Current Jobs

Posted 5 months ago

Lead Information Systems Security Engineer (ISSE)

Location: Washington, DC (Hybrid – 3 days onsite / 2 days remote)
Employment Type: Full-Time (Open to 1099 / Hourly Direct Hire)
Clearance: Must be eligible for an Active Public Trust


Overview

We are seeking a Lead Information Systems Security Engineer (ISSE) to provide technical leadership and hands-on security engineering support for federal cloud and enterprise systems. This role focuses on securing cloud-based architectures, integrating security across the system lifecycle, and supporting Information System Security Officers (ISSOs) with authorization and accreditation activities.


Responsibilities

  • Lead the design and implementation of secure IT and cloud solutions in Microsoft Azure and Amazon Web Services (AWS)
  • Integrate security requirements throughout the system development lifecycle, including application development and deployment pipelines
  • Design and assess secure system and cloud architectures, including Azure VNets, NSGs, Azure Firewall, Private Endpoints, and AWS VPCs, subnets, route tables, security groups, and network ACLs
  • Provide technical and engineering support to ISSOs performing RMF and A&A activities
  • Conduct security impact assessments for system, architecture, application, and configuration changes
  • Perform threat modeling to identify, analyze, and mitigate risks associated with application and infrastructure design changes
  • Execute Supply Chain Risk Management (SCRM) activities aligned with NIST SP 800-161
  • Evaluate SaaS, applications, and government solutions for compliance with NIST, FedRAMP, and federal security requirements
  • Apply application security best practices, including secure coding principles, dependency management, and vulnerability remediation
  • Support DevSecOps practices by integrating security controls, scanning, and monitoring into CI/CD pipelines
  • Apply security best practices to Kubernetes, containers, and Infrastructure as Code (Terraform)
  • Collaborate with SOC teams to verify log capture, security monitoring, access control enforcement, and ongoing alerting within defined RMF authorization boundaries
  • Contribute to security architecture documentation, technical standards, and risk-based recommendations
  • Mentor junior team members and provide technical guidance

Qualifications

  • Bachelor’s degree in Cybersecurity, IT, Engineering, or related field
  • 8+ years of cybersecurity or ISSE experience
  • Strong networking experience, including TCP/IP, routing and switching, firewalls, VPNs, load balancing, and cloud networking
  • Demonstrated experience with Azure and AWS networking services
  • Experience with application security and DevSecOps in cloud-based environments
  • Strong knowledge of NIST RMF, FedRAMP, NIST SP 800-161, and Common Criteria
  • Experience conducting security impact assessments and threat modeling
  • Experience with Kubernetes, containers, and Infrastructure as Code preferred
  • Experience collaborating with SOC teams for continuous monitoring and alerting
  • Strong communication and leadership skills

Preferred Certifications

  • CISSP or equivalent cybersecurity certification or equivalent

Lead Information Systems Security Engineer (ISSE) Location: Washington, DC (Hybrid – 3 days onsite / 2 days remote)Employment Type: Full-Time (Open to 1099 / Hourly Direct Hire)Clearance:&...

Posted 12 months ago

Job title: Sr. Java Developer

Company name: EastBay Systems
Job location: Northern Virginia, Virginia, United States (Hybrid)

Job Info

Job description
EastBay Systems is seeking a Sr. full stack Java developer with a minimum of 10 years’ experience to support one of our government clients in the Washington, DC area. Candidate will work in an Agile SCRUM and SAFe environment to support all phases of software development and maintenance. Candidate will support multiple enterprise cloud (AWS) applications with web, iOS and Android interfaces. Qualified candidates will have strong experience working with the following environment & tools:

· Jira, Confluence, GitLab, Jenkins, SonarQube & Junit
· Agile SecDevOps environment
· Oracle & NoSQL Database (MarkLogic), Weblogic, OpenShift Containers, JDBC, Jenkins
· Java, JavaScript, HTML5, CSS, SQL
· Angular, React, Spring Struts, JSF, MVC, SOAP & REST
· Object Relational Mapping Frameworks (MyBATIS, Hibernate)
· Test automation tools such as Selenium & Citrus
· Experience with s/w design patterns

Employment Type
Full-time (Onsite)

Job title: Sr. Java Developer Company name: EastBay SystemsJob location: Northern Virginia, Virginia, United States (Hybrid) Job Info Job descriptionEastBay Systems is seeking a Sr. full stack Java de...

Tier 2 Security Operations Center (SOC) Analyst
Location: Hybrid (Washington, D.C) or Onsite (as required)
Clearance: Public Trust
Employment Type: Full-Time | Company: EastBay Systems
Jobs ID: 597

About EastBay Systems
EastBay Systems is a government-focused cybersecurity and IT consulting firm with over 15 years of experience. We deliver trusted solutions in Cybersecurity Program Management, SOC Support, and Governance, Risk & Compliance (GRC). We work alongside federal agencies to secure mission-critical systems and enable resilient operations in complex environments.

Position Overview
EastBay Systems is seeking a mid-level Tier 2 SOC Analyst to support one of our federal clients in identifying, analyzing, and responding to cybersecurity threats. As a Tier 2 Analyst, you will be responsible for conducting in-depth investigations, identifying threat patterns, and coordinating with incident response teams to ensure rapid containment and resolution of security incidents.

Key Responsibilities
Perform detailed analysis and triage of escalated alerts from Tier 1 analysts
Investigate anomalies in logs and alerts using tools such as SIEM, EDR, IDS/IPS, and packet capture systems
Correlate threat intelligence and IOCs with internal telemetry to identify malicious activity
Assist in incident response activities: evidence collection, containment, eradication, and recovery
Recommend improvements to detection rules and monitoring configurations
Write detailed incident reports, root cause analyses, and recommendations for remediation
Interface with engineering teams to help tune SOC tools and maintain security controls
Develop playbooks and automation scripts to improve SOC efficiency
Mentor Tier 1 analysts and provide guidance on investigation and escalation procedures

Required Qualifications
Education: Bachelor’s degree in Cybersecurity, Computer Science, Information Security, or related field
Certifications: Security+, CySA+, CEH, or similar required; CISSP, GCIA, or GCIH preferred
3–5 years of experience in a cybersecurity or SOC environment
Hands-on experience with SIEM platforms (e.g., Splunk, Microsoft Sentinel, QRadar)
Working knowledge of threat actor tactics, techniques, and procedures (TTPs)
Proficiency in log analysis, malware behavior analysis, and packet-level inspection
Familiarity with security frameworks such as NIST 800-53, MITRE ATT&CK, and ISO 27001
Excellent problem-solving skills and attention to detail
Must be a U.S. citizen and eligible for government clearance

Preferred Skills
Experience with Microsoft Sentinel, CrowdStrike Falcon, ExtraHop, or Cisco SecureX
Scripting knowledge in Python, PowerShell, or Bash for automation and log parsing
Familiarity with cloud security monitoring (AWS, Azure, M365)
Experience with vulnerability scanning tools (e.g., Nessus, Tenable, Qualys)
Experience working in or supporting federal agencies or cleared environments

Why EastBay Systems?
Work on impactful federal missions that enhance national security
Collaborate with elite cyber experts and innovative technologists
Competitive salary and comprehensive benefits package
Certification reimbursement and professional development opportunities
Flexible work arrangements and a supportive, mission-driven culture

Apply Now
Submit your resume to jobs@eastbaysystems.com or apply via our careers page.

Tier 2 Security Operations Center (SOC) AnalystLocation: Hybrid (Washington, D.C) or Onsite (as required)Clearance: Public TrustEmployment Type: Full-Time | Company: EastBay SystemsJobs ID: 597 About ...

Microsoft Sentinel Security Engineer
Location: Washington, D.C. Area
Clearance: Public Trust
Job Type: Full-Time | Company: EastBay Systems
Job ID: 593

About EastBay Systems
EastBay Systems is a government IT and cybersecurity consulting firm that has been delivering innovative and secure technology solutions to federal agencies since 2007. We specialize in Cybersecurity Program Management, GRC (Governance, Risk, and Compliance), SOC Support, and Secure Software Development. Our mission is to protect and enhance federal systems through advanced tools, proven frameworks, and expert teams.

Position Summary
We are seeking a skilled Microsoft Sentinel Security Engineer to support the implementation, configuration, and optimization of security operations using Microsoft Sentinel. The ideal candidate will be responsible for designing advanced detection logic, integrating data sources, building analytic rules, and automating threat responses. This role plays a vital part in EastBay Systems' mission to secure our clients' cloud and hybrid environments against emerging cyber threats.

Key Responsibilities
Deploy, configure, and manage Microsoft Sentinel for enterprise security monitoring
Integrate Azure-native and third-party log sources and data connectors into Sentinel
Develop and fine-tune analytic rules, workbooks, dashboards, hunting queries, and custom KQL queries
Build and automate playbooks using Azure Logic Apps for security orchestration and response (SOAR)
Analyze security alerts and provide recommendations for rule improvements
Support threat hunting, incident response, and post-incident analysis within Sentinel
Collaborate with SOC analysts, engineers, and compliance teams to ensure alignment with security policies and NIST/DoD frameworks
Stay current with Microsoft security technologies, industry trends, and threat intelligence

Required Qualifications
Bachelor’s Degree in Cybersecurity, Computer Science, Information Systems, or a related field
5+ years of experience in cybersecurity, including 2+ years working with Microsoft Sentinel
Proficiency with Kusto Query Language (KQL) for writing detection and hunting queries
Hands-on experience with Azure Monitor, Azure Log Analytics, and Microsoft Defender XDR tools
Familiarity with threat intelligence and behavioral analysis concepts
Experience designing and maintaining SIEM alert rules and integrating with ticketing systems
Excellent verbal and written communication skills

Preferred Certifications
Microsoft Certified: Security Operations Analyst Associate
Microsoft Certified: Azure Security Engineer Associate (AZ-500)
CISSP, Security+, or GIAC certifications
Familiarity with NIST 800-53, RMF, and FedRAMP environments a plus

Why Join EastBay Systems?
Mission-driven work protecting government and critical infrastructure systems
Competitive salary and full benefits package (medical, dental, vision)
401(k)
Hybrid work options and generous PTO
Opportunities for career growth

Apply Now
Submit your resume via email us at Jobs@eastbaysystems.com.

Microsoft Sentinel Security EngineerLocation: Washington, D.C. AreaClearance: Public TrustJob Type: Full-Time | Company: EastBay SystemsJob ID: 593 About EastBay SystemsEastBay Systems is a government...

Insider Threat / Intelligence Analyst
Location: Washington, D.C (Hybrid)
Clearance: Public Trust or higher (preferred)
Job Type: Full-Time | Company: EastBay Systems
Job ID: 591

About EastBay Systems
Since 2007, EastBay Systems has delivered expert IT and cybersecurity consulting services to U.S. federal agencies. Specializing in Cybersecurity Program Management, SOC Support, Secure Software Development, and GRC, our mission is to secure the nation's critical information infrastructure through advanced technology, expert talent, and agile execution.
We’re growing and looking for professionals who are passionate about protecting what matters most — people, data, and national security.

Position Summary
EastBay Systems is seeking an experienced Insider Threat / Intelligence Analyst to support federal cybersecurity programs. The successful candidate will help identify, assess, and mitigate insider risks by analyzing behavioral data, threat intelligence, and user activity. This role is ideal for a professional with a background in intelligence, counterintelligence, law enforcement, or insider threat operations within a federal or enterprise environment.

Key Responsibilities
Develop and implement insider threat programs, including defining policies, procedures, and tool sets
Monitor alerts, investigate user behavior, and assess potential threats through advanced behavioral analytics
Conduct triage and in-depth analysis of insider threat indicators using SIEM, UEBA, and threat intelligence platforms
Collect, correlate, and analyze threat intelligence from internal and external sources to proactively detect insider risks
Maintain accurate records and produce high-quality threat reports, assessments, and recommendations
Participate in threat briefings and support awareness programs to foster a culture of security and vigilance

Preferred Qualifications
Bachelor’s Degree in Cybersecurity, Information Technology, or related field from a U.S. institution
7+ years of experience in insider threat, intelligence, law enforcement, counterintelligence, investigations, or corporate security
Strong understanding of security frameworks and threat detection methodologies
Experience with insider threat tools, data loss prevention (DLP), SIEM platforms, and behavioral analytics
Knowledge of intelligence lifecycle and OSINT techniques
Excellent analytical thinking and investigative skills
Strong interpersonal, verbal, and written communication skills

Certifications (Preferred)
CISSP
GIAC
CEH
Security+
Network+
Equivalent insider threat or intelligence certifications also accepted

Why Work with EastBay Systems?
Competitive salary and full benefits (health, dental, vision)
401(k)
Paid federal holidays and flexible PTO
Hybrid work flexibility and work-life balance
Opportunities to work on mission-critical national security programs
Opportunity for professional development

Apply Today
Submit your resume via Indeed or send it to jobs@eastbaysystems.com. If you're driven to protect, detect, and respond to emerging threats—EastBay Systems is where your expertise can have real impact.

Insider Threat / Intelligence AnalystLocation: Washington, D.C (Hybrid)Clearance: Public Trust or higher (preferred)Job Type: Full-Time | Company: EastBay SystemsJob ID: 591 About EastBay SystemsSince...

Senior Security Engineer
Location: Washington, D.C. | Clearance: Public Trust (or ability to obtain)
Company: EastBay Systems
Job Type: Full-Time
Job ID: 589

For over 18 years, EastBay Systems has delivered advanced IT and cybersecurity consulting services to federal agencies. We specialize in Cybersecurity Program Management, SOC Support, Identity and Access Management (IAM), GRC, and secure software development. Our mission is to help government clients stay ahead of evolving threats through innovation, agility, and deep domain expertise.
We believe that action drives outcomes and that every challenge is an opportunity to build smarter, stronger, and more secure systems. As we expand, we’re seeking elite minds to help shape the future of our nation cybersecurity.

Position Summary
EastBay Systems is seeking a Senior Security Engineer to support a mission-critical federal cybersecurity program. This role supports the agency’s enterprise-level Security Operations Center (SOC), focusing on the design, maintenance, and evolution of core cybersecurity infrastructure and analytics. The ideal candidate is a proactive, highly technical security expert who thrives in dynamic environments and has experience with both on-prem and cloud-based security systems.

Responsibilities
Serve as a technical subject matter expert (SME) in support of enterprise SOC operations and tools
Respond to and resolve cybersecurity incidents and ServiceNow tickets
Manage, upgrade, and maintain cybersecurity tools and infrastructure—some after-hours work may be required
Create technical documentation and diagrams (e.g., Microsoft Visio) to support ongoing operations and security tool architecture
Recommend and present new security tools or enhancements to stakeholders
Contribute to the development of advanced detection analytics and countermeasures
Support system integration, testing, deployment, and O&M of security tools
Troubleshoot complex issues within a multi-system security architecture
Apply and support implementation of NIST 800-53 r4/r5 control requirements
Participate in investigation and resolution of security incidents and vulnerabilities

Minimum Qualifications
Bachelor’s Degree in Computer Science, Engineering, Information Systems, or related field
7+ years of experience in cybersecurity, with at least 4 years in a cybersecurity engineering role
Proficiency with at least 3 of the following technologies:
CrowdStrike
Microsoft Defender for Endpoint
ExtraHop
ForeScout
Gigamon
Familiarity with cybersecurity engineering lifecycle: design, development, integration, testing, and deployment
Strong understanding of NIST cybersecurity frameworks and risk mitigation strategies
Experience supporting investigations and analysis of complex security problems
Scripting proficiency in one or more languages: Python, PowerShell, Bash

Preferred Qualifications
Experience with Cisco Routing & Switching, Cisco Firepower IPS/Firewall, or Cisco WSA
Familiarity with SIEM tools, data lakes, and development of security analytics
Experience with US-CERT or similar federal environments
Ability to assess emerging security technologies and recommend implementation strategies
Security Certifications (one or more preferred):
Security+
CISSP
GIAC / SANS Certifications
Network+
Microsoft AZ-900

Why Join EastBay Systems?
Competitive compensation and performance-based incentives
Full benefits package (health, dental, vision)
401(k)
Paid time off and federal holidays
Continuing education opportunities
Work on meaningful, high-impact federal programs
Work-life balance

Apply Now
If you're ready to join our team send it your resume to jobs@eastbaysystems.com

Senior Security EngineerLocation: Washington, D.C. | Clearance: Public Trust (or ability to obtain)Company: EastBay SystemsJob Type: Full-TimeJob ID: 589 For over 18 years, EastBay Systems has deliver...

Tier 1 Security Operations Center (SOC) Analyst
Location: Remote (U.S. Based) or Onsite (as required)
Clearance: Active Public Trust or ability to obtain
Employment Type: Full-Time | Company: EastBay Systems

About EastBay Systems
EastBay Systems is a leading cybersecurity and IT consulting firm serving federal government clients since 2007. We specialize in Cybersecurity Program Management, GRC (Governance, Risk & Compliance), and Security Operations Center (SOC) Support. Our mission is to protect critical infrastructure and ensure national security through advanced cybersecurity solutions and expert consulting.

Position Overview
EastBay Systems is seeking an entry-level Tier 1 SOC Analyst to join our growing cyber operations team. As the first line of defense, Tier 1 analysts are responsible for monitoring, triaging, and escalating cybersecurity events to protect client systems from unauthorized activity. This role is ideal for early-career cybersecurity professionals who are eager to gain real-world experience and build a career in security operations.

Key Responsibilities
Monitor and analyze security alerts and events from various sources (SIEM, EDR, firewall logs, etc.)
Triage, prioritize, and escalate security incidents to Tier 2 analysts or Incident Response teams
Document event findings clearly and accurately using ticketing systems (e.g., ServiceNow)
Follow established SOPs and incident response workflows
Conduct initial assessments of threat indicators and suspicious behavior
Support investigations into phishing, malware, and unauthorized access attempts
Assist with routine health checks and performance monitoring of security tools
Stay informed on the latest threats, vulnerabilities, and industry best practices

Required Qualifications
Education: Associate or Bachelor’s Degree in Cybersecurity, Computer Science, Information Technology, or related field
Certifications: Security+, Network+, or similar entry-level certification preferred
2 years of experience in a security or IT operations environment
Familiarity with security tools and technologies such as SIEM (e.g., Splunk, Microsoft Sentinel), EDR, IDS/IPS
Understanding of basic networking concepts, IP protocols, and Windows/Linux OS
Strong analytical, problem-solving, and written communication skills
Must be a U.S. citizen and eligible to obtain a government security clearance

Preferred Skills
Experience with Microsoft Sentinel, CrowdStrike, or similar platforms
Exposure to ticketing systems like ServiceNow or Jira
Familiarity with NIST 800-53 and common cybersecurity frameworks
Participation in Capture the Flag (CTF) events or cyber training programs (NICE/NCL/CompTIA)

Why Work with EastBay Systems?
Support meaningful federal cybersecurity missions
Hands-on training and mentorship from senior SOC and cyber engineering staff
Career growth opportunities
Hybrid work schedule and competitive pay and benefits

Apply Now
Submit your resume to jobs@eastbaysystems.com

Tier 1 Security Operations Center (SOC) AnalystLocation: Remote (U.S. Based) or Onsite (as required)Clearance: Active Public Trust or ability to obtainEmployment Type: Full-Time | Company: EastBay Sys...

Posted 12 months ago

Senior SOC Engineer
Location: Hybrid / Washington, DC Metro Area
Job Type: Full-Time | Clearance Required: Public Trust (or eligibility)
Company: EastBay Systems
Job ID: 459

EastBay Systems has been providing IT and cybersecurity services to private and federal government customers for 18 years. We specialize in Cybersecurity Program Management, Governance Risk & Compliance (GRC), SOC Support, and Secure Software Development. Our mission is to protect public sector systems and data by delivering results-driven, security-first solutions aligned with federal regualtory requirements and mission.

Job Summary
We are seeking a highly motivated and experienced Senior Security Operations Center (SOC) Engineer to oversee a team of cybersecurity professionals. The ideal candidate will bring hands-on experience in incident response, threat intelligence, and security monitoring, along with a deep understanding of cloud and on-prem environments. This position requires both technical leadership and strategic insight to help shape the client’s cybersecurity defense posture.

Key Responsibilities
Lead and mentor a team of SOC analysts and cybersecurity engineers supporting 24/7 operations
Manage daily incident response activities, threat hunting, and triage of security alerts across hybrid environments (on-prem and Azure)
Oversee monitoring and analysis of tools including Microsoft Sentinel, Defender, Purview, and CrowdStrike EDR
Review and develop detection rules based on MITRE ATT&CK, threat intelligence, and incident trends
Produce executive briefings, incident reports, and threat intelligence summaries
Correlate CVEs and vulnerabilities from Qualys with active threat actor TTPs
Conduct tabletop exercises and attack simulations to strengthen incident response readiness
Support the development and maintenance of SOPs, playbooks, and escalation procedures
Collaborate with federal stakeholders to improve overall SOC maturity and performance

Required Qualifications
7+ years of experience in cybersecurity with at least 2 years in a SOC leadership or senior analyst role
Deep knowledge of SIEM platforms (preferably Microsoft Sentinel), EDR tools (CrowdStrike, Defender), and incident response processes
Strong understanding of Azure and hybrid cloud environments
Familiarity with MITRE ATT&CK, D3FEND, NIST 800-53, and other federal cybersecurity standards
Experience with KQL (Kusto Query Language) and security automation (e.g., Logic Apps)
Proven ability to write clear, actionable reports and briefings for both technical and executive audiences
US Citizenship required; Public Trust clearance or eligibility

Preferred Skills
Experience supporting cybersecurity operations for a federal agency
Certifications such as CISSP, GCIA, GCIH, Azure Security Engineer (SC-200), or equivalent
Working knowledge of DevSecOps principles and secure software development
Experience using threat intelligence platforms and ingesting data from FS-ISAC, CISA, and commercial feeds

Benefits
Competitive salary
Health, dental, and vision insurance
401(k)
Paid time off and federal holidays
Professional development and training opportunities

Join EastBay Systems and become part of a cybersecurity mission that protects our nation’s systems and supports critical federal operations.
👉 Apply Today on Indeed or email your resume to jobs@eastbaysystems.com

Senior SOC EngineerLocation: Hybrid / Washington, DC Metro AreaJob Type: Full-Time | Clearance Required: Public Trust (or eligibility)Company: EastBay SystemsJob ID: 459 EastBay Systems has been provi...

Cloud Security Engineer
Location: Remote | Clearance: Public Trust or higher
Job Type: Full-Time | Company: EastBay Systems
Job ID: 486

EastBay Systems is a trusted government IT and cybersecurity consulting firm with over 15 years of experience supporting federal agencies. We provide cybersecurity program support, secure software development, enterprise application support, and cloud security for mission-critical environments. Our projects ensure national security, data protection, and compliance for agencies at every level.

Job Summary
We are seeking a skilled and motivated Cloud Security Engineer to join our growing cybersecurity team supporting federal clients. The ideal candidate will have strong cloud security architecture knowledge, hands-on experience with major cloud platforms, and the ability to implement best practices across hybrid and multi-cloud environments.

Key Responsibilities
Design, implement, and maintain secure cloud architectures across AWS, Azure, or other government cloud environments
Monitor and manage cloud security posture using tools like CSPM and CWPP solutions
Configure and assess cloud IAM (Identity and Access Management), security groups, encryption policies, and logging
Respond to and investigate cloud security incidents, perform root cause analysis, and recommend remediation actions
Collaborate with DevSecOps and infrastructure teams to ensure security controls are integrated throughout CI/CD pipelines
Stay current on evolving cloud security threats, compliance frameworks (FedRAMP, NIST 800-53), and agency-specific requirements
Document policies, procedures, and configurations to support audits and ATO processes
Support vulnerability and risk assessments of cloud-based systems

Preferred Qualifications
Bachelor’s Degree in Cybersecurity, Information Technology, or related field from a U.S.-accredited institution
5+ years of experience specifically in cloud security
Relevant certifications such as:
CISSP, CISM, CEH
Certified Cloud Security Professional (CCSP)
AWS Security Specialty or Azure Security Engineer
Experience with cloud-native security tools and platforms
Familiarity with CSPM (Cloud Security Posture Management), CWPP (Cloud Workload Protection), and CIEM (Cloud Infrastructure Entitlement Management)
Strong verbal, written, and collaboration skills
Experience supporting federal cybersecurity missions preferred

Benefits
Competitive salary
Health, dental, and vision insurance
401(k)
Paid time off and federal holidays
Hybrid work flexibility

How to Apply
Apply now on Indeed or email your resume and certifications to: jobs@eastbaysystems.com

Cloud Security EngineerLocation: Remote | Clearance: Public Trust or higherJob Type: Full-Time | Company: EastBay SystemsJob ID: 486 EastBay Systems is a trusted government IT and cybersecurity consul...

Information Systems Security Officer (ISSO)
Location: Hybrid (Washington, D.C. Area) or Onsite as Required
Clearance: Active Public Trust
Job Type: Full-Time | Company: EastBay Systems
Jobs ID 593

About EastBay Systems
EastBay Systems is a trusted provider of cybersecurity and IT consulting services to U.S. federal agencies. Since 2007, we’ve delivered tailored solutions in Governance, Risk, and Compliance (GRC), Cybersecurity Program Management, and Security Operations Support (SOC). Our mission is to help secure our nation’s most critical information systems with expert guidance, modern tools, and a deep understanding of government compliance frameworks.

Position Overview
EastBay Systems is seeking a skilled and detail-oriented Information Systems Security Officer (ISSO) to support the continued execution and enhancement of cybersecurity and assessment & authorization (A&A) programs for a federal client. This role is ideal for a self-starter with deep knowledge of the NIST Risk Management Framework (RMF), continuous monitoring, and information assurance practices. The ISSO will provide leadership and hands-on support for the security lifecycle of enterprise systems.

Key Responsibilities
Act as the primary liaison for system owners and federal stakeholders for assigned systems
Support the risk management lifecycle by identifying, tracking, and mitigating cyber risks affecting system security posture
Guide systems through the RMF process, focusing on A&A and continuous monitoring efforts
Maintain and update security authorization documentation using GRC tools (e.g., ServiceNow GRC/IRM)
Assist in implementing common control provider (CCP) programs and integrating enterprise-level cybersecurity strategies
Collaborate with security architects, engineers, and compliance teams on vulnerability assessments, risk mitigation, and system updates
Track and report on package statuses and ensure timely execution of security plans and deliverables
Provide expert insight into policy alignment with NIST, DHS, OMB, and other federal cybersecurity requirements

Required Qualifications
Education: Bachelor’s Degree in Cybersecurity, Information Technology, Computer Science, or related discipline
Certifications: One or more of the following is required: CISSP, CISA, CRISC, CISM, Security+
Experience:
5+ years in cybersecurity, including at least 3+ years in a GRC, IT audit, or A&A-focused role
Hands-on experience navigating the full RMF lifecycle, including A&A and continuous monitoring
Familiarity with FedRAMP, hybrid cloud security, and multi-tenant architectures
Strong understanding of NIST standards including 800-53, 800-171, 800-137, and NIST CSF

Preferred Skills
Experience with GRC platforms such as CSAM, and SericeNow IRM.
Working knowledge of vulnerability scanning tools such as Nessus, Tenable SecurityCenter, or Qualys
Familiarity with policy development and aligning to mandates from OMB, DHS, and CNSS
Strong ability to analyze and communicate risk, write compelling documentation, and manage multiple tasks concurrently
Excellent verbal, written, and presentation communication skills

Why Join EastBay Systems?
Work on high-impact cybersecurity initiatives that protect federal systems
Flexible remote work environment with occasional onsite opportunities
Competitive compensation and benefits, including healthcare and 401(k)
Supportive, mission-driven team with opportunities for professional development and certification support

How to Apply
To apply, please submit your resume and relevant certifications to jobs@eastbaysystems.com

Information Systems Security Officer (ISSO)Location: Hybrid (Washington, D.C. Area) or Onsite as RequiredClearance: Active Public TrustJob Type: Full-Time | Company: EastBay SystemsJobs ID 593 About E...

Identity Governance Administrator (IGA) / Security Engineer
Location: Hybrid | Clearance Required: Public Trust (or ability to obtain)
Job Type: Full-Time
Company: EastBay Systems
Job ID: 546

Company Profile
EastBay Systems is a trusted government IT and cybersecurity consulting firm with over 15 years of experience supporting federal agencies. We specialize in Identity and Access Management (IAM), SOC support, secure software development, and cybersecurity program management. Our team delivers security-first solutions that align with federal compliance frameworks and protect mission-critical systems and data.

Job Summary
EastBay Systems is seeking a highly skilled IGA Security Engineer to design, implement, and support enterprise-grade identity governance solutions for a federal client. This role requires deep knowledge of IAM frameworks and tools, including SailPoint and Ping Identity, with a strong emphasis on secure access, authentication, and compliance in hybrid environments.

Key Responsibilities
Architect, deploy, and manage Identity Governance and Administration (IGA) solutions across on-premises and cloud platforms
Implement and support Privileged Access Management (PAM), Single Sign-On (SSO), and Multi-Factor Authentication (MFA) systems
Integrate IAM platforms using protocols such as SAML, OAuth 2.0, OpenID Connect (OIDC), and SCIM
Develop and maintain automation scripts for IAM operations (e.g., using Python, PowerShell, Bash, Ansible)
Monitor and analyze IAM systems to ensure secure provisioning, de-provisioning, and role-based access control (RBAC)
Collaborate with system and application owners to ensure proper access provisioning and compliance
Support audits and certification processes by providing documentation and evidence for identity controls
Conduct risk assessments and recommend technical solutions to address IAM-related vulnerabilities

Preferred Qualifications
Bachelor’s degree in Cybersecurity, Computer Science, or related field from a U.S.-accredited institution
5+ years of experience in IAM architecture, identity lifecycle management, and platform engineering
Experience with IAM tools such as SailPoint, Ping Identity, Okta, or ForgeRock
Familiarity with Active Directory, Azure AD, LDAP, and cloud IAM (AWS, Azure, GCP)
Hands-on experience with federation, MFA, PAM, and RBAC
Proficiency in scripting languages (Python, PowerShell, Bash, Ansible)
Relevant certifications: CISSP, GIAC, CEH, Security+, Network+, or equivalent
Strong communication skills with the ability to collaborate across technical and business units

Benefits
Competitive salary
Health, dental, and vision insurance
Paid federal holidays and generous PTO
401(k)
Professional development opportunities
Hybrid work environment and work-life balance

How to Apply
Submit your application through Indeed or email your resume to: jobs@eastbaysystems.com

Identity Governance Administrator (IGA) / Security EngineerLocation: Hybrid | Clearance Required: Public Trust (or ability to obtain)Job Type: Full-TimeCompany: EastBay SystemsJob ID: 546 Company Prof...