Security Impact Analysis Engineer
big impact tech bitBaltimore, MD
Security Impact Analysis Engineer
big impact tech bitBaltimore, MD
today
Occupations
Information Security EngineersInformation Security AnalystsComputer Systems Engineers/ArchitectsIndustries
Other Scientific and Technical Consulting ServicesComputer Systems Design ServicesEngineering ServicesAbout the role
Security Impact Analysis (SIA) Engineer
Location: Washington, DC (Hybrid)
Company: Big Impact Tech (BIT)
Clearance Required: Secret, must be able to obtain TSA clearance About Big Impact TechBig Impact Tech (BIT) is a Small Business providing IT and business management consulting to federal and commercial clients. We deliver mission-focused solutions in data, cloud, cybersecurity, and program management.
Position Overview:
The Security Impact Analysis (SIA) Engineer reviews Requests for Change (RFCs) and determines their security impact, completing approximately 1,200 RFC/SIA analyses per year. This position also leads compliance reviews of emerging technology, performs cloud and AI assessments, and supports the Enterprise AI Security framework. The minimum 6 years of experience reflects the need for strong engineering judgment across a high volume of change reviews.
Responsibilities:
- Reviews RFCs and performs Security Impact Analyses (approximately 1,200 per year).
- Conducts compliance reviews of emerging technologies.
- Performs cloud and AI security assessments.
- Contributes to the Enterprise AI Security framework.
- Recommends updates to Security Assessment (SA) and Ongoing Authorization (OA) standard operating procedures.
- Other duties as assigned.
Required Qualifications:
- BA/BS degree in Cybersecurity, Computer Science, Information Technology, or a related discipline.
- Minimum Experience Required:
- Minimum 6 years of cybersecurity engineering or security assessment experience.
- Demonstrated experience performing SIAs within a federal change management process.
- Demonstrated knowledge of cloud security (AWS, Azure, or GCP) and FedRAMP.
- Demonstrated understanding of AI security risks and frameworks such as the NIST AI Risk Management Framework.
- Demonstrated ability to manage a high volume of reviews with fast turnaround. Additional Experience: CISSP, CCSP, or CGRC certification. Cloud security certification (e.g., AWS Security Specialty, Azure Security Engineer).
Matching similar jobs
JOB OVERVIEW
Experience level
Senior
Location
Baltimore, MD
Occupation
Information Security Engineers
Industry
Other Scientific and Technical Consulting Services
Posted
today
Tired of running searches?
Rank the roles you'd take once, and matches like these arrive on their own.
CREATE PROFILE