The Role
Leads contractor cybersecurity services for the U.S. Air Force, overseeing personnel, security operations, governance, risk and compliance, vulnerability management, threat hunting, incident response, audits, RMF and ATO processes, SOC activities, vendor performance, and security training. Coordinates government and contractor stakeholders, monitors service quality, manages resources and escalates program constraints. The role requires active TS/SCI clearance, a relevant bachelor’s degree, and at least five years of experience across IT leadership, strategy, workforce, budgeting, investment management, information security, privacy, and accessibility.
Summary Generated by Built In
cFocus Software seeks a CODE – CIO Task Lead to join our program supporting the United States Air Force (USAF). This position is on-site in Linthicum Heights, MD. This position requires an Active TS/SCI clearance.
Qualifications:
Duties:
Qualifications:
- Active TS/SCI clearance
- B.S. Computer Science, Information Technology, or a related field
- Individual IT leadership and accountability at least 5 years of experience (e.g., CIOs are responsible and accountable for the effective implementation of IT management responsibilities).
- IT strategic planning at least 5 years of experience (e.g., CIOs are responsible for strategic planning of all IT management functions).
- IT workforce at least 5 years of experience (e.g., CIOs are responsible for assessing agency IT workforce needs and developing strategies and plans for meeting those needs).
- IT budgeting at least 5 years of experience (e.g., CIOs are responsible for the processes for all annual and multi-year IT planning, programming, and budgeting decisions).
- IT investment management at least 5 years of experience (e.g., CIOs are responsible for the process of managing, evaluating, and assessing how well the agency is managing its IT resources).
- Information Security and Privacy at least 5 years of experience (e.g., CIOs are responsible for establishing, implementing, and ensuring compliance with an agency-wide information security program).
- Digital Equity and Accessibility at least 5 years of experience (e.g., CIOs serve as a champion for digital equity for the workforce by ensuring digital accessibility of information and telecommunication technologies).
Duties:
- Manage and oversee contractor personnel and subcontractors delivering Task 9 cybersecurity services; coordinate across teams, dependencies, schedules, and resources to meet PWS requirements.
- Serve as the primary contractor contact for CODE; facilitate Government and contractor communications, document and track requirements and activities, monitor performance and quality, and escalate contractual, programmatic, or resource constraints proactively.
- Implement and maintain appropriate security and compliance frameworks, including NIST, ISO 27001, or CMMC, and coordinate internal and external security audits to validate control effectiveness.
- Oversee penetration testing conducted in accordance with NIST SP 800-115, weekly vulnerability scans and CORA-scored reporting, and continuous vulnerability remediation, patching, and secure configuration management.
- Direct coordination of intelligence-driven threat hunting and monitoring across DC3 IT and operational technology environments; ensure anomalies are investigated, response decisions are supported, and required reports are delivered within PWS timeframes.
- Oversee enterprise governance, risk, and compliance work, including RMF and ATO or Assess-Only packages, eMASS submissions, continuous monitoring, STIG compliance, POA&Ms, and enterprise risk recommendations prepared for Government decision.
- Lead coordination during major security incidents, including detection, escalation, containment, eradication, and recovery; oversee maintenance of incident response policies and procedures.
- Oversee the post-IOC Security Operations Center as the hub for defensive operations, security event analysis, and coordination with CSSPs, the AFCYBER Operations Center, and higher headquarters authorities.
- Ensure cybersecurity review of infrastructure as code and configuration as code changes before production deployment, and oversee adoption of security improvements based on assessed benefits, risks, and implementation approaches.
- Oversee selection and performance of third-party security vendors and ensure acquisitions meet organizational security standards; lead organization-wide cybersecurity education and training to promote a security-first culture.
- Assist the Government with PWS-related financial and business processes and exercise delegated contractor authority to resolve issues and commit the prime contractor organization where appropriate.
Skills Required
- Active TS/SCI security clearance
- Bachelor of Science degree in Computer Science, Information Technology, or a related field
- At least 5 years of experience in IT leadership and accountability
- At least 5 years of experience in IT strategic planning
- At least 5 years of experience assessing IT workforce needs and developing workforce strategies
- At least 5 years of experience in IT budgeting and planning
- At least 5 years of experience in IT investment management
- At least 5 years of experience in information security and privacy
- At least 5 years of experience supporting digital equity and accessibility
Am I A Good Fit?
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.
Success! Refresh the page to see how your skills align with this role.
The Company
What We Do
Established in 2006, cFocus Software automates FedRAMP compliance and develops government chatbots for the Azure Government Cloud, Office 365, and SharePoint. cFocus Software is the exclusive vendor of ATO (Authority To Operate) as a Service™, which automates FedRAMP compliance for the Azure Government Cloud and Office 365. Contact Us for a demo of ATO as a Service™ or a FREE government chatbot proof of concept project today!








