Horizon Industries

Horizon Industries Limited was founded in 1996 and is based in Vienna, Virginia. Horizon is a dynamic, SBA-certified Small Disadvantaged Business (SDB) with professional and talented strategists, technologists, and consultants across diverse domains. Expertise in IT, analysis and evaluation, data analytics, business process management Acquisition and financial management, cost and risk assessments Independent Verification & Validation, program management, systems engineering and design Database management, logistical warehouse services, and administrative support Capabilities in financial, operational, and technology consulting Risk management services, strategic planning, leadership effectiveness Anti-fraud waste and abuse programs, financial and operational assessments Regulatory compliance, workflow automation, and audit readiness services Equal Employment Opportunity Horizon is an Equal Employment Opportunity employer. It is our policy to consider all applicants for employment without regard to sex, race, color, creed, religion, national origin, sexual orientation, marital status, age, disability, veteran status, alienage, ancestry, citizenship status, or any other factor prohibited by law. Horizon will not discharge or discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant, consistent with applicable law.

Cybersecurity Engineer

Security EngineerSecurity EngineerFull TimeRemoteTeam 201-500

Location

United States

Posted

3 days ago

Salary

Not specified

RMFNIST SP 800 53Do D Cybersecurity PoliciesRisk Management FrameworkSecurity Controls AssessmentVulnerability EvaluationAuthorization ReviewCloud SecurityICS SecurityOT SecurityActive Do D Secret Clearance

Job Description

This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more.

Role Description

The Cybersecurity Assessment and Authorization (A&A) Subject Matter Expert (SME) serves as a senior cybersecurity authority responsible for supporting the authorization of information systems and ensuring compliance with Department of Defense (DoD) cybersecurity policies and procedures. The SME performs and supports the DoD cybersecurity authorization process, either as the system authorizing expert or as a subject matter expert for systems undergoing authorization.

This role requires a strong understanding of how security controls defined in NIST SP 800-53 are applied during the assessment and authorization process across large and complex enterprise environments such as those supporting the Defense Logistics Agency (DLA). These environments may include multiple enclaves, Automated Information Systems (AIS), enterprise applications, and outsourced IT services.

  • The SME evaluates vulnerabilities and determines the appropriate severity value for identified security control deficiencies.
  • Assesses potential impacts on system authorization status and provides recommendations for remediation.
  • Briefs senior leadership on the progress, risks, and outcomes of systems undergoing the Risk Management Framework (RMF) authorization process.

Qualifications

  • Minimum five (5) years of experience supporting Risk Management Framework (RMF) and NIST Assessment and Authorization (A&A) processes.
  • Demonstrated DoD cybersecurity experience.
  • Experience assessing security controls and conducting authorization reviews for large, complex organizations.
  • Strong understanding of DoD cybersecurity authorization policies, procedures, and implementation processes.
  • Experience supporting the DoD RMF authorization lifecycle.
  • Knowledge of cybersecurity considerations related to emerging technologies, including:
    • Cloud environments
    • Industrial Control Systems (ICS)
    • Warehouse Execution Systems
    • Operational Technology (OT) infrastructures.

Requirements

  • Must possess an active DoD Secret Clearance.
  • Must hold IT-II Non-Critical Sensitive security clearance or Tier 3 (T3) at the time of proposal submission.

Benefits

  • Medical, dental, vision, and disability insurance.
  • 401(k) retirement plan with 100% vesting from day one and employer matching after 90 days.
  • Educational Assistance Program.
  • Student Loan Repayment Program.
  • Gym Reimbursement Program.

Company Description

Founded in 1996, Horizon Industries Limited (Horizon) has grown into a team of highly qualified professionals providing full-cycle IT consulting and management support to both public and private sector clients. Horizon fosters a culture that promotes work-life balance.

Horizon Industries Limited is an Equal Employment Opportunity (EEO) employer. All qualified applicants will receive consideration for employment without regard to sex, race, color, creed, religion, national origin, sexual orientation, marital status, age, disability, veteran status, alienage, ancestry, citizenship status, or any other factor protected by law.

Job Requirements

  • Minimum five (5) years of experience supporting Risk Management Framework (RMF) and NIST Assessment and Authorization (A&A) processes.
  • Demonstrated DoD cybersecurity experience.
  • Experience assessing security controls and conducting authorization reviews for large, complex organizations.
  • Strong understanding of DoD cybersecurity authorization policies, procedures, and implementation processes.
  • Experience supporting the DoD RMF authorization lifecycle.
  • Knowledge of cybersecurity considerations related to emerging technologies, including: Cloud environments Industrial Control Systems (ICS) Warehouse Execution Systems Operational Technology (OT) infrastructures.
  • Cloud environments
  • Industrial Control Systems (ICS)
  • Warehouse Execution Systems
  • Operational Technology (OT) infrastructures.
  • Must possess an active DoD Secret Clearance.
  • Must hold IT-II Non-Critical Sensitive security clearance or Tier 3 (T3) at the time of proposal submission.

Benefits

  • Medical, dental, vision, and disability insurance.
  • 401(k) retirement plan with 100% vesting from day one and employer matching after 90 days.
  • Educational Assistance Program.
  • Student Loan Repayment Program.
  • Gym Reimbursement Program.

Related Categories

Related Job Pages

More Security Engineer Jobs

Senior IT Security Engineer

Jobgether

We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team. We appreciate your interest and wish you the best! Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time. #LI-CL1 We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.

Security Engineer3 days ago
Full TimeRemote

As a Senior IT Security Engineer, you will play a critical role in safeguarding enterprise environments by designing, implementing, and maintaining advanced security solutions. You will serve as a technical leader, guiding security strategy, responding to incidents, and ensuring ...

AzureSIEMSplunkMicrosoft DefenderTenableRapid7digital forensicspenetration testingfile integrity monitoringvulnerability scanningpassword vaultingPCI-DSSSOC1SOC2GDPRHIPAANISTISO 27001anti-malwaresecurity auditingCISSPCISACISMCEHGIACMS SentinelTrend MicroCarbon BlackVaronisMicrosoft Purview
United States
Security Engineer3 days ago
Full TimeRemote

Our client is seeking an IoT Security Researcher to conduct advanced vulnerability research on embedded systems and connected devices. The role focuses on identifying and analyzing security weaknesses in firmware, device operating systems, and IoT communication protocols. This po...

United States + 180 moreAll locations: United States, Canada, Brazil, Colombia, Argentina, Chile, Venezuela, Bolivarian Republic Of, Bolivia, Plurinational State Of, Ecuador, French Guiana, Guyana, Paraguay, Peru, Suriname, Uruguay, Mexico, Costa Rica, El Salvador, Guatemala, Honduras, Nicaragua, Panama, Dominican Republic, Puerto Rico, Bahamas, Guadeloupe, Haiti, Jamaica, Martinique, Montserrat, United Kingdom, Germany, France, Estonia, Portugal, Hungary, Poland, Ukraine, Romania, Bulgaria, Czech Republic, Slovakia, Belarus, Moldova, Republic Of, Sweden, Greece, Belgium, Italy, Ireland, Switzerland, Netherlands, Finland, Malta, Denmark, Lithuania, Croatia, Spain, Austria, Bosnia And Herzegovina, Iceland, Luxembourg, Macedonia, The Former Yugoslav Republic Of, Montenegro, Norway, Serbia, Slovenia, Albania, Cyprus, Latvia, Monaco, South Africa, Egypt, Algeria, Angola, Benin, Botswana, Burkina Faso, Burundi, Cameroon, Cape Verde, Central African Republic, Chad, Congo, Côte D'ivoire, Congo, The Democratic Republic Of The, Equatorial Guinea, Eritrea, Ethiopia, Gabon, Gambia, Ghana, Guinea, Guinea-bissau, Kenya, Lesotho, Liberia, Libyan Arab Jamahiriya, Madagascar, Malawi, Mali, Mauritania, Mauritius, Mayotte, Morocco, Mozambique, Namibia, Niger, Nigeria, Réunion, Rwanda, Senegal, Seychelles, Sierra Leone, Somalia, Sudan, Swaziland, Tanzania, United Republic Of, Togo, Tunisia, Uganda, Zambia, Zimbabwe, Georgia, Turkey, Israel, United Arab Emirates, Armenia, Azerbaijan, Bahrain, Iraq, Jordan, Kuwait, Lebanon, Oman, Qatar, Saudi Arabia, Palestinian Territory, Occupied, Yemen, India, Japan, Philippines, Pakistan, Thailand, Singapore, Viet Nam, Taiwan, Province Of China, Indonesia, Cambodia, Lao People's Democratic Republic, Malaysia, Myanmar, Korea, Republic Of, China, Afghanistan, Bangladesh, Bhutan, Kazakhstan, Kyrgyzstan, Maldives, Mongolia, Nepal, Sri Lanka, Tajikistan, Turkmenistan, Uzbekistan, Australia, Papua New Guinea, Kiribati, Palau, French Polynesia, Tuvalu, New Zealand

Senior Cloud & Identity Engineer

Jobgether

We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team. We appreciate your interest and wish you the best! Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time. #LI-CL1 We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.

Security Engineer3 days ago
Full TimeRemote

This role is designed for a hands-on engineer who will lead and support secure, scalable cloud and identity solutions across enterprise platforms. You will work closely with architecture, security, and operations teams to design, deploy, and maintain identity systems, API integra...

IAMSSOSCIMRBACOAuth2OIDCSAMLJWTREST APIAWSAzureTerraformCloudFormationOktaEntra IDPingZero TrustInfrastructure as CodeCI/CD
United States
Full TimeRemoteTeam 1,154Since 2007

The Principal Technical Consultant (PTC) Identity Focused Security Architect is a hands-on delivery leader who designs and leads identity solution implementations in client environments. This role is not purely advisory. You will own identity workstreams end to end, driving archi...

Active DirectoryEntra IDMicrosoft IdentityIGASSOMFApasswordlessRBACABACPBACOktaPAMidentity architectureauthenticationauthorizationPowerShellPython
United States