Job Title/Role : Lead Cyber Security Engineer Locations: Kings Point, NY Duration: 6 Months contract to full time hire
- Ensure compliance with NIST CSF and RMF to maintain accreditation and protect system confidentiality, integrity, and availability
- Provide strategic and tactical security guidance, recommending technical and administrative controls
- Direct and mature the Incident Response Program, including triage, escalation, documentation, and after-action improvements
- Administer enterprise security policies, maintain SOPs/checklists, and drive continuous monitoring and process enhancements
- Lead threat and vulnerability management: scanning, pen-test coordination, risk scoring, and remediation tracking
- Conduct threat landscape assessments, business impact analyses, and risk treatment recommendations
- Oversee development of cybersecurity procedures (International Travel, BYOD, secure communications)
- Manage recurring reviews of SSPs, POA&Ms, annual security plans, account audits, and risk acceptance packages
- Serve as primary cybersecurity liaison to DOT, MARAD, auditors, and federal oversight entities
- Support Zero Trust Architecture and broader security architecture modernization
- Lead quarterly and biannual IR tabletop exercises and integrate lessons learned
- Coordinate ITSEC team training and cross-functional knowledge sharing
- Maintain security documentation, templates, policies, and recurring reports (Awareness Bulletins, POA&M dashboards, CSAM reporting)
- Minimum 12 years of progressive cybersecurity experience
- Experience with NIST RMF, ATO, C&A processes, POA&M development, and federal audit preparation.
- Experience in Security Testing & Evaluation, risk assessments, policy and procedure development.
- Experience in U.S. Government contracting or federal cybersecurity environments.
- Strong leadership experience and ability to guide Infrastructure, Applications, and Cyber teams in a collaborative security posture.
- Demonstrated ability to communicate security requirements to technical and non-technical stakeholders, lead governance meetings, and interact with senior federal leadership.
- Expertise with incident response, vulnerability management tools, security event analysis, and risk treatment methodologies.
- Bachelor’s degree in information technology, Computer Science, Cybersecurity, or related field.
- ITIL v3 Foundation certification.
- CISM, CISSP or other advanced security management certifications.
- Azure Security certications
- Experience with Zero Trust Architecture, Cloud security standards, and federal enclave cybersecurity operations.
- Experience with leading training, cyber awareness initiatives, and security program development.
- Experience working in a college or university
- Cybersecurity: 10 years (Required)
- NIST RMF, ATO: 1 year (Required)
- Zero Trust Architecture: 1 year (Preferred)