Jobs · Engineering

Senior Cyber Security Specialist (Top Secret)

ICF · Reston, VA · 2 wk ago
Engineering$90k–$152k/yrFull-time

Description

ICF is seeking a Senior Cyber Security Specialist to support a secure federal ServiceNow program with multiple mission workstreams. This role is responsible for maintaining the security posture of the platform and supporting security activities that align with federal cybersecurity requirements.

What You Will Do

  • Support the security posture of enterprise ServiceNow systems and related applications
  • Aid in security governance, system authorization, and continuous monitoring activities
  • Develop, maintain, and update security documentation and artifacts such as SSPs, POA&Ms, risk registers, and related compliance materials
  • Support ATO efforts, security assessments, evidence gathering, and control validation
  • Track and remediate vulnerabilities, scan findings, and security issues through closure
  • Cookordination with developers, administrators, testers, and program stakeholders to ensure security findings are understood and addressed
  • Evaluate security implications of workflow changes, data integrations, releases, and configuration updates
  • Support audit preparation, findings response, and ongoing compliance reporting
  • Monitor and document security process changes, configuration updates, and remediation actions
  • Contribute to secure release practices, including validation of fixes and scan remediation before deployment
  • Support incident and issue triage from a security perspective when needed

What You Must Have

  • Must be a U.S. citizen and possess an active Top Secret security clearance, as required by the federal contract
  • Bachelor’s degree in Cybersecurity, Information Systems, Computer Science, or a related field
  • 6+ years of relevant experience in information security, cybersecurity, or system security roles
  • 6+ years of experience supporting federal security frameworks such as FISMA, NIST RMF, or similar

What We Would Like You To Have

  • 4+ years of experience supporting ATO processes, security documentation, and continuous monitoring
  • 4+ years of experience with vulnerability management, security scanning tools, or remediation workflows
  • 3+ years of experience conducting risk assessments, security analysis, or compliance reviews
  • 3+ years of experience supporting cloud or enterprise system security
  • Familiarity with RMF artifacts, ATO packages, POA&M tracking, and continuous monitoring programs
  • Experience supporting federal ServiceNow environments or other enterprise workflow platforms
  • Experience with identity and access management, role governance, or least-privilege design
  • Experience supporting secure release practices, scan remediation, or DevSecOps workflows
  • Familiarity with vulnerability tools, static/dynamic analysis, or cloud security controls
  • Experience supporting audit response, corrective action tracking, or security governance meetings
  • Relevant cybersecurity certification such as Security+, CISSP, or equivalent

Professional Skills

  • Demonstrated ability to communicate security issues clearly to technical and non-technical stakeholders
  • Strong organizational skills and attention to detail for compliance tracking and evidence management

Company Information

  • Ideal candidate must live in the Washington DC metro area if offered the position
  • Remote work is authorized. Must support US Eastern time zone working hours
  • ICF is an equal opportunity employer
  • We will consider for employment qualified applicants with arrest and conviction records
  • Reasonable Accommodations are available, including, but not limited to, for disabled veterans, individuals with disabilities, and individuals with sincerely held religious beliefs

Pay Range

The pay range for this position based on full-time employment is: $89,649.00 - $152,404.00 Nationwide Remote Office (US99)

Similar jobs