{"schemaVersion":"jobsearcher.job.v1","id":"a488669e04cfa20f22ec12df","url":"https://jobsearcher.com/jobs/a488669e04cfa20f22ec12df","canonicalUrl":"https://jobsearcher.com/jobs/a488669e04cfa20f22ec12df","title":"Cybersecurity Engineer","description":"Cybersecurity Engineer (Secret Clearance)\n\nWho We Are:\nThinkTek LLC is a fast-growing Certified SBA 8(a) and Service-Disabled Veteran-Owned Small Business (SDVOSB) company. We specialize in providing management and technology consulting services to support the business and technology modernization efforts of the Federal Government. ThinkTek was formed with the specific purpose of providing its clients a tailored solution around ProgramProject Management, Strategic Planning, and IT Operations.\n\nPosition Overview\n\nWe are seeking an experienced Cybersecurity Engineer to support a Federal Government customer by providing advanced cybersecurity engineering, assessment, and compliance support. This position serves as a senior cybersecurity practitioner responsible for implementing and assessing security controls, maintaining system authorization packages, conducting security assessments, and supporting risk-based authorization decisions across a portfolio of mission-critical systems.\n\nThe Cybersecurity Engineer will work across traditional, cloud-native, and SaaS environments, supporting the Risk Management Framework (RMF), Cybersecurity Risk Management Construct (CSRMC), Continuous Authorization to Operate (cATO), and Zero Trust initiatives. The role requires deep expertise in cybersecurity engineering, security compliance automation, cloud security, vulnerability analysis, risk assessment, and governance, risk, and compliance (GRC) processes.\n\nThis position requires a highly skilled cybersecurity professional with strong technical expertise, project management experience, and an active Secret security clearance.\n\nResponsibilities\n\nServe as the lead cybersecurity engineer and Information System Security Officer (ISSO) supporting a portfolio of DSCA mission systems across on-premises, cloud, and SaaS environments.\nLead RMF and Cybersecurity Risk Management Construct (CSRMC) activities, including system authorization, continuous monitoring, and maintenance of ATO/cATO packages.\nManage and maintain eMASS records, authorization artifacts, control implementation evidence, and Plans of ActionMilestones (POA&Ms).\nAssess and validate NIST 800-53, DoD RMF, DISA STIG, FedRAMP, and DoD Cloud Computing Security Requirements Guide (CC SRG) security controls.\nConduct security control assessments and independent validations to evaluate control effectiveness and support risk-informed authorization decisions.\nDevelop Security Assessment Plans (SAPs), Security Assessment Reports (SARs), Risk Assessment Reports (RARs), and authorization recommendation memorandums.\nAnalyze vulnerabilities, security findings, automated scan results, and threat data to assess mission impact and prioritize remediation activities.\nReview and validate Compliance-as-Code (CaC), Policy-as-Code (PaC), and automated security assessment outputs to ensure accuracy and compliance.\nCollaborate with system owners, developers, engineers, and program stakeholders to implement security controls, address findings, and reduce enterprise risk.\nSupport DevSecOps and cloud security initiatives by integrating security throughout the system development lifecycle and continuous delivery processes.\nMonitor security posture across AWS cloud, traditional infrastructure, and SaaS platforms, ensuring compliance with federal and DoD cybersecurity requirements.\nBrief government leadership and Authorizing Officials on system risk posture, assessment results, remediation strategies, and authorization recommendations.\n\nRequired Qualifications\n\nActive Secret Security Clearance.\nBachelor's degree in Information Technology, Computer Science, Engineering or a related technical field from an accredited college or university.\nMinimum 5 years of dedicated Information Assurance, Cybersecurity, or Information Security experience.\nAt least 3 consecutive years of recent experience supporting DoD cybersecurity programs.\nExperience with Risk Management Framework (RMF) authorization processes.\nExperience administering and maintaining eMASS authorization packages.\nExperience conducting security control assessments, validations, and risk assessments.\nExperience supporting ATO, cATO, and continuous monitoring programs.\nExperience analyzing vulnerabilities, security findings, and organizational risk posture.\nExperience supporting cloud security initiatives in AWS, Azure, or other FedRAMP-authorized environments.\nStrong understanding of NIST 800-53 security controls and DISA STIG requirements.\n\nRequired Certifications\n\nCandidates must possess:\n\nOne DoD 8570/8140 IAM Level II or IAT Level ll baseline requirements, such as:\nCISSP\nSecurity+ CE\nCISM\nCASP+ CE\n\nPay Range\n\nThe anticipated annual salary range for this position is $150,030 – $185,020. This range is a good-faith estimate and not a guarantee of compensation. Final compensation will be based on factors including experience, education, skills, geographic location, internal equity, market data, and applicable contract requirements, and may fall outside the posted range.\n\n**THIS POSITION IS CONTINGENT UPON CONTRACT AWARD**\n\nThinkTek LLC is proud to be an Equal Opportunity Employer (EOE), making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. ThinkTek offers medical, dental, and vision insurance to all full-time employees; PTO and a variety of other paid leave options are also available. You can read more about ThinkTek benefits at https://www.thinktekllc.com/careers/.","company":"Thinktek","rawCompany":"thinktek","city":"Arlington","state":"VA","isRemote":false,"isActive":false,"createdAt":"2026-08-20T11:37:24.599Z","occupations":[{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1212.00","title":"Information Security Analysts","slug":"information-security-analysts"},{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541690","title":"Other Scientific and Technical Consulting Services","slug":"other-scientific-and-technical-consulting-services"},{"code":"928110","title":"National Security","slug":"national-security"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Cybersecurity Engineer","description":"Cybersecurity Engineer (Secret Clearance)\n\nWho We Are:\nThinkTek LLC is a fast-growing Certified SBA 8(a) and Service-Disabled Veteran-Owned Small Business (SDVOSB) company. We specialize in providing management and technology consulting services to support the business and technology modernization efforts of the Federal Government. ThinkTek was formed with the specific purpose of providing its clients a tailored solution around ProgramProject Management, Strategic Planning, and IT Operations.\n\nPosition Overview\n\nWe are seeking an experienced Cybersecurity Engineer to support a Federal Government customer by providing advanced cybersecurity engineering, assessment, and compliance support. This position serves as a senior cybersecurity practitioner responsible for implementing and assessing security controls, maintaining system authorization packages, conducting security assessments, and supporting risk-based authorization decisions across a portfolio of mission-critical systems.\n\nThe Cybersecurity Engineer will work across traditional, cloud-native, and SaaS environments, supporting the Risk Management Framework (RMF), Cybersecurity Risk Management Construct (CSRMC), Continuous Authorization to Operate (cATO), and Zero Trust initiatives. The role requires deep expertise in cybersecurity engineering, security compliance automation, cloud security, vulnerability analysis, risk assessment, and governance, risk, and compliance (GRC) processes.\n\nThis position requires a highly skilled cybersecurity professional with strong technical expertise, project management experience, and an active Secret security clearance.\n\nResponsibilities\n\nServe as the lead cybersecurity engineer and Information System Security Officer (ISSO) supporting a portfolio of DSCA mission systems across on-premises, cloud, and SaaS environments.\nLead RMF and Cybersecurity Risk Management Construct (CSRMC) activities, including system authorization, continuous monitoring, and maintenance of ATO/cATO packages.\nManage and maintain eMASS records, authorization artifacts, control implementation evidence, and Plans of ActionMilestones (POA&Ms).\nAssess and validate NIST 800-53, DoD RMF, DISA STIG, FedRAMP, and DoD Cloud Computing Security Requirements Guide (CC SRG) security controls.\nConduct security control assessments and independent validations to evaluate control effectiveness and support risk-informed authorization decisions.\nDevelop Security Assessment Plans (SAPs), Security Assessment Reports (SARs), Risk Assessment Reports (RARs), and authorization recommendation memorandums.\nAnalyze vulnerabilities, security findings, automated scan results, and threat data to assess mission impact and prioritize remediation activities.\nReview and validate Compliance-as-Code (CaC), Policy-as-Code (PaC), and automated security assessment outputs to ensure accuracy and compliance.\nCollaborate with system owners, developers, engineers, and program stakeholders to implement security controls, address findings, and reduce enterprise risk.\nSupport DevSecOps and cloud security initiatives by integrating security throughout the system development lifecycle and continuous delivery processes.\nMonitor security posture across AWS cloud, traditional infrastructure, and SaaS platforms, ensuring compliance with federal and DoD cybersecurity requirements.\nBrief government leadership and Authorizing Officials on system risk posture, assessment results, remediation strategies, and authorization recommendations.\n\nRequired Qualifications\n\nActive Secret Security Clearance.\nBachelor's degree in Information Technology, Computer Science, Engineering or a related technical field from an accredited college or university.\nMinimum 5 years of dedicated Information Assurance, Cybersecurity, or Information Security experience.\nAt least 3 consecutive years of recent experience supporting DoD cybersecurity programs.\nExperience with Risk Management Framework (RMF) authorization processes.\nExperience administering and maintaining eMASS authorization packages.\nExperience conducting security control assessments, validations, and risk assessments.\nExperience supporting ATO, cATO, and continuous monitoring programs.\nExperience analyzing vulnerabilities, security findings, and organizational risk posture.\nExperience supporting cloud security initiatives in AWS, Azure, or other FedRAMP-authorized environments.\nStrong understanding of NIST 800-53 security controls and DISA STIG requirements.\n\nRequired Certifications\n\nCandidates must possess:\n\nOne DoD 8570/8140 IAM Level II or IAT Level ll baseline requirements, such as:\nCISSP\nSecurity+ CE\nCISM\nCASP+ CE\n\nPay Range\n\nThe anticipated annual salary range for this position is $150,030 – $185,020. This range is a good-faith estimate and not a guarantee of compensation. Final compensation will be based on factors including experience, education, skills, geographic location, internal equity, market data, and applicable contract requirements, and may fall outside the posted range.\n\n**THIS POSITION IS CONTINGENT UPON CONTRACT AWARD**\n\nThinkTek LLC is proud to be an Equal Opportunity Employer (EOE), making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. ThinkTek offers medical, dental, and vision insurance to all full-time employees; PTO and a variety of other paid leave options are also available. You can read more about ThinkTek benefits at https://www.thinktekllc.com/careers/.","datePosted":"2026-08-20T11:37:24.599Z","dateModified":"2026-08-20T11:37:24.599Z","hiringOrganization":{"@type":"Organization","name":"Thinktek","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Arlington","addressRegion":"VA","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"a488669e04cfa20f22ec12df"},"url":"https://jobsearcher.com/jobs/a488669e04cfa20f22ec12df"}}