FREE ACCESS
5,000–10,000 jobs/day
See all jobs on JobTailor
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Project Lead – Senior Information System Security Specialist
Cherokee FederalCybersecurity project lead supporting DOT/FHWA security programs for Cherokee Federal. Managing federal compliance, vulnerabilities, DevSecOps, audits, and contingency planning.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in cybersecurity program management, including incident handling, vulnerability detection, and compliance with Federal cybersecurity regulations. Proficient in project management methodologies and tools, with a strong focus on operational efficiency and quality control.
Highest-signal resume keywords
Certified Information Systems Security Professional (CISSP)Project Management Professional (PMP)Experience with Tenable Nessus, Splunk, and BigFixExpert Knowledge of Federal Cybersecurity RegulationsExperience Conducting Vulnerability Assessments
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Cybersecurity Program ManagementIncident HandlingVulnerability DetectionSecure Application DevelopmentDynamic Web Application Security TestingRisk ManagementContingency PlanningCompliance with NIST StandardsCloud Security AssessmentData Loss Prevention Technologies
Soft Skills
Strong Written and Verbal CommunicationAnalytical SkillsOrganizational SkillsBriefing and Documentation SkillsAbility to Communicate with Technical and Nontechnical Stakeholders
Tools & Technologies
ElasticsearchMicrosoft AzureNetsparkerSYNACKMicrosoft WordMicrosoft ExcelMicrosoft PowerPointMicrosoft VisioMicrosoft TeamsTableau
Certifications & Qualifications
Certified Information Systems Security Professional (CISSP)Certificate of Cloud Security KnowledgeMicrosoft Azure CertificationProject Management Professional (PMP)ITIL v3 or Later
Industry Keywords
Federal CybersecurityFISMANIST Special PublicationsGSA FedRAMPInformation AssuranceCybersecurity EffectivenessOperational EfficiencyQuality Control ProcessesContinuous MonitoringIdentity, Credential, and Access Management
Tech Stack
Tools & technologiesAzureCloudCyber SecurityElasticSearchFirewallsLinuxPMPSplunkTableauUnix
About the role
Key responsibilities & impact- Provide program management and technical cybersecurity support for the DOT/FHWA Cyber Security Management Support program
- Plan, implement, operate, monitor, and report on cybersecurity activities strengthening FHWA information-system security
- Develop and manage project plans, schedules, risk registers, issue logs, communications plans, quality plans, and related documentation
- Coordinate and oversee program activities, tasks, milestones, staffing, finances, deliverables, and performance
- Track deliverables, document rejection reasons, and manage corrective actions through resolution
- Prepare monthly quality, performance, and project-status reports and briefings
- Host project kick-off and monthly status-review meetings; prepare agendas, minutes, and action-item tracking
- Coordinate transition-in activities with Government personnel, incumbent contractors, and stakeholders
- Manage staffing, personnel acquisition and retention, training, and labor-category compliance
- Maintain quality-control processes and conduct peer reviews
- Recommend improvements to operational efficiency, cost effectiveness, cybersecurity effectiveness, and program value
- Provide cybersecurity expertise in incident handling, vulnerability detection, remediation planning, secure application development, cloud environments, and cloud services
- Support the ISSM in maintaining the appropriate operational Information Assurance posture
- Review Elasticsearch logs and investigate cybersecurity incidents
- Support FHWA DevSecOps implementation and static-code vulnerability-scanner integration and management
- Maintain FHWA network, asset, group, and custom-group inventory in the DOT CDM BigFix tool
- Conduct and analyze vulnerability and compliance scans across Linux, Windows, and virtual environments
- Identify, assess, track, and support remediation of web application, database, network, and infrastructure vulnerabilities
- Perform dynamic web application security testing
- Maintain FHWA core-system documentation and support Authorization to Operate and privacy documentation
- Support FISMA, CFO, OIG, and GAO audits, evaluations, data calls, and inquiries
- Track and report audit findings, corrective actions, status, and resolutions
- Execute Information System Contingency Plan testing and provide contingency training
- Support tabletop and functional contingency tests, backup and recovery activities, and NIST contingency-planning guidance
- Analyze cloud-system security controls and support compliance with Federal cloud-security requirements
- Provide cybersecurity guidance and programmatic assistance to system owners, business sponsors, developers, infrastructure teams, and IT operations personnel
- Perform other job-related duties as assigned
Requirements
What you’ll need- Bachelor’s degree in Cybersecurity or a related technical field
- Current, verifiable Certified Information Systems Security Professional (CISSP) certification
- Current, verifiable Certificate of Cloud Security Knowledge, Microsoft Azure certification, or another recognized cloud-security certification
- PMP certification is highly desirable
- Desired certifications include ITIL v3 or later and relevant certifications from ISC2, ISACA, SANS, EC-Council, Cisco, or similar organizations
- Demonstrated knowledge of project and program management principles, methodologies, and PMBOK practices
- Experience with Tenable Nessus, Splunk, Netsparker, BigFix, and SYNACK
- Experience assisting Government sponsors in responses to inspections and assessments
- Experience developing and managing project plans, schedules, status reports, risk registers, deliverable trackers, quality documentation, and management reports
- Experience coordinating technical and administrative work across Government stakeholders, contractor management, technical teams, system owners, and other project participants
- Strong written, verbal, analytical, organizational, briefing, and documentation skills
- Ability to communicate effectively with technical and nontechnical stakeholders
- Expert knowledge of Federal cybersecurity and privacy laws, regulations, policies, procedures, and implementation standards
- Expert experience supporting compliance with applicable NIST Special Publications, FIPS 199, and FIPS 200
- Understanding of the FISMA assessment and authorization process, GSA FedRAMP processes, and current cloud-service technologies
- Experience applying Federal Information Security Continuous Monitoring and Continuous Diagnostics and Mitigation program technologies
- Knowledge of secure application-development concepts, dynamic and static application-security testing tools, scan results, and remediation practices
- Experience conducting vulnerability, application-security, database-security, and network-security assessments and interpreting assessment results
- Understanding of Identity, Credential, and Access Management implementation
- Expert experience with enterprise security architecture methodologies, concepts, procedures, principles, and tools
- Knowledge of Windows Server, Linux/Unix, Active Directory, domain structures, network protocols, authentication, digital signatures, firewalls, data-loss-prevention technologies, intrusion-detection and intrusion-prevention systems, and security best practices
- At least three years of experience in contingency planning, backup and recovery best practices, and NIST contingency-planning guidance
- Experience assessing cloud-system security controls
- Experience with risk-management tools, including JCAM (formerly CSAM)
- Proficiency with Microsoft Word, Excel, PowerPoint, Visio, Teams, Tableau, and SharePoint
- Ability to manage multiple concurrent priorities
- Must possess or be able to obtain a DOT Public Trust clearance
- Must satisfy all applicable Cherokee Federal, Government, and DOT personnel-security and background-screening requirements
- Must pass pre-employment qualifications of Cherokee Federal
Benefits
Comp & perks- Medical, Dental, Vision
- 401K
- Other possible benefits as provided
- Veterans and active military transitioning to civilian status are encouraged to apply