> Markdown version of [/jobs/ext/2607729-cybersecurity-specialist](https://www.wearedevelopers.com/jobs/ext/2607729-cybersecurity-specialist). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Specialist - **Company:** LMI - **Location:** Frederick, MD, United States - **Salary:** $86,126.0 - $125,000.0 - **Contract:** Permanent contract - **Skills:** Antivirus Softwares, Software System Penetration Testing, Code Review, CompTIA Security+, Cyber Security, Information Systems, Identity and Access Management, Network Security, Remote Access Technology, Software Engineering, Verification and Validation (Software), SC Clearance, Plan of Action and Milestones - **Published:** August 24, 2026 - **Apply:** https://diversityjobs.com/main/sendform/8/8/28176/1/18060860?backUrl=%2Fcareer%2F18060860%2FCybersecurity-Specialist-Maryland-Fort-Detrick ## About the Role * Bachelor's degree in a related discipline or a minimum of four (4) years of experience * Ability to obtain a Public Trust Clearance (NACI). You must be a U.S. citizen; active Secret Clearance preferred * CompTIA Security + Certifications * Working knowledge internal controls & IT Risk Assessment and Mitigation procedures * Technical experience in security-related technologies such as encryption, remote access, anti-virus systems, etc. * A basic knowledge of the 8 domains of the Common Body of Knowledge for information security: * Security & Risk Management * Asset Security * Security Engineering * Communications and Network Security * Identity and Access Management * Security Assessment and Testing * Security Operations * Software Development Security Desired: Experience with medical devices or a working knowledge of security frameworks such as HIPAA, HITRUST, NIST, ISO or other industry standards that are relevant to the DoD medical enterprise ## Description This position is responsible for working with LMI's team supporting our DoD customer to ensure the appropriate administrative, physical and technical information security safeguards are implemented across a portfolio of deployed military medical devices. * Under general guidance of the Team Lead and the client, the incumbent will conduct information security assessments and testing to ensure the proper implementation of security controls across the environment. This includes populating defined security/risk assessments, identifying gaps and compensating controls, identifying remediation plans, and publishing management reports of results. This position may also participate in incident response investigations, help identify opportunities for product improvement, maintain policies and procedures that are designed to be operationally effective and efficient, and monitor compliance to policies, laws and regulations. The security specialist works with the DoD client to select and deploy technical controls to meet specific security requirements, and defines processes and standards to ensure that security configurations are maintained. * Conduct evaluations of technical and non-technical security safeguards to demonstrate and document compliance with the DoD's Risk Management Framework (RMF) requirements for security and interoperability. * Perform information security risk assessments as part of the project lifecycle to ensure that new medical device technology conforms to security standards against internal and external threats. * Perform Independent verification and validation (IV&V) testing, to include documentation of Plan of Action and Milestones (POAM) data within the DoD system. * Perform risk assessments of information and technology systems by conducting accurate and thorough assessments of the potential risks and vulnerabilities to the confidentiality, integrity, and availability of information and technology systems. * Work with security leadership and stakeholders to identify remediation strategies and plans to enforce security requirements and address risks identified in the risk assessment process. * Along with the Security Architect, advise during application development or acquisition projects to ensure that security controls are implemented as planned. * Work with other security department members and stakeholders in scoping, planning and conducting third-party penetration testing, code reviews, or security assessments during the information security process. * Perform risk assessments of third-party technology systems by conducting accurate and thorough assessments of the potential risks and vulnerabilities to the confidentiality, integrity, and availability of DoD information and technology systems. * Produce information security risk assessment reports that identify gaps with DoD Security Policies & Standards and propose remediation plans. * Assist in conducting information system activity reviews and participate in Risk Management Framework (RMF) testing exercises and activities: Monitor and test application and network activity for assurance that systems of controls are in place and effective, and for compliance to DoD policies and federal regulations. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Are Code Reviews Worth It? Insights from 16 Years of Review Data](https://www.wearedevelopers.com/videos/1135-are-code-reviews-worth-it-insights-from-16-years-of-review-data) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Build a CI/CD pipeline to automate code reviews and ensure code quality](https://www.wearedevelopers.com/videos/349-build-a-ci-cd-pipeline-to-automate-code-reviews-and-ensure-code-quality) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)