Haystack
← Back to Jobs
Remote
Administrative
WC

Senior Information Security Officer

Widescope Consulting and Contracting ServicesUnited States🇺🇸United StatesPosted 17 Aug 2026

Quick Overview

Work Type
Remote
Level
Mid Senior

Job Description

Job Title: Senior Information Technology Security Engineer
Location: Headquarters / Telecommute
Classification (HR only): Exempt Non-Exempt
Reports To (Title): COO Widescope Consulting and Contracting
Primary Purpose of Position
 

The Senior Information Technology Security Engineer is responsible for serving as a Subject Matter Expert (SME) for cybersecurity across Optum Serve. This role will work as part of the security team to implement new technology solutions and ensure alignment with Enterprise Information Security (EIS) standards. The selected candidate will work to standardize the security controls to safeguard networks and systems.  

Responsibilities include ensuring all information security needs are implemented promptly, requiring collaboration with the Infrastructure and Operations team, ESRO, and Optum Serve Information Security team. This role ensures alignment with ESRO standards and government frameworks, such as NIST 800-53, NIST 800-171, to obtain and maintain ATO and CMMC Level 2 certification. The candidate will manage security controls to safeguard Optum Serve’s networks and systems. 

Optum Serve helps federal agencies and communities across the nation tackle some of the biggest challenges in health care. We help our clients and the communities they serve prevent, prepare for, respond to, and recover from emergencies and long-term public health challenges. 

Essential Functions Include 

  • Serves as a Subject Matter Expert (SME) for security tool sets  

  • Work with Optum security teams to implement new software, policy configurations & settings  

  • Evaluate and recommend security controls and tooling for on-premises and cloud infrastructure  

  • Develop innovative approaches and solves complex problems  

  • Liaise with Business and IT Groups in the security analysis, design and planning phases of IT and business-related projects  

  • Create and maintain new and existing playbooks/runbooks, work with multifunctional team members to maintain high-quality work standards  

  • Evaluate vulnerabilities that exist and make recommendations for remediation  

  • Ensure day-to-day operational tasks are performed and security metrics are relevant and current  

  • Maintain expertise in the area of Information Security, including industry trends, strategies, vulnerabilities and threats to ensure the company’s assets are effectively and appropriately secured  

  • Participate in security incident response processes on a per-occurrence basis  

  • Availability off hours as needed to support incidents 

Job Qualifications 

Requirements: 

  • Experience leveraging AI tools in the software development (or product) lifecycle in order to improve quality and efficiency  

  • Five plus (5+) years of information security experience; including three (3) years of FISMA related experience. 

  • Three (3) years of experience with Assessment and Authorization (A&A) and Independent Verification & Validation (IV&V) 

  • Experience with federal cyber security standards (such as NIST 800-53, NIST 800-171)  

  • Experience with certification and accreditation process (DIACAP, NIST RMF)   

  • Possess at least one of the following certifications: CISSP, CISM, CISA, CCSP or other relevant security certifications  

  • Network/application/system vulnerability and threat management experience  

  •   

  • Ability to obtain favorable adjudication following submission of Department of Defense  

Preferences: 

  • Bachelor''s degree in Computer Science, Information Management, related field, OR 4+ years of information security experience  

  • Work experience supporting federal security programs (DoD, VA, DHS preferred)  

  • Prior military service  

  • Tanium security platform administration  

  • Tenable administration  

  • Experience with Symantec Endpoint Protection  

  • Experience with Azure Government  

  • Experience working in a large enterprise  

  • Experience working with Palo Alto Firewalls  

  • Experience with data loss prevention (DLP) and endpoint detection and response (EDR) systems  

  • Demonstrated written executive communication and presentation skills 

Similar jobs