Secure Configuration Management (SCM) Subject-Matter Expert/Technical Lead jobs in United States
cer-icon
Apply on Employer Site
company-logo

KellyMitchell Group · 4 hours ago

Secure Configuration Management (SCM) Subject-Matter Expert/Technical Lead

KellyMitchell Group is seeking a Secure Configuration Management (SCM) Subject-Matter Expert / Technical Lead to join their team. This role involves developing and maintaining secure configuration baselines for various operating systems and applications, while also providing guidance and leadership on secure configuration implementation across the organization.

Human ResourcesInformation TechnologyStaffing Agency
check
H1B Sponsor Likelynote

Responsibilities

Develop, implement, and maintain agency-specific secure configuration baselines for operating systems: Windows, Linux, macOS, enterprise services, applications, and platforms including Microsoft 365 and cloud environments: AWS, GCP, Azure
Assess and interpret federal regulations, compulsory directives, and agency policies to create secure configuration standards
Create and manage technical control sets, such as baseline compliance scanning policies, and track deviations from established baselines
Configure and manage Group Policy Objects (GPOs), Mobile Device Management (MDM) tools, and automation solutions to enforce security standards
Utilize enterprise scanning tools to validate compliance and identify remediation opportunities
Serve as technical lead, providing guidance to stakeholders on secure configuration implementation and ensuring enterprise-wide consistency
Lead collaboration forums and working groups across broad stakeholder groups, including cybersecurity and IT operations communities
Produce high-quality technical documentation, including SOPs, risk assessments, business justifications, executive summaries, and program guidance
Ensure alignment of configuration baselines with mission and business requirements
Mentor and advise technical teams on secure configuration best practices and compliance standards

Qualification

Secure Configuration ManagementCIS BenchmarksNIST SP 800-53GPO ManagementMDM ToolsConfiguration AutomationEnterprise Scanning ToolsAnalytical SkillsTechnical WritingProblem-SolvingCommunication Skills

Required

Develop, implement, and maintain agency-specific secure configuration baselines for operating systems: Windows, Linux, macOS, enterprise services, applications, and platforms including Microsoft 365 and cloud environments: AWS, GCP, Azure
Assess and interpret federal regulations, compulsory directives, and agency policies to create secure configuration standards
Create and manage technical control sets, such as baseline compliance scanning policies, and track deviations from established baselines
Configure and manage Group Policy Objects (GPOs), Mobile Device Management (MDM) tools, and automation solutions to enforce security standards
Utilize enterprise scanning tools to validate compliance and identify remediation opportunities
Serve as technical lead, providing guidance to stakeholders on secure configuration implementation and ensuring enterprise-wide consistency
Lead collaboration forums and working groups across broad stakeholder groups, including cybersecurity and IT operations communities
Produce high-quality technical documentation, including SOPs, risk assessments, business justifications, executive summaries, and program guidance
Ensure alignment of configuration baselines with mission and business requirements
Mentor and advise technical teams on secure configuration best practices and compliance standards
Demonstrated advanced knowledge of enterprise configuration standards and compliance frameworks, including CIS Benchmarks, NIST SP 800-53 rev 5, NIST Baseline Checklist Repository, and CISA BOD 25-01 SCuBA Secure Configuration Baselines
Hands-on experience developing and implementing secure baselines for multiple operating systems and enterprise applications
Proficiency in GPO management, MDM tools, configuration automation, and baseline deviation tracking
Experience with enterprise scanning tools for compliance validation: Tenable.SC, Nessus, SCAP
Strong technical writing skills for business justifications, risk assessments, SOPs, workflows, and executive briefings
Demonstrated ability to lead collaborative forums and working groups across broad stakeholder communities
Proven experience guiding stakeholders in secure configuration implementation and ensuring enterprise-wide consistency
Strong problem-solving and analytical skills for assessing configuration gaps and recommending effective remediation
Excellent verbal and written communication skills, with the ability to convey complex security concepts to technical and executive audiences

Benefits

Medical, Dental, & Vision Insurance Plans
Employee-Owned Profit Sharing (ESOP)
401K offered

Company

KellyMitchell Group

company-logo
KellyMitchell is a HR firm for IT and technical staffing for organizations globally.

H1B Sponsorship

KellyMitchell Group has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (2)
2021 (2)
2020 (2)

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Cassandra Sanford
CEO and Owner
linkedin
leader-logo
Gina Chisholm
Vice President - Business Operations
linkedin
Company data provided by crunchbase