ITility, LLC

Information Systems Security Specialist

Posted Date 2 days ago(1/13/2026 6:20 PM)
Job ID
2026-3587
# of Openings
1
Job Locations
US

Overview

Overview: 

 

ITility is seeking an experienced performance driven Information Systems Security Specialist supporting a new government client. This position is contingent on contract award and will be onsite at the Client location in Mclean, VA or Bethesda, MD.  

  

ITility is a Service-Disabled Veteran-Owned Business with a passion to equip our nation’s Intelligence Community, armed forces and first responders with the very best to empower their missions. From the virtual battlefield to boots on the ground, our people, processes, and performance drive our ability to help our clients protect what matters, now and for generations to come. 

  

At ITility, we help our customers command the future by thinking beyond perceived limits to create new, unexpected ways to protect and defend our nation. We inspire and empower people to create significant solutions that secure what matters to our customers and communities, here and around the globe.  

  

We Value: 

  • The Drive to Perform Beyond Perceived Limits. 
  • The Desire to Find Significance in All We Do. 
  • The Passion and Compassion That Powers Both. 

 

Information Security Specialist 

Supports cybersecurity continuous compliance monitoring and information system security activities for government systems, focusing on RMF/ATO support, continuous monitoring, control evidence management, vulnerability and POA&M coordination, and audit readiness. Works with Cyber Ops leadership, system owners, engineers, and program security to maintain compliance while enabling mission operations. 

Responsibilities

Responsibilities:

  • Support the RMF lifecycle as assigned: system boundary documentation, control implementation tracking, evidence collection, and assessment preparation. 
  • Maintain and update security artifacts as applicable (e.g., SSP, control evidence, configuration management documentation, incident response artifacts, contingency planning evidence). 
  • Coordinate POA&M development and management: track findings, owners, milestones, remediation evidence, and closure packages. 
  • Support vulnerability management workflows: intake scan results, validate remediation evidence, track exceptions/risk acceptances (if applicable), and support closure documentation. 
  • Prepare for and support ATO/assessment events: evidence repository management, interview support, response tracking, and action-item closure. 
  • Support security change control: document changes, assess security impact, and ensure approvals and artifact updates are completed. 
  • Produce weekly/monthly compliance reporting (status, risks, blockers, and recommended mitigation actions). 
  • Participate in incident response support activities as directed (documentation, coordination support, and lessons learned). 

Qualifications

Qualifications:

  • Must be US Citizen 
  • Active Top Secret SCI Clearance and Active Counterintelligence (CI) Polygraph 
  • 3-7 years of experience supporting information system security, cybersecurity compliance, or RMF/ATO support for government systems. 
  • Working knowledge of NIST-based security controls and common compliance workflows (RMF/ATO concepts, continuous monitoring, POA&M). 
  • Strong documentation and evidence management skills; ability to maintain audit-ready records. 
  • Experience collaborating with technical teams (IT/cloud/network/endpoint) to gather artifacts and validate implementations. 
  • Proficiency with Microsoft Office and collaboration tools (e.g., SharePoint/Teams). 
  • Experience with cloud environments (AWS/Azure) and compliance evidence collection in cloud/hybrid settings. 
  • Familiarity with common governance/compliance and security tooling (GRC platforms, ticketing systems, vulnerability scanners). 
  • Certifications (nice to have): Security+, CAP, CISSP/CCSP, CISM, SSCP, or equivalent. 
  • Ability to operate in a structured compliance environment with shifting priorities and deadlines. 
  • Ability to attend on-site meetings/assessments as required by customer or system access constraints. 

Physical Requirements: 

  • Work is typically performed in an office setting. 
  • Prolonged periods of sitting at a desk and working on a computer. 
  • Must have the ability to lift 15-25 pounds. 

ITility is an Equal Opportunity Employer

ITility is an Equal Opportunity Employer

ITility is committed to providing a work environment that is non-discriminatory, harassment free, fair, ethical and inclusive.

 

ITility is committed to the principle of equal employment opportunity and complies with all applicable laws which prohibit discrimination and harassment in the workplace. ITility strictly prohibits discrimination or harassment based on race, color, religion, national origin, sex, sexual orientation, gender identity, protected veteran status, disability, or any other characteristic protected by law in all terms, conditions and privileges of employment, including without limitation, recruiting, hiring, assignment, compensation, promotion, discipline and termination. This policy covers conduct occurring at ITility’s offices, client sites, other locations where ITility is providing services, and to all work-related activities.

Options

Sorry the Share function is not working properly at this moment. Please refresh the page and try again later.
Share on your newsfeed