Game Plan Tech

Game Plan Tech

Game Plan Tech is a mission-driven consulting and services firm specializing in helping government teams access innovative technologies to enhance efficiency, performance, and security. They serve as trusted advisors, augmenting teams with skilled tech...

Internet Software & Services

Description

  • Document and manage security architectures for cloud environments across Google Cloud, AWS, and Azure.
  • Secure cloud resources by managing access controls, assessing network security, and protecting data.
  • Integrate security practices throughout the software development lifecycle, including code reviews and vulnerability assessments.
  • Assess and mitigate security risks specific to AI systems.
  • Ensure systems and processes meet government security standards and accreditation requirements such as NIST 800-53 and DISA Impact Levels.
  • Conduct security audits, prepare compliance documentation, and support accreditation activities.
  • Develop and execute incident response plans, investigate security breaches, and implement corrective actions.
  • Promote security awareness through training, communication, and best-practice guidance.
  • Monitor emerging threats and vulnerabilities and proactively implement mitigation measures.
  • Support the ISSM by providing artifacts such as topology diagrams and security implementation documentation.

Requirements

  • Experience with government compliance frameworks and accreditation processes such as FedRAMP, DISA Impact Level 5, and NIST 800-53.
  • Experience with the DISA Cloud Security Requirements Guide (SRG).
  • Experience working with Department of War (DoW) security stacks including VDMS, VDSS, BCAP, and related tools and practices.
  • Knowledge of security technologies such as firewalls, intrusion detection systems, and SIEM tools.
  • Experience documenting security posture, security controls, security plans, risk assessments, and incident reports.
  • Familiarity with secure coding practices, vulnerability assessments, and vulnerability remediation.
  • Strong understanding of cloud security best practices.
  • Strong understanding of software security and AI system security.
  • Hands-on experience with cloud security tools such as Google Security Command Center, AWS Security Hub, Azure Security Center, and Tenable products.
  • Knowledge of AI/ML security assessment frameworks.
  • Experience with security automation, DevSecOps practices, and Infrastructure as Code (IaC).
  • Relevant security certifications such as CISSP, CCSP, or Professional Cloud Security Engineer are a plus.
  • Must be a U.S. citizen and eligible to obtain a Top Secret clearance.

Benefits

  • Opportunity to work on public sector security initiatives using best-in-class Google solutions.
  • Collaborative team environment with opportunities to make a significant impact.
  • Chance to drive innovation for clients and advance your career.
  • Equal opportunity employer committed to diversity and inclusion.
  • Reasonable accommodation available during the application process and employment.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

MEDR Threat Engineer US work hours

Proficio 51-250 Professional Services

Proficio is seeking a Managed EDR Threat Engineer to guide the evolution of its managed endpoint detection, response, visibility, and prevention services while collaborating with engineering, SOC, MDR, sales, and customer teams.

Carbon Black Cybersecurity Linux macOS Network Security PowerShell Python
17 hours, 26 minutes ago

DevSecOps and Security Compliance Engineer

K.L. Scott & Associates 11-50 Professional Services

K.L. Scott & Associates, LLC is hiring a DevSecOps and Security Compliance Engineer to integrate security into SAP delivery and operations for federal clients while improving deployment controls, addressing vulnerabilities, and maintaining authorization evidence.

CI/CD DevSecOps SAP Secrets Management
17 hours, 26 minutes ago

Senior Defensive Content Engineer

Hack The Box 51-250 Internet Software & Services

Hack The Box is seeking a Senior Defensive Content Engineer to create and validate cyber ranges, threat-hunting labs, and defensive learning experiences that strengthen enterprise cybersecurity capabilities.

Ansible Linux SIEM Terraform Wireshark
17 hours, 26 minutes ago

Senior Security Engineer, Customer Transparency

Tanium 1K-5K Internet Software & Services

Tanium is hiring a Senior Security Engineer for its Customer Transparency team to improve visibility into Tanium’s security posture, manage vulnerability disclosure, and address customer security needs.

CI/CD Encryption Git
1 day, 17 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers