Iron Bow Technologies Logo

Iron Bow Technologies

VA Cybersecurity and Compliance Specialist

Posted 10 Days Ago
Remote
Hiring Remotely in United States
Entry level
Remote
Hiring Remotely in United States
Entry level
Lead federal and VA cybersecurity compliance activities for HSM and post-quantum cryptography environments. Support RMF, ATO preparation and renewal, continuous monitoring, FIPS 140-3 and CMVP evidence, vulnerability and patch compliance, security reviews, incident response, and authorization documentation. Translate technical HSM, PKI, and cryptographic configurations into compliance artifacts and coordinate with VA security stakeholders, including ISSOs, OIS, CORs, and program teams. The role is primarily remote with limited customer-site travel.
The summary above was generated by AI

Iron Bow Technologies is for people who believe trust is paramount, transformation is embraced, and the future is here, because "What we do matters!"

We are a next generation solutions provider, delivering mission success across government, healthcare, and commercial industries. Iron Bow relies on our passionate people, long standing partnerships, and strategic thinking to solve your most critical challenges.

Whether we team with clients, colleagues, or partners, we put each other first. It’s The Iron Bow Way.

THE OPPORTUNITY

The VA Cybersecurity and Compliance Specialist will lead cybersecurity compliance, RMF, ATO-support, FIPS compliance, and security documentation activities for the HSM and post-quantum cryptography environment. The position will serve as the principal interface between technical engineering activities and the customer’s cybersecurity/authorization requirements. Primarily remote. Limited travel to customer facility.

The candidate shall demonstrate experience supporting VA or Federal agency ATO processes, NIST SP 800-37 RMF, FIPS 140-3 compliance, ATO packages, CMVP documentation, and cryptographic compliance artifacts

HOW YOU'LL MAKE AN IMPACT

  • Support VA cybersecurity, RMF, ATO, continuous monitoring, and compliance activities.
  • Develop, review, and maintain cybersecurity and authorization artifacts supporting VA systems.
  • Support RMF activities consistent with NIST SP 800-37 and applicable NIST SP 800-53 controls.
  • Maintain and validate FIPS 140-3 CMVP evidence for HSM platforms.
  • Review CMVP/CAVP validation certificates, algorithm support matrices, OEM security attestations, and cryptographic compliance evidence.
  • Support VA ISSO, OIS, COR, and program stakeholders with technical evidence required for ATO and ATO renewal.
  • Evaluate proposed HSM configuration, firmware, integration, and architectural changes for security/compliance impact.
  • Support vulnerability and patch compliance, including CISA KEV/BOD requirements.
  • Coordinate security review of HSM upgrades, migrations, and production changes.
  • Ensure alignment with VA Handbook 6500, VA Critical Security Controls, FICAM/ICAM, PIV/CAC, Zero Trust, and applicable VA security policies.
  • Support security incident response, documentation, root-cause analysis, and corrective actions.
  • Review technical deliverables for Federal and VA cybersecurity compliance.
  • Support compliance documentation associated with FedRAMP-authorized cloud components, if included in the solution.

The candidate supports ATO renewal to provide current FIPS 140-3 CMVP certificates, algorithm-support matrices, vendor security attestations, and technical evidence packages for the VA ISSO, OIS, and formal ATO submissions. 

SKILLS THAT DRIVE SUCCESS

  • Federal cybersecurity compliance and RMF experience.
  • Experience supporting Federal or VA ATO processes.
  • Working knowledge of NIST SP 800-37 and NIST SP 800-53.
  • FIPS 140-3 compliance experience.
  • Experience preparing or supporting ATO packages.
  • Experience with CMVP documentation and cryptographic compliance artifacts.
  • Ability to translate highly technical HSM/PKI/cryptographic configurations into security and authorization evidence.

WHAT SETS YOU APART

  • Prior VA OIT cybersecurity experience.
  • CISSP, CAP/CGRC, CISM, Security+, or comparable cybersecurity credentials.
  • Experience with VA Handbook 6500 and VA security/authorization processes.
  • Experience with FedRAMP and Federal Zero Trust requirements.

WHY YOU'LL LOVE IT!

  • You will be part of a company that is growing quickly and values your voice, ideas, and experience
  • You will be a key contributor to Iron Bow’s transformational shift in how we deliver value to both customers and employees.
  • You will have the pleasure of working with passionate professionals in a culture that fosters a workplace where everyone feels respected, supported and empowered to succeed.

OUR EQUAL OPPORTUNITY EMPLOYER COMMITMENT

Iron Bow Technologies is an Equal Opportunity Employer and is committed to the principle of equal employment opportunity for all employees and to providing employees with a work environment free of discrimination and harassment.  All employment decisions at Iron Bow are based on relevant business considerations, such as operational needs, job requirements and individual qualifications, without regard to race, color, religion, sex, sexual orientation, gender identity and/or gender expression, pregnancy, national origin, age, disability, status as a protected veteran or any other characteristic prohibited by law. Iron Bow will not tolerate discrimination or harassment based on any of these characteristics.   

Similar Jobs

Senior level
Artificial Intelligence • Big Data • Healthtech • Software • Biotech
Leads end-to-end IVD, companion diagnostic, clinical trial assay, tumor profiling, and SaMD development programs. Aligns internal cross-functional teams and biopharma partners across strategy, validation, clinical operations, regulatory submission, manufacturing, and commercialization. Owns governance, milestones, budgets, resources, risks, and partner relationships while delivering programs through regulatory approval or pivotal clinical trials.
Top Skills: Analytical ValidationAssay DevelopmentBioinformaticsBlaClinical ValidationCompanion Diagnostics (Cdx)Design ControlsEu IvdrFda Regulatory RequirementsIndIvdMaaNdaPhase I/Ii/IiiSoftware As A Medical Device (Samd)
58 Minutes Ago
Remote or Hybrid
USA
170K-260K Annually
Expert/Leader
170K-260K Annually
Expert/Leader
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Lead product marketing strategy and go-to-market execution for Falcon Exposure Management. Develop positioning, messaging, launches, thought leadership, web strategy, and field enablement while partnering with product, sales, marketing, and executive teams. Translate cybersecurity capabilities into customer value and business outcomes, guide market education, analyze buyers and competitors, and strengthen CrowdStrike’s category leadership. The role requires deep exposure management expertise, strong cybersecurity knowledge, exceptional communication skills, and 12–15+ years of relevant experience.
Top Skills: AIB2B SaasCloud SecurityCybersecurityEnterprise SoftwareExternal Attack Surface ManagementFalcon Exposure ManagementIdentity SecuritySecurity OperationsVulnerability Management
58 Minutes Ago
Remote or Hybrid
USA
120K-180K Annually
Senior level
120K-180K Annually
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Lead program management for CrowdStrike’s Office of Adversary Strategy, coordinating complex cross-functional projects from scoping through delivery. Responsibilities include managing schedules, dependencies, risks, metrics, communications, change management, process improvements, and escalations. The role partners with technical teams and leadership, applies Agile project management practices, coaches teams through obstacles, and uses AI technologies to improve decision-making, workflows, and business outcomes.
Top Skills: AgileArtificial IntelligenceChatgptClaudeExcelGeminiGenerative AiJIRAKanbanScaled Agile FrameworkScrumSystems Development Lifecycle

What you need to know about the Chicago Tech Scene

With vibrant neighborhoods, great food and more affordable housing than either coast, Chicago might be the most liveable major tech hub. It is the birthplace of modern commodities and futures trading, a national hub for logistics and commerce, and home to the American Medical Association and the American Bar Association. This diverse blend of industry influences has helped Chicago emerge as a major player in verticals like fintech, biotechnology, legal tech, e-commerce and logistics technology. It’s also a major hiring center for tech companies on both coasts.

Key Facts About Chicago Tech

  • Number of Tech Workers: 245,800; 5.2% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: McDonald’s, John Deere, Boeing, Morningstar
  • Key Industries: Artificial intelligence, biotechnology, fintech, software, logistics technology
  • Funding Landscape: $2.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Pritzker Group Venture Capital, Arch Venture Partners, MATH Venture Partners, Jump Capital, Hyde Park Venture Partners
  • Research Centers and Universities: Northwestern University, University of Chicago, University of Illinois Urbana-Champaign, Illinois Institute of Technology, Argonne National Laboratory, Fermi National Accelerator Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account