
location_onHybrid
GovCIO is currently hiring for a Senior Cybersecurity Engineer to support cybersecurity, compliance, and risk management activities for the U.S. Coast Guard (USCG). This role is designed to provide high-level engineering, technical execution, and security management to maintain federal security standards, manage vulnerabilities, and ensure mission-critical systems achieve and retain authorization.
This position will be located in Alexandria, VA, and operates as a hybrid role. The successful candidate will partner with operational commands and departments to architect and integrate a suite of security tools, creating a multi-layered defense for the organization.
In this role, you will lead efforts to execute the DoD Zero Trust Architecture, developing automated response playbooks to accelerate incident mitigation. You will manage the full lifecycle of security projects, from inception to completion, while ensuring continuous endpoint compliance across enterprise platforms. A significant portion of the work involves leading the drafting and maintenance of Authority to Operate (ATO) paperwork, managing Plan of Action and Milestones (POA&Ms) for systemic remediation, and coordinating Contingency Plan (CP) testing activities.
You will actively monitor ACAS scans and collaborate with technical infrastructure teams to engineer solutions for identified vulnerabilities. Additionally, you will engage in Privacy Threshold Analysis (PTA) across various system platforms and coordinate Cybersecurity Service Provider (CSSP) onboarding processes. The role requires responding accurately and promptly to Cyber Operational Readiness Assessment (CORA) data calls and operational data calls to ensure readiness.
GovCIO is an equal opportunity employer committed to diversity and inclusion. We consider qualified applicants regardless of background, race, gender, or other protected characteristics.
Work model: Hybrid
Hybrid
Prior experience supporting Department of Defense (DoD) or Federal software modernization programs and Zero Trust migrations. Advanced baseline cybersecurity or management certifications such as CompTIA CASP+, CISSP, CISM, or PMP. Knowledge of scripting languages (e.g., Bash, Python) to automate continuous monitoring tasks and playbook responses.
Skills: Security+, Cysa+, Edr, Soar, Acem, Siem, HBSS, Zero Trust Architecture, Ato, Stig.
Education: High School with 10+ years or commensurate experience.
Recrutus helps candidates discover roles that match their skills and helps teams reach qualified applicants faster. Browse by metro, discipline, or work style — from internships to senior leadership.