bluedoor data·Job Postings API·bluedoor.sh ↗

HomeCompaniesB0291521 07e0 416d A243 7556983c79c7Lead Security Engineer

Lead Security Engineer

B0291521 07e0 416d A243 7556983c79c7 · SUITLAND, MD · Active · Paylocity Recruiting

Job facts

FieldValue
CompanyB0291521 07e0 416d A243 7556983c79c7
TitleLead Security Engineer
Normalized title-
Department / team-
LocationSUITLAND, MD, United States
Work model-
Employment type-
Salary-
Statusactive
ATS providerPaylocity Recruiting
Posted / first seen2026-05-27 / 2026-05-30
Changed / last seen2026-05-30 / 2026-06-06

Related slices

PageWhat it containsOpen
Company jobsActive postings from B0291521 07e0 416d A243 7556983c79c7.Open
Company breakdownsRole, location, ATS, and work model facets for this company.Open
ATS provider jobsActive postings observed through Paylocity Recruiting.Open
Provider filtered searchThe same provider as a filtered job collection.Open
City jobsActive postings in SUITLAND.Open
Lifecycle eventsOpen, update, close, and reopen events for this posting.Open
Original postingCanonical source or apply URL captured from the ATS.Open

Linked records

CompanyB0291521 07e0 416d A243 7556983c79c7
Source37b6babf-e002-42fd-a1e4-f9ac282d702e
ATS providerPaylocity Recruiting

Description

Lead Security Engineer At B&A, we foster and embrace a distinct set of values that we live by and instill in all aspects of our organization: dedication, commitment, partnership, trust, and recognition. We have incorporated these values into successful delivery for our customers since 1988. B&A believes in ensuring its employees feel deeply connected to B&A, recognizing successes and hard work, and providing continuous opportunities to learn and grow. Our people are entrepreneurial thinkers that combine mindset, vision, and experience to drive value – not only to us as an organization, but to the clients we support. We promote a collaborative culture with our clients, and with each other, as one team working towards a common vision. We’d love for you to join our team! Job Summary We are seeking a Subject Matter Expert (SME)–level Lead Security Engineer to lead application security across a large-scale, cloud-native federal modernization program supporting the U.S. Census Bureau’s Decennial Transformation and Application Modernization (DTAM) effort. This role provides technical and management leadership on major security tasks, embedding security into every phase of the System Development Life Cycle (SDLC) using a DevSecOps methodology. The ideal candidate will architect and enforce Zero Trust principles, drive Authorization to Operate (ATO) activities, and direct application security testing, threat modeling, and vulnerability remediation across a System of Systems (SoS). This position interfaces with senior Government stakeholders and the Office of Information Security (OIS), and decision-making and domain knowledge may have a critical impact on overall program implementation. May supervise others. Responsibilities Lead the design and implementation of application security solutions, frameworks, and processes across all phases of the SDLC, in compliance with U.S. Census Bureau (USCB) and Office of Information Security (OIS) policies Implement Zero Trust (ZT) principles for applications, workloads, and data, aligned with EO 14028, OMB M-22-09, and NIST SP 800-207 (Zero Trust Architecture) Integrate security into DevSecOps CI/CD pipelines , establishing security gates, automated code inspection, and supply-chain controls including Software Bill of Materials (SBOM) generation Direct Static and Dynamic Application Security Testing (SAST/DAST) , vulnerability assessments, and penetration testing to identify, triage, and remediate security weaknesses Lead threat modeling exercises to analyze application architecture, identify attack vectors, and document mitigation strategies throughout design, development, testing, and deployment Support the Authorization to Operate (ATO) process, including security control assessment, artifact and evidence collection, Privacy Threshold Analysis/Privacy Impact Assessment support, and Plan of Action and Milestones (POA&M) management Implement security controls in accordance with the NIST Cybersecurity Framework and NIST SP 800-53 , and remediate identified vulnerability and compliance findings Design and implement secure architecture patterns — secure API design, authentication/authorization, input validation, encryption, secure logging and monitoring (SIEM), and secure error/session/configuration management Develop and maintain metrics, dashboards, and reporting to track application security posture, threat trends, and remediation progress over time Support the development and management of Interagency Security Agreements (ISA) , security playbooks, and incident response in accordance with current cybersecurity policies Collaborate with application developers, data engineers, systems engineers, and OIS to identify and mitigate vulnerabilities, and provide expert security consultation to development teams Assist in FedRAMP certification activities and the assessment/remediation of independent penetration testing results, as applicable Education and Experience Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, or a related field 15+ years of relevant IT/cybersecurity experience, providing technical and management leadership on major tasks or technology assignments (SME level) Required Skills Demonstrated expertise integrating security into a DevSecOps SDLC, including CI/CD security gates and automated security testing Hands-on experience implementing Zero Trust Architecture and applying NIST SP 800-53 controls and the NIST Cybersecurity Framework Proven experience leading vulnerability assessments, penetration testing, and threat modeling for enterprise applications Experience supporting the ATO lifecycle and managing POA&Ms, security artifacts, and evidence collection Certifications Required: Certified Information Systems Security Professional (CISSP) Certified Cloud Security Professional (CCSP) Desired: Certified Information Security Manager (CISM) Certified Information Systems Auditor (CISA) Desired Skills Experience generating Software Bill of Materials (SBOMs) and implementing software supply-chain security controls Familiarity with SIEM deployment, container/image hardening, and secure baseline configuration Experience in large-scale, multi-cloud federal environments and FedRAMP processes Strong analytical, problem-solving, written, and verbal communication skills, including the ability to brief senior Government stakeholders Security Clearance U.S. Citizenship required More About B&A: Notable Clients B&A has grown to be a company that is trusted by our clients for exceptional service, innovative solutions, and inspired employees. Our service extends through federal, state, and local Government, the private sector, and higher education. Some of our notable clients include Department of Homeland Security, U.S. Customs and Border Protection, U.S. Senate, U.S. Courts, U.S. Census Bureau, U.S. Navy, and more. Benefits and Programs B&A is proud to offer three robust individual and family medical plans to full time employees, including a Health Savings Account (HSA) option as well as two tiers of dental coverage, vision, life & AD&D, disability, accident, hospital indemnity, and critical illness insurance. In addition to these benefits, B&A employees enjoy paid time off, B&A sponsored trainings and certifications, pet insurance benefits, commuter transit benefits and a free subscription to a virtual exercise platform (NEOU). B&A’s 401(k) plan is available to all employees and includes a company matching contribution. B&A has launched several programs to focus on employee engagement, wellness, and assistance. These include: The B&A Cares program: 30/60/90-day wellness check ins, personal development, financial management, and stress management seminars, and more A formal mentorship program Job shadowing and cross training opportunities Brand Ambassador program Employee Assistance Program (EAP) - Access to various support resources to include counseling, legal guidance, financial planning, and more Monthly teambuilding events B&A Annual Wellness Challenges: #StepWithB&A, #WalkDuringLunchWithB&A, #VolunteeringWithB&A, #ExerciseDuringLunchWithB&A, and more At B&A, we place significant importance on improving the communities and lives of citizens across the nation through our involvement, technology expertise, and employees. B&A puts an emphasis on charitable efforts in the Northern Virginia area, including Capital Area Food Bank pantry drives, book donations, Hope for Henry Foundation events, and many more. In recognition of all these efforts, B&A has been named a Companies as Responsive Employers (CARE) award recipient by Northern Virginia Family Services and nominated by the Northern Virginia Chamber of Commerce for Outstanding Corporate Citizenship Award. EEO B&A provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, gender identity or expression, national origin, age, disability, genetic information, marital status, amnesty, or status as a covered veteran in accordance with applicable federal, state and local laws. B&A complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities. This policy covers conduct occurring at B&A’s offices, and other workplaces (including client sites) and all other locations where B&A is providing services, and to all work-related activities. EEO is the Law B&A participates in e-Verify. We provide the Social Security Administration (SSA) and, if necessary, the Department of Homeland Security (DHS) with information from each new employee’s I-9 Form to confirm work authorization.

Full job record

Job IDb2ff1e3f84267c8091d80cb8030a72f53186f752
Org ID64bb88b1-a763-4e2a-8563-9d13cee363fd
Source ID37b6babf-e002-42fd-a1e4-f9ac282d702e
Board ID37b6babf-e002-42fd-a1e4-f9ac282d702e
Providerpaylocity
Provider Job Key4200460
TitleLead Security Engineer
Normalized Title
Statusactive
Activeyes
Location TextSUITLAND, MD
Department
Team
Employment Type
Workplace Type
Remote Policy
CountryUnited States
RegionMD
CitySUITLAND
Salary Raw
Salary Min
Salary Max
Salary Currency
Salary Period
Source URLhttps://recruiting.paylocity.com/recruiting/jobs/Details/4200460/Bart-and-Associates/Lead-Security-Engineer
Apply URLhttps://recruiting.paylocity.com/Recruiting/jobs/Apply/4200460
First Seen At2026-05-30 05:46:14Z
Last Seen At2026-06-06 13:38:13Z
Last Checked At2026-06-06 13:38:13Z
Last Changed At2026-05-30 05:46:14Z
Inactive At
Source Posted At2026-05-27 02:06:22Z
Source Updated At
Raw Payload Uris3://job-postings-prod-raw-590183727216/raw/provider=paylocity/board=b0291521-07e0-416d-a243-7556983c79c7/date=2026-06-06/2026-06-06T13-38-06-956Z-e20c70347a9d7f49c5bf222dd985ab7f20f61b56e960a39a9229cf2ec5c3bd72.json
Event Fields
{
  "content_hash": "fc8bf3c4b2e8c38c11f0c71fb1d3b30fa37b7ec979b2ffa32b09f98b3cf7c605",
  "source_hash": "8b9996137f83a9b082876d4c8c63b254370e42e5990c2074e049ffd86c1140c8",
  "last_changed_at": "2026-05-30T05:46:14.580Z",
  "active_status": "active"
}
Parsed Structured
{
  "language": "en",
  "location": {
    "raw": "SUITLAND, MD",
    "city": "SUITLAND",
    "region": "MD",
    "country": "United States",
    "is_remote": false,
    "confidence": 0.8
  },
  "salary_max": null,
  "salary_min": null,
  "inferred_at": "2026-06-06T13:38:12.922Z",
  "launch_scope": {
    "reason": "paylocity_production_catalog",
    "included": true,
    "location": {
      "raw": "SUITLAND, MD",
      "city": "SUITLAND",
      "region": "MD",
      "country": "United States",
      "is_remote": false,
      "confidence": 0.8
    },
    "countries": [
      "United States"
    ]
  },
  "remote_policy": null,
  "salary_period": null,
  "workplace_type": null,
  "salary_currency": null
}
Extensions
{}
Native Structured
{
  "detail": {
    "url": "https://recruiting.paylocity.com/recruiting/jobs/Details/4200460/Bart-and-Associates/Lead-Security-Engineer",
    "job_type": null,
    "pageData": {
      "jobTitle": "Lead Security Engineer",
      "moduleName": "Bart & Associates",
      "showSocialWidget": true
    },
    "apply_path": "/Recruiting/jobs/Apply/4200460",
    "html_title": "Bart & Associates - Lead Security Engineer",
    "description_html": "<p><strong>Lead Security Engineer</strong> &nbsp;</p><p><br></p><p>At B&amp;A, we foster and embrace a distinct set of values that we live by and instill in all aspects of our organization: dedication, commitment, partnership, trust, and recognition. We have incorporated these values into successful delivery for our customers since 1988. B&amp;A believes in ensuring its employees feel deeply connected to B&amp;A, recognizing successes and hard work, and providing continuous opportunities to learn and grow. Our people are entrepreneurial thinkers that combine mindset, vision, and experience to drive value – not only to us as an organization, but to the clients we support. We promote a collaborative culture with our clients, and with each other, as one team working towards a common vision. We’d love for you to join our team!</p><p><br></p><p><strong>Job Summary</strong></p><p><br></p><p>We are seeking a Subject Matter Expert (SME)–level <strong>Lead Security Engineer</strong> to lead application security across a large-scale, cloud-native federal modernization program supporting the U.S. Census Bureau’s Decennial Transformation and Application Modernization (DTAM) effort. This role provides technical and management leadership on major security tasks, embedding security into every phase of the System Development Life Cycle (SDLC) using a <strong>DevSecOps</strong> methodology. The ideal candidate will architect and enforce <strong>Zero Trust</strong> principles, drive <strong>Authorization to Operate (ATO)</strong> activities, and direct application security testing, threat modeling, and vulnerability remediation across a System of Systems (SoS). This position interfaces with senior Government stakeholders and the Office of Information Security (OIS), and decision-making and domain knowledge may have a critical impact on overall program implementation. May supervise others. &nbsp;</p><p><br></p><p><strong>Responsibilities</strong></p><ul><li>Lead the design and implementation of <strong>application security solutions, frameworks, and processes</strong> across all phases of the SDLC, in compliance with U.S. Census Bureau (USCB) and Office of Information Security (OIS) policies&nbsp;</li><li>Implement <strong>Zero Trust (ZT) principles</strong> for applications, workloads, and data, aligned with EO 14028, OMB M-22-09, and NIST SP 800-207 (Zero Trust Architecture)&nbsp;</li><li>Integrate security into <strong>DevSecOps</strong> <strong>CI/CD pipelines</strong>, establishing security gates, automated code inspection, and supply-chain controls including Software Bill of Materials (SBOM) generation&nbsp;</li><li>Direct <strong>Static and Dynamic Application Security Testing (SAST/DAST)</strong>, vulnerability assessments, and penetration testing to identify, triage, and remediate security weaknesses&nbsp;</li><li>Lead <strong>threat modeling</strong> exercises to analyze application architecture, identify attack vectors, and document mitigation strategies throughout design, development, testing, and deployment&nbsp;</li><li>Support the <strong>Authorization to Operate (ATO)</strong> process, including security control assessment, artifact and evidence collection, Privacy Threshold Analysis/Privacy Impact Assessment support, and Plan of Action and Milestones (POA&amp;M) management&nbsp;</li><li>Implement security controls in accordance with the <strong>NIST Cybersecurity Framework and NIST SP 800-53</strong>, and remediate identified vulnerability and compliance findings&nbsp;</li><li>Design and implement secure architecture patterns — secure API design, authentication/authorization, input validation, encryption, secure logging and monitoring (SIEM), and secure error/session/configuration management&nbsp;</li><li>Develop and maintain <strong>metrics, dashboards, and reporting</strong> to track application security posture, threat trends, and remediation progress over time&nbsp;</li><li>Support the development and management of <strong>Interagency Security Agreements (ISA)</strong>, security playbooks, and incident response in accordance with current cybersecurity policies&nbsp;</li><li>Collaborate with application developers, data engineers, systems engineers, and OIS to identify and mitigate vulnerabilities, and provide expert security consultation to development teams&nbsp;</li><li>Assist in FedRAMP certification activities and the assessment/remediation of independent penetration testing results, as applicable&nbsp;</li></ul><p><strong>Education and Experience</strong></p><ul><li><strong>Bachelor’s degree</strong> in Information Technology, Computer Science, Cybersecurity, or a related field&nbsp;</li><li><strong>15+ years</strong> of relevant IT/cybersecurity experience, providing technical and management leadership on major tasks or technology assignments (SME level)&nbsp;</li></ul><p><strong>Required Skills</strong></p><ul><li>Demonstrated expertise integrating security into a <strong>DevSecOps</strong> SDLC, including CI/CD security gates and automated security testing&nbsp;</li><li>Hands-on experience implementing <strong>Zero Trust Architecture</strong> and applying NIST SP 800-53 controls and the NIST Cybersecurity Framework&nbsp;</li><li>Proven experience leading <strong>vulnerability assessments, penetration testing, and threat modeling</strong> for enterprise applications&nbsp;</li><li>Experience supporting the <strong>ATO lifecycle</strong> and managing POA&amp;Ms, security artifacts, and evidence collection&nbsp;</li></ul><p><strong>Certifications</strong>&nbsp;</p><p><em><strong>Required:</strong></em>&nbsp;</p><ul><li><strong>Certified Information Systems Security Professional (CISSP)</strong>&nbsp;</li><li><strong>Certified Cloud Security Professional (CCSP)</strong>&nbsp;</li></ul><p><em><strong>Desired:</strong></em>&nbsp;</p><ul><li><strong>Certified Information Security Manager (CISM)</strong>&nbsp;</li><li><strong>Certified Information Systems Auditor (CISA)</strong>&nbsp;</li></ul><p><strong>Desired Skills</strong></p><ul><li>Experience generating <strong>Software Bill of Materials (SBOMs)</strong> and implementing software supply-chain security controls&nbsp;</li><li>Familiarity with <strong>SIEM</strong> deployment, container/image hardening, and secure baseline configuration&nbsp;</li><li>Experience in large-scale, multi-cloud federal environments and FedRAMP processes&nbsp;</li><li>Strong analytical, problem-solving, written, and verbal communication skills, including the ability to brief senior Government stakeholders&nbsp;</li></ul><p><strong>Security Clearance</strong></p><ul><li>&nbsp;<strong>U.S. Citizenship</strong> <strong>required</strong> &nbsp;</li></ul><p><strong>More About B&amp;A:</strong></p><p><em><strong>Notable Clients</strong></em><br>B&amp;A has grown to be a company that is trusted by our clients for exceptional service, innovative solutions, and inspired employees. Our service extends through federal, state, and local Government, the private sector, and higher education. Some of our notable clients include Department of Homeland Security, U.S. Customs and Border Protection, U.S. Senate, U.S. Courts, U.S. Census Bureau, U.S. Navy, and more.</p><p><br></p><p><em><strong>Benefits and Programs</strong></em></p><p>&nbsp;</p><p>B&amp;A is proud to offer three robust individual and family medical plans to full time employees, including a Health Savings Account (HSA) option as well as two tiers of dental coverage, vision, life &amp; AD&amp;D, disability, accident, hospital indemnity, and critical illness insurance. In addition to these benefits, B&amp;A employees enjoy paid time off, B&amp;A sponsored trainings and certifications, pet insurance benefits, commuter transit benefits and a free subscription to a virtual exercise platform (NEOU). B&amp;A’s 401(k) plan is available to all employees and includes a company matching contribution.</p><p>B&amp;A has launched several programs to focus on employee engagement, wellness, and assistance. These include:</p><ul><li>The B&amp;A Cares program: 30/60/90-day wellness check ins, personal development, financial management, and stress management seminars, and more</li><li>A formal mentorship program</li><li>Job shadowing and cross training opportunities</li><li>Brand Ambassador program</li><li>Employee Assistance Program (EAP) - Access to various support resources to include counseling, legal guidance, financial planning, and more</li><li>Monthly teambuilding events</li><li>B&amp;A Annual Wellness Challenges: #StepWithB&amp;A, #WalkDuringLunchWithB&amp;A, #VolunteeringWithB&amp;A, #ExerciseDuringLunchWithB&amp;A, and more</li></ul><p>At B&amp;A, we place significant importance on improving the communities and lives of citizens across the nation through our involvement, technology expertise, and employees. B&amp;A puts an emphasis on charitable efforts in the Northern Virginia area, including Capital Area Food Bank pantry drives, book donations, Hope for Henry Foundation events, and many more. In recognition of all these efforts, B&amp;A has been named a Companies as Responsive Employers (CARE) award recipient by Northern Virginia Family Services and nominated by the Northern Virginia Chamber of Commerce for Outstanding Corporate Citizenship Award.</p><p><strong>EEO</strong></p><p>B&amp;A provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, gender identity or expression, national origin, age, disability, genetic information, marital status, amnesty, or status as a covered veteran in accordance with applicable federal, state and local laws. B&amp;A complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities. This policy covers conduct occurring at B&amp;A’s offices, and other workplaces (including client sites) and all other locations where B&amp;A is providing services, and to all work-related activities.</p><p><a href=\"https://www.eeoc.gov/sites/default/files/2022-10/EEOC_KnowYourRights_screen_reader_10_20.pdf\" target=\"_self\">EEO is the Law</a></p><p>B&amp;A participates in e-Verify. We provide the Social Security Administration (SSA) and, if necessary, the Department of Homeland Security (DHS) with information from each new employee’s I-9 Form to confirm work authorization.</p>",
    "jsonld_jobposting": {
      "@type": "JobPosting",
      "title": "Lead Security Engineer",
      "@context": "https://schema.org",
      "datePosted": "2026-05-26T21:06:22-05:00",
      "description": "<p>Description</p><p><strong>Lead Security Engineer</strong>  </p><p><br/></p><p>At B&A, we foster and embrace a distinct set of values that we live by and instill in all aspects of our organization: dedication, commitment, partnership, trust, and recognition. We have incorporated these values into successful delivery for our customers since 1988. B&A believes in ensuring its employees feel deeply connected to B&A, recognizing successes and hard work, and providing continuous opportunities to learn and grow. Our people are entrepreneurial thinkers that combine mindset, vision, and experience to drive value – not only to us as an organization, but to the clients we support. We promote a collaborative culture with our clients, and with each other, as one team working towards a common vision. We’d love for you to join our team!</p><p><br/></p><p><strong>Job Summary</strong></p><p><br/></p><p>We are seeking a Subject Matter Expert (SME)–level <strong>Lead Security Engineer</strong> to lead application security across a large-scale, cloud-native federal modernization program supporting the U.S. Census Bureau’s Decennial Transformation and Application Modernization (DTAM) effort. This role provides technical and management leadership on major security tasks, embedding security into every phase of the System Development Life Cycle (SDLC) using a <strong>DevSecOps</strong> methodology. The ideal candidate will architect and enforce <strong>Zero Trust</strong> principles, drive <strong>Authorization to Operate (ATO)</strong> activities, and direct application security testing, threat modeling, and vulnerability remediation across a System of Systems (SoS). This position interfaces with senior Government stakeholders and the Office of Information Security (OIS), and decision-making and domain knowledge may have a critical impact on overall program implementation. May supervise others.  </p><p><br/></p><p><strong>Responsibilities</strong></p><ul><li>Lead the design and implementation of <strong>application security solutions, frameworks, and processes</strong> across all phases of the SDLC, in compliance with U.S. Census Bureau (USCB) and Office of Information Security (OIS) policies </li><li>Implement <strong>Zero Trust (ZT) principles</strong> for applications, workloads, and data, aligned with EO 14028, OMB M-22-09, and NIST SP 800-207 (Zero Trust Architecture) </li><li>Integrate security into <strong>DevSecOps</strong> <strong>CI/CD pipelines</strong>, establishing security gates, automated code inspection, and supply-chain controls including Software Bill of Materials (SBOM) generation </li><li>Direct <strong>Static and Dynamic Application Security Testing (SAST/DAST)</strong>, vulnerability assessments, and penetration testing to identify, triage, and remediate security weaknesses </li><li>Lead <strong>threat modeling</strong> exercises to analyze application architecture, identify attack vectors, and document mitigation strategies throughout design, development, testing, and deployment </li><li>Support the <strong>Authorization to Operate (ATO)</strong> process, including security control assessment, artifact and evidence collection, Privacy Threshold Analysis/Privacy Impact Assessment support, and Plan of Action and Milestones (POA&M) management </li><li>Implement security controls in accordance with the <strong>NIST Cybersecurity Framework and NIST SP 800-53</strong>, and remediate identified vulnerability and compliance findings </li><li>Design and implement secure architecture patterns — secure API design, authentication/authorization, input validation, encryption, secure logging and monitoring (SIEM), and secure error/session/configuration management </li><li>Develop and maintain <strong>metrics, dashboards, and reporting</strong> to track application security posture, threat trends, and remediation progress over time </li><li>Support the development and management of <strong>Interagency Security Agreements (ISA)</strong>, security playbooks, and incident response in accordance with current cybersecurity policies </li><li>Collaborate with application developers, data engineers, systems engineers, and OIS to identify and mitigate vulnerabilities, and provide expert security consultation to development teams </li><li>Assist in FedRAMP certification activities and the assessment/remediation of independent penetration testing results, as applicable </li></ul><p><strong>Education and Experience</strong></p><ul><li><strong>Bachelor’s degree</strong> in Information Technology, Computer Science, Cybersecurity, or a related field </li><li><strong>15+ years</strong> of relevant IT/cybersecurity experience, providing technical and management leadership on major tasks or technology assignments (SME level) </li></ul><p><strong>Required Skills</strong></p><ul><li>Demonstrated expertise integrating security into a <strong>DevSecOps</strong> SDLC, including CI/CD security gates and automated security testing </li><li>Hands-on experience implementing <strong>Zero Trust Architecture</strong> and applying NIST SP 800-53 controls and the NIST Cybersecurity Framework </li><li>Proven experience leading <strong>vulnerability assessments, penetration testing, and threat modeling</strong> for enterprise applications </li><li>Experience supporting the <strong>ATO lifecycle</strong> and managing POA&Ms, security artifacts, and evidence collection </li></ul><p><strong>Certifications</strong> </p><p><em><strong>Required:</strong></em> </p><ul><li><strong>Certified Information Systems Security Professional (CISSP)</strong> </li><li><strong>Certified Cloud Security Professional (CCSP)</strong> </li></ul><p><em><strong>Desired:</strong></em> </p><ul><li><strong>Certified Information Security Manager (CISM)</strong> </li><li><strong>Certified Information Systems Auditor (CISA)</strong> </li></ul><p><strong>Desired Skills</strong></p><ul><li>Experience generating <strong>Software Bill of Materials (SBOMs)</strong> and implementing software supply-chain security controls </li><li>Familiarity with <strong>SIEM</strong> deployment, container/image hardening, and secure baseline configuration </li><li>Experience in large-scale, multi-cloud federal environments and FedRAMP processes </li><li>Strong analytical, problem-solving, written, and verbal communication skills, including the ability to brief senior Government stakeholders </li></ul><p><strong>Security Clearance</strong></p><ul><li> <strong>U.S. Citizenship</strong> <strong>required</strong>  </li></ul><p><strong>More About B&A:</strong></p><p><em><strong>Notable Clients</strong></em><br/>B&A has grown to be a company that is trusted by our clients for exceptional service, innovative solutions, and inspired employees. Our service extends through federal, state, and local Government, the private sector, and higher education. Some of our notable clients include Department of Homeland Security, U.S. Customs and Border Protection, U.S. Senate, U.S. Courts, U.S. Census Bureau, U.S. Navy, and more.</p><p><br/></p><p><em><strong>Benefits and Programs</strong></em></p><p> </p><p>B&A is proud to offer three robust individual and family medical plans to full time employees, including a Health Savings Account (HSA) option as well as two tiers of dental coverage, vision, life & AD&D, disability, accident, hospital indemnity, and critical illness insurance. In addition to these benefits, B&A employees enjoy paid time off, B&A sponsored trainings and certifications, pet insurance benefits, commuter transit benefits and a free subscription to a virtual exercise platform (NEOU). B&A’s 401(k) plan is available to all employees and includes a company matching contribution.</p><p>B&A has launched several programs to focus on employee engagement, wellness, and assistance. These include:</p><ul><li>The B&A Cares program: 30/60/90-day wellness check ins, personal development, financial management, and stress management seminars, and more</li><li>A formal mentorship program</li><li>Job shadowing and cross training opportunities</li><li>Brand Ambassador program</li><li>Employee Assistance Program (EAP) - Access to various support resources to include counseling, legal guidance, financial planning, and more</li><li>Monthly teambuilding events</li><li>B&A Annual Wellness Challenges: #StepWithB&A, #WalkDuringLunchWithB&A, #VolunteeringWithB&A, #ExerciseDuringLunchWithB&A, and more</li></ul><p>At B&A, we place significant importance on improving the communities and lives of citizens across the nation through our involvement, technology expertise, and employees. B&A puts an emphasis on charitable efforts in the Northern Virginia area, including Capital Area Food Bank pantry drives, book donations, Hope for Henry Foundation events, and many more. In recognition of all these efforts, B&A has been named a Companies as Responsive Employers (CARE) award recipient by Northern Virginia Family Services and nominated by the Northern Virginia Chamber of Commerce for Outstanding Corporate Citizenship Award.</p><p><strong>EEO</strong></p><p>B&A provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, gender identity or expression, national origin, age, disability, genetic information, marital status, amnesty, or status as a covered veteran in accordance with applicable federal, state and local laws. B&A complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities. This policy covers conduct occurring at B&A’s offices, and other workplaces (including client sites) and all other locations where B&A is providing services, and to all work-related activities.</p><p><a href=\"https://www.eeoc.gov/sites/default/files/2022-10/EEOC_KnowYourRights_screen_reader_10_20.pdf\" target=\"_self\">EEO is the Law</a></p><p>B&A participates in e-Verify. We provide the Social Security Administration (SSA) and, if necessary, the Department of Homeland Security (DHS) with information from each new employee’s I-9 Form to confirm work authorization.</p>",
      "jobLocation": {
        "@type": "Place",
        "address": {
          "@type": "PostalAddress",
          "postalCode": "20746",
          "addressRegion": "MD",
          "addressCountry": "US",
          "addressLocality": "SUITLAND"
        }
      },
      "hiringOrganization": {
        "logo": "https://recruiting.paylocity.com/recruiting/jobs/GetLogoFile?moduleId=38418",
        "name": "B&A",
        "@type": "Organization"
      }
    },
    "requirements_html": null,
    "requirements_text": null
  },
  "list_job": {
    "JobId": 4200460,
    "IsRemote": false,
    "JobTitle": "Lead Security Engineer",
    "IsInternal": false,
    "Description": "",
    "JobLocation": {
      "Zip": "20746",
      "City": "SUITLAND",
      "Name": null,
      "Metro": null,
      "State": "MD",
      "County": null,
      "Address": null,
      "Country": "USA",
      "Address2": null,
      "ModuleId": 38418,
      "LocationId": 4125587,
      "SmartyAddressId": "b66b5918-061d-4a92-bb39-9bf0ec85e79d"
    },
    "LocationName": "SUITLAND, MD",
    "PublishedDate": "2026-05-26T16:42:43-05:00",
    "HiringDepartment": null,
    "IndeedRemoteType": 2,
    "ShouldDisplayLocation": true
  },
  "detail_errors": []
}
Get this page with API

Rendered from the bluedoor Job Postings API. Reproduce it:

GET https://api.bluedoor.sh/job-postings/v1/jobs/b2ff1e3f84267c8091d80cb8030a72f53186f752?include=descriptionJSON
GET https://api.bluedoor.sh/job-postings/v1/orgs/64bb88b1-a763-4e2a-8563-9d13cee363fdJSON
GET https://api.bluedoor.sh/job-postings/v1/sources/37b6babf-e002-42fd-a1e4-f9ac282d702eJSON
GET https://api.bluedoor.sh/job-postings/v1/jobs/b2ff1e3f84267c8091d80cb8030a72f53186f752/eventsJSON