Mind Computing

Cybersecurity Engineer (System Steward - Remote Opportunity)

Mind Computing United States · $100K–$110K/yr

IT Services and IT Consulting · 11-50 employees

Yesterday
Remote security Senior (5-10 yrs) Full-time United States
Create a free account to apply — email only, no card. You can also save this posting or score it against your profile with AI.

About the role

The Cybersecurity Engineer will support Department of Veterans Affairs projects by managing the full Authority to Operate (ATO) lifecycle and NIST RMF activities. They will also develop security documentation, conduct risk assessments, and coordinate with stakeholders to ensure compliance and mitigate vulnerabilities.

What they look for

Cybersecurity NIST RMF Authority to Operate (ATO) Cloud security Governance, Risk, and Compliance (GRC) Security documentation Vulnerability assessment Incident response Disaster recovery FedRAMP Tenable Nessus Nmap SCAP Wireshark ServiceNow CAM Network security

Requirements

Candidates must hold a bachelor's degree in a relevant field and possess at least 5 years of information security experience, including 3 years in government-related cybersecurity. A CISSP certification is required, along with additional IAT, IAM, or IASAE level certifications.

Benefits

Medical insurance Dental insurance Vision insurance Paid time off Federal holidays Corporate laptop Training opportunities 401(k) with employer match

Full description

Mind Computing is seeking a full-time, 100% remote Cybersecurity Engineer (System Steward) to support a Department of Veterans Affairs (VA) project by identifying, mitigating cybersecurity risks and maintaining a strong information system security posture. The ideal candidate will provide expertise in Authority to Operate (ATO), the NIST Risk Management Framework (RMF), security controls, cloud security, and governance, risk, and compliance (GRC). The Cybersecurity Engineer will support RMF activities across the full ATO lifecycle, develop and maintain security documentation and artifacts, assess system risks and vulnerabilities, and coordinate with system administrators, developers, system owners, ISSOs, and other stakeholders to address security requirements and authorization gaps.

The candidate must reside within the continental US.

Responsibilities:

  • Provide cybersecurity consulting and technical support to VA stakeholders for ATO, security authorization, and NIST RMF activities.
  • Support RMF Steps 1–7, including security categorization, control implementation, assessment, authorization, and continuous monitoring.
  • Lead and coordinate security and privacy activities within project teams, including development and maintenance of required RMF security artifacts.
  • Develop and maintain security documentation, including Incident Response, Contingency Planning, Disaster Recovery, POA&M, and other authorization documentation.
  • Analyze authorization packages and security artifacts to identify gaps, establish remediation plans, and coordinate resolution with system stakeholders.
  • Conduct security risk assessments, impact analyses, gap assessments, compensating control evaluations, and residual risk assessments.
  • Assess IT products, operating systems, and security configurations for compliance with NIST SP 800-53 and applicable security policies.
  • Develop and implement security controls and support remediation of identified vulnerabilities and compliance findings.
  • Support security configuration and compliance activities for infrastructure, operating system images, and IT product deployments.
  • Prepare and present security reports, briefings, risk assessments, and recommendations to technical and non-technical stakeholders.
  • Collaborate with system administrators, developers, system owners, ISSOs, and internal/external customers to assess the security impact of hardware, software, and configuration changes.
  • Take on additional tasks and responsibilities as needed to support team objectives and ensure the success of the project.

Qualifications:

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, Information Assurance, Information Security, or a related field.
  • 5+ years of information security experience, including at least 3 years of cybersecurity and cloud security experience supporting a large government agency.
  • Strong experience supporting NIST RMF, ATO, security authorization, and continuous monitoring activities.
  • Experience developing RMF security artifacts, implementing security controls, and managing POA&Ms.
  • Knowledge of NIST SP 800-53, security compliance, GRC, and federal cybersecurity policies and practices.
  • Experience conducting security assessments, risk analyses, gap assessments, impact assessments, and vulnerability assessments.
  • Experience with cloud security and FedRAMP, including IaaS, PaaS, SaaS, and shared security responsibilities.
  • Experience with security assessment and vulnerability tools such as Tenable Nessus, Nmap, SCAP, and Wireshark.
  • Experience with ServiceNow Continuous Authorization and Monitoring (CAM) or similar security/GRC platforms.
  • Knowledge of network security, software development, systems engineering, cloud architecture, and infrastructure security.
  • Strong documentation, analytical, presentation, communication, and stakeholder coordination skills.
  • Ability to translate technical cybersecurity requirements into actionable recommendations.

Additional Qualifications:

  • Ability to obtain government clearance.
  • Experience with the VA or other Government agencies.
  • Required: ISC2 CISSP certification.
  • Required: One or more of the following certification categories: IAT II, IAM II, or IASAE II.
  • Additional relevant certifications may include:
  • ISC2 CAP, SSCP, CCSP, or ISSEP
  • ISACA CISM or CISA
  • EC-Council CEH
  • CompTIA Security+, Network+, SecurityX, or Linux+

Benefits:

  • Medical/Dental/Vision
  • PTO + Federal Holidays  
  • Corporate Laptop 
  • Training opportunities  
  • 401(k) with employer match
  • Remote work options

Note: Selected candidates will be required to complete fingerprinting at a government facility and undergo a background check as part of the hiring process.

Mind Computing is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability, or protected veteran status.

At this time, we are unable to offer sponsorship.

Similar roles