Cybersecurity Lead

Vienna, VA
Modern Disabilities Claims – MDC /
Contingent upon award /
On-site
SteerBridge Strategies is a CVE-Verified Service-Disabled, Veteran-Owned Small Business (SDVOSB) delivering a broad spectrum of professional services to the U.S. Government and private sector. Backed by decades of hands-on experience in federal acquisition and procurement, we provide agile, best-in-class commercial solutions that drive mission success.

Our strength lies in our people—especially the veterans whose leadership, discipline, and dedication shape everything we do. At SteerBridge, we don’t just hire talent—we empower it, creating meaningful career paths for those who have served and those who share our commitment to excellence.

SteerBridge seeks an experienced Cybersecurity Lead to support delivery efforts for our
Modern Disability Claims (“MDC”) project. This initiative is focused on modernizing claims
processing systems for the Department of Veterans Affairs (the “VA”) to enhance security,
reliability, and operational efficiency in service of our nation’s veterans. This critical role will be
instrumental in safeguarding sensitive Veteran data and maintaining compliance with stringent
federal and VA security regulations.

The Cybersecurity Lead will oversee all aspects of cybersecurity for the program, from risk
assessment and mitigation to security control implementation and incident response, working
closely with IT project managers, system architects, and VA security personnel.

Benefits

    • Health insurance
    • Dental insurance
    • Vision insurance
    • Life Insurance
    • 401(k) Retirement Plan with matching
    • Paid Time Off
    • Paid Federal Holidays

Required Skills and Qualifications

    • Must be a U.S. Citizen.
    • Bachelor’s degree in Information Security, Computer Science, or a related field.
    • An active Secret security clearance or the ability to obtain one is required.
    • PROFESSIONAL EXPERIENCE / QUALIFICATIONS
    • 5–7 years of experience in cybersecurity, system security engineering, or IT security operations.
    • Extensive experience with cybersecurity risk assessment/remediation, and compliance auditing.
    • Proven experience in ensuring compliance with VA and federal IT security standards.
    • Understanding of relevant security frameworks and regulations, such as NIST SP800-47,
    • FedRAMP, FIPS 140-2, and NIST 800-171.
    • Preferred:
    • Active security clearance (e.g., TS/SCI).
    • Relevant security certifications such as CompTIA Security+ CE (IAT Level 2).
    • KEY RESPONSIBILITIES
    • Ensure the implementation and maintenance of all IT security controls on the Contractor’s system in accordance with VA policies.
    • Coordinate, facilitate, and otherwise ensure all IT security and ATO related security activities are being performed. This includes supporting the development of a complete Authority to Operate (ATO) package.
    • Be responsible for the security associated with the Contractor’s interface(s) with the VA, to include protection of the Claimant’s personal, health, & benefits related information.
    • Coordinate required scans with VA Cyber Security Operations Center (CSOC).
    • Support Security Controls Assessments (SCAs) conducted by the VA.
    • Lead the management of any Contractor activities related to information security incidents associated with VA data or systems.
    • Notify and communicate regular status to the VA ISO, VA System Stewards, VA CORs, VA Privacy Officer, and VA ISSO upon identification of any potential security and privacy incidents.
    • Ensure compliance with all Privacy Act, Federal Information Security Modernization Act (FISMA), NIST, Federal Information Processing Standards (FIPS), Office of Management and Budget (OMB) and VA security and privacy directives and handbooks.
    • Oversee the conduct of compliant risk assessments, routine vulnerability scanning, continuous monitoring, system patching and change management procedures, and the completion of an acceptable contingency plan for each system.
    • Ensure the Contractor’s security control procedures are equivalent to those procedures used to secure VA systems.
    • Support the development of a Privacy Threshold Assessment (PTA) and Privacy Impact Assessment (PIA) for approval by VA Privacy Service prior to operational approval.
    • Ensure adherence to secure DevSecOps pipelines for development and deployment.
    • Verify that all personnel complete the VA Cyber Security Awareness and Rules of Behavior training and the appropriate VA privacy training annually.
    • Work to obtain and maintain approval and access to information provided by the VA.
    • Develop and execute a Background Investigation and Security Clearance plan.
$147,000 - $154,000 a year
A salary commensurate with background and experience will be offered.
SteerBridge Strategies is proud to be an Equal Opportunity Employer. We are committed to creating a diverse and inclusive workplace where all qualified applicants and employees are treated with respect and dignity—regardless of race, color, gender, age, religion, national origin, ancestry, disability, veteran status, genetic information, sexual orientation, or any other characteristic protected by law.
We also provide reasonable accommodations for individuals with disabilities in accordance with applicable laws. If you require assistance during the application process, we encourage you to reach out so we can support your needs.