This position is full time, on site in Kings Point, NY
Accelera Solutions is seeking a Security Engineer - Lead. The candidate will lead, design, implement, and maintain cybersecurity governance, compliance, and operational security posture. Oversees Authority to Operate (ATO) packages, RMF documentation, SSP and POA&M development, Zero Trust Architecture adoption, account lifecycle controls, BYOD governance, and overall risk management activities. Conducts vulnerability scanning, reviews DOT/MARAD cybersecurity alerts, performs incident response actions, and monitors enterprise security events. Coordinates patching, evaluates software requests, and maintains secure configurations across systems. Leads cybersecurity briefings, Awareness Bulletins, Sea Year cyber presentations, and Indoc training. Participates in recurring cyber governance meetings including DOT Cyber Operations, CAM, weekly vulnerability reviews, Change Control Board, and daily coordination with IT leadership. Ensures alignment with NIST CSF, NIST 800-53, FISMA, DOT, and MARAD requirements while supporting mission readiness and operations.
Job Responsibilities:
• Ensure compliance with NIST Cyber Security and Risk Management Framework to achieve and maintain system accreditation, confidentiality, integrity, and availability.
• Provide strategic and tactical guidance on IT Security projects, including evaluating and recommending technical and administrative security controls.
• Direct, manage, and mature the IT Security Incident Response Program, including triage, escalation, documentation, and after-action tracking.
• Monitor and administer enterprise security policies, maintain SOPs and checklists, and drive continuous security monitoring and process improvement.
• Lead threat and vulnerability management activities including scanning, penetration testing coordination, risk scoring, and remediation oversight.
• Perform advanced threat landscape assessments, business impact analysis, and risk treatment recommendations.
• Oversee development of cybersecurity procedures including International Travel guidelines, BYOD governance, and secure communication policies.
• Lead recurring reviews of SSPs, POA&Ms, annual security plans, account audits, and risk acceptance packages.
• Serve as the primary cybersecurity liaison to DOT, MARAD, auditors, and federal oversight bodies.
• Support Zero Trust Architecture initiatives and security architecture enhancements.
• Lead quarterly and bi-annual Incident Response tabletop exercises and ensure lessons learned feed into process improvements.
• Coordinate and supervise the ITSEC team’s training, development, and cross-functional knowledge transfer.
• Maintain documentation, templates, policy updates, and monthly/annual reports (Security Awareness Bulletin, POA&M dashboards, CSAM reporting).