Cybersecurity Program Manager

After School Matters, Inc.
Washington, DC, United States
15 days ago
Apply on testpros.applytojob.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Compensation
$160,000.0 - $230,000.0
Working hours
Regular working hours

Tech stack

Amazon Web Services Microsoft Azure Cloud Computing Security Cyber Security Zero Trust Network Access Software Vulnerability Management SC Clearance Information Technology Nessus Splunk Qualys Vulnerability Analysis

Job description

The Cybersecurity Program Manager is responsible for managing the execution of federal cybersecurity programs and contracts, overseeing technical teams, ensuring compliance with federal security requirements, and serving as the primary interface with government customers. The Program Manager provides leadership across cybersecurity operations, risk management, compliance initiatives, vulnerability management, security engineering, and continuous monitoring efforts while ensuring contract performance, schedule, quality, and budget objectives are met. Responsibilities

  • Serve as the primary point of contact for government stakeholders and contracting officers.
  • Manage cybersecurity programs supporting federal civilian, DoD, or Intelligence Community customers.
  • Lead multidisciplinary teams consisting of ISSOs, ISSMs, Security Engineers, RMF Analysts, SOC Analysts, and Cybersecurity Specialists.
  • Oversee contract execution, staffing, financial performance, deliverables, and customer satisfaction.
  • Ensure compliance with federal cybersecurity requirements, including:
  • FISMA
  • NIST Risk Management Framework (RMF)
  • NIST 800-53
  • FedRAMP
  • DHS CDM
  • DoD Cybersecurity Policies (when applicable)
  • Direct Authorization to Operate (ATO) activities and continuous monitoring efforts.
  • Manage vulnerability assessment and remediation programs utilizing tools such as Tenable/Nessus, ACAS, Qualys, Rapid7, and Splunk.
  • Oversee cybersecurity audits, inspections, and assessments.
  • Develop and maintain program management plans, schedules, risk registers, and status reports.
  • Monitor program risks and implement mitigation strategies.
  • Support proposal development, staffing plans, transition activities, and business growth initiatives.
  • Facilitate executive briefings and provide strategic recommendations to government leadership.
  • Ensure Service Level Agreements (SLAs), contract deliverables, and performance metrics are achieved., The Cybersecurity Program Manager may oversee teams supporting:
  • Security Operations Centers (SOC)
  • Continuous Diagnostics and Mitigation (CDM) Programs
  • Enterprise Cybersecurity Services
  • FISMA Compliance Programs
  • Cloud Security Initiatives
  • Zero Trust Implementations
  • Vulnerability Management Programs
  • Security Engineering and Architecture Projects

Requirements

  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Engineering, or related field.
  • 10+ years of progressive experience managing federal cybersecurity programs and contracts.
  • Experience managing teams supporting federal agencies, DoD, or Intelligence Community organizations.
  • Demonstrated experience overseeing:
  • RMF implementation
  • ATO packages
  • Continuous Monitoring Programs
  • Vulnerability Management
  • Security Compliance Assessments
  • Incident Response Activities
  • Strong knowledge of:
  • NIST 800-53
  • NIST 800-37
  • FISMA
  • FedRAMP
  • DHS and DoD cybersecurity requirements
  • Experience managing contract budgets, staffing, subcontractors, and customer relationships.
  • Excellent leadership, communication, and executive briefing skills.
  • Active Secret clearance or higher., * PMP Certification.
  • CISSP, CISM, CAP, GSLC, or equivalent cybersecurity certification.
  • Experience supporting DHS, CISA, CBP, FEMA, VA, HHS, Treasury, DOJ, or DoD customers.
  • Experience leading Security Operations Centers (SOC) or enterprise cybersecurity programs.
  • Knowledge of cloud security architectures within AWS, Azure, and GovCloud environments.
  • Secret, Top Secret or TS/SCI clearance.

Desired Skills

  • Federal Contract Program Management
  • Cybersecurity Operations
  • Risk Management Framework (RMF)
  • Security Compliance & Governance
  • Vulnerability Management
  • Security Engineering
  • Cloud Security
  • Continuous Monitoring
  • Budget & Resource Management
  • Executive Stakeholder Engagement
  • Strategic Planning
  • Team Leadership & Mentoring

Benefits & conditions

Salary Range: $160,000 - $230,000+ This range represents a good-faith estimate and is not a guarantee; final compensation is determined by factors such as experience, qualifications, and government contract labor rate requirements and may fall outside the stated range.

Equal Opportunity Employer TestPros is an equal-opportunity employer and does not discriminate in employment based on race, color, religion, sex (including pregnancy and gender identity), national origin, political affiliation, sexual orientation, marital status, disability, genetic information, age, membership in an employee organization, retaliation, parental status, military service, or any other non-merit factor.

Offer Considerations TestPros considers several factors when extending an offer, including but not limited to, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, geographic location, education, and certifications.

Federal Compliance As a federal contractor, TestPros is subject to all federal and state mandates and/or other customer requirements., TestPros offers a competitive salary, medical/dental/vision insurance, life insurance, paid time off, paid holidays, 401(k) retirement plan with company match, opportunities for professional growth, cell phone discounts, and much more! All benefits are per TestPros current policies and are subject to change without notice. Benefits are available to full-time employees., Invitation for Job Applicants to Self-Identify as a U.S. Veteran

  • A “disabled veteran” is one of the following:
  • a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or
  • a person who was discharged or released from active duty because of a service-connected disability.
  • A “recently separated veteran” means any veteran during the three-year period beginning on the date of such veteran’s discharge or release from active duty in the U.S. military, ground, naval, or air service.
  • An “active duty wartime or campaign badge veteran” means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.
  • An “Armed forces service medal veteran” means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985.

About the company

TestPros delivers innovative independent IT assessment solutions to critical challenges facing the nation and the world. We support the U.S. Federal Government and Commercial clients within the continental USA. TestPros is dedicated to making lives better, safer and more secure.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on testpros.applytojob.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

10:35 min

Teaching and coaching security concepts for lasting impact

Tanya Janca · World Congress 2021

Videos

See all

Related articles

See all