DoW Cloud Security Information Systems Security Manager
This role requires full-time onsite support in the Northern Virginia area. An active TS/SCI security clearance is required.
RESPONSIBILITIES:- Lead and support DoW RMF activities across the full lifecycle, including categorization, control selection, implementation, assessment, authorization, and continuous monitoring, with a focus on real security outcomes, not administrative throughput.
- Provide expert guidance on DoW cloud security policy, NIST SP 800-53 controls, CNSS policy, Cloud Computing SRG, and emerging AI-related guidance, translating requirements into practical engineering and risk decisions.
- Conduct security architecture reviews and security engineering analysis for cloud-native, containerized workloads hosted in Google Cloud Platform.
- Evaluate the design, implementation, and effectiveness of security controls for Kubernetes, Docker, GKE, and related orchestration environments.
- Develop, maintain, and improve SSPs, SARs, POA&Ms, and related RMF artifacts with a focus on accuracy, evidence quality, and operational relevance.
- Perform threat modeling, vulnerability assessment, and risk analysis tailored to cloud and AI-enabled environments.
- Partner directly with system architects, developers, platform engineers, and DevSecOps teams to integrate security into the SDLC rather than applying it after the fact.
- Support security control assessments and coordinate effectively with third-party assessors, Authorizing Officials, and other stakeholders.
- Monitor, track, and report compliance and risk posture through Continuous Monitoring processes using current data, measurable control health, and defensible evidence.
- Help drive repeatable, scalable approaches to control validation, evidence collection, and compliance reporting to reduce manual effort and improve consistency.
QUALIFICATIONS:
- Candidates must possess active TS/SCI security clearance.
- Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or related field.
- Relevant security certification such as CISSP or CISM.
- 12+ years of cybersecurity experience, including significant experience supporting RMF activities for DoW systems.
- Demonstrated working knowledge of cloud platforms, preferably Google Cloud Platform, including IAM, VPC, GKE, and security-relevant native services.
- Strong knowledge of containerized environments, including Docker, Kubernetes, and container security best practices.
- Familiarity with Generative AI technologies, including LLMs and AI/ML security considerations in regulated or mission-sensitive environments.
- Deep understanding of NIST SP 800-53, DoW RMF, FedRAMP, and related cybersecurity frameworks.
- Experience writing and maintaining RMF artifacts such as SSPs, POA&Ms, and SARs.
- Strong communication skills, including the ability to communicate clearly with both technical and non-technical stakeholders.
- Experience conducting security risk assessments in DoW or federal cloud environments.
- Ability to distinguish between documented compliance and actual control effectiveness, and to defend recommendations with sound technical and risk-based reasoning.
- Advanced cloud security certifications such as Google Professional Cloud Security Engineer or CCSP.
- Experience integrating DevSecOps pipelines with RMF or compliance workflows.
- Familiarity with automation tools or approaches for RMF documentation, control validation, or control testing, such as Xacta, eMASS, or OpenRMF.
- Experience building or improving repeatable evidence collection, control traceability, or continuous monitoring practices in cloud environments.
- Experience working in high-visibility programs where speed, precision, and defensible judgment matter.
TDI does business with the federal government, which restricts employment to individuals who are either US citizens or lawful permanent residents of the United States.
“TDI is an Equal Opportunity Employer. Employment decisions are made based on individual qualifications, merit, and business needs. We do not discriminate in employment opportunities or practices based on race, color, religion, sex, or national origin, in accordance with applicable federal laws.”
Recommended Jobs
CDL-A Truck Driver Weekly Home Time 1500 1600wk
10-4 Logistics USA seeks experienced CDL-A drivers for over-the-road (OTR) assignments offering mileage-based pay, a weekly performance bonus, modern automatic tractors, and regular home-time options.…
Junior AV Technician Luxury Residential & Commercial
Job Description Job Description At WH Technologies , we don’t install “AV systems.” We design and deliver fully integrated, design-driven technology experiences for some of the most beautif…
Court Liaison Paralegal
Position: Court Liaison Paralegal Classification: Full-time, Non-exempt Reports to: Child Welfare Attorney Company: DePelchin Family Services Location: Houston, T…
Java Software Engineer II
ARGO is a leading provider of software and analytics solutions for both the financial services and healthcare industries. ARGO transforms business processes for financial service providers and health…
Director - Diagnostic Imaging Clinical Ops / Ultrasound
MISSION STATEMENT The mission of The University of Texas MD Anderson Cancer Center is to eliminate cancer in Texas, the nation, and the world through outstanding programs that integrate patient ca…
Biotech Specialist - AI Trainer
Job Description Job Description About the job Mercor connects elite creative and technical talent with leading AI research labs. Headquartered in San Francisco, our investors include Benchma…
RN Long Term Care (LTC)
At Good Samaritan Health Center, we strive to provide superior healthcare services with a focus on holistic health and wellness outcomes, especially targeting underserved communities. We are currently…
Warehouse Associate - Equipment Operator
Company Overview Driven Distribution Group is the holding company of Tri-State Enterprises, Inc. and Chicago Parts & Sound, LLC. As a leading automotive aftermarket distribution company, Driven Di…
Bistro Lead
Additional Information: This hotel is owned and operated by an independent franchisee, Providence Hospitality Partners. The franchisee is a separate company and a separate employer from Marriott…
Field Technician
Responsibilities of this role include confined space entry, working at heights and working alongside various types of equipment. This is a physically intensive position that may require up to 30% tra…