> Markdown version of [/jobs/ext/1032410-senior-cybersecurity-project-manager](https://www.wearedevelopers.com/jobs/ext/1032410-senior-cybersecurity-project-manager). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Cybersecurity Project Manager - **Company:** OneZero Solutions - **Location:** Washington, DC, United States (Remote available) - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Software System Penetration Testing, Cyber Security, Information Systems, Identity and Access Management, RSA (Cryptosystem), Software Vulnerability Management, HybridCloud, Information Technology, Splunk, Devsecops - **Published:** June 8, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=7e851004ed78e1b3 ## About the Role Do you have experience in Stakeholder relationship building?, Do you have a Master's degree?, * Bachelor's degree in Computer Science, Information Systems, Cybersecurity, Engineering, or a related field (Master's preferred), or equivalent experience. * 10+ years managing cybersecurity or enterprise IT programs, including 5+ years in classified (TS/SCI) Intelligence Community or DoD/DHS environments. * Demonstrated experience leading RMF / A&A, Continuous Monitoring / Ongoing Authorization, and/or SOC programs at enterprise scale. * Experience managing hybrid T&M / FFP contracts of comparable scope (e.g., ~$70M ceiling, 30+ FTE cleared workforce). * PMP required; CISSP strongly preferred (DoD 8570/8140 IAM-level); ITIL a plus. * Clearance: final adjudicated Top Secret with current SCI access (or SCI debriefed within the last 2 years, reinstatable per ICD 704), free of conditions, deviations, or waivers; able to obtain a CI polygraph. * NOTE: Education/experience/certification minimums above are a recommended baseline pending confirmation against the I2ACS TORFP labor-category description., * Deep expertise in RMF / A&A, Continuous Monitoring, and ATO processes in classified environments, with familiarity using eMASS, ACAS / Tenable, Splunk / Elastic, RSA Archer, and similar tools. * Working knowledge of hybrid cloud + on-premises security assessment and DevSecOps pipelines in a classified setting. * Strong financial / earned-value management and stakeholder management skills, with a track record of interfacing directly with Government senior leadership (CIO/CISO). * Proven ability to recruit, retain, and lead a cleared cybersecurity workforce and sustain 90%+ staffing in a competitive market. * Sound risk-based decision-making and problem-solving in a fast-paced, mission-critical Intelligence Community environment. ## Description Clearance: TS/SCI (final adjudicated TS + current SCI access, or SCI within 2 yrs reinstatable per ICD 704; CI polygraph anticipated), The Senior Cybersecurity Project Manager is a designated Key Personnel position serving as the contractor's primary point of contact to the DHS Office of Intelligence & Analysis (I&A) CIO/CISO under the Intelligence Information Assurance and Cybersecurity Services (I2ACS) program. The PM leads delivery of comprehensive cybersecurity managed services across the DHS Intelligence Enterprise - RMF / Assessment & Authorization (A&A), Continuous Monitoring (CONMON) and Ongoing Authorization, ISSO support, vulnerability management, penetration testing, and SOC operations - in a hybrid, multi-classification environment (commercial and IC cloud, C-LAN, cross-domain solutions) protecting 50,000+ users. The PM is accountable for cost, schedule, and technical performance; FISMA compliance with no expired ATOs; maintaining the minimum 90% staffing level with cleared talent; and driving automation and acceleration of CONMON and ATO processes in a classified setting., * Serve as the contractor's primary point of contact to the DHS I&A CIO/CISO; lead all financial, technical, administrative, and personnel program activities. * Deliver to cost, schedule, and technical performance; conduct Program Management Reviews (PMRs) and provide progress and financial reporting to company and Government leadership. * Lead delivery across the I2ACS scope: RMF/A&A, CONMON and Ongoing Authorization, ISSO support, vulnerability management, penetration testing / software assurance, and SOC operations across the hybrid multi-classification enterprise. * Drive automation and acceleration of CONMON and ATO processes and support the DevSecOps pipeline for the classified cloud environment. * Maintain FISMA compliance with no expired ATOs (proposed SLA); identify, assess, and mitigate program risks. * Recruit, retain, and manage a cleared cybersecurity workforce; maintain the minimum required 90% staffing with a robust backfill, training, and certification program. * Oversee personnel security and clearance processing; manage program transition activities, including the move to ICCB Bethesda / St. Elizabeths. * As Key Personnel, attend and present at the Phase II oral presentation and be available on-site at an approved Government location during core hours. ## Related Videos - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Organizational Change Through The Power Of Why - DevSecOps Enablement](https://www.wearedevelopers.com/videos/478-organizational-change-through-the-power-of-why-devsecops-enablement) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs)