Who we're looking for:
We are seeking a Senior Cybersecurity Specialist to support a federal agency's Post-Quantum Cryptography (PQC) program. This role sits at the intersection of cybersecurity program execution and enterprise-wide stakeholder engagement, helping the agency transition its cryptographic infrastructure, including cryptographic inventory, public-key infrastructure (PKI) and TLS, from quantum-vulnerable to quantum-resistant standards. The ideal Sr. Cybersecurity Specialist candidate brings deep cybersecurity program experience, strong technical documentation skills and the ability to build consensus and drive coordination across a large, complex federal enterprise. This is a unique opportunity to shape the growth, development and culture of an exciting and fast-growing company in the cybersecurity market.
What you'll be doing:
- Execute cybersecurity team initiatives in support of the program's PQC objectives.
- Establish and enforce security policies and procedures.
- Gather and organize technical information about the organization's missions, goals and requirements; existing security products; and ongoing Information Assurance (IA) programs.
- Develop and provide documentation necessary for PQC assessments and evaluations.
- Work with customers to outline roadmaps, strategies and approaches for the deployment of cross-cutting cybersecurity solutions.
- Provide communication outreach agency-wide to drive program and capability acceptance.
- Schedule and run meetings with stakeholders on behalf of the PQC team.
What you need to know:
- Core cryptographic concepts: symmetric vs. asymmetric encryption, hashing, digital certificates and key management.
- Networking and infrastructure fundamentals, including how encryption is applied in transit (e.g., TLS) and at rest across enterprise systems.
- Enterprise IT security architecture and how cybersecurity capabilities integrate with existing tools and services (e.g., vulnerability management, continuous monitoring)
- Security policy development and governance; understanding the drivers behind policy change (regulatory, technical or risk-based) and the ability to translate those drivers into clear, executable policy the customer can implement.
- Agile delivery practices (SCRUM/Kanban ceremonies) and how work gets prioritized, sized and delivered in that environment.
Must have's:
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering or a related field or an additional 4+ years of relevant work experience in lieu of degree.
- Active Certified Information Systems Security Professional (CISSP) or Certified Information Security Manager (CISM) certification.
- 5+ years of experience performing cybersecurity functions consistent with this role.
- Demonstrated experience designing and implementing enterprise cybersecurity capabilities
- Solid understanding of Post-Quantum Cryptography (PQC) concepts and quantum-vulnerability risk, prior hands-on PQC experience is not required
- Ability to track and interpret evolving federal cybersecurity policy and regulatory drivers (e.g., FISMA, NIST guidance, OMB directives) and translate them into practical guidance for customers
- General understanding of public-key infrastructure (PKI), TLS and cryptographic inventory/discovery concepts (e.g., Automated Cryptographic Discovery and Inventory or ACDI, tools) as they relate to a federal cryptographic modernization effort
- Strong written and verbal communication skills, with experience producing technical documentation for non-technical and executive audiences
- Experience coordinating across multiple stakeholder groups in a large, complex organization
- Strong self-directed research skills. PQC is an evolving space and much of the work involves figuring things out in real time rather than following an established playbook
- A proactive mindset and comfort with ambiguity. Successful team members find their own answers rather than waiting to be told and bring solutions to customers rather than just questions.
- Proven ability to analyze complex requirements and translate them into clear, actionable tasks and processes through critical thinking.
- Applicants must currently be a U.S. citizen in compliance with federal contract requirements.
Beneficial to have:
- Prior experience directly supporting a Post-Quantum Cryptography (PQC) or broader cryptographic modernization program.
- Hands-on experience with cryptographic discovery/inventory tools (COTS or GOTS ACDI solutions).
- Hands-on experience with on-prem/enterprise PKI architecture, TLS migration or certificate/key management.
- Familiarity with cloud security concepts in AWS and Azure environments (e.g., cloud - native key management services, encryption configuration).
- Familiarity with NIST FIPS 203, FIPS 204 and FIPS 205 PQC standards and OMB Memorandum M-23-02.
- Prior experience supporting a federal civilian agency IT program.
- Experience with Zero Trust Architecture (ZTA) initiatives.
Where it's done: