Job Description:Network Designs, Inc. (NDI) is seeking a PMP-certified Technical Project Manager to lead cybersecurity initiatives supporting a Federal customer. This role is responsible for planning, coordinating, and overseeing security-focused projects and operational activities, including vulnerability remediation, Plan of Action and Milestones (POA&M) management, Authority to Test (ATT) and Authorization to Operate (ATO) activities, security compliance, and risk mitigation.
The Technical Project Manager serves as the primary interface between customer stakeholders, cybersecurity teams, infrastructure teams, and vendor partners to ensure successful execution of cybersecurity projects, timely remediation of security findings, and achievement of Federal security authorization milestones. The successful candidate will provide leadership in coordinating vulnerability management efforts, tracking remediation activities, supporting ATT and ATO processes, and ensuring compliance with Federal cybersecurity requirements while maintaining project schedules, quality standards, and performance objectives.
This position requires a strong combination of project management expertise, cybersecurity operations experience, stakeholder engagement, and knowledge of Federal cybersecurity governance and compliance frameworks.
Requirements:- U.S. Citizenship is required
- Must be able to obtain a Public Trust clearance
- This position requires working onsite in Washington D.C., 5 days per week
Qualifications and Experience:- Bachelor's degree in Information Technology, Cybersecurity, Computer Science, Engineering, Business, or a related field, or equivalent experience.
- Project Management Professional (PMP) certification is required.
- Minimum of five (5) years of experience managing IT or cybersecurity projects, preferably supporting Federal Government customers.
- Experience managing cybersecurity initiatives involving vulnerability remediation, POA&M management, ATT/ATO activities, security compliance, or risk management.
- Experience supporting Federal system authorization activities, including Authority to Test (ATT), Authorization to Operate (ATO), and continuous monitoring under the NIST Risk Management Framework (RMF).
- Experience coordinating cross-functional technical teams, customer stakeholders, and vendor partners.
- Strong knowledge of Federal cybersecurity frameworks, including NIST RMF and FISMA.
- Strong project management skills, including scope, schedule, budget, risk, issue, and resource management.
- Excellent written, verbal, and presentation skills with the ability to communicate effectively with technical and executive audiences.
- Strong analytical, organizational, and problem-solving skills with attention to detail.
Preferred Qualifications:- Five (5) years of experience managing IT or cybersecurity projects, preferably supporting Federal Government customers.
- Experience managing or coordinating ATT and ATO packages through the NIST RMF lifecycle.
- Familiarity with security authorization artifacts, including the System Security Plan (SSP), Security Assessment Plan (SAP), Security Assessment Report (SAR), Security Control Traceability Matrix (SCTM), and POA&M documentation.
- Experience using eMASS or similar Governance, Risk, and Compliance (GRC) platforms.
- Experience using vulnerability management tools such as Tenable, Qualys, Rapid7, or Microsoft Defender.
- Familiarity with ServiceNow, Jira, Microsoft Project, or similar project and workflow management tools.
- Security+, CISSP, CISM, or other cybersecurity certifications are preferred.
- Experience supporting Federal civilian or Department of Defense customers
Key Competencies:- Technical Project Management
- Cybersecurity Program Management
- Vulnerability Management
- POA&M Management
- Authority to Test (ATT) & Authorization to Operate (ATO)
- NIST Risk Management Framework (RMF)
- Federal Security Compliance (FISMA)
- Risk Assessment and Mitigation
- Stakeholder and Executive Communications
- Cross-Functional Team Leadership
- Project Planning and Scheduling
- Continuous Monitoring
- Metrics, Reporting, and Dashboard Development
- Customer Relationship Management
- Process Improvement and Governance
ResponsibilitiesCybersecurity Project Management:
- Manage multiple cybersecurity projects and operational initiatives supporting enterprise IT environments.
- Develop and maintain project plans, schedules, milestones, resource allocations, risks, dependencies, and deliverables.
- Coordinate activities across cybersecurity, infrastructure, cloud, application, and operations teams to ensure timely completion of remediation efforts and project objectives.
- Coordinate security authorization activities to support ATT and ATO milestones, ensuring project schedules align with assessment and authorization timelines.
- Monitor project performance and provide regular status updates to customer leadership and program management.
- Ensure cybersecurity initiatives are delivered on time, within scope, and aligned with customer priorities and contractual requirements.
Vulnerability and POA&M Management:- Coordinate enterprise vulnerability remediation efforts across infrastructure, cloud, applications, endpoints, and network environments.
- Track, manage, and report vulnerability remediation activities to ensure timely closure of security findings.
- Manage Plans of Action and Milestones (POA&Ms), including documentation, prioritization, status tracking, reporting, and closure activities.
- Facilitate remediation planning meetings and coordinate resolution of identified security risks with technical teams.
- Monitor remediation metrics and identify risks that could impact compliance, ATT/ATO milestones, or project timelines.
- Escalate overdue findings and coordinate corrective actions to support continuous monitoring objectives.
Security Compliance and Authorization:- Support the planning, coordination, and execution of activities required to obtain and maintain **Authority to Test (ATT)** and
- Authorization to Operate (ATO)** for Federal information systems.
- Coordinate with Information System Security Managers (ISSMs), Information System Security Officers (ISSOs), system owners, assessors, and technical teams to ensure timely completion of security authorization activities.
- Track and manage security authorization deliverables, milestones, dependencies, and POA&M items throughout the ATT and ATO lifecycle.
- Support compliance with Federal cybersecurity requirements and security frameworks, including the NIST Risk Management Framework (RMF), FISMA, and agency-specific security policies.
- Coordinate activities supporting security assessments, audits, security control validation, penetration testing, and continuous monitoring.
- Develop executive dashboards and metrics that communicate security posture, remediation progress, authorization readiness, and compliance status.
Stakeholder Engagement:- Serve as the primary point of contact for cybersecurity project status, remediation efforts, security authorization activities, and compliance initiatives.
- Coordinate with customer leadership, Authorizing Officials (AOs), Information System Security Managers (ISSMs), Information System Security Officers (ISSOs), system owners, technical teams, and vendor partners.
- Lead project status meetings, remediation reviews, governance boards, and operational planning sessions.
- Communicate project risks, issues, dependencies, mitigation strategies, and impacts to stakeholders.
- Manage customer expectations while ensuring alignment with mission objectives and cybersecurity priorities.
Risk, Quality, and Process Management:- Identify, assess, and manage cybersecurity project risks and dependencies.
- Develop mitigation strategies for delayed remediation activities, compliance gaps, and project issues.
- Support implementation of quality assurance and process improvement initiatives that enhance vulnerability management, security authorization, compliance tracking, and operational efficiency.
- Ensure project documentation and reporting support audit readiness and contractual requirements.
- Promote best practices for project governance, cybersecurity risk management, and service delivery.
Reporting and Documentation:- Prepare project management plans, schedules, executive briefings, status reports, and meeting materials.
- Develop dashboards and metrics related to vulnerabilities, POA&Ms, remediation progress, project performance, ATT/ATO readiness, and compliance status.
- Maintain project documentation, action items, meeting minutes, risk registers, and security tracking artifacts.
- Track security authorization artifacts and milestones supporting ATT, ATO, and continuous monitoring activities.
- Capture lessons learned and support organizational knowledge management and continuous improvement initiatives.
Compensation and Benefits:At NDi, we value our team and are committed to retaining top talent by offering competitive benefits and compensation packages. Our employee benefits package includes comprehensive health, dental, vision, pet, and legal insurance. Our corporate benefits include 401(k) retirement matching, paid leave, paid holidays, and health and wellness programs. In addition, we provide employer-paid life and disability insurance, professional development, education benefits, and much more to ensure our team has the resources they need to thrive on and off the job.
Veterans First Commitment:As a Service-Disabled Veteran-Owned Small Business (SDVOSB), NDi is dedicated to hiring veterans and providing a supportive work environment that honors their service while recognizing the unique skills and experiences they bring to our organization.
Apply Now: Take advantage of this unique opportunity to join one of the fastest-growing companies in Federal contracting!