Job Requirements
Washington, DC
Top Secret/SCI Polygraph Unspecified
Career Level not specified
Salary not specified
Join Premium to unlock estimated salaries
Job Description
Security Specialist
***As required by our governmental client, this position requires being a U.S. Citizen AND an active TS/SCI clearance***
As our Security Specialist, you'll support the security, assessment, and authorization of enterprise cloud environments that power mission-critical operations in a regulated federal environment. You'll perform security control assessments, vulnerability evaluations, and compliance activities that strengthen the organization's cybersecurity posture while supporting Assessment & Authorization (A&A/ATO) efforts. Along the way, you'll partner closely with the Senior Security Architect, engineers, platform administrators, and program stakeholders to deliver secure, compliant cloud solutions that support the customer's mission.
Details, Compensation & Benefits:
Estimated Starting Salary Range for Security Specialist: $160-175k
Pay commensurate with experience.
Full time benefits include Medical, Dental, Vision, 401K, and other possible benefits as provided. Benefits are subject to change with or without notice.
Onsite 5 days a week is required. Greater Washington, DC area.
Security Specialist Responsibilities Include:
• Conduct comprehensive assessments of management, operational, and technical security controls in accordance with NIST SP 800-53 and NIST SP 800-37.
• Support Assessment & Authorization (A&A/ATO) activities, including System Security Plans (SSPs), Plans of Action & Milestones (POA&Ms), security artifacts, and coordination with government stakeholders.
• Perform cybersecurity vulnerability assessments of enterprise cloud applications, infrastructure, and supporting systems.
• Analyze security requirements and recommend technical solutions that strengthen the organization's overall cybersecurity posture.
• Develop and maintain cybersecurity plans, policies, standards, and procedures supporting federal regulatory compliance.
• Collaborate with engineering, infrastructure, and Salesforce platform teams to implement security controls and remediate identified findings.
• Support continuous monitoring activities, security assessments, audits, and compliance reporting throughout the system lifecycle.
• Evaluate cloud environments using industry-standard security tools and methodologies to identify vulnerabilities and recommend corrective actions.
• Assist with RMF implementation activities, including security control validation, documentation updates, and ongoing authorization support.
• Review system configurations to ensure compliance with NIST, agency security policies, and federal cybersecurity requirements.
• Support identity and access management initiatives, secure configuration management, logging, auditing, and security monitoring.
• Document assessment findings, technical recommendations, risk analyses, and remediation activities.
• Participate in Agile delivery activities, planning sessions, technical reviews, and documentation efforts.
• Collaborate with program leadership and technical teams to continuously improve security processes and operational effectiveness.
• Support enterprise cloud environments, including Salesforce and other SaaS/PaaS platforms, ensuring secure implementation and ongoing compliance.
Security Specialist Experience, Education, Skills, Abilities Requested:
• Bachelor's degree and a minimum of seven (7) years of Information Assurance, cybersecurity, RMF, or Assessment & Authorization (ATO) experience.
• Demonstrated experience conducting security assessments utilizing NIST SP 800-53 and NIST SP 800-37.
• Experience supporting Assessment & Authorization (A&A/ATO) activities, including development and maintenance of SSPs, POA&Ms, security assessment documentation, and continuous monitoring artifacts.
• Experience performing cybersecurity vulnerability assessments and supporting remediation efforts within enterprise cloud environments.
• Working knowledge of Risk Management Framework (RMF), federal cybersecurity policies, and cloud security best practices.
• Experience supporting cloud platforms such as AWS, AWS GovCloud, Azure Government, or comparable enterprise cloud environments.
• Experience supporting Salesforce or other SaaS/PaaS platforms, including security controls, access management, and secure platform configuration, is highly desirable.
• Strong documentation, analytical, and communication skills developed in regulated, high-security environments.
• Security certifications such as Security+, CySA+, CISSP, CCSP, or CISM are preferred.
• Must be a U.S. Citizen and hold an active TS/SCI clearance.
• Must pass pre-employment qualifications of Cherokee Federal.
Company Information:
HESFP, LLC is a part of Cherokee Federal - the division of tribally owned federal contracting companies owned by Cherokee Nation Businesses. As a trusted partner for more than 60 federal clients, Cherokee Federal LLCs are focused on building a brighter future, solving complex challenges, and serving the government's mission with compassion and heart. To learn more about HESFP, visit cherokee-federal.com.
#CherokeeFederal #LI-KB1
Cherokee Federal is a military friendly employer. Veterans and active military transitioning to civilian status are encouraged to apply.
Similar searchable job titles:
• Information Assurance Analyst
• Information System Security Officer (ISSO)
• Cybersecurity Analyst
• RMF Analyst
• ATO Security Analyst
• Cloud Security Analyst
Keywords:
• RMF
• ATO
• NIST SP 800-53
• NIST SP 800-37
• SSP
• POA&M
• Information Assurance
• Cloud Security
• Salesforce Security
• TS/SCI
Legal Disclaimer: All qualified applicants will receive consideration for employment without regard to protected veteran status, disability or any other status protected under applicable federal, state or local law.
Many of our job openings require access to government buildings or military installations. Candidates must pass pre-employment qualifications of Cherokee Federal.
Please Note: This position is pending a contract award. If you are interested in a future with Cherokee Federal, APPLY TODAY! We are accepting applications for this future anticipated need.
***As required by our governmental client, this position requires being a U.S. Citizen AND an active TS/SCI clearance***
As our Security Specialist, you'll support the security, assessment, and authorization of enterprise cloud environments that power mission-critical operations in a regulated federal environment. You'll perform security control assessments, vulnerability evaluations, and compliance activities that strengthen the organization's cybersecurity posture while supporting Assessment & Authorization (A&A/ATO) efforts. Along the way, you'll partner closely with the Senior Security Architect, engineers, platform administrators, and program stakeholders to deliver secure, compliant cloud solutions that support the customer's mission.
Details, Compensation & Benefits:
Estimated Starting Salary Range for Security Specialist: $160-175k
Pay commensurate with experience.
Full time benefits include Medical, Dental, Vision, 401K, and other possible benefits as provided. Benefits are subject to change with or without notice.
Onsite 5 days a week is required. Greater Washington, DC area.
Security Specialist Responsibilities Include:
• Conduct comprehensive assessments of management, operational, and technical security controls in accordance with NIST SP 800-53 and NIST SP 800-37.
• Support Assessment & Authorization (A&A/ATO) activities, including System Security Plans (SSPs), Plans of Action & Milestones (POA&Ms), security artifacts, and coordination with government stakeholders.
• Perform cybersecurity vulnerability assessments of enterprise cloud applications, infrastructure, and supporting systems.
• Analyze security requirements and recommend technical solutions that strengthen the organization's overall cybersecurity posture.
• Develop and maintain cybersecurity plans, policies, standards, and procedures supporting federal regulatory compliance.
• Collaborate with engineering, infrastructure, and Salesforce platform teams to implement security controls and remediate identified findings.
• Support continuous monitoring activities, security assessments, audits, and compliance reporting throughout the system lifecycle.
• Evaluate cloud environments using industry-standard security tools and methodologies to identify vulnerabilities and recommend corrective actions.
• Assist with RMF implementation activities, including security control validation, documentation updates, and ongoing authorization support.
• Review system configurations to ensure compliance with NIST, agency security policies, and federal cybersecurity requirements.
• Support identity and access management initiatives, secure configuration management, logging, auditing, and security monitoring.
• Document assessment findings, technical recommendations, risk analyses, and remediation activities.
• Participate in Agile delivery activities, planning sessions, technical reviews, and documentation efforts.
• Collaborate with program leadership and technical teams to continuously improve security processes and operational effectiveness.
• Support enterprise cloud environments, including Salesforce and other SaaS/PaaS platforms, ensuring secure implementation and ongoing compliance.
Security Specialist Experience, Education, Skills, Abilities Requested:
• Bachelor's degree and a minimum of seven (7) years of Information Assurance, cybersecurity, RMF, or Assessment & Authorization (ATO) experience.
• Demonstrated experience conducting security assessments utilizing NIST SP 800-53 and NIST SP 800-37.
• Experience supporting Assessment & Authorization (A&A/ATO) activities, including development and maintenance of SSPs, POA&Ms, security assessment documentation, and continuous monitoring artifacts.
• Experience performing cybersecurity vulnerability assessments and supporting remediation efforts within enterprise cloud environments.
• Working knowledge of Risk Management Framework (RMF), federal cybersecurity policies, and cloud security best practices.
• Experience supporting cloud platforms such as AWS, AWS GovCloud, Azure Government, or comparable enterprise cloud environments.
• Experience supporting Salesforce or other SaaS/PaaS platforms, including security controls, access management, and secure platform configuration, is highly desirable.
• Strong documentation, analytical, and communication skills developed in regulated, high-security environments.
• Security certifications such as Security+, CySA+, CISSP, CCSP, or CISM are preferred.
• Must be a U.S. Citizen and hold an active TS/SCI clearance.
• Must pass pre-employment qualifications of Cherokee Federal.
Company Information:
HESFP, LLC is a part of Cherokee Federal - the division of tribally owned federal contracting companies owned by Cherokee Nation Businesses. As a trusted partner for more than 60 federal clients, Cherokee Federal LLCs are focused on building a brighter future, solving complex challenges, and serving the government's mission with compassion and heart. To learn more about HESFP, visit cherokee-federal.com.
#CherokeeFederal #LI-KB1
Cherokee Federal is a military friendly employer. Veterans and active military transitioning to civilian status are encouraged to apply.
Similar searchable job titles:
• Information Assurance Analyst
• Information System Security Officer (ISSO)
• Cybersecurity Analyst
• RMF Analyst
• ATO Security Analyst
• Cloud Security Analyst
Keywords:
• RMF
• ATO
• NIST SP 800-53
• NIST SP 800-37
• SSP
• POA&M
• Information Assurance
• Cloud Security
• Salesforce Security
• TS/SCI
Legal Disclaimer: All qualified applicants will receive consideration for employment without regard to protected veteran status, disability or any other status protected under applicable federal, state or local law.
Many of our job openings require access to government buildings or military installations. Candidates must pass pre-employment qualifications of Cherokee Federal.
Please Note: This position is pending a contract award. If you are interested in a future with Cherokee Federal, APPLY TODAY! We are accepting applications for this future anticipated need.
group id: 10215765F
Who We Are