Cybersecurity Engineer

Credence Management Solutions, LLC
McLean, VA, United States
26 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Working hours
Regular working hours

Tech stack

Cyber Security Information Systems Data as a Services Identity and Access Management IT Management Cloud Platform System Information Technology

Job description

Credence has an immediate need for a Cybersecurity Engineer to serve as a Subject Matter Expert (SME) in cybersecurity, focusing on the authorization of information systems and compliance with associated policies and procedures. The role provides security engineering support for planning, design, development, testing, and integration of information systems. They ensure the platform meets DAAS and all applicable DoD requirements for deployment and operation within a FedRAMP-Approved Impact Level 5 (IL5) GovCloud environment and support continuous audit readiness.

Responsibilities include, but are not limited to the duties listed below, as outlined in the contract statement of work:

  • Support the overall DoD implementation of its authorization process, including cybersecurity policy and procedures.
  • Authorize information systems or serve as a SME for systems undergoing authorization.
  • Assess and apply NIST 800-53 security controls to large organizations’ IT infrastructure.
  • Determine severity values for identified vulnerabilities and their implications on system authorization.
  • Brief senior management on the progress or results of information systems undergoing authorization.
  • Work collaboratively with Government ISSM/COR/PMO to achieve an authorization to operate (ATO), then monitor and sustain an ATO.
  • Gather Audit artifacts for annual DLA Audit reviews

Requirements

  • Eight (8) years of relevant C&A experience
  • Risk Management Framework (RMF) and NIST C&A experience.
  • DOD cybersecurity experience accreditation
  • Experience in assessing security controls and conducting authorization reviews for large, complex organizations particularly in cloud environments.
  • Experienced in the general tenets supporting the overall DOD implementation of its authorization process, to include supporting cybersecurity policy, procedures, and processes.
  • Experience with FedRAMP-Approved Impact Level 5 (IL5) GovCloud environments
  • Knowledgeable in IT Governance and Compliance
  • DoD Approved 8570 Baseline Certification: Category IAM Level I
  • Must be a US Citizen and with the ability to obtain a Defense Secret Clearance
  • Active Clearance is preferred

Benefits & conditions

  • Health Care Plan (Medical, Dental & Vision)
  • Retirement Plan (401k, IRA)
  • Life Insurance (Basic, Voluntary & AD&D)
  • Paid Time Off (Vacation, Sick & Public Holidays)
  • Family Leave (Maternity, Paternity)
  • Short Term & Long Term Disability
  • Training & Development
  • Free Food & Snacks

About the company

Join a team where innovation meets mission. Our AI, cloud, cyber, and modernization solutions save agencies thousands of hours, safeguard national security, and strengthen health and humanitarian missions worldwide. With 1,700+ team members, 1,500+ AI/data experts, and 100+ prime contracts, we deliver at scale and with purpose.

We’ve been recognized as a Top Workplace by the Washington Post for six straight years and named to the Inc. 5000 Fastest Growing Private Companies 13 of the past 14 years. Credence is a welcoming home for those looking to grow and contribute to positive change. We encourage all employees to expand beyond their boundaries, dive into important world-changing Federal challenges.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:53 min

Managing infrastructure limitations with managed Amazon Aurora databases

Dharin Shah Dharin Shah · WWC 2025

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

4:45 min

Validating subjective user reports with throwaway data services

Nico Seyboth Nico Seyboth +1 · WWC 2025

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

5:00 min

Managing complex state with scope-based resource management

Bjarne Stroustrup · WWC 2022

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all