ICF Next

Cyber Security Lead (Health IT)

ICF Next$108K — $184K *
Healthcare
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in cybersecurity, IT, computer science, or engineering
  • 5+ years of relevant professional experience
  • CISSP, CISM, CAP, or equivalent certification
  • 8+ years in federal cybersecurity or enterprise security roles
  • Proficient in federal security standards like FISMA, NIST, FICAM

Responsibilities

  • Provide subject matter expertise in cybersecurity and privacy for IT initiatives
  • Identify, analyze, and track security and compliance risks
  • Advise on identity, access, and authorization considerations
  • Contribute to governance reviews and technical assessments
  • Align program activities with federal security and privacy expectations
  • Develop roadmaps and reports requiring security input
  • Coordinate security integration with planning and oversight

Benefits

  • Hybrid work environment with on-site support as needed
  • Opportunities for professional development and training
  • Exposure to enterprise-wide governance and compliance initiatives
  • Engagement with leadership and cross-functional teams
  • Impact on strengthening organizational security posture
Full Job Description
We are seeking a Cyber Security Lead to support enterprise IT initiatives in a regulated environment where security, privacy, risk management, and standards compliance are central to planning and execution. This role operates across multiple programs and governance processes and helps ensure that modernization, access, and shared services efforts are carried out with appropriate security discipline and control.

This individual will provide security and compliance expertise across strategy, governance, architecture, and delivery activities. The role is intended for someone who can work with leadership, program teams, architects, and operational stakeholders to identify security risks early, support sound decisions, and strengthen compliance posture across enterprise initiatives.

Job Location
Hybrid, with periodic onsite support as needed in Baltimore, Maryland.

What You'll Be Doing
• Provide cybersecurity and privacy subject matter expertise across enterprise IT initiatives, governance activities, and modernization efforts
• Support identification, analysis, and tracking of security and compliance risks across programs, products, and operational activities
• Advise on enterprise identity, access, authorization, and control considerations for new and existing initiatives
• Contribute to governance reviews, technical assessments, recommendations, and decision support related to cybersecurity and compliance
• Support alignment of program activities with federal security, privacy, and risk management expectations
• Participate in development of roadmaps, reports, briefings, and other artifacts that require security or compliance input
• Coordinate with program, architecture, governance, and operational teams to ensure security considerations are integrated into planning and oversight
• Help strengthen continuous improvement in compliance posture, risk visibility, and security decision-making

What You Must Have
• Bachelor's degree in cybersecurity, computer science, information technology, engineering, or a related field, and 5+ years of relevant professional experience
• CISSP, CISM, CAP, or equivalent certification
• 8+ years of experience in federal cybersecurity, enterprise security, security compliance, or risk management roles
• 8+ years of experience applying federal security standards or frameworks, including FISMA, NIST, FICAM or comparable requirements

Preferred Qualifications
• Master's degree in cybersecurity, computer science, information technology, or a related field
• 5+ years of experience supporting security risk identification, risk analysis, mitigation planning, or risk register management for enterprise IT initiatives
• 5+ years of experience supporting identity, access management, authorization controls, credentials, or related security functions
• 5+ years of experience supporting security reviews, compliance assessments, ATO, SA&A, or equivalent authorization and accreditation processes
• 5+ years of experience advising program, architecture, governance, or operational teams on cybersecurity and compliance matters
• 2+ years of experience producing security-related reports, recommendations, decision papers, or executive briefing materials
• 2+ years of experience supporting governance boards, review forums, or decision processes where cybersecurity or privacy risks were a factor
• 2+ years of experience using enterprise collaboration and tracking tools such as SharePoint, Confluence, JIRA, or M365 in support of security or compliance activities
• 2+ years of experience supporting identity modernization, shared services, or enterprise platform security initiatives
• 2+ years of experience supporting health IT, public sector modernization, or large regulated enterprise environments
• 2+ years experience supporting privacy reviews, continuous monitoring, or enterprise risk management functions

Pay Range - There are multiple factors that are considered in determining final pay for a position, including, but not limited to, relevant work experience, skills, certifications and competencies that align to the specified role, geographic location, education and certifications as well as contract provisions regarding labor categories that are specific to the position.

The pay range for this position based on full-time employment is:
$108,476.00 - $184,409.00

Maryland Client Office (MD88)

About ICF Next

ICF Next is a global marketing and communications agency that provides a wide range of services to clients in various industries, including healthcare, energy, and transportation. The company was founded in 1969 and is headquartered in Fairfax, Virginia. ICF Next offers a comprehensive suite of services, including branding, digital marketing, public relations, and social media management. The company has a strong reputation for delivering innovative and effective solutions that help its clients achieve their business objectives. ICF Next is committed to sustainability and social responsibility, and it has received numerous awards for its work in these areas.
Learn more about ICF Next
Size
8,000 employees
Market Cap
$1.8 billion
Industry
Net Income
$54.9 million
Founded
1969
5 Year Trend
+5.6%
Revenue
$1.5 billion
NASDAQ

Similar Jobs

More Jobs at ICF Next

More Healthcare Jobs

Find similar Cyber Security Lead (Health IT) jobs: