Cybersecurity Specialist - Mid/Senior - SBG REMOTE

Posted One Month Ago
Be an Early Applicant
Hiring Remotely in 22314, Alexandria, VA, USA
In-Office or Remote
130K-150K Annually
Senior level
Healthtech • Software
The Role
Assess application security against FedRAMP High and NIST RMF requirements, support ATO documentation and SSP/POA&M development, identify and prioritize remediation, evaluate Zero Trust and continuous monitoring, review IAM/encryption, conduct vulnerability management, and collaborate with architects and ISV teams to guide remediation.
Summary Generated by Built In

SBG Technology Solutions, Inc. (SBG), a DSS, Inc. company, offers IT Governance, Systems Engineering, Enterprise Modernization, Artificial Intelligence, and Cyber Security innovation to federal and commercial clients nationwide. 

Overview

The Cybersecurity Specialist ensures all applications meet FedRAMP High security and compliance requirements throughout the assessment and onboarding process for DSS Health Cloud, a FedRAMP High authorized healthcare-focused platform hosted in an AWS Government enclave environment. This role supports Independent Software Vendors (ISVs) and government applications by identifying security gaps, supporting authorization documentation, and validating alignment with applicable federal cybersecurity frameworks.

The Cybersecurity Specialist will:

  • Assesses application security posture, including logging, auditing, and control implementation, against FedRAMP High baseline requirements

  • Supports Authority to Operate (ATO) documentation efforts and compliance readiness activities for applications undergoing onboarding assessment

  • Identifies cybersecurity gaps across assessed applications and recommends prioritized remediation actions with supporting rationale

  • Evaluates application and environment alignment with Zero Trust architecture principles and continuous monitoring requirements

  • Supports development of System Security Plans (SSPs), Plan of Action and Milestones (POA&M) inputs, and related security authorization artifacts

  • Applies Risk Management Framework (RMF) processes to security assessment activities and documents findings in accordance with NIST guidelines

  • Reviews identity, access control, and encryption implementations to verify compliance with applicable standards and FedRAMP controls

  • Conducts vulnerability management reviews and evaluates continuous monitoring capabilities for onboarding candidates

  • Collaborates with cloud architects, program managers, and ISV technical teams to communicate security findings and guide remediation planning

Other Duties:

  • Performs other duties as assigned by management in support of SBG Technology Solutions contract objectives

  • Travel requirements: occasional travel as required by project needs (estimated up to 10% per year)

Conditions of Employment:

  • Must be a US Citizen 

  • Must be able to pass a Federal background check

  • Must be determined suitable for federal employment

Security and Privacy Duties and Responsibilities

Individuals working for SBG Technology Solutions, Inc, a DSS, Inc. will be subject to security and privacy requirements as explained in HIPAA, FedRAMP, and NIST 800-53. Additionally, they are required to undergo specific FedRAMP training to ensure compliance with all associated controls and responsibilities in the day-to-day performance of their duties. Individuals working in departments that are considered to be in the high-risk category will be required to undergo advanced training based on their role and level of access. Individuals with access to modify data and the configuration baseline will require further training.

The preceding functions are examples of the work performed by employees assigned to this job classification.  Management reserves the right to add, modify, change or rescind work assignments and make a reasonable accommodation as needed.

Qualifications

Required Skills:

  • In-depth knowledge of FedRAMP High security controls and the NIST Risk Management Framework (RMF) process

  • Proficiency in security architecture review and cloud security engineering within AWS or comparable government cloud environments

  • Experience conducting vulnerability management assessments and evaluating continuous monitoring programs

  • Working knowledge of identity and access management (IAM), encryption standards, and access control frameworks

  • Ability to develop and review authorization documentation including SSPs, POA&Ms, and security assessment reports

  • Strong analytical and written communication skills; able to document and present security findings clearly to both technical and non-technical audiences

  • Capable of managing concurrent assessment workstreams and delivering findings within defined project timelines

Preferred Skills:

  • Familiarity with HIPAA Security Rule requirements and healthcare application security considerations

  • Experience with AWS security tooling (e.g., AWS Security Hub, GuardDuty, CloudTrail, Config)

  • Knowledge of DevSecOps practices and secure software development lifecycle (SSDLC) methodologies

Education:

Required:

  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related technical discipline

  • A combination of education and experience will be considered (2 years of relevant experience equivalent to 1 year in a degree program)

Desired: Master's degree in Cybersecurity, Information Assurance, or a related field

Certification(s), Licenses:

Desired:

    • Certified Information Systems Security Professional (CISSP)

    • Certified Information Security Manager (CISM)

    • CompTIA Security+ or equivalent federal baseline certification

    • AWS Certified Security – Specialty

Years of experience in a similar role:

Required: 8+ years of cybersecurity experience in federal or regulated environments, with demonstrated engagement in FedRAMP or RMF processes

Desired: 10+ years of cybersecurity experience including direct responsibility for ATO support or FedRAMP authorization activities

Compensation:

Salary at SBG Technology Solutions, Inc is determined by various factors, including but not limited to location, the individual’s particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $130,000.00 to $150,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of DSS, Inc.’s total compensation package for employees.

Physical Demands:

Standing

5% per day

Sitting

90% per day

Walking

5% per day

Stooping

Minimal

Lifting

Up to 10 lbs. unassisted, several times a day (laptop, office equipment, office supplies, etc.)

Computer Work

85% per day

Telephone Work

15% per day

Reading

20% per day

Other, please specify

Travel unassisted up to ___% per year, via common carrier and/or personal automobile.

SBGTS, Inc. is an Equal Opportunity Employer

If you need an accommodation seeking employment with SBGTS, Inc., please e-mail [email protected] or call (561) 284-7333. Accommodations are made on a case-by-case basis.


Skills Required

  • In-depth knowledge of FedRAMP High security controls and NIST RMF process
  • Proficiency in security architecture review and cloud security engineering within AWS or comparable government cloud environments
  • Experience conducting vulnerability management assessments and evaluating continuous monitoring programs
  • Working knowledge of identity and access management (IAM), encryption standards, and access control frameworks
  • Ability to develop and review authorization documentation including System Security Plans (SSPs), POA&Ms, and security assessment reports
  • Strong analytical and written communication skills to document and present security findings
  • Capable of managing concurrent assessment workstreams and delivering findings within project timelines
  • Bachelor's degree in Cybersecurity, IT, Computer Science, or related technical discipline (or equivalent combination of education and experience)
  • 8+ years of cybersecurity experience in federal or regulated environments with FedRAMP or RMF engagement
  • Must be a US Citizen
  • Must be able to pass a Federal background check and be determined suitable for federal employment
  • Familiarity with HIPAA Security Rule and healthcare application security considerations
  • Experience with AWS security tooling (AWS Security Hub, GuardDuty, CloudTrail, Config)
  • Knowledge of DevSecOps practices and secure software development lifecycle (SSDLC)
  • Desired certifications: CISSP, CISM, CompTIA Security+, AWS Certified Security - Specialty
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Juno Beach, FL
562 Employees
Year Founded: 1991

What We Do

With over 30 years of experience, DSS knows what works. We are a health information software development and systems integration company, providing services and solutions used daily by thousands of clinicians and administrative staff nationwide, in the public and private sectors. Our employees and partners include many highly qualified clinicians and Veterans, who work closely with customers every step of the way. We remain current with changing regulatory requirements and implement enhanced business processes to support clinical, financial, logistical and administrative objectives that lead to better outcomes across the continuum of care. With intimate knowledge of healthcare regulations, workflows, and system intricacies, DSS provides the expertise to improve patient care, revenue cycles, compliance with regulations, and technology and system interoperability. DSS is one of the nation’s leading healthcare IT vendors, recognized for the fourth consecutive year in 2018 as a Healthcare Informatics 100 company.

Similar Jobs

PNC Bank Logo PNC Bank

Product Owner

Machine Learning • Payments • Security • Software • Financial Services
Remote or Hybrid
USA
55000 Employees

PNC Bank Logo PNC Bank

Technology Solution Center Analyst

Machine Learning • Payments • Security • Software • Financial Services
Remote or Hybrid
USA
55000 Employees
38K-75K Annually

Enverus Logo Enverus

Test Automation Engineer

Big Data • Information Technology • Software • Analytics • Energy
In-Office or Remote
2 Locations
1800 Employees

Motive Logo Motive

Artificial Intelligence Engineer

Artificial Intelligence • Fintech • Hardware • Information Technology • Sales • Software • Transportation
Easy Apply
Remote
United States
4000 Employees
140K-160K Annually

Similar Companies Hiring

Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Revel Thumbnail
Aerospace • Hardware • Robotics • Software
Marina Del Rey, California
60 Employees
Blee Thumbnail
Artificial Intelligence • Marketing Tech • Software
New York, New York
30 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account