
1001 - 5000 employees
Founded 1975
🏛️ Government
🎖️ Defense
💼 Consulting
Government • Defense • Consulting
Koniag Government Services is an Alaska Native Corporation (ANC) that provides technical, professional, and operational expertise to the U. S. public sector. KGS supports Defense & Intelligence, Federal Civilian, and Health customers with enterprise solutions, professional services, and operations management, and emphasizes mission-focused outcomes, contracting speed (ANC direct awards), and strategic/technology partnerships. The company positions itself as a mission partner delivering people, technology, and program management to government customers.
🔥 1 hour ago
Improve your chances of getting an interview by checking your resume score before you apply.

1001 - 5000 employees
Founded 1975
🏛️ Government
🎖️ Defense
💼 Consulting
Government • Defense • Consulting
Koniag Government Services is an Alaska Native Corporation (ANC) that provides technical, professional, and operational expertise to the U. S. public sector. KGS supports Defense & Intelligence, Federal Civilian, and Health customers with enterprise solutions, professional services, and operations management, and emphasizes mission-focused outcomes, contracting speed (ANC direct awards), and strategic/technology partnerships. The company positions itself as a mission partner delivering people, technology, and program management to government customers.
• Serve as the primary security subject matter expert (SME) for the ICAM enablement program, providing authoritative guidance on applicable DoD and federal security requirements, policies, and frameworks across all program activities and deliverables. • Develop, implement, and maintain the program's security compliance framework, ensuring all enablement activities, platform configurations, custom tools, connectors, middleware solutions, and integration artifacts adhere to applicable security standards including DoDI 8520.04, DoDM 8140.03, DFARS 252.204-7012, NIST SP 800-171, and all other referenced DoD and federal directives. • Oversee and enforce Controlled Unclassified Information (CUI) handling requirements across the program, ensuring all personnel, processes, and systems comply with DoDI 5200.48, DoDM 5200.01, and applicable CUI marking, safeguarding, and dissemination requirements. • Manage Operations Security (OPSEC) requirements across the program, ensuring OPSEC principles are incorporated into all relevant program activities, documentation, and communications in accordance with applicable DoD directives, and ensuring all subcontractors handling Critical Information comply with flowed-down OPSEC requirements. • Lead supply chain risk management activities per DFARS 239.73, overseeing the vetting of all third-party connectors, scripts, code libraries, and enhancements integrated into the ICAM environment to prevent the introduction of cybersecurity vulnerabilities, malicious code, or unauthorized data exfiltration pathways. • Ensure all contractor personnel maintain required DoD cybersecurity certifications per DoDM 8140.03, tracking certification status across the program team and coordinating remediation for personnel with lapsed or insufficient certifications. • Develop, implement, and manage the program release management framework, establishing standardized processes, approval gates, documentation requirements, and rollback procedures for all releases into development, test, and production environments. • Serve as the release authority for all production deployments, coordinating release readiness reviews with the migration team lead, platform engineers, middleware engineers, and Government stakeholders to ensure all release criteria are met prior to deployment authorization. • Manage and oversee the configuration management process across the program, ensuring all platform configurations, custom tools, connectors, integration artifacts, and documentation are version-controlled, baselined, and maintained in accordance with the program's configuration management plan. • Lead deficiency reporting, analysis, tracking, and resolution activities across the program, ensuring all deficiencies are identified, documented, tracked, and resolved in accordance with applicable technical orders and reporting requirements, including preparation of SF368 reports or equivalent. • Coordinate with the Government COR and ICAM PMO on all security-related matters, including incident reporting, vulnerability disclosures, cybersecurity certification status, and security compliance findings. • Ensure all web-based applications, user interfaces, and digital materials enabled or developed under the contract comply with Section 508 of the Rehabilitation Act of 1973, coordinating accessibility reviews and remediation activities as needed. • Support the test program by integrating security testing requirements into the Master Test Plan and Software Test Plans, ensuring security-relevant test cases are included in all integration testing and UAT activities, and reviewing Software Test Reports for security compliance findings. • Oversee data rights compliance across the program, ensuring all custom tools, connectors, workflows, enhancements, and documentation developed under the contract are properly identified, marked, and delivered in accordance with DFARS 252.227-7013, 252.227-7014, and 252.227-7017. • Monitor and report on security and release management program metrics, contributing to the Enablement Tracking Database and Metrics Dashboard with relevant security compliance and release status data. • Develop and maintain security and release management documentation, including security compliance checklists, release readiness criteria, configuration management records, deficiency logs, and OPSEC plans. • Provide security awareness guidance and compliance coaching to program team members, ensuring all personnel understand and adhere to applicable security requirements throughout the enablement lifecycle. • Maintain current knowledge of evolving DoD security policies, cybersecurity frameworks, identity security standards, and Zero Trust requirements, proactively applying updated knowledge to strengthen program security posture and release controls.
• Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Information Systems, or a related field from an accredited college or university. • Minimum of 7 years of experience in information technology, with at least 3 years of direct experience in IT security compliance, cybersecurity program management, or a related security discipline within a federal government environment. • Minimum of 2 years of experience in release management, configuration management, or IT change management within a structured federal IT program environment. • Demonstrated experience applying DoD cybersecurity frameworks, policies, and directives including DFARS 252.204-7012, DoDM 8140.03, NIST SP 800-171, and CUI requirements in a program execution context. • Active Secret clearance. Must be able to satisfy requirements for CAC-card issuance and NIPRNet access, including annual DoD CyberAwareness training and certification. • Prior experience supporting DoD IT programs, particularly within an ICAM, cybersecurity, or Zero Trust context. • Experience working in a federal government IT contracting environment supporting programs with complex security compliance requirements. • Experience managing security and release processes for programs involving large-scale application integration or enterprise identity platform deployments. • Deep knowledge of applicable DoD and federal security requirements, policies, and frameworks, including DoDI 8520.04, DoDM 8140.03, DFARS 252.204-7012, DFARS 239.73, DoDI 5200.48, DoDM 5200.01, NIST SP 800-171, and related directives. • Strong working knowledge of Controlled Unclassified Information (CUI) requirements, including marking, safeguarding, dissemination controls, aggregation monitoring, and compliance with applicable DoD and federal CUI directives. • Experience developing and implementing OPSEC programs and ensuring OPSEC principles are embedded into program activities, documentation, and communications in accordance with applicable DoD directives. • Demonstrated experience managing release management processes in a federal IT program environment, including the development and enforcement of release readiness criteria, approval gates, change control procedures, and rollback plans. • Experience with configuration management processes and tools, including version control systems, baseline management, and change tracking in a structured federal IT program context. • Familiarity with Identity, Credential, and Access Management (ICAM) security concepts, including identity providers (IdP), identity governance and administration (IGA), Single Sign-On (SSO), Multi-Factor Authentication (MFA), and Zero Trust identity security principles. • Experience conducting or overseeing supply chain risk management activities, including the security vetting of third-party code libraries, connectors, and software components integrated into federal IT environments. • Experience with deficiency reporting processes, including preparation of SF368 reports or equivalent, deficiency tracking, and resolution coordination in a federal contracting environment. • Demonstrated ability to coordinate security compliance activities across cross-functional teams, including engineers, program managers, and Government stakeholders. • Strong organizational skills with the ability to manage multiple concurrent security and release management workstreams while maintaining accuracy, thoroughness, and timeliness of all compliance documentation. • Strong communication skills in English—both written and oral—with the ability to clearly convey security requirements, compliance findings, and release management processes to both technical engineers and non-technical program stakeholders. • Proficiency with Microsoft Office Suite and collaboration tools such as Microsoft Teams. • Active DoD cybersecurity certification at the IAT II level or above per DoDM 8140.03 (e.g., CompTIA Security+ or equivalent).
• health, dental and vision insurance • 401K with company matching • flexible spending accounts • paid holidays • three weeks paid time off • more
Apply Now🔥 1 hour ago
Senior Security Engineer ensuring AI SOC Analyst generates accurate, timely reports for cybersecurity transformation at Dropzone AI. Collaborating across teams for continuous investigation quality improvement
🇺🇸 United States – Remote
💵 $175k - $217k / year
⏰ Full Time
🟠 Senior
👮♂️ Cybersecurity / Security Engineer
🔥 1 hour ago
Senior Security and Compliance Lead at rater8, overseeing information security and compliance programs. Managing governance, risk, and compliance efforts in the healthcare industry while ensuring alignment with regulatory standards.
🇺🇸 United States – Remote
💵 $145k - $185k / year
💰 Series A on 2024-05
⏰ Full Time
🟠 Senior
👮♂️ Cybersecurity / Security Engineer
🔥 2 hours ago
Nuclear Physical Security Engineer supporting project initiatives at TerraPower in nuclear energy and medical isotopes. Collaborating on regulatory compliance and license requirements focused on nuclear security.
🇺🇸 United States – Remote
💵 $168.3k - $252.5k / year
⏰ Full Time
🟠 Senior
🔴 Lead
👮♂️ Cybersecurity / Security Engineer
🔥 3 hours ago
Product Security Engineer supporting security architecture and penetration testing at Doppel's AI-native platform. Collaborating with engineering teams to enhance cybersecurity and implement security best practices.
🇺🇸 United States – Remote
💵 $175k - $200k / year
⏰ Full Time
🟡 Mid-level
🟠 Senior
👮♂️ Cybersecurity / Security Engineer
🔥 3 hours ago
Forward Deployed AI Engineer deploying AI solutions for fraud prevention in financial institutions. Collaborating with clients to optimize their unique fraud operations and enhance technological transformation.