Cybersecurity Specialist Mid/Senior Remote
Salary: $167,000 - 207,000 per year
Requirements:
We require in-depth knowledge of FedRAMP High security controls and the NIST Risk Management Framework process. We need proficiency in security architecture reviews and cloud security engineering within AWS or similar government cloud environments. We require experience performing vulnerability management assessments and evaluating continuous monitoring programs. We need working knowledge of identity and access management, encryption standards, and access control frameworks. We require the ability to develop and review authorization documentation, including SSPs, POA&Ms, and security assessment reports. We need strong analytical and written communication skills to clearly present security findings to both technical and non-technical audiences. We require the ability to manage multiple assessment workstreams and deliver findings within established project timelines. We require a bachelors degree in Cybersecurity, Information Technology, Computer Science, or a related technical field, or equivalent education and experience. We require 8+ years of cybersecurity experience in federal or regulated environments, with demonstrated involvement in FedRAMP or RMF processes. We prefer a masters degree in Cybersecurity, Information Assurance, or a related field. We prefer certifications such as CISSP, CISM, CompTIA Security+ or an equivalent federal baseline certification, and AWS Certified Security - Specialty. We prefer 10+ years of cybersecurity experience, including direct responsibility for ATO support or FedRAMP authorization activities. We need the ability to pass a federal background check and be determined suitable for federal employment.
Responsibilities:
We assess application security posture, including logging, auditing, and control implementation, against FedRAMP High baseline requirements. We support Authority to Operate documentation and compliance readiness activities for applications during onboarding assessment. We identify cybersecurity gaps across assessed applications and recommend prioritized remediation actions with clear supporting rationale. We evaluate application and environment alignment with Zero Trust principles and continuous monitoring expectations. We help develop System Security Plans, Plan of Action and Milestones inputs, and related security authorization artifacts. We apply Risk Management Framework processes to security assessment work and document findings in line with NIST guidance. We review identity, access control, and encryption implementations to confirm alignment with applicable standards and FedRAMP controls. We conduct vulnerability management reviews and assess continuous monitoring capabilities for onboarding candidates. We collaborate with cloud architects, program managers, and ISV technical teams to communicate findings and support remediation planning. We perform additional duties as assigned to support our contract objectives. We may travel occasionally as needed for project requirements, up to about 10% per year.
Technologies:
AWS Cloud Support Security DevSecOps IAM
More:
We are SBG Technology Solutions, Inc. (SBG), a DSS, Inc. company, providing IT Governance, Systems Engineering, Enterprise Modernization, Artificial Intelligence, and Cyber Security innovation to federal and commercial clients nationwide. This role supports DSS Health Cloud, our FedRAMP High authorized healthcare-focused platform hosted in an AWS Government enclave environment. We also require our team members to complete security and privacy training aligned with HIPAA, FedRAMP, and NIST 800-53 requirements, with additional training for higher-risk access levels.
last updated 31 week of 2026
