×
Register Here to Apply for Jobs or Post Jobs. X

Cybersecurity Engineer; DoD Enterprise Security

Job in Arlington, Arlington County, Virginia, 22201, USA
Listing for: SHR CONSULTING GROUP, LLC
Full Time position
Listed on 2026-09-14
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection
Salary/Wage Range or Industry Benchmark: 135000 - 155000 USD Yearly USD 135000.00 155000.00 YEAR
Job Description & How to Apply Below

If you are unable to complete this application due to a disability, contact this employer to ask for an accommodation or an alternative application process.

Cybersecurity Engineer (DoD Enterprise Security)

Arlington, VA, US

3 days ago Requisition

Salary Range: $ To $ Annually

SHR Consulting Group, LLC is a small business delivering enterprise IT, cybersecurity, and program management services to the Department of Defense and federal civilian agencies. We support mission-critical infrastructure at the Pentagon and across the National Capital Region, and we invest in our people through competitive compensation, professional certification support, and long-term career growth on stable, multi-year programs.

Position Summary

We are seeking a Cybersecurity Engineer
to support the assessment, hardening, remediation, and reporting of cybersecurity posture across DoD enterprise systems. The role requires hands-on experience with RMF-related security artifacts,
DISA STIG compliance, enterprise security tools, and clear communication with both technical personnel and program leadership. DISA identifies eMASS and ACAS among its supported cybersecurity services, while STIGs provide DoD configuration-hardening guidance.

Key Responsibilities
  • Perform technical cybersecurity assessments of servers, endpoints, applications, network devices, and other enterprise information systems using DISA STIGs, ACAS, Axonius, Evaluate-STIG, Trellix, and other approved Enterprise Security Services (ESS) tools.
  • Analyze scan results, configuration findings, asset inventory data, and security-control evidence to identify vulnerabilities, misconfigurations, compliance gaps, and remediation priorities.
  • Develop, maintain, and update RMF and authorization artifacts in eMASS, including control implementation statements, assessment evidence, POA&Ms, risk records, and remediation status.
  • Support Cyber Command Readiness Inspection/Operational Readiness Inspection activities, including CCORI-related preparation, evidence collection, technical validation, corrective-action tracking, and post-assessment remediation.
  • Support Cyber Hardening Mission activities by validating secure configurations, coordinating technical remediation, documenting exceptions, and tracking risk acceptance or mitigation actions.
  • Correlate ACAS vulnerability data, STIG assessment results, Axonius asset-discovery data, Trellix security telemetry, and other ESS outputs to provide a complete view of enterprise cyber risk.
  • Create data-driven reports, dashboards, trackers, and remediation metrics using advanced Microsoft Office tools, especially Excel formulas, pivot tables, lookups, data analysis functions, charts, and PowerPoint briefing materials.
  • Brief technical teams, system owners, ISSMs/ISSOs, program managers, and senior leadership on assessment results, cyber risk, trends, remediation progress, and decisions needed.
  • Coordinate with infrastructure, network, cloud, application, endpoint, and security operations teams to validate findings and resolve vulnerabilities within required timelines.
  • Maintain assessment artifacts and documentation in accordance with contract, organizational, DoD, and RMF requirements.
Required Qualifications
  • Bachelor’s degree in cybersecurity, information technology, computer science, engineering, or a related discipline; additional relevant experience may be substituted for education as permitted by the contract.
  • 5+ years of progressively responsible cybersecurity engineering, security assessment, vulnerability management, or RMF experience in a DoD or federal enterprise environment.
  • Demonstrated hands-on experience using eMASS to support RMF packages, security controls, assessment evidence, POA&Ms, and authorization activities.
  • Demonstrated experience conducting technical assessments using DISA STIGs, ACAS, Axonius, Evaluate-STIG, Trellix, and/or comparable enterprise cybersecurity tools.
  • Experience supporting CCORI/CCRI/CORA-type inspections, cyber readiness assessments, Cyber Hardening Mission efforts, or similar enterprise compliance and operational-risk initiatives. CCORI programs emphasize mission, threat, and vulnerability analysis in evaluating operational cyber risk.
  • Strong knowledge of vulnerability management, secure configuration validation, asset management, remediation verification, risk analysis, and cybersecurity reporting.
  • Advanced Microsoft Office proficiency, including Excel formulas, pivot tables, XLOOKUP/VLOOKUP, conditional logic, data normalization, trend…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary