Back to jobs
New

Security Engineer

Columbia, Maryland - Hybrid

Join us at Sparksoft, where we're not just another tech company—we're a catalyst for change. Our mission isn't just to offer IT solutions; it's to revolutionize the way you work. Here, passion isn't just a buzzword; it's the fuel behind groundbreaking ideas and transformative technologies. We serve a wide range of government clients, delivering impact that's felt across the nation.

Our true strength lies in our people. They're the problem-solvers and innovators consistently delivering extraordinary outcomes. With Sparksoft, you're not stepping into a routine job; you're joining a team committed to innovation and excellence. Our innovation extends beyond just delivering projects. Through our specialized Innovation Centers, we continuously refine our methods, ensuring we remain industry leaders.

We are Sparksoft!

ROLE & RESPONSIBILITIES: 

  • This position will be responsible for developing security reports, security recommendations, and security policies and procedures that are meaningful, defensible, and actionable for a variety of audiences as pertained to assigned business units.
  • Monitor and analyze security events and alerts to identify potential threats and vulnerabilities.
  • Provide support to end users with applications and systems managed by the organization, ensuring they can perform their assigned duties
  • Write reports on security incidents, user access issues, and compliance with security policies. 
  • Implement the concepts of least privilege and need-to-know to ensure that users have appropriate access to resources.
  • Assist users requiring access to protected resources, including managing user accounts.
  • Participate and be an integral component of audit, compliance, and regulatory functions, including and not limited to; audits of system security to ensure compliance with corporate security framework NIST 800-53, ISO 27001
  •  Primary POC in a vulnerability management program of the account that includes:
    • External and internal vulnerability scans of applications and systems
    • External and internal penetration tests of applications and systems
    • Documentation and remediation of identified vulnerabilities and exploits
    • Routinely monitoring various communication avenues for security vulnerabilities and security patches
  • Taking a risk-based approach comparing those security vulnerabilities and security patches across the operating environments.
  • Making recommendations to various IT teams on the mitigation process for those identified security vulnerabilities.
  • Conduct yearly IT Security training for the entire company.
  • Stay informed about the latest security trends, threats, and best practices to continuously improve security measures.

REQUIRED EXPERIENCE: 

  • Minimum of Five (5) Years of experience in IT Security
  • Knowledge and understanding of security controls across all security domains, such as access management, encryption, vulnerability management, authentication, authorization, network security, physical security, etc.
  • Ability to identify security risks in application, system, and network architecture, data flow, and processes or procedures.
  • Ability to assess the organizational impact of identified security risks and recommend solutions or mitigating controls.
  • Knowledge of security technologies, devices, and countermeasures, as well as the threats they are designed to counter.
  • Experience with developing security reports, recommendations, policies, and procedures that are meaningful, defensible, and actionable for a variety of audiences.
  • Familiarity with more than one framework (NIST 800-series, ISO 27000-series, ISO, HIPAA, HITRUST, FISMA, FedRAMP other common security control frameworks).
  • Experience in SharePoint Workflows, and security is a plus
  • Communication skills (interpersonal, verbal, presentation written, email).
  • Experience to write report segments and to participate in presentations.
  • Positive attitude, collaborator, self-starter; takes initiative, ability to work independently and effectively with all levels of staff and management both internally and externally.
  • Candidates must be able to obtain and maintain a Public Trust clearance.
  • Candidates must have lived in the United States 3 out of the past 5 years.

PREFERRED EXPERIENCE: 

  • Significant understanding of NIST Risk Management Framework and Information Security Risk Management methodologies.
  • Ability to understand, develop, and socialize security policies, standards, and procedures.
  • Proficiency with security controls for cloud environments (Azure and AWS) including FedRAMP requirements.
  • Experience in risk management, compliance, audit, or third-party assessments.

EDUCATION & CERTIFICATIONS:

  • Bachelor's Degree in System Engineering, Computer Science, Information Systems, or related discipline, from an accredited college or university is required. 
  • 5 years of prior relevant experience. *5 years of additional SE experience may be substituted for a bachelor’s degree.
  • CIPP, CRISC, CISA, CISSP, CISM, ISO or any security/IT audit certification.

 

The pay range for this job level is a general guideline only and not a guarantee of compensation or salary. In addition to our competitive base pay, Sparksoft offers health insurance, paid time off, 401K matching, and training. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, or other laws.

Maryland Pay Range

$90,000 - $115,000 USD

If you need accommodation seeking employment with Sparksoft Corporation, please email Sparksoft.Accommodations@sparksoftcorp.com or call 410-424-7700. Accommodations are made on a case-by-case basis.

At Sparksoft Corporation, we take security and protection of personal information very seriously. We will never ask you to send private personal information over email. Accordingly, we ask you to immediately contact our security team via email at abuse@sparksoftcorp.com upon receiving a suspicious request.

Create a Job Alert

Interested in building your career at Sparksoft Corporation? Get future opportunities sent straight to your email.

Apply for this job

*

indicates a required field

Resume/CV*

Accepted file types: pdf, doc, docx, txt, rtf

Cover Letter

Accepted file types: pdf, doc, docx, txt, rtf


Select...
Select...
If applicable, do you have a minimum of 6 months validity left on your immigration documents (Passport/I94/Visa/Greencard/EAD Card)? *
Select...
Select...
Select...

Voluntary Self-Identification

For government reporting purposes, we ask candidates to respond to the below self-identification survey. Completion of the form is entirely voluntary. Whatever your decision, it will not be considered in the hiring process or thereafter. Any information that you do provide will be recorded and maintained in a confidential file.

As set forth in Sparksoft Corporation’s Equal Employment Opportunity policy, we do not discriminate on the basis of any protected group status under any applicable law.

Select...
Select...
Race & Ethnicity Definitions

If you believe you belong to any of the categories of protected veterans listed below, please indicate by making the appropriate selection. As a government contractor subject to the Vietnam Era Veterans Readjustment Assistance Act (VEVRAA), we request this information in order to measure the effectiveness of the outreach and positive recruitment efforts we undertake pursuant to VEVRAA. Classification of protected categories is as follows:

A "disabled veteran" is one of the following: a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or a person who was discharged or released from active duty because of a service-connected disability.

A "recently separated veteran" means any veteran during the three-year period beginning on the date of such veteran's discharge or release from active duty in the U.S. military, ground, naval, or air service.

An "active duty wartime or campaign badge veteran" means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.

An "Armed forces service medal veteran" means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985.

Select...

Voluntary Self-Identification of Disability

Form CC-305
Page 1 of 1
OMB Control Number 1250-0005
Expires 04/30/2026

Why are you being asked to complete this form?

We are a federal contractor or subcontractor. The law requires us to provide equal employment opportunity to qualified people with disabilities. We have a goal of having at least 7% of our workers as people with disabilities. The law says we must measure our progress towards this goal. To do this, we must ask applicants and employees if they have a disability or have ever had one. People can become disabled, so we need to ask this question at least every five years.

Completing this form is voluntary, and we hope that you will choose to do so. Your answer is confidential. No one who makes hiring decisions will see it. Your decision to complete the form and your answer will not harm you in any way. If you want to learn more about the law or this form, visit the U.S. Department of Labor’s Office of Federal Contract Compliance Programs (OFCCP) website at www.dol.gov/ofccp.

How do you know if you have a disability?

A disability is a condition that substantially limits one or more of your “major life activities.” If you have or have ever had such a condition, you are a person with a disability. Disabilities include, but are not limited to:

  • Alcohol or other substance use disorder (not currently using drugs illegally)
  • Autoimmune disorder, for example, lupus, fibromyalgia, rheumatoid arthritis, HIV/AIDS
  • Blind or low vision
  • Cancer (past or present)
  • Cardiovascular or heart disease
  • Celiac disease
  • Cerebral palsy
  • Deaf or serious difficulty hearing
  • Diabetes
  • Disfigurement, for example, disfigurement caused by burns, wounds, accidents, or congenital disorders
  • Epilepsy or other seizure disorder
  • Gastrointestinal disorders, for example, Crohn's Disease, irritable bowel syndrome
  • Intellectual or developmental disability
  • Mental health conditions, for example, depression, bipolar disorder, anxiety disorder, schizophrenia, PTSD
  • Missing limbs or partially missing limbs
  • Mobility impairment, benefiting from the use of a wheelchair, scooter, walker, leg brace(s) and/or other supports
  • Nervous system condition, for example, migraine headaches, Parkinson’s disease, multiple sclerosis (MS)
  • Neurodivergence, for example, attention-deficit/hyperactivity disorder (ADHD), autism spectrum disorder, dyslexia, dyspraxia, other learning disabilities
  • Partial or complete paralysis (any cause)
  • Pulmonary or respiratory conditions, for example, tuberculosis, asthma, emphysema
  • Short stature (dwarfism)
  • Traumatic brain injury
Select...

PUBLIC BURDEN STATEMENT: According to the Paperwork Reduction Act of 1995 no persons are required to respond to a collection of information unless such collection displays a valid OMB control number. This survey should take about 5 minutes to complete.