Hiring.Camp

IT Security Lead

Lmi

·

Mar 4, 2026

Salary
$134k – $232k
Location
Remote, US
Workplace
Remote
Department
Security
Seniority
Lead
Clearance
Required
Closing date
Today
Source
iCIMS

Description

Overview

LMI is seeking an experienced Security Lead to support a key client at the General Services Administration (GSA) in delivering a modern, web-based acquisitions system. This initiative modernizes Governmentwide Indefinite Delivery Vehicle (IDV) contracting through modular, API-driven services deployed in federal cloud environments. 

The Security Lead will serve as the senior authority responsible for defining and enforcing the program’s security and compliance approach in alignment with GSA requirements. This individual must possess a comprehensive understanding of the Authorization to Operate (ATO) process for cloud applications and collaborate closely with the client’s Information Technology Security Officers (ITSOs) to ensure the development team adheres to approved security controls and compliance standards. 

The ideal candidate combines deep federal security expertise, hands-on cloud security experience in AWS, and the ability to integrate DevSecOps practices into modern Agile software delivery. 

This position is anticipated to be majority remote, but with the ability to travel and visit the client’s offices in Washington, D.C. as frequently as needed. 

LMI is a new breed of digital solutions provider dedicated to accelerating government impact with innovation and speed. Investing in technology and prototypes ahead of need, LMI brings commercial-grade platforms and mission-ready AI to federal agencies at commercial speed.

Leveraging our mission-ready technology and solutions, proven expertise in federal deployment, and strategic relationships, we enhance outcomes for the government, efficiently and effectively. With a focus on agility and collaboration, LMI serves the defense, space, healthcare, and energy sectors—helping agencies navigate complexity and outpace change. Headquartered in Tysons, Virginia, LMI is committed to delivering impactful results that strengthen missions and drive lasting value

Responsibilities

Security Strategy & Governance 

  • Serve as the primary authority for system security architecture and compliance 
  • Collaborate directly with GSA security personnel to define and implement security and compliance controls required for cloud-based applications 
  • Ensure development teams adhere to approved security architecture and control implementations 
  • Establish and maintain security documentation, policies, and procedures aligned with federal standards 
  • Ensure compliance with FISMA and agency-specific security policies governing federal information systems. 

ATO & Federal Compliance 

  • Lead the system through the full Authorization to Operate (ATO) lifecycle for applications 
  • Develop and maintain System Security Plans (SSPs), security control documentation, and supporting artifacts 
  • Manage Plans of Action and Milestones (POA&Ms) and track remediation activities 
  • Support security control assessments and coordinate responses to findings 
  • Align controls with guidance from the National Institute of Standards and Technology (NIST), FedRAMP requirements, and Trusted Internet Connections (TIC)/cloud security guidance 

DevSecOps & CI/CD Integration 

  • Embed automated security controls into CI/CD pipelines to enable secure, continuous delivery 
  • Ensure static and dynamic code analysis, dependency scanning, container security, and infrastructure-as-code validation are integrated into build and deployment processes 
  • Promote secure coding practices and continuous monitoring across development teams 

Cloud Security (AWS) 

  • Lead security architecture for applications and infrastructure deployed within AWS cloud environments 
  • Configure and manage native AWS security services (e.g., IAM, Security Hub, GuardDuty) 
  • Enforce least privilege access controls and secure identity and access management practices 
  • Monitor cloud environments for threats, misconfigurations, and vulnerabilities 

Risk Management & Audit Readiness 

  • Conduct security risk assessments and oversee vulnerability scanning and penetration testing activities 
  • Manage security incident response coordination and reporting 
  • Maintain continuous monitoring practices and ensure audit readiness for all system components 
  • Support ongoing authorization and continuous ATO practices through automated control monitoring and real-time risk visibility. 
  • Track, report, and mitigate identified risks throughout the system lifecycle 

Team & Stakeholder Collaboration 

  • Mentor development teams on security requirements and secure coding standards 
  • Partner closely with team’s leadership to align security with system architecture and delivery timelines 
  • Communicate security risks, compliance status, and remediation strategies clearly to both technical and non-technical stakeholders 

Qualifications

Required Qualifications 

  • Demonstrated experience serving as a Security Lead (or equivalent role) on federal IT programs 
  • Extensive hands-on experience implementing federal security architectures aligned with NIST guidance, FedRAMP, and TIC/cloud security requirements 
  • Proven track record leading systems through the full ATO lifecycle, including SSP development and POA&M management 
  • Deep understanding of integrating security controls into CI/CD pipelines consistent with DevSecOps principles 
  • Expert-level knowledge securing applications and infrastructure in AWS cloud environments 
  • Experience conducting risk assessments, vulnerability management, and maintaining audit readiness 
  • Strong written and verbal communication skills 

 

Desired Qualifications 

  • Experience supporting GSA or other federal cloud modernization initiatives 
  • Relevant certifications (e.g., CISSP, CCSP, AWS Security Specialty, Security+) 
  • Experience supporting systems at moderate or high impact levels under federal security frameworks 
  • Familiarity with continuous monitoring tools and automated compliance validation solutions 

 

The target salary range for this position is $134,367-$232,404.

 

The salary range displayed represents the typical salary range for this position and is not a guarantee of compensation. Individual salaries are determined by various factors including, but not limited to location, internal equity, business considerations, client contract requirements, and candidate qualifications, such as education, experience, skills, and security clearances.   

Applicants must meet eligibility requirements for a U.S. Government security clearance. Only US Citizens are eligible for a security clearance. For this position, LMI will only consider applicants with security clearances or applicants who are eligible for security clearances, due to the nature of the work.

Skills

AWSCI/CDPenetration TestingAgileRisk ManagementComplianceCISSP

Similar Jobs

30

IT & Security Lead

InvestorCOM

4 months ago

Lead IT Security Engineer (6AM to 3PM Shift)

Depository Trust Company · Manila, Philippines

1 week ago

TECHNICAL LEAD, IT SECURITY (INFOSEC) OPERATIONS - DLP & DSPM

Bdc · Montreal, Canada · Hybrid

1 week ago

Lead IT Security Engineer

Depository Trust Company · LONDON, United Kingdom, GB

3 weeks ago

Lead IT Security Engineer

Conmed · Largo, FL, United States of America +1 · Remote

2 months ago

Lead IT Security Specialist (gn)

workidentity · Hamburg, Hamburg +1 · Remote

2 months ago

Lead IT Security Architect

Oh · Toronto - 525 University (37.5), Canada +3

2 months ago

Infrastructure, IT & Security Lead-Ext

Atlas Systems · Bengaluru, Karnataka, India

3 months ago

Lead IT Security Endpoint Engineer

Depository Trust Company · TX, United States, US

3 months ago

Team Lead IT Security Consulting (m/w/d)

Bitaggregat · Deutschland · Hybrid

4 months ago

Team Lead IT Security Consulting (m/w/d)

Bitaggregat · Deutschland · Hybrid

4 months ago

Lead IT Systems & Security Engineer

Family Entertainment Group LLC · Itasca, IL · Remote, Hybrid

1 week ago

IT Security Engineering Lead

Littelfuse · Kaunas - Donelaicio, Lithuania · Hybrid

3 weeks ago

IT Operations & Security Lead

Phoenix Data Corporation · Indianapolis, IN

3 weeks ago

IT Cyber Security Lead (m/w/d)

SWARCO · Unterensingen, Baden-Württemberg, Germany · Hybrid

4 weeks ago

IT Security & Compliance Lead

Wordsmith · Edinburgh · Hybrid

1 month ago

Lead Engineer, IT Security (SIEM/Splunk)

Raymond James · FL - Saint Petersburg - 880 Carillon Pkwy Tower 2, United States of America · Remote, Hybrid

2 months ago

IT Security & GRC (Lead/Manager)

Cermati.com · Jakarta, Jakarta, Indonesia

1+ year ago

Sr. IT Security Manager/Lead (Contingent)

SNAP Inc · Suitland-Silver Hill, MD, United States

1+ year ago

IT Security Tester / Test Lead

Professional Kyndryl · INDLFCHE CHENNAI - DLF IT PARK, India · Remote

1 month ago

Lead Application Security Engineer, IT Security

Raymond James · FL - Saint Petersburg - 880 Carillon Pkwy Tower 2, United States of America · Hybrid

1 month ago

Lead IT-Berater Microsoft Security & Identity (m/w/d)

FINK GROUP · Würzburg, Bayern · Hybrid

1 month ago

Lead GRC Analyst (IT/Security)

Default Brand · Manor, TX

2 months ago

IT Network Security Team Lead

Gdit · USA MD Bethesda - 9000 Rockville Pike (MDC039), United States of America · Onsite

2 months ago

IT Network Security Team Lead

GDIT · USA MD Bethesda - 9000 Rockville Pike (MDC039), United States of America · Onsite

2 months ago

Lead Vulnerability Research Engineer, IT Security

Raymond James · FL - Saint Petersburg - 880 Carillon Pkwy Tower 2, United States of America · Hybrid

1 month ago

Lead Security Engineer, Internal and IT

Artemis · New York City · Onsite

1 month ago

IT Security Manager - IAM Architect / Lead

Wk · IND - Chennai, Neville Towers, India · Hybrid

1 month ago

Team Lead (all genders) IT-Infrastruktur - IT Security-Lösungen mit VS-NfD Einsatzzulassung

DATAGROUP Köln GmbH · Deutschland · Remote

4 months ago

Team Lead (all genders) IT-Infrastruktur - IT Security-Lösungen mit VS-NfD Einsatzzulassung

DATAGROUP Köln GmbH · Deutschland · Remote

4 months ago