Information Security SME/Lead
Quantico, VA, US
Full Time Senior-level / Expert Clearance required USD 63K - 147K *
Concept Solutions, LLC
Description
Concept Solutions is seeking an Information Security SME/Lead to provide leadership and information security expertise to ensure the security of the Combined DNA Index System (CODIS) in Quantico, VA. This position is contingent upon contract award.
Location: Quantico, VA (Hybrid)
Responsibilities:
· Provide expert-level guidance on the design, implementation, and maintenance of security controls and systems to ensure compliance with FBI, DOJ, and federal IT security standards, including FISMA and NIST guidelines.
· Lead the development and execution of a comprehensive security strategy, aligning it with organizational objectives and regulatory requirements within the I2D2 accreditation boundary.
· Oversee risk management activities, including risk assessments, mitigation planning, and the development of security documentation such as System Security Plans (SSPs) and Plan of Action and Milestones (POA&Ms).
· Serve as the primary security advisor to program leadership, ensuring that security considerations are integrated into all phases of the system development lifecycle.
· Provide technical leadership in implementing a defense-in-depth strategy, leveraging advanced tools and techniques to protect information assets from emerging threats.
· Manage and oversee the continuous monitoring program, ensuring real-time awareness of security risks and maintaining compliance with NIST SP 800-137 requirements.
· Coordinate and lead incident response activities, including the identification, containment, and resolution of security incidents, and provide post-incident analysis and reporting.
· Develop and enforce robust security policies, procedures, and standards that align with FBI/CODIS-specific requirements and federal security frameworks.
· Mentor and guide security team members, fostering a culture of continuous improvement and knowledge sharing to enhance the organization's overall security posture.
· Collaborate with stakeholders to streamline the Assessment and Authorization (A&A) process, reducing timelines and improving the quality of A&A packages to achieve and maintain Authority to Operate (ATO).
· Ensure secure configurations for all systems within the I2D2 accreditation boundary, utilizing industry standards such as DISA STIGs, CIS benchmarks, and SCAP tools.
· Evaluate and recommend advanced security tools and technologies, leading their integration into existing systems to enhance protection against vulnerabilities and threats.
· Monitor and analyze security trends, emerging threats, and regulatory changes, proactively advising leadership on necessary adjustments to the security program.
· Oversee vulnerability management activities, ensuring timely identification, assessment, and remediation of security weaknesses using tools such as Nessus, Metasploit, and others.
· Lead disaster recovery and business continuity planning efforts, ensuring the organization is prepared for and resilient to potential disruptions or security incidents.
Requirements
· Preferred Education: Bachelor Degree in System Engineering, Computer Science, Information Systems, Engineering Science, Engineering Management, or a related discipline
· Minimum of two (2) years as program lead in program of similar scope, type, and complexity
· Minimum of three (3) years of demonstrated experience in the Information Security (Cybersecurity or Information Assurance) field including:
o Knowledge of developing, maintaining and managing Security Authorizations and Assessments packages
o Experience with developing and managing Plans of Action & Milestones (POA&Ms)
o Displays technical experience with conducting research and providing review recommendations on software and technologies for vulnerabilities.
o Technical experience with reviewing vulnerability scans and providing mitigation techniques.
· Top Secret level security Clearance
Company Profile:
Founded in 1999 and headquartered in Reston, Virginia, Concept Solutions, LLC (CS) is a leading small business in technology, engineering, and management consulting. We are the innovative and agile force behind strategic solutions that enhance organizational efficiency and safeguard our nation across Aerospace, Defense, and National Security sectors.
For over 25 years, CS has been a trusted partner for the Federal Aviation Administration (FAA), Department of Homeland Security (DHS), Department of Justice (DOJ), Department of Defense (DoD) and other federal agencies delivering vital IT, security, and project management services.
Our commitment to excellence is reflected in our adherence to CMMI-DEV ML3, ISO 9001:2015, ISO/IEC 20000-1:2018, and ISO/IEC 27001-1:2013 standards. CS boasts company highlights that include:
- Over two decades of experience across over $300 million in contract awards supporting critical FAA programs
- Multiple contract vehicles providing opportunities across FAA, DoD, NOAA, and other Federal agencies
- Innovation Council - CS maintains an active Internal Research and Development (IR&D) program that is geared towards identifying emerging technologies and pursuing technological innovations
At CS, we know our success stems from our talented team. That’s why we prioritize the wellbeing and growth of our employees, fostering a positive culture centered on innovation, engagement, and career development.
Benefits: Concept Solutions offers a competitive benefits and salary package you would receive from a large company. We offer health, dental, vision and life insurance, as well as a comprehensive 401(k) plan with matching and immediate vesting.
Concept Solutions is an Equal Opportunity Employer, and we value workplace diversity. We invite resumes from all interested parties and consider applicants for all positions without regard to race, color, religion, sex, national origin, age, marital status, sexual preference, personal appearance, family responsibility, the presence of a non-job-related medical condition or physical disability, matriculation, political affiliation, veteran status, or any other legally protected status. Concept Solutions is a VEVRAA federal contractor, and we request priority referral of veterans for available positions.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Agile Clearance Compliance Computer Science DISA DoD FISMA Incident response Metasploit Monitoring Nessus NIST POA&M Risk assessment Risk management SCAP Security Clearance Security strategy STIGs Strategy System Security Plan Top Secret Vulnerabilities Vulnerability management Vulnerability scans
Perks/benefits: Career development Competitive pay Health care Insurance
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.