368,634open jobs
9,437companies
50,578added this week
Browse all
Salary
$109k – $219k per year (Estimated)
Location
In office (Washington)
Seniority
Senior · 8+ years exp
Employment
Contractor
Overview
Company
Impact
Profile match
Apogee Global RMS is an SDVOSB cybersecurity advisory firm in San Jose, CA. Explore vCISO services and risk management for mid market and public sector teams.

Apogee is seeking an experienced Senior Cybersecurity & Compliance Advisor to provide cybersecurity governance, risk management, and compliance guidance supporting a federal simulation and analytics solution. This role will focus on security advisory, control assessment, authorization readiness, and risk mitigation while complementing the prime contractor’s hands-on DevSecOps and cybersecurity engineering teams.

The successful candidate will help ensure cybersecurity requirements, security controls, documentation, and authorization-readiness activities are integrated throughout the solution lifecycle, including design, development, testing, deployment, and transition.

This position requires a cybersecurity professional who can bridge technical security requirements with federal compliance expectations while effectively communicating risks and recommendations to technical teams, program leadership, and government stakeholders.

Key Responsibilities:

Cybersecurity Governance & Risk Advisory

  • Provide cybersecurity governance, risk, and compliance guidance throughout the program lifecycle.
  • Advise project teams on federal cybersecurity requirements, policies, and security best practices.
  • Support interpretation and implementation of FISMA Moderate requirements and NIST security controls.
  • Participate in cybersecurity risk assessments, technical design reviews, and security governance discussions.
  • Identify security gaps, residual risks, control deficiencies, and recommended mitigation strategies.
  • Communicate cybersecurity risks and compliance requirements to technical teams, leadership, and federal stakeholders.

Compliance & Authorization Support

  • Review security architectures, control implementations, security documentation, and technical evidence.
  • Support development and review of security documentation, including:
    • Security plans
    • Control narratives
    • Risk assessments
    • Plans of Action and Milestones (POA&Ms)
    • Authorization-readiness documentation
  • Support preparation activities for audits, security assessments, inspections, and authorization reviews.
  • Evaluate cybersecurity artifacts for completeness, accuracy, and alignment with federal compliance expectations.
  • Assist with continuous monitoring and ongoing authorization activities.

Security Engineering & Technical Review

  • Review cybersecurity practices related to:
    • Vulnerability management
    • Audit logging and monitoring
    • Identity and access management
    • Incident response
    • Configuration management
  • Provide guidance on software supply-chain security, including:
    • Software Bill of Materials (SBOM)
    • Static Application Security Testing (SAST)
    • Dynamic Application Security Testing (DAST)
    • Dependency analysis
    • Vulnerability remediation tracking
  • Collaborate with technical architects, DevSecOps engineers, program managers, and federal security stakeholders.
  • Support cybersecurity training, awareness, and knowledge-transfer activities.

Requirements

Qualifications:

  • Bachelor’s degree in Cybersecurity, Information Assurance, Information Systems, Computer Science, Risk Management, or related discipline.
  • Minimum 8 years of experience in cybersecurity, information assurance, security compliance, risk management, or federal cybersecurity programs.
  • Demonstrated knowledge of:
    • Federal Information Security Modernization Act (FISMA)
    • NIST Risk Management Framework (RMF)
    • NIST Special Publication 800-53 security controls
  • Experience reviewing security documentation, control evidence, risk assessments, authorization packages, or compliance artifacts.
  • Ability to analyze cybersecurity risks and translate technical requirements into actionable recommendations.
  • Strong written and verbal communication skills with the ability to engage technical and executive audiences.
  • Ability to obtain and maintain client-required suitability requirements, including Public Trust eligibility if required.

Preferred Qualifications:

  • CISSP, CISM, CRISC, CAP/CGRC, Security+, or comparable cybersecurity certification.
  • Experience supporting FISMA Moderate systems, federal authorization activities, or Authority to Operate (ATO) processes.
  • Familiarity with:
    • Cloud security practices
    • Identity and Access Management (IAM)
    • Vulnerability management
    • DevSecOps methodologies
    • Software supply-chain security
    • SBOM, SAST, and DAST processes
  • Experience supporting federal cybersecurity assessments, audits, inspections, continuous monitoring, or compliance programs.
  • Experience working with federal agencies or government contractors in mission-critical environments.
  • Security Requirement: Ability to obtain and maintain client-required suitability clearance or Public Trust determination.
  • Location Requirement: Candidates must be able to support periodic onsite meetings in Virginia.

Benefits

For any questions (OR) to apply, please contact us at [email protected]

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,634 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Washington
$103k – $219k per year (Estimated) • Remote • Full-Time • 7+ years exp
AI/ML
AI Agents
LLM
Model Context Protocol
DevOps
Azure
Docker
Kubernetes
Cybersecurity
Okta
SBOM
Apply
$27k – $55k per year (Estimated) • Remote • Full-Time • Moscow
Bash
Java
Python
Java
Quarkus
Spring Boot
Databases
Apache Kafka
PostgreSQL
Tarantool
DevOps
Ansible
ArgoCD
cert-manager
Debian
etcd
GitLab CI
GitOps
Grafana
Helm
Helmfile
Istio
K3s
Kubernetes
Linkerd
OpenTofu
Prometheus
Proxmox VE
Rancher
Service Mesh
SLI/SLO/SLA
Terraform
VictoriaMetrics
ZooKeeper
VMWare
GitLab
Cybersecurity
Falco
Grype
OPA Gatekeeper
SBOM
Trivy
Open Policy Agent
Apply
$485k per year • In office • Contractor • 10+ years exp • Bachelor's Degree • San Francisco
AI/ML
Multimodal AI
Anthropic
DevOps
HPC
Cybersecurity
SBOM
Apply
$120k – $268k per year (Estimated) • Equity • Remote • Full-Time • Bachelor's Degree
C#
Go
JavaScript
Python
TypeScript
AI/ML
AI Agents
AutoGen
AWS Bedrock
Copilot
Function Calling
LangChain
LLM
Prompt Engineering
RAG
Human-in-the-Loop
LLM Guardrails
OpenAI
DevOps
AWS
Azure
Bicep
CI/CD
GCP
Kubernetes
Platform Engineering
Shift-Left
Terraform
GitHub
Cybersecurity
Burp Suite
Checkmarx
Checkov
CIS Benchmarks
HashiCorp Vault
HIPAA
ISO 27001
OWASP Top 10
OWASP ZAP
PCI DSS
SBOM
Semgrep
Shift-Left Security
Sigstore
SLSA
Snyk
SOC 2
SonarQube
Threat Modeling
Trivy
Veracode
Least Privilege
Cryptography
Vault
Apply
$22k – $54k per year (Estimated) • Remote/Hybrid • Full-Time • Moscow
C#
C++
DevOps
Jenkins
TeamCity
Cybersecurity
CVSS
SBOM
Apply
$112k – $249k per year (Estimated) • Remote • Contractor • 7+ years exp • Bachelor's Degree • San Jose
Cybersecurity
ISO 27001
NIST CSF
SOC 2
Apply
$110k – $220k per year (Estimated) • Remote/Hybrid • Full-Time • Bachelor's Degree
JavaScript
PowerShell
Python
DevOps
Rest API
IAM
Cybersecurity
Microsoft Entra ID
Zero Trust
Apply
Senior Systems Analyst 2 months ago
$82k – $166k per year (Estimated) • In office • Contractor • 8+ years exp • Bachelor's Degree • Baltimore
JavaScript
Python
SQL
Databases
PostgreSQL
Analytics
Power BI
Tableau
ETL/ELT
Apply
$113k – $245k per year (Estimated) • In office • Contractor • Associate's Degree • Washington
Cybersecurity
MITRE ATT&CK
Threat Modeling
Apply
$124k – $258k per year (Estimated) • In office • Contractor • Bachelor's Degree • Washington
DevOps
AWS
Azure
IAM
Cybersecurity
FedRAMP
NIST 800-53
Zero Trust
Apply
$99k – $135k per year • In office • Full-Time • 10+ years exp • Bachelor's Degree • Washington
JavaScript
TypeScript
DevOps
Azure
Azure DevOps
CI/CD
Management
Power Apps
Power Automate
QA
Playwright
Apply
$118k – $162k per year • Remote • Full-Time • 10+ years exp • Bachelor's Degree • Louisville • Fort Lauderdale • Washington • Chicago • Tampa
DevOps
Azure
GCP
Cybersecurity
HIPAA
Apply
$81k – $122k per year • Remote/Hybrid • Full-Time • PhD • Atlanta • Washington
JavaScript
SQL
AI/ML
AI Agents
Agentforce
Marketing
Salesforce
Apply
$171k – $273k per year • In office • Full-Time • 8+ years exp • PhD • San Francisco • Washington
AI/ML
A2A
Agentforce
AI Agents
Model Context Protocol
DevOps
AWS
GCP
Marketing
Salesforce
Apply
Data Scientist 3 hours ago
$113k – $188k per year • In office • Full-Time • 5+ years exp • Bachelor's Degree • Arlington • Washington
Python
Databases
Databricks
DevOps
AWS
Azure
Analytics
ETL/ELT
Power BI
Apply
See all jobs
This is one of many
368,634 more open roles from verified company boards, updated every day.