Logo for Iron Bow Technologies

VA Cybersecurity and Compliance Specialist

Role overview

Qualifications

  • Federal cybersecurity compliance and RMF experience.
  • Experience supporting Federal or VA ATO processes.
  • Working knowledge of NIST SP 800-37 and NIST SP 800-53.
  • FIPS 140-3 compliance experience.

Responsibilities

  • Support VA cybersecurity, RMF, ATO, continuous monitoring, and compliance activities.
  • Develop, review, and maintain cybersecurity and authorization artifacts supporting VA systems.
  • Support RMF activities consistent with NIST SP 800-37 and applicable NIST SP 800-53 controls.
  • Maintain and validate FIPS 140-3 CMVP evidence for HSM platforms.

About the company

Iron Bow Technologies logo

Iron Bow Technologies

IT Services & IT Consulting

Our vision at Iron Bow Technologies’ is β€œInnovating the world.” We do this through collaborative engagement with our clients, understanding their needs and mission requirements and enabling IT solutions that achieve their goals for today and tomorrow. An industry recognized leader, Iron Bow has earned the trust of government, commercial and healthcare clients by providing IT solutions and services enabling them to work faster and smarter. We are proud to attract and retain the best people through continual investment in technology advancements and commitment to our customer-first culture. The specialized skillsets and abilities of Iron Bow employees range from customized solution delivery to advanced integration of complex, multi-disciplined systems. This broad experience provides strategic insight that ensures the highest standards of IT performance and utilization. Our depth of technical expertise, global reach and strategic partnerships with industry leaders as well as disruptive technology partners uniquely positions Iron Bow to target the right solution to ensure successful business outcomes. We partner with our clients from planning and implementation through ongoing maintenance and management to deliver solutions that are strong, flexible and on target with your mission. We provide future-proof information technology solutions and services in the areas of cloud, collaboration, cyber security, data center, digitization and IoT, managed services, mobility and end user devices, networking and remote workforce. Our Healthcare Solutions division is at the forefront of developing, manufacturing, implementing, managing and supporting telehealth solutions for care providers around the globe. We have deployed and currently manage many of the largest virtual care programs in the world. Strong. Flexible. Targeted. We manage IT complexity and risk to enable organizations to focus on their operations and mission goals.

Company details

Company typeSME
IndustryIT Services & IT Consulting
Company size501 - 1000

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Iron Bow Technologies is for people who believe trust is paramount, transformation is embraced, and the future is here, because "What we do matters!"

We are a next generation solutions provider, delivering mission success across government, healthcare, and commercial industries. Iron Bow relies on our passionate people, long standing partnerships, and strategic thinking to solve your most critical challenges.

Whether we team with clients, colleagues, or partners, we put each other first. It’s The Iron Bow Way.

THE OPPORTUNITY

The VA Cybersecurity and Compliance Specialist will lead cybersecurity compliance, RMF, ATO-support, FIPS compliance, and security documentation activities for the HSM and post-quantum cryptography environment. The position will serve as the principal interface between technical engineering activities and the customer’s cybersecurity/authorization requirements. Primarily remote. Limited travel to customer facility.

The candidate shall demonstrate experience supporting VA or Federal agency ATO processes, NIST SP 800-37 RMF, FIPS 140-3 compliance, ATO packages, CMVP documentation, and cryptographic compliance artifacts

HOW YOU'LL MAKE AN IMPACT

  • Support VA cybersecurity, RMF, ATO, continuous monitoring, and compliance activities.
  • Develop, review, and maintain cybersecurity and authorization artifacts supporting VA systems.
  • Support RMF activities consistent with NIST SP 800-37 and applicable NIST SP 800-53 controls.
  • Maintain and validate FIPS 140-3 CMVP evidence for HSM platforms.
  • Review CMVP/CAVP validation certificates, algorithm support matrices, OEM security attestations, and cryptographic compliance evidence.
  • Support VA ISSO, OIS, COR, and program stakeholders with technical evidence required for ATO and ATO renewal.
  • Evaluate proposed HSM configuration, firmware, integration, and architectural changes for security/compliance impact.
  • Support vulnerability and patch compliance, including CISA KEV/BOD requirements.
  • Coordinate security review of HSM upgrades, migrations, and production changes.
  • Ensure alignment with VA Handbook 6500, VA Critical Security Controls, FICAM/ICAM, PIV/CAC, Zero Trust, and applicable VA security policies.
  • Support security incident response, documentation, root-cause analysis, and corrective actions.
  • Review technical deliverables for Federal and VA cybersecurity compliance.
  • Support compliance documentation associated with FedRAMP-authorized cloud components, if included in the solution.

The candidate supports ATO renewal to provide current FIPS 140-3 CMVP certificates, algorithm-support matrices, vendor security attestations, and technical evidence packages for the VA ISSO, OIS, and formal ATO submissions. 

SKILLS THAT DRIVE SUCCESS

  • Federal cybersecurity compliance and RMF experience.
  • Experience supporting Federal or VA ATO processes.
  • Working knowledge of NIST SP 800-37 and NIST SP 800-53.
  • FIPS 140-3 compliance experience.
  • Experience preparing or supporting ATO packages.
  • Experience with CMVP documentation and cryptographic compliance artifacts.
  • Ability to translate highly technical HSM/PKI/cryptographic configurations into security and authorization evidence.

WHAT SETS YOU APART

  • Prior VA OIT cybersecurity experience.
  • CISSP, CAP/CGRC, CISM, Security+, or comparable cybersecurity credentials.
  • Experience with VA Handbook 6500 and VA security/authorization processes.
  • Experience with FedRAMP and Federal Zero Trust requirements.

WHY YOU'LL LOVE IT!

  • You will be part of a company that is growing quickly and values your voice, ideas, and experience
  • You will be a key contributor to Iron Bow’s transformational shift in how we deliver value to both customers and employees.
  • You will have the pleasure of working with passionate professionals in a culture that fosters a workplace where everyone feels respected, supported and empowered to succeed.

 

OUR EQUAL OPPORTUNITY EMPLOYER COMMITMENT

Iron Bow Technologies is an Equal Opportunity Employer and is committed to the principle of equal employment opportunity for all employees and to providing employees with a work environment free of discrimination and harassment.  All employment decisions at Iron Bow are based on relevant business considerations, such as operational needs, job requirements and individual qualifications, without regard to race, color, religion, sex, sexual orientation, gender identity and/or gender expression, pregnancy, national origin, age, disability, status as a protected veteran or any other characteristic prohibited by law. Iron Bow will not tolerate discrimination or harassment based on any of these characteristics.   

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
Β·

Cybersecurity Engineer Related jobs

Other jobs at Iron Bow Technologies

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.