Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Automation Process Engineering- Remote

Zermount, Inc.

ZERO TRUST (ZT) PROCESS RE-ENGINEERING SME

POSITION OVERVIEW

The Zero Trust Process Re-Engineering SME exists to provide senior-level advisory expertise in assessing, analyzing, and re-engineering the agency's enterprise IT and cybersecurity processes to advance its Zero Trust implementation. This role directly supports TSA's compliance with EO 14028, OMB M-22-09, and related federal mandates by translating policy requirements into actionable process change advisory that spans all five CISA ZTMM v2.0 pillars. The expected outcome is a continuously maturing ZT process posture - with advisory findings, roadmap inputs, and common control catalog contributions that drive measurable ZTMM maturity advancement and defensible IG FISMA compliance performance. This is a senior advisory role, not an execution or documentation support position.

DUTIES & RESPONSIBILITIES

General Duties

Provide senior advisory guidance on the re‑engineering of the agency's enterprise IT and cybersecurity processes to align with Zero Trust principles across all five CISA ZTMM v2.0 pillars: Identity, Devices, Networks, Applications & Workloads, and Data.

Continuously monitor the federal ZT policy and regulatory landscape, including EOs, OMB memoranda, NIST publications, and DHS/CISA directives, and deliver real‑time risk identification and actionable advisory recommendations before compliance deadlines arise.

Conduct comprehensive gap analyses of existing agency policy documentation against ZT mandates; develop remediation roadmaps and present recommended courses of action for agency concurrence.

Provide advisory support for the development and continuous maturation of the agency's ZT Common Control Catalog (CCC), ensuring recommended approaches align with RMF phases and ZT implementation lifecycle milestones.

Develop recommended updates to the ZT Roadmap and Implementation Plan, incorporating process re‑engineering findings and stakeholder input for agency review and approval.

Apply real‑time analysis of process performance data and ZT maturity indicators to proactively surface emerging risk areas and deliver timely recommendations, moving beyond periodic reporting to support continuous risk mitigation.

Collaborate with cross‑functional stakeholders to validate process outcomes and provide recommended courses of action for continuous improvement.

Support all internal and external ZT data calls, requests, audits, and compliance updates; ensure recommended responses are developed and provided for agency review.

Develop recommended new and revised cybersecurity policy documents and SOPs; all final documentation is subject to agency review and approval.

Provide senior advisory support to ZT leadership on planning, scheduling, solution development, reporting, performance metrics, and program governance.

Leverage AI‑assisted analysis tools, automation platforms, and prompt engineering techniques to enhance advisory productivity, accelerate gap analysis and documentation tasks, and enable focus on higher‑value technical advisory work; apply all AI capabilities in accordance with agency acceptable use policies and Zermount's ethical AI use guidelines.

SUBJECT MATTER EXPERTISE

SME Area #1 - Zero Trust Policy, Process Re‑Engineering & Federal Compliance Advisory

Expert‑level mastery of CISA ZTMM v2.0 across all five pillars including demonstrated ability to conduct gap assessments, produce maturity findings, and translate ZTMM criteria into agency‑level process change recommendations.

Authoritative knowledge of federal ZT mandates including EO 14028, OMB M-22-09, OMB M-21-31, NIST SP 800‑207, NIST SP 800‑53 Rev. 5, FISMA, and IG FISMA metrics criteria; ability to independently interpret and apply new guidance as it is released.

Demonstrated capability to lead enterprise‑scale process re‑engineering efforts in a federal environment - producing advisory artifacts such as gap analyses, process inventories, opportunity registers, change impact analyses, and CISO‑ready briefings.

Expert‑level proficiency in ZT Common Control Catalog development, including control mapping to NIST SP 800‑53 control families across all five ZTMM pillars.

Independent decision‑making authority on process re‑engineering advisory scope, methodology selection, and recommended approach.

Problem‑solving at the intersection of policy compliance and operational process design. Able to diagnose root causes of ZT maturity gaps, prioritize remediation advisory, and sequence recommendations across competing program constraints.

SME Area #2 - Enterprise IT Architecture & Technical Domain Fluency

Foundational working knowledge of enterprise IT systems architecture, including cloud platforms (Azure, AWS, or GCP), network environments, database systems, and systems administration - sufficient to assess ZT process impacts across technical domains and engage credibly with technical stakeholders and pillar SMEs.

Familiarity with enterprise IT service management frameworks (e.g., ITIL) and their intersection with cybersecurity process design and ZT implementation planning.

Understanding of hybrid cloud and on‑premises infrastructure models as they relate to ZT policy applicability and process re‑engineering scope.

Supports primary ZT policy advisory function by enabling cross‑domain process assessment that spans Identity, Devices, Networks, Applications, and Data, avoiding siloed policy analysis that ignores technical implementation realities.

Interacts directly with pillar SMEs (Identity, Network, Devices, Data, Apps & Workloads) to validate process re‑engineering recommendations against technical feasibility and implementation constraints.

QUALIFICATIONS

Minimum Requirements

A minimum of 10 years as a Policy Analyst, Process Re‑Engineer, or Senior Policy Writer for an enterprise IT or cybersecurity program with demonstrated Zero Trust scope.

Expert knowledge of NIST SP 800‑207, NIST SP 800‑53 Rev. 5, FISMA, and federal ZT mandates including EO 14028, OMB M-22-09, and OMB M-21-31.

Demonstrated ability to lead process re‑engineering efforts directly supporting ZT implementation.

Experience developing or maturing enterprise ZT artifacts including Common Control Catalogs, ZT roadmaps, and implementation plans.

Demonstrated operational experience developing and implementing Zero Trust solutions in a federal agency or large enterprise environment.

Proven experience translating ZT mandates into actionable agency‑level policy frameworks, process change initiatives, and implementation roadmaps.

Experience supporting or leading ZT‑related IG FISMA metrics reporting or FISMA ZT compliance submissions.

Superb written and oral communication skills; demonstrated ability to navigate highly political client environments with professionalism and tact.

Demonstrated familiarity with AI‑assisted analysis tools or prompt engineering; ability to apply AI capabilities ethically to accelerate advisory work.

Preferred Qualifications

Five years of IT cybersecurity experience, including direct support to the U.S. Government. This experience can be concurrent with the minimum 10 years of Policy Analyst, Process Re‑Engineer, or Senior Policy Writer experience.

Prior direct involvement in a federal ZT pilot program or enterprise ZT deployment in a planning, advisory, or execution leadership capacity.

Experience developing or significantly maturing a ZT Common Control Catalog aligned to NIST SP 800‑53 and CISA ZTMM v2.0.

Familiarity with SAFe for Government (SGP) or equivalent agile delivery methodology in a federal program environment.

Experience with IG FISMA audit preparation and response in the context of federal ZT or FISMA compliance programs.

Competencies

Technical: CISA ZTMM v2.0 (all five pillars), NIST SP 800‑207, NIST SP 800‑53 Rev. 5, RMF, FISMA, IG FISMA metrics, EO 14028, OMB M-22-09, Common Control Catalog development, enterprise process re‑engineering methodology, AI‑assisted analysis.

Leadership: Senior advisory engagement with CISO‑level and senior federal leadership; ability to bring forward recommended solutions for concurrence rather than soliciting open‑ended direction; cross‑pillar SME coordination; program governance support.

Behavioral: Proactive risk identification and real‑time advisory posture; political acumen in complex federal client environments; high attention to detail in policy analysis and artifact production; continuous learning orientation toward evolving federal ZT guidance.

Education & Certifications

Minimum of a Bachelor of Science (or higher) in Information Technology, Computer Science, Cybersecurity, or a related field.

Required: Certified Information Security Manager (CISM) or Certified Information Systems Security Professional (CISSP), or Certified Authorization Professional (CAP / CGRC), or equivalent certification.

Strongly preferred: Certified Chief Information Security Officer (CCISO), Project Management Professional (PMP), or Six Sigma Green Belt.

Clearance level

Active Secret clearance is required.

WORK LOCATION

Hybrid - Primarily Remote. Occasional onsite work required at the client location in Springfield, VA and Zermount HQ in Arlington, VA.

HOURS OF OPERATION

Business Hours: 8:00 AM EST - 4:30 PM EST.

Core Hours: 9:00 AM EST - 3:00 PM EST.

REPORTING STRUCTURE

Reports To: ZT SME Team Lead

Direct Reports: None.

#J-18808-Ljbffr Zermount, Inc.

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Automation Process Engineering- Remote in Arlington, VA vacancy
  • Zermount, Inc. is seeking a Zero Trust (ZT) Process Re-Engineering SME in Arlington, VA to provide senior-level advisory expertise for IT and cybersecurity processes. The role focuses on compliance with federal mandates and requires at least 10 years of relevant experience... 
    Suggested
    Remote work

    Zermount, Inc.

    Arlington, VA
    3 days ago
  •  ...Overview Zero Trust Engineer (Senior) – Falls Church, Virginia • Full-time IMPORTANT NOTICE: This...  ...knowledge of Zero Trust principles, DoD ZT Reference Architecture, IAM/PAM, network...  ...candidates throughout the award process. Work Requirements U.S. Citizen required... 
    Suggested
    Full time
    Contract work
    Work at office
    Remote work

    ZTI Solutions LLC

    Falls Church, VA
    5 days ago
  • GovCIO in Alexandria, Virginia is seeking a highly experienced SME Systems Engineer to support critical Identity, Credential, and Access...  ...will have a strong background in federated identity concepts, Zero Trust principles, and hold DoD certifications. A hybrid work schedule... 
    Suggested

    GovCIO

    Alexandria, VA
    1 day ago
  • $128.89k - $184.12k

     ...Zero Trust Compliance Officer (Engineer Info Assurance 4) Location: Fairfax, VA, Virginia, United States Requisition Number: 27378 Required Travel: 0...  ...reasonable accommodation for any part of the employment process, please send an e-mail to ****@*****.*** and... 
    Suggested
    Full time
    Contract work
    Work at office
    Local area

    Huntington Ingalls Industries

    Fairfax, VA
    4 days ago
  •  ...ACO Advanced Resilience is seeking experienced Zero Trust Engineer candidates to provide on-site support to the Advanced Resilience portfolio in the area of next-generation classified network development for enterprise-scale computing and operational functions. Successful... 
    Suggested

    Chugachmiut

    Arlington, VA
    5 days ago
  •  ...Zero Trust Engineer ACO Advanced Resilience is seeking an experienced Zero Trust Engineer to provide on-site support to the Advanced Resilience portfolio in the area of next-generation classified network development for enterprise-scale computing and operational functions... 

    Koitecc Solutions

    Arlington, VA
    5 days ago
  •  ...A cybersecurity firm in Virginia is seeking a Senior Cybersecurity Engineer II to design secure integration patterns for zero trust frameworks. The ideal candidate will have extensive experience with AWS cloud environments, strong application security expertise, and an... 

    Kaizen Lab Inc.

    Falls Church, VA
    16 hours ago
  • $120k - $160k

     ...Saic is looking for a Senior Cybersecurity Engineer to support our US Navy customer in implementing cybersecurity measures including C2C, PKI, and Zero Trust architecture. This hybrid/remote role in Washington, D.C. requires local presence. Candidates must have a Bachelor... 
    Local area
    Remote work

    SAIC

    Washington DC
    1 day ago
  • $107.9k - $195.05k

     ...better-informed decisions using trusted data at scale. Leidos Digital...  ...Senior Cybersecurity Engineer to support the delivery, enhancement...  ...system development lifecycle processes. Collaborate with system...  ...inspections. Support implementation of Zero Trust architecture principles... 

    Fairygodboss

    Alexandria, VA
    4 days ago
  • Overview ACO Advanced Resilience is seeking experienced Zero Trust Engineer candidates to provide on-site support to the Advanced Resilience portfolio in the area of next-generation classified network development for enterprise‑scale computing and operational functions.... 

    Koitecc Solutions

    Arlington, VA
    4 days ago
  • A cybersecurity solutions provider is seeking a Senior Zero Trust Engineer in Falls Church, Virginia. This full-time role involves designing and implementing Zero Trust architectures and leading major security projects. Applicants should have over 10 years of experience... 
    Full time

    ZTI Solutions LLC

    Falls Church, VA
    1 day ago
  • LaunchCode is seeking an ICAM Engineer to support enterprise identity and access management initiatives within a large-scale cybersecurity...  .... This hybrid role focuses on enhancing identity security and zero-trust architectures. Applicants must have at least 3 years of... 

    LaunchCode

    Washington DC
    2 days ago
  •  ...NewGen Technologies is seeking a skilled Cybersecurity Engineer to support a pending government opportunity. The ideal candidate will...  ...experience in cybersecurity engineering, including knowledge of Zero Trust Architecture and various security certifications. The position... 

    NewGen Technologies (Maryland)

    Washington DC
    4 days ago
  • $86.9k - $198k

    Booz Allen Hamilton is seeking a Zero Trust Sales Engineer to engage with program managers and DoD clients in Washington, DC. This role requires extensive experience in sales engineering and knowledge of Zero Trust solutions. Responsibilities include shaping acquisition... 

    Booz Allen Hamilton

    Washington DC
    4 days ago
  • RedMatter Solutions LLC is seeking an Entra ID Engineer to support the design, implementation, and maintenance of identity solutions...  ...for 3 days a week, ensuring collaboration with cybersecurity teams on Zero Trust initiatives. #J-18808-Ljbffr RedMatter Solutions LLC
    3 days per week

    RedMatter Solutions LLC

    Washington DC
    2 days ago
  • $86.9k - $198k

    Job Number: R0237648 Zero Trust Sales Engineer The Opportunity Serve as a key lead engaging with program managers, senior leaders, the acquisition community, and DoD clients to shape acquisition opportunities for Zero Trust work across the DoD community. Identify mission... 
    Full time
    Part time
    Work at office
    Local area

    Booz Allen Hamilton

    Washington DC
    4 days ago
  •  ...(PD) SECURITY & COMPLIANCE ENGINEERING (SCE) POSITION OVERVIEW Zermount...  ...misconfigurations, weak trust boundaries, and gaps across...  ...SUBJECT MATTER EXPERTISE (SME) SME Area #1 – Primary...  ...9 FIPS 199/200 TIC 3.0 and Zero Trust principles (CISA ZT MM, NIST 800-207, etc.) Ability... 
    Remote work

    Zermount, Inc.

    Arlington, VA
    5 days ago
  • $86.8k - $198k

    A leading consulting firm is seeking a Ping Identity Engineer to shape the future of Identity and Access Management (IAM) and Zero Trust. In this role, you will analyze identity lifecycles, design and support IAM solutions, and ensure compliance with security protocols.... 
    Remote job

    Booz Allen Hamilton

    Arlington, VA
    1 day ago
  •  ...Innovations Group (CIG) is seeking a Mid Zero Trust Engineer to support federal agency clients in...  ...mandates (EO 14028, OMB M-22-09, CISA ZT Maturity Model) into actionable implementation...  ...certifications Familiarity with RMF processes: NIST SP 800-37, SSP authoring, ATO... 
    Remote work
    Work from home
    Flexible hours

    CELESTIAL INNOVATIONS GROUP LLC

    Washington DC
    28 days ago
  • Zermount, Inc. is looking for a System Compliance Engineer in Arlington, VA. This remote role involves ensuring federal information systems meet cybersecurity standards by performing technical validations and risk assessments. Candidates should have 5+ years of experience... 
    Remote job

    Zermount, Inc.

    Arlington, VA
    1 day ago
  • $86.9k - $198k

     ...Phase2 Technology is seeking a Sales Zone Sales Engineer in Washington, D.C. This role involves bridging technology with business needs...  ...should have over 5 years in technical sales, experience with zero trust solutions, and must hold a Secret clearance. Competitive... 

    Phase2 Technology

    Washington DC
    16 hours ago
  •  ...faster, better‑informed decisions using trusted data at scale. Leidos Digital...  ...Modernization sector is seeking an experienced SME Cloud Operations Engineer to support the delivery, enhancement,...  ...with NIST SP 800-53, RMF, STIGs, and Zero Trust architecture principles. Lead... 

    Via Logic LLC

    Alexandria, VA
    4 days ago
  •  ...Technologist SME CyKor is a fast-growing Technology Solutions Provider to both federal...  ...(C5I / CYKOR environments) Engineering design and advisory Field execution and...  ...auto-enrollment, secure onboarding) and Zero Trust Architecture (ZTA) Experience working... 
    For contractors

    CyKor

    Washington DC
    17 hours ago
  •  ...subsidiary of VTG, is seeking a Systems Engineer/Developer (SME) with deep expertise across...  ...(e.g., logging, metrics, tracing) Zero Trust and modern security architectures...  ...BigQuery) Strong background in ITIL processes and agile methodologies Certifications... 

    VTG

    Falls Church, VA
    5 days ago
  • $135k - $172k

     ...GovCIO is currently hiring a highly experienced SME Systems Engineer to support critical Identity, Credential, and Access Management (ICAM...  ...user provisioning frameworks. Design and deploy strict Zero Trust identity principles across all primary network hubs to eliminate... 
    Currently hiring

    Govcio LLC

    Alexandria, VA
    1 day ago
  • ERT, Inc. is looking for an experienced Trusted Internet Connections (TIC) System Engineer to design and maintain secure network infrastructures in Arlington, Virginia. The ideal candidate must have at least 5 years of experience with F5 load balancing solutions, expertise... 

    ERT, Inc.

    Arlington, VA
    4 days ago
  •  ...Cybersecurity Operations Technical Lead (SOC Engineer/SME) Position Title: Cybersecurity Operations...  ...including Tenable SC operations, zero-day vulnerability tracking, and remediation...  ...NIST SP 800‑61, CISA guidance, and Zero Trust principles. Experience developing cybersecurity... 
    Local area
    Remote work

    cFocus Software Incorporated

    Washington DC
    4 days ago
  • $120k - $150k

     ...land, vertical development, and product development. The Senior Process Engineer is Tract’s subject-matter expert for process safety and...  ...and Persuasion: Able to hold the line on safety while building trust; influence design and operational decisions without compromising... 
    Flexible hours

    Tract Capital

    Arlington, VA
    4 days ago
  • $131.3k - $237.35k

     ...better-informed decisions using trusted data at scale. Leidos...  ...sector is seeking an experienced SME Systems Engineer Lead to support the delivery...  .... Coordinate engineering processes and technical prioritization...  ...environments. Experience implementing Zero Trust architecture patterns... 

    Leidos

    Alexandria, VA
    4 days ago
  •  ...Senior Network Architect / Security Integration Engineer (SME) The Senior Network Architect / Security Integration Engineer (SME) serves...  ..., and deployment of Software Defined Networking (SDN), Zero Trust Architecture (ZTA), Software Defined Perimeter (SDP), and Micro... 

    CyKor

    Alexandria, VA
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Automation Process Engineering- Remote. Be the first to apply!