Makpar

Makpar

Makpar is an award-winning cybersecurity consultant specializing in IT modernization for the Federal government. The company's in-house Research & Development Lab innovates to build tailored solutions for government agencies.

Internet Software & Services
51-250
Founded 2008

Description

  • Design and maintain enterprise security architecture for assigned ICAM applications and services.
  • Translate DHS security requirements into implementable architecture and technical controls.
  • Contribute to or oversee secure application and configuration development.
  • Integrate security controls into application, infrastructure, cloud, and DevSecOps environments.
  • Lead or support system security assessments and technical control validation.
  • Develop, update, or support documentation for Authorization to Operate activities.
  • Identify and remediate vulnerabilities within DHS-required timeframes.
  • Develop and manage remediation actions and POA&M items for unresolved findings.
  • Work with development and testing teams to embed security requirements throughout the SDLC.
  • Support development, integration, testing, release activities, incident investigations, and root-cause analysis.

Requirements

  • Experience designing or maintaining enterprise application or system security architecture.
  • Experience integrating cybersecurity controls into software, cloud, infrastructure, or DevSecOps environments.
  • Experience supporting security assessments or authorization activities.
  • Experience identifying, documenting, and remediating technical vulnerabilities.
  • Experience developing or managing POA&M remediation actions.
  • Ability to work with software engineering and testing teams throughout the SDLC.
  • Ability to interpret security requirements and translate them into technical controls.
  • Ability to obtain and maintain favorable DHS EOD, suitability, and required system access.
  • Prior DHS or federal civilian agency clearance or experience (preferred).
  • Experience supporting federal ATO packages or NIST Risk Management Framework activities (preferred).
  • Experience with ICAM, IAM, PIV, PKI, PAM, SSO, OAuth, OIDC, or access-control systems (preferred).
  • Experience with AWS, Azure, hybrid-cloud, or on-premises federal environments (preferred).
  • Experience with secure CI/CD pipelines and automated security gates (preferred).
  • Experience with SonarQube, Jenkins, GitHub Enterprise, Splunk, container security, STIGs, or hardened images (preferred).
  • CISSP, CSSLP, CCSP, AWS/Azure security certification, or comparable security credential (preferred).

Benefits

  • Generous compensation package.
  • Flexible work schedules.
  • Excellent training and career development opportunities.
  • Great benefits package.
  • Supportive environment focused on employee well-being and engagement.
  • Equal Opportunity Employer.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Zero Trust Engineer (R-00205)

True Zero Technologies 11-50 Internet Software & Services

True Zero Technologies is seeking Zero Trust Engineers to implement enterprise Zero Trust use cases across prioritized Department of Veterans Affairs information systems and guide them through planning, validation, testing, and operational transition.

Azure Cybersecurity
9 hours, 44 minutes ago

Python/GenAI Solutions Architect

Provectus 251-1K Professional Services

Provectus is seeking a Senior Software Engineer or Solutions Architect to embed with enterprise client teams and deliver production-ready Python, cloud, and generative AI systems from discovery through deployment.

AWS CI/CD Django Docker FastAPI Flask GCP Generative AI GitHub Actions GitLab CI Go Kubernetes Machine Learning Microservices Node.js Pytest Python React REST API Rust SQL Vue.js
9 hours, 59 minutes ago

Pillar Lead: Device & Endpoint Specialist (R-00212)

True Zero Technologies 11-50 Internet Software & Services

True Zero Technologies is seeking a Device & Endpoint Specialist to lead the Devices pillar of enterprise Zero Trust architecture, supporting implementation and integrating device posture and security signals into access decisions.

CrowdStrike Cybersecurity
9 hours, 59 minutes ago

Senior Security Operations Engineer

Included Health 1K-5K Insurance

Included Health is seeking a remote Senior Security Operations Engineer to lead DLP protection across corporate and cloud environments, investigating data security events and improving defenses against data loss.

CrowdStrike Network Security PowerShell Python SIEM Splunk SQL
10 hours, 14 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers