Lead and coordinate efforts to obtain and maintain ATO/ATC for production systems, ensuring compliance with applicable security frameworks.
Partner with Development, Cloud, and DevSecOps teams to integrate security throughout the SDLC and CI/CD pipelines, ensuring secure-by-design implementations.
Review and contribute to system architectures, data flows, and Concept of Operations (CONOPS) documents to ensure alignment with Zero Trust principles and organizational security policies.
Support and track the remediation of vulnerabilities and deficiencies identified through scans, assessments, and audits; create and manage Plans of Action & Milestones (POA&Ms) as required.
Develop and maintain enterprise cybersecurity standards, guidelines, and best practices to ensure consistent implementation of security controls across all program systems.
Support ongoing assessment and authorization (A&A) activities, including risk assessments, configuration management, and continuous monitoring reporting.
Guide teams in applying Zero Trust Architecture (ZTA) principles—identity-centric access control, micro-segmentation, least privilege, and continuous validation—to all system designs and processes.
Requirements
5+ years of progressive experience in cybersecurity, with at least 3 years supporting federal ATO/ATC processes.
In-depth knowledge of NIST RMF, FedRAMP, and Zero Trust Architecture frameworks.
Experience collaborating with ISSOs, ISSMs, SCAs, and engineering teams.
Familiarity with AWS cloud environments and DevSecOps pipelines.
Strong technical understanding of network security, IAM, encryption, and vulnerability management.
Excellent communication and coordination skills.
Preferred Qualifications: CISSP, CISM, CAP, or equivalent cybersecurity certification.
Experience with containerized applications, infrastructure as code (IaC), and continuous compliance tools.
Segment Risk Manager supporting the Cybersecurity segment with risk management and governance. Collaborating on risk assessments and providing advisory on standards and practices.
Penetration Testing Coordination Leader managing pre - testing activities and pipelines. Mentoring teams and ensuring timely execution of penetration tests in financial services context.
Sales Representative responsible for B2B IT - Security Consulting services. Focused on active sales, relationship management, and new business opportunities in cybersecurity.
Leading Cybersecurity Consulting initiatives and teams to drive client security strategies at Schönbrunn TASC GmbH. Ensuring the development of secure digital solutions and fostering client relationships.
Security Engineer focusing on detection and response and collaborating with teams to secure infrastructure at Semperis. Building security monitoring solutions and contributing to risk management.
IT Engineer managing network and security infrastructures for industrial clients. Focused on proactive development and troubleshooting in a collaborative team environment.
Cyber Security Management Consultant supporting clients with ISMS implementation and transitional audit preparation. Focused on secure implementation of information security management systems and client relationship management in cyber security.
Information Security Officer ensuring effective ISMS for aedifion's energy - efficient building solutions. Focusing on continuous development, employee safety, and security controls in a tech - driven environment.