Now hiring

Cybersecurity Specialist @ ICF

Reston, Virginia, USOnsiteFull-time
Apply with ResuMinder

Opens on the employer's site

About this role

Description The Work: ICF is seeking an experienced Cybersecurity Specialist to support the design, implementation, and management of enterprise cybersecurity solutions for mission-critical federal systems. The successful candidate will provide technical expertise in information assurance, risk management, system security engineering, and secure systems architecture to ensure compliance with government security requirements and organizational cybersecurity standards. This role requires the ability to develop secure solutions, assess system risks, and support customers in implementing effective security policies and technologies across complex IT environments. Job Location: This position is remote and requires that the job be performed in the United States. If you accept this position, you should note that ICF monitors employee work locations and blocks access from foreign locations/foreign IP addresses and prohibits personal VPN connections.

• Our core work hours are 10:00 AM – 4:00 PM Eastern Time, with flexibility to start earlier or work later depending on your time zone. Please note that project meetings may occasionally begin before 10:00 AM Eastern to accommodate client requirements.

• Limited travel may be required for customer meetings, security assessments, or team collaboration.

What You Will Do: The selected candidate will support the design, engineering, and implementation of secure enterprise systems while ensuring compliance with information assurance requirements, federal security standards, and organizational policies. The Computer Security Specialist will perform security risk analyses, develop secure system architectures, and provide technical guidance on cybersecurity best practices. This individual will collaborate with system architects, engineers, developers, and program leadership to integrate security throughout the system lifecycle and protect organizational information assets. Responsibilities:

• Design, develop, engineer, and implement solutions that satisfy Multi-Level Security (MLS) and enterprise security requirements.

• Perform complex security risk analyses, risk assessments, and vulnerability evaluations.

• Establish and implement information assurance and cybersecurity requirements based on user needs, regulatory requirements, organizational policies, and mission objectives.

• Design and develop security features for enterprise system architectures and applications.

• Support the development, implementation, and maintenance of cybersecurity policies, standards, and procedures.

• Provide technical guidance to customers and program leadership on information assurance and cybersecurity best practices.

• Evaluate existing systems and recommend security enhancements to improve confidentiality, integrity, and availability.

• Collaborate with system architects, developers, and infrastructure teams to integrate security into system design and implementation.

• Support security authorization activities, documentation, and compliance efforts.

• Analyze security controls and recommend remediation strategies for identified risks and vulnerabilities.

• Support both commercial enterprise systems and specialized government systems requiring advanced security capabilities.

• Participate in security architecture reviews, system design reviews, and technology evaluations.

• Maintain security documentation, risk assessments, and compliance artifacts throughout the system lifecycle.

• Stay current with evolving cybersecurity threats, technologies, standards, and federal guidance.

Basic Qualifications:

• Bachelor's Degree in Cybersecurity, Computer Science, Information Systems, Information Assurance, or a related technical discipline.

• 5+ years of experience in cybersecurity, information assurance, or computer security engineering.

• US citizenship is required by government agency.

• Candidate must be able to obtain and maintain the required government security clearance.

• Candidate must reside in the U.S., be authorized to work in the U.S., and all work must be performed in the U.S.

What We Would Like You to Bring with You:

• Experience designing and implementing secure enterprise systems and security architectures.

• Experience performing risk assessments, security analyses, and vulnerability evaluations.

• Strong knowledge of information assurance principles and cybersecurity frameworks.

• Experience supporting secure system development and systems engineering activities.

• Hands-on experience with:

• Multi-Level Security (MLS) concepts and secure system design

• Risk Management Framework (RMF)

• NIST cybersecurity standards and guidance

• Security architecture and systems engineering

• Security controls implementation and assessment

• Vulnerability assessment and remediation

• Identity and Access Management (IAM)

• Secure network and system architecture

• Cloud security (AWS, Microsoft Azure, and/or Google Cloud Platform)

• Security monitoring and incident response

• Encryption, Public Key Infrastructure (PKI), and cryptographic technologies

• Security documentation, accreditation, and compliance activities

• Experience supporting Federal Government cybersecurity programs is preferred.

• Familiarity with FISMA, FedRAMP, NIST SP 800-53, and related federal security standards.

• Experience supporting Authority to Operate (ATO) processes and security authorization packages.

• Professional certifications such as CISSP, CISM, Security+, CASP+, GSLC, or equivalent is highly desirable.

• Experience working with secure enterprise applications, cloud environments, and specialized government systems.

Professional Skills:

• Strong analytical and critical thinking skills with the ability to assess and mitigate complex cybersecurity risks.

• Excellent verbal and written communication skills with the ability to communicate technical concepts to technical and non-technical stakeholders.

• Strong organizational skills with exceptional attention to detail.

• Ability to manage multiple priorities while maintaining compliance with security and regulatory requirements.

• Demonstrated ability to collaborate effectively with engineers, architects, developers, and program leadership.

• Commitment to continuous learning and staying current with emerging cybersecurity threats and technologies.

• Experience supporting distributed or remote technical teams is preferred.

Bot and Third-Party Applications Please note that this application must be submitted directly by the applicant for consideration. Failure to do so may result in the application being excluded for consideration. Applicants needing an accommodation for disability or religious purposes in connection with the application process should contact Candidateaccommodation@icf.com for assistance.

Working at ICF ICF is a global advisory and technology services provider, but we’re not your typical consultants. We combine unmatched expertise with cutting-edge technology to help clients solve their most complex challenges, navigate change, and shape the future.

We can only solve the world's toughest challenges by building a workplace that allows everyone to thrive. We are an equal opportunity employer. Together, our employees are empowered to share their expertise and collaborate with others to achieve personal and professional goals. For more information, please read our EEO policy.

We will consider for employment qualified applicants with arrest and conviction records. Reasonable Accommodations are available, including, but not limited to, for disabled veterans, individuals with disabilities, and individuals with sincerely held religious beliefs, in all phases of the application and employment process. To request an accommodation, please email Candidateaccommodation@icf.com and we will be happy to assist. All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.

Read more about workplace discrimination rights or our benefit offerings which are included in the Transparency in (Benefits) Coverage Act.

Candidate AI Usage Policy At ICF, we are committed to ensuring a fair interview process for all candidates based on their own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) tools to generate or assist with responses during interviews (whether in-person or virtual) is not permitted. This policy is in place to maintain the integrity and authenticity of the interview process.

However, we understand that some candidates may require accommodation that involves the use of AI. If such an accommodation is needed, candidates are instructed to contact us in advance at candidateaccommodation@icf.com. We are dedicated to providing the necessary support to ensure that all candidates have an equal opportunity to succeed.

Pay Range - There are multiple factors that are considered in determining final pay for a position, including, but not limited to, relevant work experience, skills, certifications and competencies that align to the specified role, geographic location, education and certifications as well as contract provisions regarding labor categories that are specific to the position.

The pay range for this position based on full-time employment is: $89,649.00 - $152,404.00

Nationwide Remote Office (US99)

Skills

multi-level securityrisk managementinformation assurancesecurity architecturenist cybersecurity standardsvulnerability assessmentsecurity controls implementationsecurity documentationfederal security standardssecurity monitoringincident responsecloud securityidentity and access managementsecure network architectureencryption

Ready to apply?

Install the ResuMinder extension and we'll auto-fill the application in seconds — no rewriting.

See how your CV scores