TLN Worldwide Enterprises, Inc. (dba The Leading Niche) Logo

TLN Worldwide Enterprises, Inc. (dba The Leading Niche)

IT Cybersecurity Specialist - Defense Contract Management Agency (DCMA)

Posted 10 Days Ago
Be an Early Applicant
In-Office
San Diego, CA
120K-140K
Senior level
In-Office
San Diego, CA
120K-140K
Senior level
Supports cybersecurity architecture, ServiceNow security configuration, RMF and ATO documentation, POA&M and vulnerability management, continuous monitoring, compliance assessments, and identity and access controls for a DoD Blue List program. The role secures ServiceNow environments across DoD IL4/IL5 and FedRAMP High contexts, maintains NIST and CUI control mappings, coordinates remediation and authorization activities, and documents security evidence, risks, and workforce qualifications.
The summary above was generated by AI

Description

The IT Cybersecurity Specialist will support cybersecurity architecture, security control implementation, Risk Management Framework documentation, ServiceNow security configuration, and continuous monitoring for the DCMA Blue List Program. This position will help ensure the Blue List platform and associated technical environments are configured, documented, and maintained in alignment with DoD cybersecurity requirements, DoD Zero Trust Strategy, NIST controls, CUI protection requirements, and DoD IL4/IL5 security expectations.

The IT Cybersecurity Specialist will work with the Government IT Program Manager, Authorizing Official, cybersecurity stakeholders, ServiceNow teams, implementation teams, sustainment teams, and other technical personnel to maintain required cybersecurity protocols, security artifacts, access controls, POA&Ms, and compliance documentation.

The ideal candidate will bring strong federal cybersecurity experience, hands-on ServiceNow security configuration experience, RMF/ATO experience, and familiarity with DoD secure cloud and identity/access management environments.

Key ResponsibilitiesServiceNow Security Architecture & Controls
  • Architect and implement ServiceNow-specific security controls aligned with Government cybersecurity requirements.
  • Configure and maintain Role-Based Access Controls, Access Control Lists, Data Policies, and Edge Encryption.
  • Support strict data segregation between IL4 public environments and IL5 CAC-authenticated environments.
  • Create and maintain schema documentation and RBAC matrices outlining roles, groups, ACLs, and data segregation rules.
  • Apply ServiceNow security best practices to support secure platform operations and controlled access.
  • Ensure security configurations align with DoD Zero Trust principles and Blue List Program requirements.
RMF, ATO & Security Documentation
  • Develop and continuously update the System Security Plan and required RMF artifacts.
  • Map ServiceNow platform configurations to NIST SP 800-53, NIST SP 800-171/172, DoD IL4/IL5 controls, and CUI protection requirements.
  • Support the system’s Authority to Operate process and maintain required documentation throughout the lifecycle.
  • Coordinate with the Government IT Program Manager, Authorizing Official, and security stakeholders to ensure cybersecurity protocols are maintained.
  • Prepare, review, and update security documentation, control mappings, evidence packages, assessment artifacts, and compliance records.
  • Support security assessment and authorization activities as required.
POA&M and Vulnerability Management
  • Track, manage, and update the Plan of Action and Milestones.
  • Document, report, and support remediation of identified vulnerabilities within Government-provided suspense dates.
  • Use ServiceNow GRC/IRM, Security Operations, or related tools when applicable to manage security findings and remediation actions.
  • Monitor security risks, vulnerabilities, compliance gaps, and remediation progress.
  • Coordinate with technical teams to verify corrective actions and update security documentation.
  • Provide timely status updates on POA&M items and cybersecurity risk posture.
Continuous Monitoring & Compliance
  • Conduct continuous monitoring activities to support ongoing ATO validity.
  • Provide Security Assessment Reports documenting vulnerability scans, penetration test reviews, compliance checks, and security posture.
  • Review cybersecurity evidence prior to code promotion.
  • Support configuration reviews, compliance checks, vulnerability reporting, and risk analysis.
  • Ensure ServiceNow configurations remain compliant with applicable federal and DoD cybersecurity directives.
  • Maintain awareness of evolving security requirements, policy updates, and control expectations relevant to the Blue List Program.
Identity, Access & Data Protection
  • Support integration of DoW Enterprise Identity, Credential, and Access Management / CAC authentication.
  • Ensure access controls support least privilege, role-based access, and appropriate segregation of duties.
  • Support secure handling of CUI, procurement-sensitive information, proprietary business information, and other sensitive program data.
  • Coordinate with technical stakeholders to ensure secure data access, data segregation, authentication, and authorization processes.
  • Document security roles, access groups, data policies, and control decisions.
Cyber Workforce Qualification Support
  • Ensure personnel performing applicable cybersecurity, privileged access, or information assurance tasks meet DoDM 8140.03 requirements.
  • Support documentation of personnel certifications and qualifications upon Government request.
  • Align qualifications to appropriate Department Cyber Workforce Framework work roles and proficiency levels.
  • Maintain awareness of cybersecurity workforce requirements affecting assigned project and system responsibilities.

Requirements

  • Bachelor’s degree in Cybersecurity, Computer Science, Computer Engineering, or a related technical discipline.
  • Minimum of five years of practical cybersecurity experience.
  • Active qualification aligned with DoDM 8140.03 Department Cyber Workforce Framework work roles and proficiency levels appropriate for security architecture and engineering.
  • Demonstrated expertise applying federal security directives, including NIST SP 800-53 controls and NIST SP 800-161 supply chain risk management requirements.
  • Demonstrated experience navigating the DoW Risk Management Framework to achieve or maintain an Authority to Operate.
  • Demonstrated experience securing ServiceNow instances in FedRAMP High and DoD IL4/IL5 environments.
  • Experience configuring ServiceNow Access Control Lists, Client Scripts, Data Policies, and access control structures.
  • Experience integrating DoW Enterprise Identity, Credential, and Access Management / CAC authentication.
  • Strong written and verbal communication skills.
  • Ability to document cybersecurity findings, control implementation, risks, remediation actions, and compliance evidence clearly and professionally.

Similar Jobs

56 Minutes Ago
Remote or Hybrid
CA, USA
264K-395K Annually
Expert/Leader
264K-395K Annually
Expert/Leader
eCommerce • Fintech • Hardware • Payments • Software • Financial Services
Own the architecture and technical strategy for Square’s go-to-market systems. Build and operate production AI agents, automated workflows, and integrations that improve sales productivity. Lead complex initiatives through architecture, implementation, testing, deployment, and operations while establishing AI evaluation, observability, security, reliability, and human-oversight practices. Partner with Sales, Product, Data, and Engineering leaders to translate business needs into scalable solutions, make build-versus-buy decisions, mentor engineers, and improve business impact through data and user feedback.
Top Skills: Ai AgentsCrm PlatformsGoLarge Language Models (Llms)RetrievalTool CallingWorkflow Orchestration
58 Minutes Ago
Easy Apply
Remote or Hybrid
United States
Easy Apply
109K-166K Annually
Mid level
109K-166K Annually
Mid level
Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
Manage an enterprise implementation consulting team delivering complex, multi-site Samsara deployments involving hardware, software configuration, and API integrations. Coach team members, oversee KPIs and OKRs, manage executive stakeholder relationships and escalations, improve implementation processes through automation and data, partner with Sales, Support, Solutions Engineering, and Customer Success, and hire and develop a high-performing team.
Top Skills: APIsGainsightHardware InstallationIotPsa ToolsSaaS
An Hour Ago
Hybrid
249K-399K Annually
Expert/Leader
249K-399K Annually
Expert/Leader
AdTech • eCommerce • Information Technology • Software • Travel • Generative AI
Lead AI-powered reporting and insights strategy, design reporting data architecture and pipelines, and implement LLM-powered workflows (RAG, prompt engineering, agentic pipelines). Integrate BI tools and enterprise AI platforms, establish governance for AI outputs, and provide technical leadership to deliver trusted executive insights and scalable self-service reporting.
Top Skills: AnthropicAws BedrockAzure OpenaiDatabricksDelta LakeFlinkGoogle Vertex AiIcebergLangchainLlamaindexLlmLookerPythonRagSnowflakeSparkSQLTableau

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account