Systems Security Engineer (TS/SCI w/ Poly) Bid role starting in 8-10 weeks

Leading Path Consulting
Herndon, VA

The Sponsor's office is working to accelerate mission delivery and connect mission partners with the power commercially-driven cloud computing. The Sponsor brings multi-cloud solutions to mission environments, supporting cloud services providers (CSPs), and offering cloud services across multiple networks. The Sponsor manages security assessment, security compliance, change management, and continuous monitoring responsibilities across four (4) cloud service providers: Amazon Web Services, Google Cloud, Oracle Cloud, and Microsoft Azure. The Team, in conjunction with the Sponsor's office, shall manage security assessment, security compliance, change management, and continuous monitoring activities, including associated program management functions, across four (4) cloud service providers: Amazon Web Services, Google Cloud, Oracle Cloud, and Microsoft Azure. The Team shall assess cloud security technologies for security gaps and weaknesses according to industry standards. The Team shall analyze security scan findings and perform risk analysis on the findings. The Team shall review cloud security body of evidence packages for completeness and accuracy. The Team will collaborate with other internal components and security peers to determine security and potential weaknesses of cloud infrastructure and cloud services. The Team will advise Sponsor leadership on cloud security services. The Team will analyze system alerts to determine if a security weakness exists and document risk mitigation procedures. The Team will sustain and evolve the Sponsor's standard operating procedures to meet Program Objectives. The Team will facilitate technical exchange meetings (TEMs) with cloud service providers to review cloud service architectures. The Team will provide program management support including project planning, task tracking, milestone management, and resource coordination to ensure timely delivery of all contract requirements. The Team will develop and maintain program metrics and performance indicators including security assessment completion rates, finding remediation timelines, compliance status dashboards, and other key performance indicators as directed by the Sponsor. The Team will respond to Sponsor inquiries and requests for information within established timelines, providing accurate and complete technical and programmatic information. The Team will prepare periodic program highlights, status reports, and briefing materials for Sponsor leadership summarizing program activities, accomplishments, issues, and upcoming milestones. The Team will support ad hoc taskings from the Sponsor including research, analysis, documentation, and coordination activities as required to meet emerging program needs. The Team will maintain regular communications with the Sponsor through scheduled status meetings, written reports, and other communication channels as established by the Sponsor.

Requirements

1. (Mandatory) Demonstrated experience facilitating TEMs with cloud service providers to review cloud service architectures

2. (Mandatory) Demonstrated experience maintaining assessment and authorization (A&A) packages across multiple services or systems in accordance with FIPS-199, NIST 800-53, and CNSS 1253 requirements.

3. (Mandatory) Demonstrated experience designing, implementing, assessing or reviewing systems that utilize cloud technology with either Amazon Web Services, Oracle Cloud, Google Cloud, or Microsoft Azure cloud architecture.

4. (Mandatory) Demonstrated experience utilizing or reviewing cross domain technology and common architecture designs.

5. (Mandatory) Demonstrated experience with continuous monitoring requirements to include scan analysis for critical or high findings with common scan tools such as Rapid 7, Nessus, and Qualys.

6. (Mandatory) Demonstrated experience creating, monitoring, or closing system or service plan of Action and Milestone items (POA&Ms).

7. (Mandatory) Demonstrated experience utilizing compliance tools to track assessment and authorization activities such as Xacta 360, Risk Vision, RSA Archer.

8. (Mandatory) Demonstrated experience with the common control provider concept within the NIST Risk Management Framework.

9. (Mandatory) Demonstrated experience with security control assessments to include working with SCAs and preparing security packages for SCAs.

10. (Mandatory) Demonstrated experience conducting information system security engineering activities.

11. (Mandatory) Demonstrated project management experience including project planning, task tracking, milestone management, and resource coordination

12. (Mandatory) Demonstrated experience developing and maintaining program metrics, performance indicators, and compliance status dashboards

13. (Mandatory) Demonstrated experience preparing technical reports, program highlights, status briefings, and leadership communications

14. (Desired) Demonstrated experience assessing cloud security technologies for security gaps and weaknesses according to industry standards.

15. (Desired) Demonstrated experience reviewing cloud security body of evidence packages for completeness and accuracy.

16. (Desired) Demonstrated experience facilitating technical exchange meetings (TEMs) with cloud service providers to review cloud service architectures.

17. (Desired) Demonstrated experience providing project management support including project planning, task tracking, milestone management, and resource coordination to ensure timely delivery of all contract requirements.

18. (Desired) Demonstrated experience using the Sponsors or IC element A&A process.

19. (Desired) Demonstrated experience creating or reviewing A&A body of evidence documentation in a cloud security environment.

20. (Desired) Demonstrated experience identifying, implementing, or reviewing appropriate information security controls.

21. (Desired) Demonstrated experience working in Xacta 360

22. (Desired) Demonstrated experience with Sponsor's tools.

Benefits

Leading Path is an award-winning Information Technology and Management Consulting firm focused on providing solutions in process, technology, and operations to our government and Fortune 500 clients. We offer a professional and family friendly work environment with a strong work-life balance. Leading Path provides a comprehensive and competitive benefits package including fully paid medical/dental/vision premiums, generous PTO, 11 Paid Holidays, 6% 401K contribution, annual training and tuition reimbursement, SPOT Award bonuses, regular team events, opportunities for professional growth and advancement and much more!

Posted 2026-05-08

Recommended Jobs

Line Cook

Barrel House
Manassas, VA

Job Description Job Description Position Overview: The Line Cook is a key member of our kitchen staff, responsible for the preparation, cooking, and presentation of dishes according to the resta…

View Details
Posted 2026-05-16

Health & Safety Manager

Posillico Civil, Inc.
Fairfax, VA

Overview: Posillico is Building for Generations. Posillico is a multi-disciplined and diversified construction company. Along with our Civil /foundation group, Posillico’s business units include W…

View Details
Posted 2026-02-06

COMSEC Engineer

Career Listings
Fort Belvoir, VA

Job Description Job Description Benefits: ~401(k) ~401(k) matching ~ Dental insurance ~ Health insurance ~ Paid time off ~ Profit sharing ~ Training & development ~ Tuition assista…

View Details
Posted 2026-06-20

Network Engineer Architect

Tenica and Associates
Chantilly, Loudoun County, VA

We are seeking a Network Engineer Architect to become an integral part of our team! You will be responsible for designing and implementing computer and information networks. Key Skills: VeloCloud and…

View Details
Posted 2026-05-27

Procurement Specialist

KBR
Chantilly, Loudoun County, VA

Title: Procurement Specialist Belong. Connect. Grow. with KBR! KBR's National Security Solutions team provides high-end engineering and advanced technology solutions to our customers in the …

View Details
Posted 2025-11-07

Tier 2 Support Specialist

Astor & Sanders
Reston, VA

Tier 2 Support Specialist   Astor & Sanders Corporation (Astor) is an award-winning IT solutions provider headquartered in McLean, VA and is seeking a Tier 2 Support Specialist candidate .  Th…

View Details
Posted 2026-01-14

Preschool & Early Elementary Music Instructor

Bach to Rock: America's Music School
Herndon, VA

Job Description Job Description Bring music to life for our youngest learners. Bach to Rock – Herndon is hiring experienced early childhood music instructors to teach ages 18 months–7 years …

View Details
Posted 2026-04-10

Senior Small Business Advocate

General Dynamics Information Technology
Falls Church, VA

Public Trust: None Requisition Type: Regular Your Impact Own your opportunity to be at the center of GDIT’s business operations. Make an impact by collaborating across functions to make mi…

View Details
Posted 2026-06-12

Event Staff Street Team - Martinsville Speedway

NASCAR
Martinsville, VA

MARTINSVILLE SPEEDWAY Located in southern Virginia near the North Carolina border, Martinsville Speedway was built in 1947 by its founder H. Clay Earles. The track is the only venue to host NASCAR’s …

View Details
Posted 2026-03-27