Security Specialist

Posted 3 Days Ago
Be an Early Applicant
Washington, DC, USA
In-Office
160K-175K Annually
Senior level
Information Technology • Professional Services • Defense • Manufacturing
The Role
Conduct security control assessments, vulnerability evaluations, and compliance activities for regulated federal cloud environments. Support RMF and A&A/ATO efforts by maintaining SSPs, POA&Ms, assessment artifacts, continuous monitoring documentation, and compliance reports. Evaluate AWS, Azure Government, Salesforce, and other SaaS/PaaS platforms, recommend remediation, and collaborate with engineering and government stakeholders to implement security controls. The role is onsite in the Washington, DC area and requires U.S. citizenship and an active TS/SCI clearance.
Summary Generated by Built In

Security Specialist

***As required by our governmental client, this position requires being a U.S. Citizen AND an active TS/SCI clearance***

As our Security Specialist, you'll support the security, assessment, and authorization of enterprise cloud environments that power mission-critical operations in a regulated federal environment. You'll perform security control assessments, vulnerability evaluations, and compliance activities that strengthen the organization's cybersecurity posture while supporting Assessment & Authorization (A&A/ATO) efforts. Along the way, you'll partner closely with the Senior Security Architect, engineers, platform administrators, and program stakeholders to deliver secure, compliant cloud solutions that support the customer's mission.

 

Details, Compensation & Benefits:

Estimated Starting Salary Range for Security Specialist: $160-175k

Pay commensurate with experience.

Full time benefits include Medical, Dental, Vision, 401K, and other possible benefits as provided. Benefits are subject to change with or without notice.

Onsite 5 days a week is required. Greater Washington, DC area.

 

Security Specialist Responsibilities Include:

• Conduct comprehensive assessments of management, operational, and technical security controls in accordance with NIST SP 800-53 and NIST SP 800-37.

• Support Assessment & Authorization (A&A/ATO) activities, including System Security Plans (SSPs), Plans of Action & Milestones (POA&Ms), security artifacts, and coordination with government stakeholders.

• Perform cybersecurity vulnerability assessments of enterprise cloud applications, infrastructure, and supporting systems.

• Analyze security requirements and recommend technical solutions that strengthen the organization's overall cybersecurity posture.

• Develop and maintain cybersecurity plans, policies, standards, and procedures supporting federal regulatory compliance.

• Collaborate with engineering, infrastructure, and Salesforce platform teams to implement security controls and remediate identified findings.

• Support continuous monitoring activities, security assessments, audits, and compliance reporting throughout the system lifecycle.

• Evaluate cloud environments using industry-standard security tools and methodologies to identify vulnerabilities and recommend corrective actions.

• Assist with RMF implementation activities, including security control validation, documentation updates, and ongoing authorization support.

• Review system configurations to ensure compliance with NIST, agency security policies, and federal cybersecurity requirements.

• Support identity and access management initiatives, secure configuration management, logging, auditing, and security monitoring.

• Document assessment findings, technical recommendations, risk analyses, and remediation activities.

• Participate in Agile delivery activities, planning sessions, technical reviews, and documentation efforts.

• Collaborate with program leadership and technical teams to continuously improve security processes and operational effectiveness.

• Support enterprise cloud environments, including Salesforce and other SaaS/PaaS platforms, ensuring secure implementation and ongoing compliance.

 

 

Security Specialist Experience, Education, Skills, Abilities Requested:

• Bachelor's degree and a minimum of seven (7) years of Information Assurance, cybersecurity, RMF, or Assessment & Authorization (ATO) experience.

• Demonstrated experience conducting security assessments utilizing NIST SP 800-53 and NIST SP 800-37.

• Experience supporting Assessment & Authorization (A&A/ATO) activities, including development and maintenance of SSPs, POA&Ms, security assessment documentation, and continuous monitoring artifacts.

• Experience performing cybersecurity vulnerability assessments and supporting remediation efforts within enterprise cloud environments.

• Working knowledge of Risk Management Framework (RMF), federal cybersecurity policies, and cloud security best practices.

• Experience supporting cloud platforms such as AWS, AWS GovCloud, Azure Government, or comparable enterprise cloud environments.

• Experience supporting Salesforce or other SaaS/PaaS platforms, including security controls, access management, and secure platform configuration, is highly desirable.

• Strong documentation, analytical, and communication skills developed in regulated, high-security environments.

• Security certifications such as Security+, CySA+, CISSP, CCSP, or CISM are preferred.

• Must be a U.S. Citizen and hold an active TS/SCI clearance.

• Must pass pre-employment qualifications of Cherokee Federal.

 

 

Company Information:

HESFP, LLC is a part of Cherokee Federal – the division of tribally owned federal contracting companies owned by Cherokee Nation Businesses. As a trusted partner for more than 60 federal clients, Cherokee Federal LLCs are focused on building a brighter future, solving complex challenges, and serving the government's mission with compassion and heart. To learn more about HESFP, visit cherokee-federal.com.

#CherokeeFederal #LI-KB1

Cherokee Federal is a military friendly employer. Veterans and active military transitioning to civilian status are encouraged to apply.

 

Similar searchable job titles:

• Information Assurance Analyst

• Information System Security Officer (ISSO)

• Cybersecurity Analyst

• RMF Analyst

• ATO Security Analyst

• Cloud Security Analyst

 

Keywords:

• RMF

• ATO

• NIST SP 800-53

• NIST SP 800-37

• SSP

• POA&M

• Information Assurance

• Cloud Security

• Salesforce Security

• TS/SCI


Legal Disclaimer: All qualified applicants will receive consideration for employment without regard to protected veteran status, disability or any other status protected under applicable federal, state or local law.

Many of our job openings require access to government buildings or military installations. Candidates must pass pre-employment qualifications of Cherokee Federal.

Please Note: This position is pending a contract award. If you are interested in a future with Cherokee Federal, APPLY TODAY! We are accepting applications for this future anticipated need.

Skills Required

  • Bachelor's degree
  • At least seven years of Information Assurance, cybersecurity, RMF, or Assessment and Authorization experience
  • Experience conducting security assessments using NIST SP 800-53 and NIST SP 800-37
  • Experience supporting Assessment and Authorization activities, including SSPs, POA&Ms, security assessment documentation, and continuous monitoring artifacts
  • Experience performing cybersecurity vulnerability assessments and remediation in enterprise cloud environments
  • Working knowledge of the Risk Management Framework, federal cybersecurity policies, and cloud security best practices
  • Experience supporting AWS, AWS GovCloud, Azure Government, or comparable enterprise cloud environments
  • Strong documentation, analytical, and communication skills in regulated, high-security environments
  • U.S. citizenship
  • Active TS/SCI security clearance
  • Salesforce or other SaaS/PaaS security experience
  • Security+, CySA+, CISSP, CCSP, or CISM certification
  • Ability to pass Cherokee Federal pre-employment qualifications
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Tulsa, OK
5,000 Employees
Year Founded: 1969

What We Do

Cherokee Federal is a top federal contractor that empowers mission success for over 60 U.S. federal agencies by delivering innovative solutions in defense, technology, health, and intelligence, focusing on solving complex challenges and serving national missions.

Similar Jobs

Zscaler Logo Zscaler

Director, Specialist Sales Engineering - Data Security

Cloud • Information Technology • Security • Software • Cybersecurity
Easy Apply
Remote or Hybrid
USA
8697 Employees
194K-278K Annually

Zscaler Logo Zscaler

Sales Engineer

Cloud • Information Technology • Security • Software • Cybersecurity
Easy Apply
Remote or Hybrid
6 Locations
8697 Employees
176K-251K Annually

Zscaler Logo Zscaler

Sales Engineer

Cloud • Information Technology • Security • Software • Cybersecurity
Easy Apply
Remote or Hybrid
USA
8697 Employees
176K-251K Annually

Datadog Logo Datadog

Enterprise Security Sales Specialist

Artificial Intelligence • Cloud • Security • Software • Cybersecurity
Easy Apply
Remote or Hybrid
2 Locations
6500 Employees
124K-165K Annually

Similar Companies Hiring

Amalgamated Sugar Thumbnail
Food • Greentech • Agriculture • Industrial • Manufacturing
Boise, Idaho
768 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Outpost Space Thumbnail
Aerospace • Defense
US
24 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account