Summary
cFocus Software seeks a Cryptologist to join our program supporting the United States Air Force (USAF). This position is on-site in Linthicum Heights, MD. This position requires an Active TS/SCI clearance.
Qualifications:
- Active TS/SCI clearance
- B.S. Computer Science, Information Technology, or a related field
- Experience applying cryptographic principles to enterprise information protection and secure systems.
- Knowledge of symmetric and asymmetric cryptography, hashing, digital signatures, and authentication.
- Experience assessing cryptographic implementations, key management practices, and certificate trust.
- Ability to evaluate technical risks, interoperability, configuration weaknesses, and lifecycle dependencies.
- Ability to conduct authorized technical evaluations and produce reproducible assessment evidence.
- Understanding of secure cloud and hybrid integration, authorization boundaries, and configuration control.
- Working knowledge of RMF, security control assessment, and documentation supporting ATO processes.
- Strong analytical, technical writing, briefing, and multidisciplinary collaboration skills
Duties:
- Analyze mission and system requirements to identify cryptographic protection needs for approved data, applications, communications, and infrastructure.
- Assess cryptographic implementations and configurations for alignment with Government-approved security architecture, policies, and applicable control requirements.
- Evaluate use of encryption, hashing, digital signatures, and authentication mechanisms; document assumptions, limitations, and implementation risks.
- Support reviews of key management practices, including generation, storage, distribution, rotation, revocation, and recovery within approved processes.
- Assess certificate and trust relationships supporting secure communications and system integration; coordinate corrective recommendations with responsible administrators.
- Support secure integration across on-premises, cloud, and hybrid systems, observing approved authorization boundaries and cross-domain requirements.
- Evaluate cryptographic dependencies in proposed designs and modernization efforts; advise on interoperability, lifecycle support, and migration impacts.
- Coordinate with mission partners and engineering teams on protection requirements supporting approved Automated Data Obfuscation capabilities.
- Conduct authorized technical evaluations of cryptographic controls and workflows; document methods, findings, and recommended remediation.
- Support vulnerability analysis, secure configuration reviews, and verification of approved patches or changes affecting cryptographic capabilities.
- Provide technical evidence and documentation to ISSO/ISSM teams for Risk Management Framework (RMF), Authority to Operate (ATO), and continuous ATO activities.
- Research emerging cryptographic technologies and cybersecurity best practices; assess benefits, risks, compatibility, and implementation prerequisites.
- Support incident investigation involving cryptographic services or suspected key or certificate compromise under Government-approved response procedures.
- Coordinate approved cryptographic security checks and configuration controls within DevSecOps pipelines and centralized change management processes.
- Prepare technical assessments, procedures, and decision briefs; communicate findings and recommendations to Government stakeholders and technical teams.
Job Description
cFocus Software seeks a Cryptologist to join our program supporting the United States Air Force (USAF). This position is on-site in Linthicum Heights, MD. This position requires an Active TS/SCI clearance.
Qualifications:
- Active TS/SCI clearance
- B.S. Computer Science, Information Technology, or a related field
- Experience applying cryptographic principles to enterprise information protection and secure systems.
- Knowledge of symmetric and asymmetric cryptography, hashing, digital signatures, and authentication.
- Experience assessing cryptographic implementations, key management practices, and certificate trust.
- Ability to evaluate technical risks, interoperability, configuration weaknesses, and lifecycle dependencies.
- Ability to conduct authorized technical evaluations and produce reproducible assessment evidence.
- Understanding of secure cloud and hybrid integration, authorization boundaries, and configuration control.
- Working knowledge of RMF, security control assessment, and documentation supporting ATO processes.
- Strong analytical, technical writing, briefing, and multidisciplinary collaboration skills
Duties:
- Analyze mission and system requirements to identify cryptographic protection needs for approved data, applications, communications, and infrastructure.
- Assess cryptographic implementations and configurations for alignment with Government-approved security architecture, policies, and applicable control requirements.
- Evaluate use of encryption, hashing, digital signatures, and authentication mechanisms; document assumptions, limitations, and implementation risks.
- Support reviews of key management practices, including generation, storage, distribution, rotation, revocation, and recovery within approved processes.
- Assess certificate and trust relationships supporting secure communications and system integration; coordinate corrective recommendations with responsible administrators.
- Support secure integration across on-premises, cloud, and hybrid systems, observing approved authorization boundaries and cross-domain requirements.
- Evaluate cryptographic dependencies in proposed designs and modernization efforts; advise on interoperability, lifecycle support, and migration impacts.
- Coordinate with mission partners and engineering teams on protection requirements supporting approved Automated Data Obfuscation capabilities.
- Conduct authorized technical evaluations of cryptographic controls and workflows; document methods, findings, and recommended remediation.
- Support vulnerability analysis, secure configuration reviews, and verification of approved patches or changes affecting cryptographic capabilities.
- Provide technical evidence and documentation to ISSO/ISSM teams for Risk Management Framework (RMF), Authority to Operate (ATO), and continuous ATO activities.
- Research emerging cryptographic technologies and cybersecurity best practices; assess benefits, risks, compatibility, and implementation prerequisites.
- Support incident investigation involving cryptographic services or suspected key or certificate compromise under Government-approved response procedures.
- Coordinate approved cryptographic security checks and configuration controls within DevSecOps pipelines and centralized change management processes.
- Prepare technical assessments, procedures, and decision briefs; communicate findings and recommendations to Government stakeholders and technical teams.
Government Careers
Government jobs offer stability, competitive benefits, and the chance to make a meaningful impact on your community and country.
Whether you’re starting your career or seeking new opportunities, these roles provide pathways for growth, security, and service.
Explore positions across a wide range of fields and take the first step toward a rewarding future in public service.
MORE JOBS
-
$220,000 - $225,000 Annually
County Administrator
- Orange, Virginia
- Orange County
- Sep 24, 2026
-
$190,000 - $225,000 Annually
County Administrator
- Front Royal, Virginia
- Warren County
- Sep 21, 2026
-
$200,000 - $250,000 Annually
Chief Administrative Officer
- Riverdale Park, Maryland
- Maryland-National Capital Park and Planning Commission
- Sep 30, 2026
-
35F Intelligence Analyst - Entry Level
- Waldorf, Maryland
- U.S. Army Reserves
- Oct 10, 2026
-
35F Intelligence Analyst - Hiring Immediately
- Vienna, Virginia
- U.S. Army Reserves
- Oct 10, 2026
-
Program Specialist
- Washington, DC
- Oct 10, 2026