GovCIO

SME Information Systems Security Engineer

GovCIO$170K — $210K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 10+ years of relevant experience or equivalent
  • DoD 8570/8140 IASAE Level II or III certifications (CISSP, CASP+, CSSLP)
  • Expertise in cyber-risk reduction and vulnerability mitigation
  • Experience with continuous scanning and endpoint patching workflows
  • Strong understanding of security automation in cloud and virtual environments

Responsibilities

  • Lead cyber-risk reduction strategies for enterprise and cloud environments
  • Oversee scanning and patching activities for end-user devices
  • Architect compliance frameworks and enhance security governance
  • Implement automation to improve security consistency for USCG systems
  • Collaborate with engineering leadership on vulnerability tools
  • Establish compliance baselines and improve security governance
  • Drive automation and monitoring of security controls in cloud environments

Benefits

  • Hybrid work environment
  • Opportunities for professional development
  • Supportive team culture
  • Engagement with senior leadership
  • Involvement in critical security initiatives
Full Job Description
Overview

GovCIO is currently hiring for a SME Information Systems Security Engineer to lead cybersecurity, compliance, and risk management activities supporting the U.S. Coast Guard's (USCG) Digital Workplace Product Line (DWPL). This role provides principal-level engineering, strategic technical execution, and authoritative security management to maintain federal security standards, manage critical vulnerabilities, and ensure enterprise workspace, mobile, and cloud environments achieve and retain authorization. This position will be located in Alexandria, VA, and will be a hybrid position.

Responsibilities

As a SME Information Systems Security Engineer, you will serve as the principal technical authority for the cybersecurity posture, compliance framework, and risk management initiatives across the DWPL. Core responsibilities include:

  • Lead the program’s cyber‑risk reduction and vulnerability mitigation strategies across enterprise hardware, cloud productivity suites, and virtual desktop environments.
  • Oversee complex continuous scanning, patching, and strategic exposure reduction activities for end-user devices and the Digital Seabag mobile ecosystem.
  • Architect ATO compliance frameworks and strengthen security governance for enterprise workspace platforms and Manta Virtual Desktop (MVD) infrastructure.
  • Design and implement advanced security automation to improve resilience and consistency across modern USCG desktop systems.
  • Collaborate with senior infrastructure and engineering leadership to ensure vulnerability mitigation and scanning tools are deeply embedded in modern digital transformation designs.
  • Evaluate enterprise risk and establish compliance baselines to strengthen overall system security governance within DoD secure cloud environments.
  • Direct critical technical reviews to continuously analyze and mitigate complex vulnerabilities across physical, mobile, and virtual workplace environments.
  • Drive automation implementation and continuous monitoring of security controls within cloud environments, including AI integration and low-code desktop automation frameworks.
  • Partner with senior product managers to steer security compliance and prioritize scanning, patching, and risk reduction tasks for workplace hardware and software lifecycles.
  • Author and facilitate high-level documentation required to maintain secure interconnections and preserve ATO compliance status for unified messaging and identity management platforms.
  • Lead Product Teams in preparing for major cyber assessments to proactively validate vulnerability mitigation and security posture of digital workplace solutions.
Qualifications

High School with 10+ years (or commensurate experience)

Required Skills & Experience

  • Certifications: DoD 8570/8140 IASAE Level II or III (e.g., CISSP, CASP+, CSSLP).
  • Expert-level experience focused on cyber-risk reduction, vulnerability mitigation, and maintaining compliance frameworks for enterprise-scale endpoint infrastructure.
  • Demonstrated technical mastery performing continuous scanning, advanced risk analysis, and endpoint patching workflows across hardware and mobile fleets.
  • Deep working knowledge of risk reduction governance, baseline compliance frameworks, and security automation principles within cloud and virtual desktop architectures.
  • Proven ability to collaborate effectively with senior engineers to translate technical system configurations into risk reduction strategies for modern collaboration platforms..

Clearance Level: Must have an active Secret clearance  

 

Preferred Skills & Experience

  • Prior experience architecting or supporting USCG C5I initiatives, Zero Trust solutions, or large-scale software modernization programs.
  • Advanced cybersecurity certifications focused on governance and architecture (e.g., CISSP-ISSAP, CISSP-ISSEP, CCISO, or CISM).
  • Exceptional written and verbal communication skills to articulate complex risk metrics, vulnerability statuses, and compliance posture of digital workplace solutions to executive leadership
Posted Salary RangeUSD $170,000.00 - USD $210,000.00 /Yr.

About GovCIO

GovCIO is a technology and consulting firm that provides IT solutions to government agencies. The company specializes in cloud computing, cybersecurity, and digital transformation. GovCIO's mission is to help government agencies improve their IT infrastructure and enhance their services to the public. The company was founded in 2015 and is headquartered in Washington, DC.
Learn more about GovCIO
Size
50 employees
Industry
Founded
2015

Similar Jobs

More Jobs at GovCIO

More Information Technology Jobs

Find similar SME Information Systems Security Engineer jobs: