Qualifications
Responsibilities
Benefits
Security Specialist
***As required by our governmental client, this position requires being a U.S. Citizen AND an active TS/SCI clearance***
As our Security Specialist, you'll support the security, assessment, and authorization of enterprise cloud environments that power mission-critical operations in a regulated federal environment. You'll perform security control assessments, vulnerability evaluations, and compliance activities that strengthen the organization's cybersecurity posture while supporting Assessment & Authorization (A&A/ATO) efforts. Along the way, you'll partner closely with the Senior Security Architect, engineers, platform administrators, and program stakeholders to deliver secure, compliant cloud solutions that support the customer's mission.
Details, Compensation & Benefits:
Estimated Starting Salary Range for Security Specialist: $160-175k
Pay commensurate with experience.
Full time benefits include Medical, Dental, Vision, 401K, and other possible benefits as provided. Benefits are subject to change with or without notice.
Onsite 5 days a week is required. Greater Washington, DC area.
Security Specialist Responsibilities Include:
• Conduct comprehensive assessments of management, operational, and technical security controls in accordance with NIST SP 800-53 and NIST SP 800-37.
• Support Assessment & Authorization (A&A/ATO) activities, including System Security Plans (SSPs), Plans of Action & Milestones (POA&Ms), security artifacts, and coordination with government stakeholders.
• Perform cybersecurity vulnerability assessments of enterprise cloud applications, infrastructure, and supporting systems.
• Analyze security requirements and recommend technical solutions that strengthen the organization's overall cybersecurity posture.
• Develop and maintain cybersecurity plans, policies, standards, and procedures supporting federal regulatory compliance.
• Collaborate with engineering, infrastructure, and Salesforce platform teams to implement security controls and remediate identified findings.
• Support continuous monitoring activities, security assessments, audits, and compliance reporting throughout the system lifecycle.
• Evaluate cloud environments using industry-standard security tools and methodologies to identify vulnerabilities and recommend corrective actions.
• Assist with RMF implementation activities, including security control validation, documentation updates, and ongoing authorization support.
• Review system configurations to ensure compliance with NIST, agency security policies, and federal cybersecurity requirements.
• Support identity and access management initiatives, secure configuration management, logging, auditing, and security monitoring.
• Document assessment findings, technical recommendations, risk analyses, and remediation activities.
• Participate in Agile delivery activities, planning sessions, technical reviews, and documentation efforts.
• Collaborate with program leadership and technical teams to continuously improve security processes and operational effectiveness.
• Support enterprise cloud environments, including Salesforce and other SaaS/PaaS platforms, ensuring secure implementation and ongoing compliance.
Security Specialist Experience, Education, Skills, Abilities Requested:
• Bachelor's degree and a minimum of seven (7) years of Information Assurance, cybersecurity, RMF, or Assessment & Authorization (ATO) experience.
• Demonstrated experience conducting security assessments utilizing NIST SP 800-53 and NIST SP 800-37.
• Experience supporting Assessment & Authorization (A&A/ATO) activities, including development and maintenance of SSPs, POA&Ms, security assessment documentation, and continuous monitoring artifacts.
• Experience performing cybersecurity vulnerability assessments and supporting remediation efforts within enterprise cloud environments.
• Working knowledge of Risk Management Framework (RMF), federal cybersecurity policies, and cloud security best practices.
• Experience supporting cloud platforms such as AWS, AWS GovCloud, Azure Government, or comparable enterprise cloud environments.
• Experience supporting Salesforce or other SaaS/PaaS platforms, including security controls, access management, and secure platform configuration, is highly desirable.
• Strong documentation, analytical, and communication skills developed in regulated, high-security environments.
• Security certifications such as Security+, CySA+, CISSP, CCSP, or CISM are preferred.
• Must be a U.S. Citizen and hold an active TS/SCI clearance.
• Must pass pre-employment qualifications of Cherokee Federal.
Similar searchable job titles:
• Information Assurance Analyst
• Information System Security Officer (ISSO)
• Cybersecurity Analyst
• RMF Analyst
• ATO Security Analyst
• Cloud Security Analyst
Keywords:
• RMF
• ATO
• NIST SP 800-53
• NIST SP 800-37
• SSP
• POA&M
• Information Assurance
• Cloud Security
• Salesforce Security
• TS/SCI
About Cherokee Nation Businesses
Similar Jobs



More Jobs at Cherokee Nation Businesses





More Technical Services Jobs
