GovCIO is currently hiring for a SME Cybersecurity Engineer to support cybersecurity, compliance, and risk management activities supporting the U.S. Coast Guard (USCG). This role provides high-level engineering, technical leadership, and stregic guidance to maintain federal security standards, manage vulnerabilities, and ensure mission-critical systems achieve and retain authorizion. This position will be loced in Alexandria, VA,and will be a hybrid position.
Responsibilities:As an SME Cybersecurity Engineer, you will serve as a principal technical authority for the cybersecurity posture, compliance framework, and risk management initiives. Core responsibilities include:
- Lead the drafting and maintenance of comprehensive Authority to Opere (ATO) packages and documention in alignment with federal guidelines.
- Provide expert guidance in the selection, tailoring, and implemention of complex security controls applicable to the system environment.
- Identify, select, and oversee the applicion of approprie Defense Informion Systems Agency (DISA) Security Technical Implemention Guide (STIG) Checklists.
- Cree, manage, and actively monitor Plan of Action and Milestones (POA&Ms) to ensure swift remediion of enterprise security gaps.
- Lead and conduct thorough Privacy Threshold Analysis (PTA) to ensure federal da privacy compliance.
- Actively monitor Assured Compliance Assessment Solution (ACAS) scans and collabore with technical infrastructure teams to remedie identified vulnerabilities.
- Direct and document regular Contingency Plan (CP) testing to ensure operional resilience and disaster recovery readiness.
- Support change management processes by overseeing the accure completion and routing of all required engineering paperwork.
- Facilite Cybersecurity Service Provider (CSSP) onboarding processes to align with organizional defense-in-depth stregies.
- Engage, coordine, and maintain stregic communicion with various departments within Coast Guard Cyber Command (CGCYBER).
- Respond accurely and promptly to Cyber Operional Readiness Assessment (CORA) and broader CGCYBER da calls.
- Provide all requested technical security documention to the primary Informion Systems Security Officer (ISSO) to support overarching compliance.
High School with 12+ years (or commensure experience)
Required Skills & Experience
- Certificions: DoD 8570.01-M IAM Level I Certificion (e.g., Security+ CE, CAP, GSLC, or equivalent).
- Demonstred practical user experience with Assured Compliance Assessment Solution (ACAS) for federal vulnerability scanning.
- Hands-on experience utilizing Security Informion and Event Management (SIEM) systems for analyzing security alerts and system logs.
- Familiarity with Extended Detection and Response (XDR) plforms for endpoint and network thre detection.
- Direct user experience naviging the Enterprise Mission Assurance Support Service (eMASS) for IT security compliance and risk management.
- Proven understanding of the Risk Management Framework (RMF) process and federal system hardening procedures.
Clearance Level: Must have an active Secret clearance
Preferred Skills & Experience
- Experience supporting U.S. Coast Guard (USCG) or Department of Homeland Security (DHS) cybersecurity programs.
- Advanced baseline cybersecurity certificions such as IAM Level II/III credentials (e.g., CISSP, CISM, or CASP+).
- Prior experience participing directly in formal federal security audits or Cyber Operional Readiness Assessments (CORA).
- Familiarity with automion tools or dashboards used to track and report vulnerability remediion progress.s.