Senior Cybersecurity Specialist

Cyber CareersHybrid Remote, Colorado Springs, Colorado


Description

Position at VMD Corp

As a Vision, Mission, and Driven company, VMD has been delivering information technology solutions to the Federal government in Agile Engineering, Cybersecurity, and Critical Infrastructure Protection since 2002. Our mission has now expanded, and we have merged with Xcelerate Solutions to revolutionize end-to-end enterprise security. Together we are committed to protecting our nation’s citizens, critical infrastructure, and resources.
 
Why Join VMD Corp?
At VMD, now a part of Xcelerate Solutions, you have the opportunity to thrive in your career and become a Game Changer. The quality and talent of our people is what drives our success. We embrace an employee-first culture and make it a priority to provide professional development opportunities that foster career growth.
 
We help protect American Citizens and the nation’s most critical infrastructure by working alongside our customers and delivering game changing solutions to strengthen their missions. We believe our passion and commitment to achieve our customers' goals and solve their most critical challenges defines who we are. We don’t just dream big, we act on it – through teamwork, dedication, and resilience. 
 

Your Impact to the Mission:  
As a Senior Cybersecurity Specialist you will be responsible to deliver security and compliance expertise leadership to support multiple IT projects, programs, and initiatives. You will be supporting the assessment and authorization (A&A) process, determining current security postures, tracking vulnerabilities and POA&Ms, and identifying potential cybersecurity risk. 
 
The Senior Cybersecurity Specialist will be responsible for:

  • Actively participate and lead meetings to review and assess compliance of systems and technology
  • Perform risk assessments based on Federal guidelines and industry best practices
  • Assist teams in identifying vulnerabilities and providing recommendations to reduce cybersecurity risk
  • Create and mature control-specific procedures for RMF control families by interpreting NIST requirements, identifying system-specific implementation needs, and developing effective procedural documentation that supports both mission operations and defensible compliance.  
  • Articulate and report on cybersecurity risk and compliance to executives and senior leaders
  • Understand Vulnerability details, both technical and control-based, and craft actionable remediation plans and mitigation strategies
  • Create, maintain, and track POA&Ms – working with system owners and technical teams to identify corrective actions, document mitigations, monitor remediation progress, and support timely closure of security findings.  
  • Support remediation of control-based POA&Ms by analyzing control weaknesses, recommending corrective actions or mitigations, coordinating with technical teams, and reviewing closure evidence to confirm the weakness has been resolved.
  • Author A&A documentation to create foundational RMF documentation to support system authorization
  • Continually improve the cybersecurity risk assessment and POA&M process and program 
  • Aggregate and track cybersecurity POA&Ms and risks across projects, teams, and programs
  • Respond to and triage security incidents as a key member of the incident response team 
  • Communicate cybersecurity best practices based on policies, standards, and controls   
Experience Needed to Be Successful:
  • 5+ years of cybersecurity and compliance experience 
  • Active Certified Information Systems Security Professional (CISSP) or Certified Information Security Manager (CISM) certification 
  • Strong leadership and interpersonal skills to facilitate effective collaboration across a variety of stakeholders 
  • Demonstrated ability to function independently and define the proper methods & procedures 
  • Understanding of guiding cybersecurity principles and control guidance 
  • Effective writing skills to capture issues and recommendations 
  • Strong customer relationship building ability   
Basic Qualifiers:
  • Education Requirement: Bachelor’s degree  
  • Can Additional Years of Experience Substitute for Degree? Yes 
  • Required Certification(s): Certified Information Systems Security Professional (CISSP) or Certified Information Security Manager (CISM) 
  • Minimum Years of Overall Experience: 5
  • Minimum Years of Specific Experience in Field: 5
  • Minimum Clearance to Start: Secret 
  • Work Status Allowable: US Citizenship 
The Type of Person That Will Excel:
  • You are curious, inquisitive, and have demonstrated a constant eagerness to learn through actions. 
  • You have high attention to detail. 
  • You demonstrate personal accountability and integrity in all actions.  
  • You have a passion for Cybersecurity.
  • Takes ownership of assigned systems, assessments, deadlines, and deliverables without needing heavy supervision.
  • Understands that compliance is not just paperwork and is able to connect control requirements to practical Cybersecurity outcomes.
  • Is comfortable operating in a customer-facing environment and can represent the organization professionally during reviews, audits, assessments, and status meetings.
  • Is comfortable managing multiple priorities, deadlines, assessments, and documentation efforts – even when new, competing requirements with short timelines come to light.   

Compensation, Benefits & Application Information:    

  • Anticipated salary range: $120,000 to $130,000 annually  
  • Comprehensive benefits package, including:    
  • Medical | Dental | Vision   
  • Vacation and Sick Time   
  • 11 Paid Holidays Per Year   
  • 401(k) Retirement Plan   
  • Education and Professional Development Reimbursement   
  • Other benefits in accordance with company plans and policies    

To apply, apply through the Xcelerate Careers site.  Applications will be accepted until October 15, 2026. 

Travel and Telecommuting:
  • Travel: Little (less than 10%) 
  • Telecommute Options: Yes, Hybrid (2-3 days onsite)
  • On-call:  Required periodically, with annual coverage varying up to 3-4 months
Xcelerate Solutions and its subsidiaries are Equal Employment Opportunity/Affirmative Action Employers.  We evaluate qualified applicants without regard to race, color, national origin, religion, age, equal pay, disability, veteran status, sex, sexual orientation, gender identity, genetic information, or expression of another protected characteristic. As part of this commitment to the full inclusion of all qualified individuals, Xcelerate provides reasonable accommodations if needed because of an applicant's or an employee's disability. Xcelerate Solutions maintains a drug-free workplace.