As the Information Assurance Lead, you will
- Lead and mentor IA engineers and coordinate security work across application, cloud, infrastructure, DevSecOps, test, operations, and customer teams.
- Ensure information systems are securely designed, configured, maintained, monitored, documented, and compliant with applicable policies and standards.
- Lead security assessments, risk analyses, vulnerability management, audit preparation, and remediation tracking.
- Coordinate certification and authorization activities and ensure security requirements and evidence are complete before deployment.
- Integrate security controls into the software development, configuration management, release, and operational support lifecycles.
- Monitor security posture and system activity, identify threats or control weaknesses, and drive corrective action and continuous improvement.
- Develop and maintain security plans, policies, procedures, control evidence, risk decisions, and customer briefings.
- Provide clear status on security risks, accreditation dependencies, vulnerabilities, remediation, and operational readiness.
- Active TS/SCI security clearance
- Ability to obtain and maintain any additional customer suitability approvals required for the position.
- DoD 8570/8140 IAT II certification (i.e., Security+, CCNA-Security, CND, CySA+, GICSP, GSEC, SSCP)
- Early-stage flexibility with partial telework during initial development phases
- Full-time on-site presence at secure facility in Washington, DC will be required as the program matures
- Strong written and verbal communication skills and the ability to work effectively across technical, operational, security, and customer teams.
- Bachelor's degree in Cybersecurity, Information Systems, Computer Science, Engineering, or a related discipline
- Twelve or more years of relevant experience; additional relevant experience may be considered in place of a degree.
- Demonstrated experience leading cybersecurity or information assurance teams.
- Experience with risk assessments, IT audits, security planning, system authorization, policy development, and compliance with federal and DoD requirements.
- Working knowledge of network, cloud, application, endpoint, identity, encryption, vulnerability, logging, IDS/IPS, VPN, firewall, virtualization, and data-protection controls.
- Experience with Linux or UNIX and at least one scripting language.
- Experience with RMF, NIST SP 800-53, STIGs, eMASS, continuous monitoring, POA&Ms, AWS GovCloud, IL5 or IL6 environments, and classified system authorization.
- Security leadership certification such as CISSP, CAP/CGRC, CISM, CASP+, or equivalent.
- Experience securing ServiceNow, Elastic, Kafka, Red Hat, cloud-native applications, data pipelines, or DevSecOps environments.
Skills Required
- Active TS/SCI security clearance
- Ability to obtain and maintain additional customer suitability approvals
- DoD 8570/8140 IAT II certification, such as Security+, CCNA-Security, CND, CySA+, GICSP, GSEC, or SSCP
- Bachelor's degree in Cybersecurity, Information Systems, Computer Science, Engineering, or a related discipline, or equivalent relevant experience
- Twelve or more years of relevant experience
- Experience leading cybersecurity or information assurance teams
- Experience with risk assessments, IT audits, security planning, system authorization, policy development, and federal and DoD compliance
- Working knowledge of network, cloud, application, endpoint, identity, encryption, vulnerability, logging, IDS/IPS, VPN, firewall, virtualization, and data-protection controls
- Experience with Linux or UNIX and at least one scripting language
- Experience with RMF, NIST SP 800-53, STIGs, eMASS, continuous monitoring, POA&Ms, AWS GovCloud, IL5 or IL6 environments, and classified system authorization
- Security leadership certification such as CISSP, CAP/CGRC, CISM, CASP+, or equivalent
- Experience securing ServiceNow, Elastic, Kafka, Red Hat, cloud-native applications, data pipelines, or DevSecOps environments
What We Do
GCyber was founded to create innovative information technology solutions for the federal, state, and commercial markets. GCyber engineers have provided professional services supporting the information technology industry for over 15 years. Along with our engineering staff, we have relationships with partners, vendors, and analysts who have specialized expertise in the federal market. GCyber’s broad experience, focus toward execution with measurable results, and commitment to innovation provide responsive and long-lasting solutions to our customers. It is the mission of GCyber to always remain focused on our customer’s goals and improving their existing landscape. Our company accomplishes this by focusing on opportunities for innovation, while remaining mindful of industry successes and failures in the deployment of technologies. If your road map needs increasingly innovative solutions, GCyber can help you get there.

.jpeg)






