Consulting Services Group (CSG) is a premier provider of support services, bringing a new and unique level of subject matter expertise to our clients. Our innovation-led services provides comprehensive solutions to our clients who face high-stake challenges related to managing essential programs, growth and transformation, critical communications, and logistics. Our people bring unparalleled expertise and dedication and we are always looking to expand our team. Consulting Services Group (CSG) is seeking a skilled Cyber Security Engineer/ISSO to provide technical security expertise and compliance oversight for classified and unclassified information systems. Our ideal candidate will ensure systems adhere to government and corporate cybersecurity requirements, support system authorization and risk management, and maintain the overall security posture of mission-critical environments. Duties/Tasks and Responsibilities:
- Works on assignments requiring considerable judgment and initiative. Develop solutions to routine technical problems of limited scope, creating detailed instruction for others.
- Serve as the ISSO for assigned systems, ensuring compliance with DoD, NIST, and organization cyber security policies
- Support risk management activities, including development of security plans, control implementation, risk assessments, and continuous monitoring
- Monitor system alerts and events, investigate, document, and respond to incidents
- Using Security Technical Implementation Guides (STIGs) to assess technology areas such as networks, endpoint security, vulnerability scanning, DNS, operating systems, or databases.
- Utilizing knowledge of cybersecurity principles, networking concepts, and security methodologies to perform impact and risk assessments.
- Preparing audit reports that identify technical and procedural findings with recommended remediation strategies.
- Utilizing risk management processes for assessing and mitigating risk.
- Developing and implementing security designs ensure that the hardware, operating systems and software applications adequately address cyber security requirements and Security Controls Traceability Matrix (SCTM).
- Identifying points of vulnerability, non-compliance with established Information Assurance (IA) standards and regulations and recommend mitigation strategies.
- Implementing and validating Security Technical Implementation Guide (STIG) requirements and/or perform SRG assessments for all development and implementation projects.
- Preparing and documenting standard operating procedures and protocols such as systems security plans, security control assessments, contingency plans, configuration management plans, incident response plans, vulnerability scanning, and/or vulnerability management plans.
- Collaborating with IT and development teams to ensure security best practices are embedded across systems
- Staying up to date with emerging threats, trends, and technologies in cyber security
Minimum Qualifications:
- Must be a U.S. Citizen
- Must be willing to submit for and obtain DOD/Secret clearance at minimum
- Must have a minimum of 5 years of Cyber Security or ISSO experience with Risk Management Framework (RMF) and vulnerability analyses.
- Experience - Application of technical standards, principles and theories. Considered an emerging authority, who applies extensive technical expertise.
- Within 6 months obtain ISSM Required Online Training (DAAPM - 2.6)
- Current CISSP certification or ability to obtain within 6 months
- Documentation -Ability to draft requirements documents, correspondence, and procedures in accordance with policies.
- Familiarity with IT government security standards like ICD 503, NISPOM, NIST, and DIACAP.
- Ability to provide RMF support and conduct security certification tasks.
- Experience with Incident Response procedures and reports.
- Procedures and Processes - Ability to provide explanations of complex technical procedures and processes clearly and accurately to both technical and non-technical audiences.
- Writing - Communicating effectively in writing as appropriate for the needs of the audience.
- Must have proficiency with scripting and automation tools such as PowerShell, Python. Ansible, Teraform, Service Now, etc.
- Must have familiarity with Microsoft Azure
Education:
Desired Qualifications:
- Bachelor's degree in related field (or equivalent experience).
- Certification(s) desired include: AWS Certified Solutions Architect, Google Cloud, Microsoft 365 or security related certification.
- Jira as well as network routing and switching experience preferred
- Splunk, Sentinel, or other SIEM Experience
Other: Work:
- Work is typically performed in an office and/or data center environment, requiring computer terminals and standard office equipment to accomplish work objectives. Ability to lift up to 25 lbs.
- This is a full-time position working normal workday hours, Monday to Friday, with weekends and holidays off.
Travel:
- Minimal local travel in the DC metro area required. Some travel to data centers is required.
Job location: Onsite in Herndon, Virginia. Remote telework is not available. Compensation and Benefits: We are proud to offer a comprehensive benefits package in addition to a competitive salary. Our employees receive no-cost health, dental, and vision insurance options, along with a generous paid time off program that includes sick leave for you or your dependents and paid military leave. We observe 14 holidays annually, providing flexibility throughout the year. Employees also benefit from an immediately vested retirement plan with company match, as well as life and disability insurance, tuition reimbursement, and a robust employee referral program. We are honored to have been recognized as a USA TODAY and Washington Post Top Workplace for 2025. The strong culture that we have built - one that prioritizes work life balance, employee appreciation, strong values, and meaningful work, contributes to an environment where CSG employees feel valued and supported. Application and Accommodations: Please let us know if you require accommodations during the application or interview process by reaching us at 540-751-3215. Equal Employment Opportunity (EEO) Statement: Consulting Services Group, LLC is an Affirmative Action and Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, national origin, disability, or protected veteran status. For more information, see Equal Employment Opportunity. CSG job descriptions are intended to outline the primary responsibilities and qualifications for each role. Equivalent combinations of education, experience, and training may be considered. Candidates are encouraged to apply even if they do not meet every listed qualification.
|