Avatar for SHR Consulting Group
SHR Consulting Group
Actively Hiring
Minority-owned small business that provides it services and consulting to government agencies

CyberSecurity Engineer (Public Trust Clearance)

  • $130k – $150k
  • |Remote ()
  • |5 years of exp
  • |Full Time
Posted: 2 weeks ago• Recruiter recently active
Hires remotely in
Remote Work Policy

Remote only

Company Location
Springfield
Visa Sponsorship

Not Available

RelocationAllowed
Skills
Incident Response
Vulnerability Management
FISMA
Continuous Monitoring
RMF
NIST SP 800-53
Security Monitoring
Google Cloud Platform (GCP)
Vulnerability Scanning
Security Assessments
Security Control Implementation
CompTIA Security+ CE
Security Logging
Remediation of Identified Vulnerabilities
DevSecOps Security Practices

About the job

About SHR Consulting Group

SHR Consulting Group, LLC is a small business delivering enterprise IT, cybersecurity, and program management services to the Department of Defense and federal civilian agencies. We support mission-critical infrastructure at the Pentagon and across the National Capital Region, and we invest in our people through competitive compensation, professional certification support, and long-term career growth on stable, multi-year programs.

Position Summary

SHR Consulting Group is seeking a Cybersecurity Engineer to provide hands-on cybersecurity engineering and operational security support for enterprise applications and cloud environments. The position works with system owners, security personnel, application teams, DevSecOps engineers, and operations teams to maintain security compliance, identify and remediate vulnerabilities, support continuous monitoring, and protect sensitive information. This position supports FEMA and requires DHS EOD Public Trust Clearance prior to start. Work location is remote, but candidates local to the DC Metro Area is highly preferred for occasional onsite meetings and team collaboration in DC and Bluemont, VA.

Key Responsibilities

  • Provide cybersecurity engineering support across development, testing, staging, and production environments.

  • Support security of applications and infrastructure hosted within Google Cloud Platform (GCP).

  • Implement and maintain technical security controls consistent with applicable organizational and federal security requirements.

  • Support security authorization, assessment, and continuous monitoring activities.

  • Identify, analyze, track, prioritize, and support remediation of application, infrastructure, cloud, and configuration vulnerabilities.

  • Review security scan results, assess findings, coordinate remediation with engineering and development teams, and validate corrective actions.

  • Develop and maintain security artifacts and supporting documentation for identified vulnerabilities and remediation activities.

  • Integrate automated security testing and security controls into DevSecOps and CI/CD processes.

  • Support incident response, investigation, containment, remediation, and root cause analysis.

  • Support security logging, monitoring, alerting, and audit capabilities.

  • Develop and maintain security documentation and evidence supporting security assessments, audits, releases, and change-control activities.

  • Protect PII, sensitive information, and system data from unauthorized access, disclosure, modification, or loss.

  • Participate in Agile/SAFe planning, sprint activities, technical working sessions, and security reviews.

Minimum Qualifications

  • Five 5+ years of cybersecurity engineering, security operations, or information systems security experience.

  • Experience securing cloud-hosted applications and infrastructure, preferably within Google Cloud Platform (GCP).

  • Experience with NIST SP 800-53, FISMA, RMF, vulnerability management, continuous monitoring, and security control implementation.

  • Experience with vulnerability scanning, security monitoring/logging, incident response, and DevSecOps security practices.

  • Experience supporting security assessments and remediation of identified vulnerabilities.

Education & Certifications

  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Engineering, or related field, or equivalent relevant experience.

  • CompTIA Security+ CE or equivalent industry-recognized security certification (Required).

  • CISSP, CCSP, Google Cloud security certification, or equivalent certification (Highly Preferred).

Security Clearance

  • U.S. Citizenship.

  • DHS EOD Public Trust Clearance (FEMA Preferred)

Work Environment

  • Remote.

  • Candidates residing in the DC Metro Area preferred.

Benefits

  • Competitive salary commensurate with experience and clearance level

  • Comprehensive medical, dental, and vision coverage

  • 401(k) with company contribution

  • Paid time off and eleven federal holidays

  • Certification reimbursement and training support (DoD 8140 baseline and computing environment certifications)

  • Life and disability insurance

The above salary range represents a general guideline; SHR considers a number of factors when determining the base salary offers such as the scope and responsibilities of the position, and the candidate's experience, education, skills and current market conditions.

SHR Consulting Group, LLC is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or protected veteran status