Principle Cybersecurity Analyst IV

THARROS LLC
Fulton, MD, United States
16 days ago
Apply on jobs.localjobnetwork.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Cloud Computing Security Cyber Security Zero Trust Network Access Software Engineering Infrastructure as Code (IaC) Information Technology Devsecops

Job description

Tharros is seeking a Senior Cybersecurity SME to serve as a strategic advisor and technical authority supporting a Department of Defense customer. This role will provide senior-level oversight of cybersecurity strategy, policy, architecture, and risk management, advising government leadership and the Authorizing Official (AO) while ensuring alignment with DoD cybersecurity requirements and Zero Trust principles.

The ideal candidate brings deep expertise in cybersecurity governance, Zero Trust architecture, mission-based cyber risk, and secure software development, with the ability to translate complex technical risks into operational mission impacts. This individual will assess overall risk posture, guide cybersecurity policy and standards, and oversee security across the software lifecycle, including DevSecOps, Infrastructure as Code (IaC) scanning, and cloud-native security controls such as CSPM and CNAPP., * Serves as the senior Subject Matter Expert (SME) and strategic advisor on all cybersecurity matters. This role is responsible for leading policy analysis, providing expert oversight, and delivering formal recommendations to government leadership and the Authorizing Official (AO).

  • Leads the strategic oversight of the cybersecurity program, ensuring alignment with DoD and DON policy. Authors, reviews, and updates cybersecurity standards, policies, and guidance
  • Provides expert analysis of the program’s Zero Trust architecture effectiveness, ensuring principles are correctly implemented
  • Validates the program’s overall risk posture derived from Mission-Based Cyber Risk Assessments (MBCRA), ensuring technical risks are accurately translated to operational mission impacts for the AO
  • Oversees the security of the software lifecycle, validating the effectiveness of security within DevSecOps pipelines, IaC scanning, and cloud-native security controls (e.g., CSPM, CNAPP)

Requirements

  • Bachelor’s Degree from an accredited institution in Cybersecurity, Computer Science, Information Technology, or a related technical field, and 10 years of relevant
  • Or High School Diploma and 18 years of relevant experience
  • IAT Level III (CISSP, CASP+/SecurityX, CSSLP or Equivalent)

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jobs.localjobnetwork.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:22 min

Understanding software engineering as more than just coding

Lilia Gargouri Lilia Gargouri · World Congress 2026 Europe

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all