Cyber Security Policy SME

Calibrate North
Remote, VA, us
Remote
Permanent
Full-time

This is a remote position.

Title : Cyber Security Policy SME

Location : Remote

Terms : Full-Time / Permanent

Clearance : All qualified candidates must have an active DoD Secret level security clearance

RESPONSIBILITIES :

  • Provide expert guidance during the Oracle 19C upgrade, ensuring the implementation of security controls, system hardening, and compliance-driven optimizations.
  • Conduct in-depth evaluations of software systems, pinpoint vulnerabilities, and recommend solutions in alignment with strict government security standards.
  • Champion security-by-design principles. Design and implement comprehensive logging mechanisms, establish audit trails, and develop technical validation processes to ensure adherence to government recordkeeping and security mandates.
  • Mentor teams on secure coding practices, threat modeling, and compliance-driven development. Integrate static / dynamic security testing tools into the development pipeline.
  • Proactively identify potential security risks and vulnerabilities. Prepare comprehensive reports detailing security posture, compliance gaps, and prioritized mitigation strategies.
  • Work closely with government stakeholders to understand security requirements, interpret directives, and ensure projects meet contractual compliance obligations.

Requirements

BASIC QUALIFICATIONS :

  • A bachelor's degree in computer science, Cybersecurity, Software Engineering, or a closely related technical field OR Extensive, directly relevant experience in secure software engineering and compliance may be considered in lieu of a degree.
  • Deep expertise in secure software architecture, design patterns, and defensive coding techniques to safeguard systems from the ground up.
  • In-depth understanding of data integrity principles, logging best practices, and rigorous auditing standards as they relate to government record-keeping requirements.
  • In-depth knowledge of cybersecurity frameworks (NIST, ISO, etc.), risk assessment methodologies, and federal compliance standards.
  • Proven track record in designing and implementing robust security solutions within government-mandated compliance frameworks.
  • Extensive experience in integrating security controls and testing throughout the SDLC, with a focus on threat modeling, vulnerability analysis, and secure code reviews.
  • Mastery of multiple programming languages, secure coding principles, cybersecurity tools, and cloud security (desirable).
  • Exceptional written and verbal communication. Ability to translate technical security requirements into actionable plans for development teams and clearly articulate risks to non-technical stakeholders.

PREFERERED QUALIFICATIONS :

  • Experience with Oracle database administration, specifically upgrades or migrations.
  • In-depth knowledge of cybersecurity frameworks (NIST, ISO, etc.), risk assessment methodologies, and federal compliance standards.
  • Experience conducting comprehensive security evaluations and vulnerability assessments.
  • Expertise in records management principles, log analysis, and auditing best practices.
  • Understanding of government recordkeeping requirements and compliance frameworks.
  • Strong understanding of log data formats, event correlation, and data retention policies.
  • Proficiency in developing technical standards and documentation.
  • Comprehensive understanding of security risk assessment methodologies and reporting frameworks.
  • Certified Information Systems Security Professional (CISSP)
  • Oracle Certified Professional (OCP) Database Administration
  • Oracle Database Security Specialist
  • Certified Information Systems Auditor (CISA)
  • Systems Security Certified Practitioner (SSCP)
  • OR a relevant GIAC certification (GSEC, GPEN, etc.)
  • 16 days ago
Related jobs
Promoted
Leidos Holding
Reston, Virginia

Cyber Security Engineers are responsible for IT security/vulnerability assessments and managing overall network security using network and security-related hardware and software. Leidos is seeking a Cyber Security InfoSec Engineer will provide support for a 150+ FTE technical development program sup...

Promoted
The Swift Group
Herndon, Virginia

Cyber Security Project Manager. We are seeking candidate with previous technical security experience; knowledge of encryption, networking and transport; familiarity with developing or modifying system security plans and working through risk management framework body of evidence documentation. Demons...

Promoted
DaVita Inc.
McLean, Virginia

Cyber Security Engineering (SME) - TS/SCI with Polygraph Required. Provide guidance on information security policies, regulations, and technical implementations with a solid understanding of cyber security operations and the Sponsor's Accreditation and Authorization (A&A) processes. Demonstrated...

Promoted
Leidos
Reston, Virginia

Plan, implement, manage, monitor, and upgrade security measures and tools for the protections of information systems and networks and automate repeatable tasks in a consultative role (including mitigation of security scan findings) • Design, configure, implement, troubleshoot, and maintain all secur...

Promoted
Byte Systems, LLC
Reston, Virginia

The Cyber Security Engineer must display an excellent understanding of technology and utilization of Firewalls (Security Groups), VPNs, Data Loss Prevention (DPS), IDS/IPS, Web-Proxy, Security tools, and Security Audits. We are seeking a Cyber Security Engineer (SME). Formulate systems and methodolo...

Calibrate North
Remote, VA, us
Remote

Mastery of multiple programming languages, secure coding principles, cybersecurity tools, and cloud security (desirable). Mastery of multiple programming languages, secure coding principles, cybersecurity tools, and cloud security (desirable). A bachelor's degree in computer science, Cybersecurity, ...

Calibrate North
Remote, VA, us
Remote

Mastery of multiple programming languages, secure coding principles, cybersecurity tools, and cloud security (desirable). Mastery of multiple programming languages, secure coding principles, cybersecurity tools, and cloud security (desirable). A bachelor's degree in computer science, Cybersecurity, ...

Redhorse
Arlington, Virginia

Redhorse Corporation is seeking an Industrial Security Policy Subject Matter Expert (SME) to support to the Counterintelligence, Law Enforcement & Security (CL&S) Directorate within the Office of the Under Secretary of Defense for Intelligence and Security (OUSD(I&S)) at the Pentagon. Participate in...

BAE Systems
Herndon, Virginia

Document the various security control implementations as well as gather the artifacts that support the Risk Management Framework (RMF) and ICD 503 Security Accreditation for various Assessment and Authorization (A&A) efforts. We are actively seeking Cyber Security Systems Engineers with a minimum of...

Redhorse
Arlington, Virginia

Redhorse Corporation is seeking an Industrial Security Policy Subject Matter Expert (SME) to support to the Counterintelligence, Law Enforcement & Security (CL&S) Directorate within the Office of the Under Secretary of Defense for Intelligence and Security (OUSD(I&S)) at the Pentagon. Participate in...