Surefire Cyber Llc Jobs in Usa
3,100 positions found
KADE Industries, LLC is an Amazon Delivery Service Partner (DSP) based in Columbia, South Carolina!
We have immediate openings for Full-Time and Part-Time Delivery Drivers in the Columbia, South Carolina area! Drivers will be responsible for safely delivering packages to homes and businesses in the immediate Columbia, South Carolina area!
- Do you want to earn $20.50/hour?
- Do you enjoy fast-paced independent work?
- Do you enjoy working outside and in your community?
- Are you customer service and safety-obsessed?
Come join our team and build a career with us! We train and coach our team to success on a daily basis! We need YOU!
KADE Delivery Driver Basic Requirements:
- Must be at least 21 years old and eligible to work in the U.S.
- High-school diploma (or equivalent)
- Lift packages up to 50 lbs
- Must have a valid driver's license
- Must be free of major accidents or major driving infractions
- Full Time: Must be able to work 10-hour days, 4 days a week
- Part Time: Must be able to work 10-hour days and weekends
- All applicants must be able to work weekends and holidays
What You'll Do as a KADE Delivery Driver:
As a KADE Delivery Driver, you'll safely operate an Amazon-branded vehicle and deliver Amazon packages in a timely manner across Columbia, SC.
Why You'll Love Working as a KADE Delivery Driver:
- Professional growth: We offer career growth opportunities such as moving into Lead Driver, Dispatcher, or Operations Manager roles, DOT certification opportunities, and professional development coaching and training!
- Team environment: A fun, fast-paced, and supportive company culture that focuses on winning together!
- Independence: Spend the majority of your day on the road delivering smiles to customers in your community!
- Stay active: You'll be on the move during your shift as you deliver packages from the delivery vehicle to the customer's doorstep!
JOIN US! APPLY NOW!
We are an Equal Opportunity Employer. All qualified applicants will be considered for employment regardless of age, national origin, race, color, disability, religious beliefs, or sexual orientation.
The Security Engineer will perform security audits, risk analysis, application-level vulnerability testing, and security code reviews; develop and implement technical solutions to help mitigate security vulnerabilities; and conduct research to identify new attack vectors.
Security Engineers will possess knowledge and experience in safeguarding sensitive data from cyber-attacks.
Job Details: -Demonstrated skills in security architecture, IT Security, networking, or systems administration with an emphasis on security.
-Proven knowledge of security architecture design, network security, vulnerability management, and threat intelligence/analysis.
-Knowledge of common information security management frameworks, such as NIST, CIS, ISO 27001, COBIT, or PCI DSS.
-Strong understanding of encryption.
-Strong understanding of networking concepts and protocols (e.g.
TCP/IP, LAN, WAN, DHCP, DNS, Routing Protocols, etc.) -Expert level knowledge of security systems such as SIEM (Microsoft Sentinel), IPS, Firewalls, and related network security tools.
-Operating Systems: Windows, Unix, Mac -Databases: SQL, Azure, Oracle.
-Must have hands on experience using Model Context Protocol (MCP) to enable AI agents and large language models to interact with external tools, APIs, and enterprise data.
2 years of experience with Microsoft Azure (IaaS, PaaS, IaaS), Microsoft Sentinel, CrowdStrike, Tenable, Palo Alto Firewall Zscaler KQL.
1+ years of experience developing AI-enabled solutions using modern LLM tools (e.g., Codex, Claude, or similar) to support GRC and Incident Response processes.
3+ years of experience within each of the following:
- Incident response
- managing the security of multiple platforms, operating system, software and network protocols for a large IT organization
- risk management, auditing, assessment, industry security framework, and/or internal controls
- security, operations, control assessment, risk management, auditing, and/or internal controls
- with security and privacy legal and regulatory requirements
- performing information security risk assessments and risk analysis.
Additional Information: ITIL Foundation certification and CISSP (Certified Information Systems Security Professional) California Resident Candidates Only.
Work is expected to be done ON SITE, and interviews will be conducted in person.
Work schedule is M-Thurs 7:15am-6pm (10 hours) at Public Works HQ in Alhambra, CA 91803.
At MVP Health Care, our commitment to meeting the needs of our customers goes beyond our health plans. We're shaping the future of health care-and as an intern, you'll be part of it! Dive into a world of innovation, working alongside experienced professionals who are passionate about making a difference.
This is more than an internship; it's an opportunity to build skills, gain confidence, and make a meaningful impact while discovering what a career in a transforming industry can look like.
What's in it for you:
Our internship program is designed to provide a comprehensive learning experience.
- Build Real Skills: Gain hands‑on experience, practical skills, and industry knowledge through meaningful work and targeted learning opportunities.
- Work on Impactful Projects: Contribute to real projects that support business priorities and address real‑world health care challenges.
- Grow Your Network: Connect with leaders, mentors, and fellow interns through networking events and everyday collaboration.
- Learn from Mentors: Receive guidance and feedback from experienced professionals who are invested in your growth.
- Give Back: Participate in community service initiatives and be part of an organization committed to making a difference.
- Support Your Well‑Being: Experience a supportive culture with programs that promote balance and well‑being.
- Launch Your Career: Join an award‑winning, inclusive workplace and explore a future in a growing, evolving industry.
Qualifications you'll bring:
- Pursuing an Associate's degree or higher level degree in a Information Technology field.
- The availability to work full-time, 37.5 hours (Monday- Friday 8:30am - 5:00pm)
- Must uphold, enforce, and abide by all institutional policies.
- The ability to work both individually and in teams.
- Working knowledge of Microsoft Office applications (Word, Excel, etc.).
- Strong writing and communication skills.
- Curiosity to foster innovation and pave the way for growth
- Humility to play as a team
- Commitment to being the difference for our customers in every interaction
Your key responsibilities:
- Review and update documentation for policies, procedures, standards, and guidelines.
- Research and evaluate applications and services for use by the institution. Provide a matrix when possible, detailing features within each different application or service.
- Assist with the deployment and upkeep of the Cyber Security department's website content.
- Provide first-level compliance monitoring and investigations.
- Assist with forensics analysis and fact gathering.
- Assist with vulnerability assessments and penetration testing for specific applications, services, network(s), and servers as required.
- Assist with applications/tools including but not limited to SIEM, IPS, ticketing system, Azure Defender & 365, and DLP tools.
- Perform compliance audits against institutionally accepted security controls.
- Record and track Cyber Security incidents, including but not limited to data incidents, compromised accounts, e-mail threats, and abuse reports from various sources.
- Contribute to our humble pursuit of excellence by performing various responsibilities that may arise, reflecting our collective goal of enhancing healthcare delivery and being the difference for the customer.
Where you'll be:
Hybrid (Schenectady, NY or Rochester, NY office)
Pay Transparency
MVP Health Care is committed to providing competitive employee compensation and benefits packages. The base pay range provided for this role reflects our good faith compensation estimate at the time of posting. MVP adheres to pay transparency nondiscrimination principles. Specific employment offers and associated compensation will be extended individually based on several factors, including but not limited to geographic location; relevant experience, education, and training; and the nature of and demand for the role.
We do not request current or historical salary information from candidates.
Pay Rate: $18 - $25 per hour
MVP's Inclusion Statement
At MVP Health Care, we believe creating healthier communities begins with nurturing a healthy workplace. As an organization, we strive to create space for individuals from diverse backgrounds and all walks of life to have a voice and thrive. Our shared curiosity and connectedness make us stronger, and our unique perspectives are catalysts for creativity and collaboration.
MVP is an equal opportunity employer and recruits, employs, trains, compensates, and promotes without discrimination based on race, color, creed, national origin, citizenship, ethnicity, ancestry, sex, gender identity, gender expression, religion, age, marital status, personal appearance, sexual orientation, family responsibilities, familial status, physical or mental disability, handicapping condition, medical condition, pregnancy status, predisposing genetic characteristics or information, domestic violence victim status, political affiliation, military or veteran status, Vietnam-era or special disabled Veteran or other legally protected classifications.
To support a safe, drug-free workplace, pre-employment criminal background checks and drug testing are part of our hiring process. If you require accommodations during the application process due to a disability, please contact our Talent team at .
Interview: Virtual interview
Duration: 1 year, potential for extension. Conversion to direct TBD.
Responsibilities
- Create and manage individual project charters, schedules, resource plans, and budgets.
- Participate in and facilitate program intake, facilitate program prioritization discussions, and collect high-level requirements.
- Continually collaborate with stakeholders, document requirements/scope and dependencies, and host project kick-offs.
- Execute multiple simultaneous programs across the team and ensure objectives and deliverables are accomplished according to plan.
- Manage cross-functional dependencies, risks, and changes effectively by optimizing scope, schedule, and resources accordingly
- Provide program-level status updates and reporting to sponsor and stakeholders, and facilitate regular program status meetings (including agendas, presentations, minutes, action items and follow-up)
- Build strong partnerships to mobilize program/project team members and influence across a range of leaders, internal teams, and external suppliers.
- Follow and contribute to standards, best practices, processes, and documentation for the Program
- Responsible for managing multiple cyber programs
- Creating project plans
- Status reports and meetings
- Hold teams accountable and managing risk
- Coordinating with multiple teams
- Bachelor’s degree or 4 years equivalent experience in Project/Program Management, Product Management, Business Administration or a related field.
- Minimum 2 years of technology end-to-end Program / Project Management experience through design, development, testing, launch, and post-launch support.
- Excellent interpersonal demeanor and executive presence.
- Detail-orientated with excellent time management and organizational skills.
- Excellent written and verbal communication to peers and executives.
- Thorough note taking abilities with follow-ups and key next steps
- Problem-solving skills while working well under pressure and ability and desire to work in a fast-paced, rapidly growing environment.
- Proactive, strong sense of ownership with demonstrated teamwork capabilities.
- Ability to build and maintain relationships with stakeholders and team members.
- Strong business partnering and cross-functional leadership skills.
- Ability to drive results and hold teams all teams accountable.
- Experience with Microsoft & Program Management tools - Outlook, PowerPoint, Excel, Word, MS Project, Smartsheet.
- Experience leading large scale Cyber projects / programs
- Experience developing and maintaining large scale budgets
- Experience managing global projects teams with competing priorities, diverse business objectives, and time zones constraints
- Ability to collect information from multiple sources, document concepts using data + visualizations, and present complex topics to both technical and non-technical audiences
- Experience with Microsoft 365
- Experience with JIRA, PPT, Smartsheet
- Program Management Professional (PgMP), Project Management Professional (PMP), and/or Certified Scrum Master (CSM) certifications a plus
This system will operate on a Kubernetes-based, containerized platform, and this role is essential to ensuring the environment is stable, secure, and operationally sound.
The individual will work closely with internal staff and external vendors to evaluate system architecture, implement and maintain secure configurations, and support ongoing operations.
The focus of the role is not on building the platform from scratch, but on ensuring it is properly designed, securely configured, monitored, and defensible from both a technical and governance perspective.
The position requires practical experience with Kubernetes, cloud or hybrid environments, access controls, monitoring, logging, and general cybersecurity best practices, and will help ensure the system meets the reliability, security, and compliance expectations of a regulated public sector and election environment.
Skills Required Kubernetes, Cybersecurity Experience Required Practical experience with Kubernetes, cloud or hybrid environments, access controls, monitoring, logging, and general cybersecurity best practices.
Experience Preferred Experience supporting government systems or other regulated environments is strongly preferred Education Required Bachelors in related field of study
Fast Retailing, recognized for our flagship brand UNIQLO and Theory, Helmut Lang,
Comptoir Des Cotonnier, GU, PLST, and Princesse Tam Tam brands, operates with the mission of “Changing clothes. Changing conventional wisdom. Change the world.” and the concept of “LifeWear = ultimate everyday wear to improve everyone’s daily life.”
Fast Retailing Group aims to become the world’s No.1 brand, loved by customers globally, by serving as an essential “clothing infrastructure” for everyday life.
As business operations increasingly shift to digital platforms, establishing a robust global security framework for system development and operations has become a critical priority.
This position seeks a professional who can assess the reality of our information systems, identify risks comprehensively, and lead the implementation of optimal security controls in collaboration with IT and business departments, thereby strengthening global information security.
Department Overview:
The Information Security Office is responsible for protecting customer personal data and all internal confidential information.
Operating globally with a diverse team, the office develops and enforces security rules, provides education, and continuously monitors implementation across all regions.
Headquartered in Japan, the team leads global initiatives to assess and mitigate security risks that may impact business operations.
Rather than pursuing local optimization, the office designs and executes security strategies that are optimal for the entire group, working with a wide range of stakeholders, business functions, and technologies to implement and operate security solutions.
Position Overivew:
This position is based in North America (NYC) but primarily functions as part of the Global Headquarter (GHQ) team. In addition to GHQ responsibilities, the role may also support certain activities of the North America Information Security Office.
As a member of the Global Security Operations Center (SOC), this role will handle security monitoring and Tier 2 incident response across multiple environments, including our e‑commerce platform, enterprise systems, and IaaS cloud infrastructure. The projects under this role are not limited to routine alert handling; rather, they involve complex, high‑autonomy initiatives such as:
End‑to‑end oversight of monitoring improvements
- Analyzing detection gaps in our EC, Enterprise, and IaaS environments
- Designing enhanced detection logic and workflows
- Coordinating with global stakeholders to deploy new monitoring rules
Security automation and process optimization projects
- Identifying inefficiencies in existing SOC processes
- Proposing and implementing automation (e.g., SOAR workflows, log enrichment, playbook optimization)
- Driving operational improvements without relying on predefined “plug‑and‑play” tasks
Evaluation and implementation of new security tools
- Leading technical assessments and PoCs for new SOC technologies
- Designing deployment plans and integration strategies
- Executing rollout in coordination with global teams while owning the technical decision-making process
These key projects require the ideal candidate to work independently, evaluate complex security challenges, design appropriate technical solutions, and drive the implementation from concept to completion. The expectation is not to perform basic alert monitoring, but to actively enhance the SOC’s capabilities by applying technical judgment, initiative, and ownership over key security improvements.
Responsibilities:
Based on your strengths and interests, you will take ownership of multiple areas from the list below:
- Implementation, operation, and continuous improvement of cybersecurity technologies (e.g., WAF, AntiBot, email/web/endpoint protection)
- Deployment and enhancement of insider threat prevention solutions (e.g., DLP, CASB, data security platforms)
- Building and managing log monitoring infrastructure, including development of detection and monitoring content
- Planning and executing security assessments and cyberattack simulation exercises
- Responding to security incidents, conducting investigations, and driving technical remediation
- Performing other information security tasks necessary to support the company’s overall risk management
Education & Qualifications:
- Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or related field
- 4-7+ years of experience in Cyber Threat Intelligence, Security Operations, Incident Response, and/or related roles
- Experience in incident response and related investigations
- Strong knowledge of Incident Response principles, framework, and processes
- Strong, analytical approach to problem solving and solution development
- Able to manage multiple projects and support functions in a fast-paced, dynamic environment.
Salary: $95,000.00 to 120,000.00*
*The offered salary or salary range is based on several factors, including, but not limited to, overall experience, relevant experience, education level, certifications, applicable skills and expertise, and location of the position.
As an Equal Opportunity Employer, Fast Retailing does not discriminate against applicants or employees because of race, color, creed, religion, sex, national origin, veteran status, disability, age, citizenship, marital or domestic/civil partnership status, sexual orientation, gender identity or expression or because of any other status or condition protected by applicable federal, state or local law.
Ensure your Fast Retailing US job offer is legitimate and don’t fall victim to fraud. Fast Retailing never seeks payment from job applicants. Feel free to ask your recruiter for a phone call or other type of communication for an interview and ensure your communication is coming from Fast Retailing or sister company email address. For added security, where possible, apply directly through our job posting.
Role: Cybersecurity Engineer III
Location: MD – Silver Spring, DC, or ATL – Techwood - Onsite
Job Description
Job Responsibilities / Typical Day in the Role
• Implement design reviews to evaluate security controls
• Identify and communicate opportunities to enhance the security posture of WBD
• Build and / or manage enterprise security platforms effectively
• Communicate effectively across all levels of management to articulate WBD security goals and vision.
• Identify and communicate opportunities to enhance the security posture of WBD
• Build and / or manage enterprise security platforms effectively (SAAS, on premise or in Cloud)
• Communicate effectively across all levels of management to articulate WBD security goals and vision.
• Have a team player mentality; strive to contribute to team cohesion however can work independently if the need arises
• Plan, design, engineer and implement security-related technologies
• Understanding technical security issues, their implications within WBD business units and able to effectively communicate them to management and other business leaders.
• Configure, troubleshoot, and maintain security infrastructure – including software and hardware in cloud environments, as well as on-premises.
• Conduct security audits and assessments to regularly determine the effectiveness of security platforms and identify areas of improvement.
• Host and operating systems hardening, auditing, monitoring and logging with appropriate security controls and best practices while meeting security best practices and business goals
• Research and explore emerging security technologies and determine their appropriate use within the company.
• Prepare, document, and create standard operating procedures and protocols.
• Crosstrain and mentor other team members as needed
Must Have Skills / Requirements
1) Implementing advanced cyber security technology in a complex environment
a. 5+ years of experience; Hands-on experience in security engineering, hands-on experience in building, designing, and maintaining enterprise security tools.
2) Scripting experience (using Python, Go, or other equivalent languages)
a. 5+ years of experience.
3) Hands-on Experience with automation technologies
a. 3+ Years of experience; Terraform, Ansible, CloudFormation, etc.
4) Linux Experience.
a. 5+ years of experience; Ability to construct and maintain complex network infrastructures.
Technology requirements:
• Engineer and administer security platforms including SIEM/SOAR systems, endpoint detection and response, vulnerability management, anomaly detection, and cloud analysis.
• Experience in managing the Brinqa vulnerability management platform and experience with Groovy programming language
• Must have 5+ years of scripting experience (using Python or other equivalent languages)
• Hands-on Experience in public cloud infrastructures like AWS (Amazon Web Services)
Nice to Have Skills / Preferred Requirements
1) Security and Cloud certifications are a plus. (CISSP, Splunk Admin, AWS Solution architect).
2) Media/entertainment or distributed global network experience.
Soft Skills
1) Hands-on technical experience with networking and computing system architectures, specifically, the security aspects thereof.
2) Thorough understanding of information security principles, techniques, principles, policy frameworks, and best practices
3) Hands-on technical experience with compliance and regulatory frameworks and how they affect architecture designs and review
Education / Certifications
1) None required, but certifications preferred.
AGE Solutions is a premier technology and professional services company, providing in-depth consulting, advanced technology solutions, and essential services throughout the U.S. government, defense, and intelligence sectors. Prioritizing innovation and client-focused solutions, we assist major agencies in addressing intricate issues and ensuring a more secure future.
AGE Solutions is preparing for a significant contract supporting the Joint Service Provider (JSP) Enterprise Transport Management (ETM) program. These roles cover RMF practitioners and continuity planners familiar with eMASS, AI-based monitoring, and DISA compliance.
Who We're Looking For:
- COOP Planners, RMF Analysts, Cyber Compliance Experts
- Plan and support continuity of operations and ISCP testing
- Incumbents encouraged to apply
Clearance: TS/SCI
Certifications: RMF/eMASS, ITIL v4, Security+
Experience: 8 to 15 years
This position is part of a pipeline for a future opportunity supporting the JSP ETM program. Employment is contingent upon contract award and government customer approval. AGE Solutions is actively engaging talent ahead of award and encourages both current incumbents and new candidates to express interest.
At AGE Solutions, we reward performance, invest in growth, and share success. Our benefits support the whole person, professionally, financially, and personally.
- 26 Days Paid Leave: Includes vacation, sick, personal time, and holidays. You choose how to use it.
- Performance Bonuses: Performance bonuses are awarded based on individual contributions and company-wide results, aligning recognition with impact.
- 401(k) with Match: We match 3% of your contributions with immediate vesting.
- Financial Protection: Company-paid life insurance up to $300K and options for additional coverage for you and your dependents.
- Health Benefits: Multiple medical plans, dental, vision, FSA and HSA options to fit your needs.
- Parental Leave: 15 days of fully paid leave for new parents, because family matters.
- Military Differential Pay: We bridge the gap for employees on active duty, so they don't take a financial hit while serving.
- Professional Growth: Paid training and certifications, tuition reimbursement, and the tools and tech to get the job done right.
- Shared Success: In the event of a company sale, our CEO has committed to returning 80% of net proceeds to employees. This ensures our team shares in the long term value they help create.
At AGE, you'll do work that matters, supported by a company that delivers for its people.
AGE Solutions is a premier technology and professional services company, providing in-depth consulting, advanced technology solutions, and essential services throughout the U.S. government, defense, and intelligence sectors. Prioritizing innovation and client-focused solutions, we assist major agencies in addressing intricate issues and ensuring a more secure future.
AGE Solutions is looking for a Senior Cyber Cloud Assessment Engineer to join our team in support of an upcoming cybersecurity risk management and assessment program with our DoD customer. As a Team Lead, you will be responsible for performing analysis, conducting independent validations of assessments, and Continuous Monitoring (ConMon) for authorized CSPs and CSOs.
Individuals in this role must be available to work full-time on-site at Ft. Meade, MD.
Responsibilities Include:
- Conduct cybersecurity assessments and validations of Cloud Service Offerings (CSOs) in support of the Department of Defense (DoD) Provisional Authorization (PA) process.
- Evaluate Cloud Service Provider (CSP) documentation packages following government guidance and procedures, including key artifacts such as the Cloud Architecture Diagram, System Security Plan (SSP), SSP Addendum, Readiness Assessment Report (RAR), System Architecture, Security Assessment Plan (SAP), Security Assessment Report (SAR), and associated Plans of Action & Milestones (POA&Ms).
- Review, analyze, and process additional documents including Change Requests, Extension Requests, Deviation Requests, Whitelist Requests, Corrective Action Plans, templates, process guide approvals, and continuous monitoring (ConMon) artifacts for existing Provisional Authorizations.
- Prepare and deliver up to 30 Cloud Security Assessment Packages annually, each including validated cybersecurity controls, certifier recommendations, and a statement of residual risk.
- Participate in technical kickoff meetings and review preliminary documentation to assess a CSP's readiness posture.
- Analyze and provide detailed feedback on CSP submissions such as the RAR, SAP, SSP, and architectural diagrams.
- Assess and document the operational impact of authorizations, changes, and vulnerabilities on the CSP environment.
- Develop Cloud Security Assessment Packages in accordance with established guidelines, including the SAR, POA&M, and any Deviation Requests.
- Draft Authorization Recommendation Memoranda outlining CSO compliance with DoD cybersecurity controls, residual risks, and technical findings.
- Prepare formal DoD Provisional Authorization memoranda, detailing authorization length, CSO boundary, services provided, operating conditions, DoD usage considerations, and follow-on activities.
- Validate CSO controls within eMASS or other government-provided Governance, Risk, and Compliance (GRC) tools; ensure accurate tracking in the Mission Status Report (MSR).
- Review and verify the Customer Responsibility Matrix (CRM), ensuring proper control inheritance is reflected in eMASS/GRC systems.
- Upload authorization conditions as system-level POA&Ms in eMASS and monitor their resolution.
- Organize and associate all received documentation with applicable security controls within eMASS.
- Maintain and update the DoD Cloud Process Guide, including all checklists, templates, forms, and guidance documents.
- Assist in developing internal requirements and how-to guides for assessors conducting CSP validations.
- Document and refine assessment procedures and validation best practices to align with DoDI 8510.01 and the DoD Cloud Computing Security Requirements Guide (SRG).
- Contribute to the ongoing development and annual updates of the DoD Cloud Assessment Process Guides as requested by the Government.
Requirements:
- Bachelor's degree (IT-related field preferred)
- Eight (8) years of overall experience in cybersecurity or network security position
- Have an active DoD Top Secret clearance with SCI eligibility
- DoD 8570 IAM/IA Technical (IAT) Level III certification
- Familiarity with security controls for Azure, AWS, and assorted cloud platforms
- Solid understanding of DoD Risk Management Framework (RMF), DoDI 8510.01, and DoD Cloud Computing Security Requirements Guide (SRG)
- Familiarity with security controls for Azure, AWS, and assorted cloud platforms
- Hands-on experience with eMASS or other government-provided GRC tools
- Familiarity with cloud security documentation, including SSPs, SARs, RARs, and POA&Ms
- Ability to analyze complex cloud architectures and provide accurate risk assessments
- Strong technical writing and communication skills to produce security assessment reports and formal recommendations
- Applicants must reside within a commutable distance of Ft. Meade, MD in order to work onsite full time.
Compensation: $110,000+
At AGE Solutions, we reward performance, invest in growth, and share success. Our benefits support the whole person, professionally, financially, and personally.
- 26 Days Paid Leave: Includes vacation, sick, personal time, and holidays. You choose how to use it.
- Performance Bonuses: Performance bonuses are awarded based on individual contributions and company-wide results, aligning recognition with impact.
- 401(k) with Match: We match 3% of your contributions with immediate vesting.
- Financial Protection: Company-paid life insurance up to $300K and options for additional coverage for you and your dependents.
- Health Benefits: Multiple medical plans, dental, vision, FSA and HSA options to fit your needs.
- Parental Leave: 15 days of fully paid leave for new parents, because family matters.
- Military Differential Pay: We bridge the gap for employees on active duty, so they don't take a financial hit while serving.
- Professional Growth: Paid training and certifications, tuition reimbursement, and the tools and tech to get the job done right.
- Shared Success: In the event of a company sale, our CEO has committed to returning 80% of net proceeds to employees. This ensures our team shares in the long term value they help create.
At AGE, you'll do work that matters, supported by a company that delivers for its people.
AGE Solutions is a premier technology and professional services company, providing in-depth consulting, advanced technology solutions, and essential services throughout the U.S. government, defense, and intelligence sectors. Prioritizing innovation and client-focused solutions, we assist major agencies in addressing intricate issues and ensuring a more secure future.
AGE Solutions is looking for a Cyber Cloud Assessment Engineer to join our team in support of a cybersecurity risk management and assessment program with our DoD customer. In this role, you will be part of a team responsible for performing analysis, conducting independent validations of assessments, and Continuous Monitoring (ConMon) for authorized CSPs and CSOs.
Individuals in this role must be available to work full-time on-site at Ft. Meade, MD.
Essential Duties and Responsibilities
- Conduct cybersecurity assessments and validations of Cloud Service Offerings (CSOs) in support of the DoD Provisional Authorization (PA) process
- Prepare 30 Cloud Security Assessment Packages per year, including validated cybersecurity controls, certifier's recommendations, and residual risk statements
- Review Cloud Service Provider (CSP) documentation packages, including architectural diagrams, System Security Plans (SSP) with Addendums, Readiness Assessment Reports (RAR), Security Assessment Plans (SAP), and Security Assessment Reports (SAR)
- Evaluate supporting materials such as POA&Ms, Change Requests, Extension and Deviation Requests, Whitelist Requests, Corrective Action Plans, and applicable templates, checklists, and Continuous Monitoring (ConMon) artifacts
- Attend technical kickoff meetings to evaluate and document the CSP's security posture and readiness for assessment
- Analyze and provide feedback on assessment documentation, including the RAR, SAP, SSP, and system architecture diagrams
- Identify and document the operational impact of security authorizations, changes, or identified vulnerabilities within the CSP's environment
- Develop complete Cloud Security Assessment Packages in accordance with DoD standards, ensuring inclusion of SARs, POA&Ms, and Deviation Requests
- Create authorization recommendation memorandums summarizing compliance with DoD cybersecurity controls, technical evaluation results, and residual risk considerations
- Draft DoD PA memorandums outlining CSO boundary definitions, service offerings, authorization duration, terms and conditions, DoD usage considerations, and follow-on actions
- Validate implementation of CSO controls within eMASS or a government-provided GRC platform, and log assessment completion in the Mission Security Review (MSR)
- Review the Customer Responsibility Matrix (CRM) and ensure correct inheritance mapping within eMASS or the designated GRC tool
- Enter all authorization conditions into eMASS as system-level POA&Ms and monitor for timely resolution
- Upload and associate all CSP documentation with applicable security controls in eMASS or the appropriate system of record
- Track and manage all CSO-related data using the Team Lead Resource (TLR) Assessment Database
- Maintain and update the DoD Cloud Process Guide and associated templates, forms, checklists, and documentation
- Contribute to the development of internal instructions, how-to guides, and reference material to support consistent assessor workflows
- Ensure assessment activities are conducted in compliance with DoDI 8510.01 and the DoD Cloud Computing Security Requirements Guide (SRG)
- Document assessment methodologies and validation best practices to continuously improve assessment accuracy, consistency, and process efficiency
- Support the ongoing development and annual updates of the DoD Cloud Assessment Process Guides in alignment with evolving policy and government directives
Requirements:
- Bachelor's degree (IT-related field preferred)
- Five (5) years of overall experience in cybersecurity or network security position
- Have an active DoD Top Secret clearance with SCI eligibility
- DoD 8570 IAM/IA Technical (IAT) Level II certification
- Working knowledge of DoD Risk Management Framework (RMF) and DoDI 8510.01
- Familiarity with the DoD Cloud Computing Security Requirements Guide (SRG) and associated cloud security policies
- Familiarity with security controls for Azure, AWS, and assorted cloud platforms
- Experience conducting security assessments and developing security documentation (e.g., SSP, SAR, POA&M, SAP)
- Proficiency with eMASS or equivalent Government Risk and Compliance (GRC) tools
- Demonstrated ability to interpret and apply NIST SP 800-53 security controls in cloud environments
- Strong analytical and technical writing skills with the ability to communicate complex topics clearly
- Applicants must reside within a commutable distance of Ft. Meade, MD in order to work onsite full-time.
Work Environment:
- Must be able to sit for long periods
Compensation: $85,000+
At AGE Solutions, we reward performance, invest in growth, and share success. Our benefits support the whole person, professionally, financially, and personally.
- 26 Days Paid Leave: Includes vacation, sick, personal time, and holidays. You choose how to use it.
- Performance Bonuses: Performance bonuses are awarded based on individual contributions and company-wide results, aligning recognition with impact.
- 401(k) with Match: We match 3% of your contributions with immediate vesting.
- Financial Protection: Company-paid life insurance up to $300K and options for additional coverage for you and your dependents.
- Health Benefits: Multiple medical plans, dental, vision, FSA and HSA options to fit your needs.
- Parental Leave: 15 days of fully paid leave for new parents, because family matters.
- Military Differential Pay: We bridge the gap for employees on active duty, so they don't take a financial hit while serving.
- Professional Growth: Paid training and certifications, tuition reimbursement, and the tools and tech to get the job done right.
- Shared Success: In the event of a company sale, our CEO has committed to returning 80% of net proceeds to employees. This ensures our team shares in the long term value they help create.
At AGE, you'll do work that matters, supported by a company that delivers for its people.