user computing systems, install and manage software, and monitor network performance. A BS degree and 2 years of experience are required, or 4...$100k - $110k
...Security Engineer Level 2 This position is responsible for design, planning, and implementation of in-house and cloud-based information... ...network attached platforms and applications, ensuring compliance through structured assessments and detailed reporting. Oversees...Temporary workRemote workFlexible hours$110k - $130k
...Job Description Job Description Associate / IT Security Compliance Specialist (0036) OCT Consulting is a management and technology consulting firm that supports Federal Government clients. We provide consulting services in the areas of Data Analytics, Change Management...Temporary work3 days per week$43.68k - $44.72k
...excellent opportunity for a detail-oriented professional with strong analytical skills to join a dynamic team focused on regulatory compliance and data evaluation. Note: This position does not involve IT or programming coding. It entails inputting, organizing, and...Contract workWork at officeImmediate startRemote work$73.45k - $132.78k
...technology and sector expertise to customers in the national security, engineering, and health industries. At Leidos, we deliver innovative... ...a customer-oriented Major Command Coordination Center (MCCC) Cyber Compliance Officer to support the Air Force National Capital Region (...Local areaImmediate start$110k - $125k
...Returning Applicant? Login Now New Job Search Trade Compliance Analyst III Job Code: 2026:0403-021 Location: Greenbelt, MD FT/PT Status: Full Time Business Sector: Logistics Management Job Description Position Purpose...Full timeWork at office$110k - $120k
...Job Description: Position Purpose: Aids the Export Compliance Office for all the import/export and trade compliance matters... ...determine impact to GSFC missions and operation Certificates/Security Clearances/Other Desired Skills and Qualifications: ~ Licensed...Work experience placementWork at office3 days per week- ...Benefits: 401(k) 401(k) matching Company parties Flexible schedule Opportunity for advancement Job Overview The Compliance Officer will be responsible for ensuring that all moving and cleaning operations adhere to federal and state-specific regulations...Full timePart timeFor contractorsLocal areaRemote workLong distanceFlexible hours
$80k - $120k
...administration of onsite multi-user computing systems including user management, audits, patches, upgrades, and backups. Execute system security strategies, policies, and procedures in support of Approval to Operate (ATO) accreditations. Coordinate, schedule and perform...- ...Information Systems Security Officer The ISSO is responsible for the administration and... ...to assigned duties; Maintain compliance for designated HQSF locations throughout... ...DoD and IC guidance; Conduct annual Cyber Assurance self-assessments and program reviews...Temporary workWork at officeLocal areaWorldwide
$77.6k - $176k
...Management ( ITSM ) Project Management Professional ( PMP ) Certification Clearance: Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information ; Secret clearance is required....Full timeContract workPart timeWork at officeLocal areaRemote work$99k - $225k
...Job Number: R0239724 Information System Security Officer The Opportunity: We're looking for an Information System Security Officer... ...for the government that will withstand even the most advanced cyber threats. As an ISSO at Booz Allen, you'll detect, evaluate, and...Full timeContract workPart timeFor subcontractorWork at officeLocal areaRemote work- ...Credentialing Specialists Credentialing Specialists will provide credentialing service... ...; return terminated credentials to the Security Officer for destruction Credentialing... ...online credentialing training and maintain compliance with PIV-II SmartID credential...Temporary workFor contractorsLocal areaShift workNight shiftWeekend work
$105.79k - $141.05k
...our expansive fiber network and connected ecosystem. We enable secure, high‑performance connectivity across cloud, edge, and AI workloads... ...AI‑ready connectivity, join us today. The Role The CMMC Compliance Analyst must have advanced practical experience in managing all...Full timeTemporary workFor contractorsRemote work$135k - $216k
...Collaborate with cybersecurity, network, and system architects to ensure secure, resilient, and scalable solutions. Conduct trade studies,... .... Oversee architecture governance processes, ensuring compliance with FAA standards and technical consistency. Develop and...Contract workShift work- ...design, configure, and maintain Cisco networks while ensuring compliance with DoD standards. Ideal candidates have at least four years... ...team where your contributions are valued as we prioritize national security and mission success. #J-18808-Ljbffr CACI International Inc
$77.6k - $176k
...Job Number: R0239969 Cyber All-Source Analyst The Opportunity: Our clients need... ...cyber and use of cyberspace analysis in compliance with DIA's SOP for cyber FPA, DIA ADO,... ...EUCOM AOR Master's degree CompTIA Security+ Certification Clearance: Applicants...Full timeContract workPart timeWork at officeLocal areaRemote work$135k - $216k
...Requisition ID 2026-165501 Position Category Cyber Security Clearance Top Secret/SCI w/Poly... ...Experience with performing Security Control Assessment in compliance with NIST SP 800- 37, NIST SP 800-53, NIST SP 800-53A, and other...Contract workFor contractorsShift work$86.6k - $181.8k
...Cyber Defense Analyst CACI is seeking a skilled and experienced Cyber Defense Analyst (Level 2) to join our dynamic team to support... ...Network Intrusion Detection/Prevention Systems (NIDPS) and Security Information and Event Management (SIEM) systems to analyze network...Contract workWork experience placement- ...Cyber Defense Analyst Washington, DC, USA Full Time Full Benefit Package CYBER DEFENSE ANALYST Our clientis... ...mid-level Cyber Defense Analyst to support a full range of cyber security services on a contract in Washington DC. The position is full-...Permanent employmentFull timeContract workImmediate start
$112k - $179k
...Information Systems Security Officer (Technical ISSO / RMF Assessor) Job Locations US-VA-Herndon | US-DC-Washington | US-... ...Requisition ID 2026-164206 Position Category Cyber Security Clearance Top Secret/SCI w/Poly Responsibilities...Contract workShift work- ...We are looking to hire a Mid-Level Cyber Defense Analyst to support a full range of cyber security services on a long-term contract in Washington DC. The position is full time/permanent and will support a US Government civilian agency. The position is available immediately...Long term contractPermanent employmentFull timeImmediate startShift work
- ...and discipline to learn new platforms, enterprise tools, and security technologies over time. This position will support a Network... ...determining how to control a device’s access or position based on compliance. We are not looking only for someone who already knows one...Temporary work
- ...strategic business goals of our clients. Position Title: AWS Security Engineer Location: University of Maryland Global... ...standards. Lead AWS-focused security roadmap projects and ensure compliance with frameworks (e.g., NIST, ISO 27001, ITIL, COBIT)....For contractorsLocal area
- ...Senior Microsoft Security Engineer The Senior Microsoft Security Engineer will be responsible for identifying potential threats to... ...followed. Performs Security Risk Assessments (SRAs) and performs compliance reviews to ensure applications and servers are operating in...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Security & Compliance Specialist. Be the first to apply!
- cyber Upper Marlboro, MD
- cybersecurity software engineer Upper Marlboro, MD
- cyber security Upper Marlboro, MD
- customs compliance Upper Marlboro, MD
- regulatory affairs Upper Marlboro, MD
- compliance lead Upper Marlboro, MD
- regulatory compliance Upper Marlboro, MD
- compliance technician Upper Marlboro, MD
- regulatory affairs assistant Upper Marlboro, MD
- compliance team leader Upper Marlboro, MD



