Lead Consultant, Cybersecurity
Job Description
Lead cybersecurity consulting support across multiple client engagements, including RMF, A&A, compliance, vulnerability management, and security engineering activities.
Responsibilities
- Execute cybersecurity project tasks across multiple client opportunities to complete deliverables on schedule and within budget.
- Support project managers with planning, status reporting, issue tracking, and execution of assigned workstreams.
- Review project plans, schedules, and work authorizations to understand scope and responsibilities.
- Participate in client and internal meetings and provide technical updates for assigned work.
- Perform research, technical analysis, and data gathering to support project objectives.
- Develop written reports, technical documentation, briefings, and presentations.
- Track and report hours spent executing projects.
- Support quality assurance reviews of project deliverables.
- Support RMF implementation and sustainment efforts.
- Support A&A package development and maintenance.
- Provide security control assessment support.
- Support vulnerability scanning and remediation tracking.
- Support compliance reviews and audit support activities.
- Support system hardening, patch management, and configuration review work.
- Capture and refine cybersecurity operational and security requirements, and help ensure those requirements are addressed with appropriate controls.
- Prepare and maintain cybersecurity artifacts including SSPs, SAR inputs, POA&Ms, policies, procedures, inventories, and risk documentation.
- Review system configurations and technical documentation for alignment with applicable requirements and standards.
- Analyze vulnerability data, scan results, remediation status, and compliance findings.
- Coordinate with project managers and technical staff to resolve issues, close action items, and manage deadlines.
- Serve as a technical lead for defined workstreams and guide less senior team members as needed.
- Contribute to proposal efforts, technical responses, and internal capability development.
- Build effective relationships with clients and internal stakeholders.
- Remote role with regular travel (50%+) to client sites and project locations.
Requirements
- Bachelor’s degree in computer science, information technology, cybersecurity, engineering, or equivalent STEM discipline; equivalent experience may be considered.
- 3+ years of relevant professional experience in cybersecurity, RMF, system security engineering, information assurance, or related fields.
- Must have or be able to obtain and maintain an Active Security Clearance.
- Working experience with NIST Risk Management Framework, NIST SP 800-53, and DoD cybersecurity requirements.
- Experience implementing security controls, documenting compliance, and supporting authorization activities.
- Experience with vulnerability assessment and scanning, configuration changes, software and hardware updates, and securing configurations.
- Tools experience preferred: Nessus, ACAS, eMASS, and related cybersecurity platforms.
- Understanding of network security principles, operating systems, and secure architecture concepts.
- Ability to identify issues, recommend corrective actions, and drive issues to closure.
- Strong written and oral communication skills.
- Strong proficiency with Microsoft Office including Excel, Word, and PowerPoint.
- Ability to handle multiple assignments and work effectively in a team-oriented client environment.
- PowerShell or Python experience preferred.
- Navy, NAVSEA, MSC, RMF, or broader federal/DoD experience preferred.
- Ability to obtain working knowledge of the ABS Health, Safety, Quality and Environmental Management System.
- U.S. citizenship required for roles supporting government contracts.
Technologies
- NIST Risk Management Framework
- NIST SP 800-53
- Nessus
- ACAS
- eMASS
- Microsoft Office (Excel, Word, PowerPoint)
- PowerShell
- Python
- RMF
- SSPs
- SAR inputs
- POA&Ms
Compensation & Location
- Location: Washington, DC (remote)
- Salary: USD 80,000 - 95,000 per year
Reporting relationship: Reports to a Manager.