waypointjobs

LMI Consulting, LLC

IT Security Lead

tysons, VA

Check who can apply and the requirements below before continuing.

About this opportunity

LMI Consulting, LLC lists this IT Security Lead opportunity in tysons, Virginia. Review the employer’s description below for duties, qualifications and application requirements.

Job description

IT Security Lead

Job Locations

US-Remote

ID

# of Openings

1

Overview

LMI is seeking an experienced Security Lead to support a key client at the General Services Administration (GSA) in delivering a modern, web-based acquisitions system. This initiative modernizes Governmentwide Indefinite Delivery Vehicle (IDV) contracting through modular, API-driven services deployed in federal cloud environments.

The Security Lead will serve as the senior authority responsible for defining and enforcing the program's security and compliance approach in alignment with GSA requirements. This individual must possess a comprehensive understanding of the Authorization to Operate (ATO) process for cloud applications and collaborate closely with the client's Information Technology Security Officers (ITSOs) to ensure the development team adheres to approved security controls and compliance standards.

The ideal candidate combines deep federal security expertise, hands-on cloud security experience in AWS, and the ability to integrate DevSecOps practices into modern Agile software delivery.

This position is anticipated to be majority remote, but with the ability to travel and visit the client's offices in Washington, D.C. as frequently as needed.

LMI is a new breed of digital solutions provider dedicated to accelerating government impact with innovation and speed. Investing in technology and prototypes ahead of need, LMI brings commercial-grade platforms and mission-ready AI to federal agencies at commercial speed.

Leveraging our mission-ready technology and solutions, proven expertise in federal deployment, and strategic relationships, we enhance outcomes for the government, efficiently and effectively. With a focus on agility and collaboration, LMI serves the defense, space, healthcare, and energy sectors-helping agencies navigate complexity and outpace change. Headquartered in Tysons, Virginia, LMI is committed to delivering impactful results that strengthen missions and drive lasting value

Responsibilities

Security Strategy & Governance

Serve as the primary authority for system security architecture and compliance

Collaborate directly with GSA security personnel to define and implement security and compliance controls required for cloud-based applications

Ensure development teams adhere to approved security architecture and control implementations

Establish and maintain security documentation, policies, and procedures aligned with federal standards

Ensure compliance with FISMA and agency-specific security policies governing federal information systems.

ATO & Federal Compliance

Lead the system through the full Authorization to Operate (ATO) lifecycle for applications

Develop and maintain System Security Plans (SSPs), security control documentation, and supporting artifacts

Manage Plans of Action and Milestones (POA&Ms) and track remediation activities

Support security control assessments and coordinate responses to findings

Align controls with guidance from the National Institute of Standards and Technology (NIST), FedRAMP requirements, and Trusted Internet Connections (TIC)/cloud security guidance

DevSecOps & CI/CD Integration

Embed automated security controls into CI/CD pipelines to enable secure, continuous delivery

Ensure static and dynamic code analysis, dependency scanning, container security, and infrastructure-as-code validation are integrated into build and deployment processes

Promote secure coding practices and continuous monitoring across development teams

Cloud Security (AWS)

Lead security architecture for applications and infrastructure deployed within AWS cloud environments

Configure and manage native AWS security services (e.g., IAM, Security Hub, GuardDuty)

Enforce least privilege access controls and secure identity and access management practices

Monitor cloud environments for threats, misconfigurations, and vulnerabilities

Risk Management & Audit Readiness

Conduct security risk assessments and oversee vulnerability scanning and penetration testing activities

Manage security incident response coordination and reporting

Maintain continuous monitoring practices and ensure audit readiness for all system components

Support ongoing authorization and continuous ATO practices through automated control monitoring and real-time risk visibility.

Track, report, and mitigate identified risks throughout the system lifecycle

Team & Stakeholder Collaboration

Mentor development teams on security requirements and secure coding standards

Partner closely with team's leadership to align security with system architecture and delivery timelines

Communicate security risks, compliance status, and remediation strategies clearly to both technical and non-technical stakeholders

Qualifications

Required Qualifications

Demonstrated experience serving as a Security Lead (or equivalent role) on federal IT programs

Extensive hands-on experience implementing federal security architectures aligned with NIST guidance, FedRAMP, and TIC/cloud security requirements

Proven track record leading systems through the full ATO lifecycle, including SSP development and POA&M management

Deep understanding of integrating security controls into CI/CD pipelines consistent with DevSecOps principles

Expert-level knowledge securing applications and infrastructure in AWS cloud environments

Experience conducting risk assessments, vulnerability management, and maintaining audit readiness

Strong written and verbal communication skills

Desired Qualifications

Experience supporting GSA or other federal cloud modernization initiatives

Relevant certifications (e.g., CISSP, CCSP, AWS Security Specialty, Security+)

Experience supporting systems at moderate or high impact levels under federal security frameworks

Familiarity with continuous monitoring tools and automated compliance validation solutions

The target salary range for this position is $134,367-$232,404.

The salary range displayed represents the typical salary range for this position and is not a guarantee of compensation. Individual salaries are determined by various factors including, but not limited to location, internal equity, business considerations, client contract requirements, and candidate qualifications, such as education, experience, skills, and security clearances.

Applicants must meet eligibility requirements for a U.S. Government security clearance. Only US Citizens are eligible for a security clearance. For this position, LMI will only consider applicants with security clearances or applicants who are eligible for security clearances, due to the nature of the work.

Job Locations

US-Remote

LMI is an Equal Opportunity Employer. LMI is committed to the fair treatment of all and to our policy of providing applicants and employees with equal employment opportunities. LMI recruits, hires, trains, and promotes people without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, pregnancy, disability, age, protected veteran status, citizenship status, genetic information, or any other characteristic protected by applicable federal, state, or local law. If you are a person with a disability needing assistance with the application process, please contact

Colorado Residents: In any materials you submit, you may redact or remove age-identifying information such as age, date of birth, or dates of school attendance or graduation. You will not be penalized for redacting or removing this information.

Need help finding the right job?

We can recommend jobs specifically for you!

Click here to get started.

Who can apply

Review the original listing for work authorization, qualifications and employer requirements.

Ready for your next step?Apply on the official website
Apply on WhatJobs ↗

Explore related searches

Current related jobs

SBIOSD

WhatJobs

Neurosurgeon – Endovascular Trained

san diego, CA

compensation: $600,000 - $750,000

Opportunity Overview A busy, established neurosurgical private practice in San Diego, California is seeking a fellowship-trained, endovascular …

Listing review due 2026-10-07View job

CompHealth

WhatJobs

A Locums Dermatologist Is Wanted in Maryland

annapolis, MD

From $225.00 to $300.00 Hourly

When it comes to finding the perfect locums assignment, sometimes it is all about who you know. CompHealth has been around for a long time and ha…

Listing review due 2026-10-07View job

Watson Clinic

WhatJobs

Urologist Opportunity

lakeland, FL

Salary not specified

OWN YOUR PRACTICE- without the start-up costs! Thriving PHYSICIAN OWNED AND OPERATED multi-specialty group is seeking a Urologist to join busy pr…

Listing review due 2026-10-07View job

Allegheny Health Network

WhatJobs

Reproductive Endocrine and Infertility

pittsburgh, PA

Salary not specified

Allegheny Health Network's Department of OB/Gyn is recruiting a fellowship trained REI/IVF physician to join our team in Pittsburgh PA! Job Du…

Listing review due 2026-10-07View job