Coalfire: Provides cybersecurity advisory, assessment, and technical testing services.
3+ YOEBachelor's degree or equivalent; 3+ years experience with security frameworks (SOC 2, C5, SSPA, ISO, NIST, etc.); experience leading SOC 2/SOC 1/C5 audits; strong communication, consulting, mentoring, and report-writing skills; up to 20% travel.
SOC 2, SOC 1, C5, SSPA, ISO, NIST, COBIT, HIPAA/HITECH, HITRUST, PCI, Amazon Web Services, Microsoft Azure, Google Cloud Platform
TestPros: Provides independent IT assessment and cybersecurity compliance services.
5+ YOE5+ years in IT security compliance including SOC 2, experience with cloud security, governance, risk analysis, threat intelligence, incident management; ability to perform SOC 2 Type 2 assessments, gap analyses, evidence collection, and reporting.
ShorePoint: Provides cybersecurity and risk management services for federal agencies.
2+ YOE2+ years in a SOC or security operations environment;Bachelor's degree; security technologies experience; DOE Q or equivalent DoD Top Secret clearance; willing to rotate shifts and travel up to 15%
SOC 2 Type 2 Five-TSC SaaS / Cloud Compliance Lead
Silver Spring, Maryland, United States
HybridFull Time
For Your Information, Inc.: Provides HR and IT services to federal government agencies.
8+ YOE8+ years in cybersecurity/GRC/IT audit with direct SOC 2 Type 2 audit experience, GRC platform experience (Drata preferred), SaaS/cloud expertise, evidence review, strong written communication, and stakeholder coordination skills.
Applied Information Sciences: Delivers cloud transformation and software engineering services to organizations.
6+ YOETS/SCI with CI Polygraph required; 6+ years security engineering experience with Azure and M365; Security+ and CySA+ (CySA+ within 6 months); SIEM and SOC tool expertise; strong incident response, threat analysis, and security architecture skills.
Azure, M365, SIEM, Microsoft Azure Sentinel, Microsoft Defender Suite, Azure Monitor, Azure Automation, Azure Backup, Azure Security Center, Azure Kubernetes Service AKS, Azure Service Environment ASE, Azure Virtual Desktop, Spring Cloud, VMs, IaaS, PaaS
New Jersey or New York or Washington or Hawaii or Alaska or Maryland or Connecticut or Rhode Island or Massachusetts or Nevada or Oregon or Arizona or Colorado or Wyoming or Texas or North Dakota or Minnesota or Missouri or Illinois or Wisconsin or Florida or Georgia or Michigan or Ohio or Virginia or Pennsylvania or Delaware or Vermont or New Hampshire or Maine or Utah or Idaho or Montana or New Mexico or South Dakota or Nebraska or Kansas or Oklahoma or Iowa or Arkansas or Louisiana or Mississippi or Alabama or Tennessee or Kentucky or Indiana or South Carolina or North Carolina or West Virginia or California or United States
$84k-$162k/yrRemoteFull Time
Mercury InsuranceNYSE: MCY: Provider of personal and commercial insurance coverage.
2+ YOEIdentify, investigate, escalate, and remediate security alerts in a 24x7 SOC; manage and configure SOC tools; perform scripting/automation; 2+ years SOC experience; BS in CS/IT or equivalent; security certifications preferred.
ExtraHop, Qradar, Splunk, ServiceNow, SIEM Solutions, TrustWave, Microsoft 365 Security Suite, Endpoint Detection & Response Solutions, Email Protection Solutions, Web Content Filtering (WSS), Secure Web Gateway Solutions
Koniag Government Services: Providing technical and professional services to federal agencies.
2+ YOE2+ years SOC analyst experience, experience with SOC tools, ServiceNow, Windows and Microsoft 365; CompTIA Network+/Security+/CySA+ (or equivalent) required; ability to obtain a Public Trust.
ServiceNow, CAPRS, Windows, Microsoft 365, TryHackMe, OSINT
SAICNYSE: SAIC: Provides engineering, IT, and mission support services to government.
5+ YOE2+ MgmtManage SOC tools and a team of analysts; design and test security architectures; 5+ years experience (7 preferred); 3+ years SOC/cyber experience; US citizen able to obtain Public Trust; 2+ years leadership; risk analysis and senior briefing experience.
Splunk, ServiceNow, Palo Alto, Archer, Nessus, Microsoft Exchange Online Protection, CrowdStrike, Trellix (NX/CM/AX), Cisco ISE
Vaultes: Provides cybersecurity compliance and digital modernization for government agencies.
3+ YOEAbility to obtain Public Trust and US citizenship required. Bachelor’s in cybersecurity/IS/CS (or equivalent experience), 3+ years SOC/cybersecurity operations experience, familiarity with SIEM/EDR/IDS/IPS, Windows/Linux/Active Directory, cloud, networking, NIST/FISMA/RMF, strong communication, and shift flexibility.
SIEM, EDR, IDS/IPS, Splunk, Microsoft Defender, Qualys, Active Directory, Windows, Linux, NIST, FISMA, RMF
SAICNASDAQ: SAIC: Provides government and defense clients with technology and engineering services.
13+ YOE2+ MgmtBachelor's or equivalent experience, 13+ years experience, 3+ years SOC experience, US citizen eligible for Public Trust, 2+ years team leadership, risk analysis and senior leader briefing experience; CISSP and ITIL desired.
Splunk, ServiceNow, Palo Alto, Archer, Nessus, Microsoft Exchange Online Protection, CrowdStrike, Trellix (NX/CM/AX), Cisco ISE
Charter Technology Solutions: Providing managed IT and cybersecurity services to mission-driven organizations.
5+ YOE2+ Mgmt5+ years in security operations, 2+ years supervisory experience, incident command experience, strong SOC workflow and SLA knowledge, experience with SIEM/SOAR/EDR/XDR and ticketing, KPI/SLA reporting, bachelor\u0002s preferred, industry certs preferred.
SIEM, SOAR, EDR/XDR, ticketing systems, case management platforms, Greenhouse
cFocus Software: Provides cybersecurity compliance and enterprise IT services for government.
7+ YOE2+ MgmtActive Public Trust clearance, B.S. in Computer Science/IT or related, 7+ years incident responder experience, 2+ years recent SOC technical direction, Splunk SIEM experience, SANS GCIH or GCIA, familiarity with NIST incident handling.
Splunk Enterprise Security, Splunk SIEM, Microsoft Sentinel, ServiceNow, Jira
Concept Plus: Delivers enterprise IT services for federal government agencies.
5+ YOE2+ MgmtUS citizen with Bachelor's in Computer Science, 5+ years in security operations (2+ years leadership), familiarity with FISMA/NIST and DoW requirements, TCP/IP, system administration, SOC tooling, ACAS, Splunk/SPL, KQL, and ability to obtain Secret clearance.
BARR Advisory: Performs cybersecurity audits and risk management consulting services.
3+ YOEBachelor's or equivalent; 3+ years IT audit/cybersecurity compliance experience; 2+ years leading SOC 1/SOC 2 engagements; knowledge of AICPA TSC; cloud experience (AWS/Azure/GCP); strong communication and mentoring; able to obtain industry certification within one year.
AWS, Azure, Google Cloud Platform, Vanta, Drata, Secureframe
ID.me: Provides secure digital identity verification and authentication services.
1+ YOE1–2 years experience in information security or IT, familiarity with threat detection, incident response, SIEM/EDR tools, basic cloud knowledge, analytical and communication skills.
Crane CompanyNYSE: CR: Manufactures engineered components for aerospace and industrial process markets.
5+ YOE2+ Mgmt5+ years in security operations and incident response; 2+ years supervising SOC/IR analysts; strong SIEM/SOAR, automation, threat hunting; willing to travel; US person per EAR/ITAR; ability to lead a global team.