Full Time

Zero Trust Security Engineer - Mid - DecisionPoint - Doylestown, PA

DecisionPoint

Doylestown, PA
Posted 15 days ago

## About the Role

Decision. Point Corporation is seeking a Zero Trust Security Engineer – Mid to support operational continuity and cybersecurity resilience through ongoing Risk Management Framework (RMF) and Zero Trust Engineering functions. This position plays a key part in the Government Publishing Office's (GPO) Continuity of Operations (COOP) readiness by ensuring secure, high-availability operations at alternate work sites. Working under the guidance of the ZTA SME, you'll contribute to RMF documentation and provide surge support for security operations during contingency scenarios.

The GPO Sec. Dev. Ops program provides advanced security, development, and operations support to safeguard federal information systems and infrastructure. This initiative integrates cybersecurity best practices with agile development and IT operations to ensure continuous security, compliance, and resilience across GPO's enterprise IT services. The mission is to protect and enable GPO's digital transformation by delivering secure, scalable, and reliable IT services in alignment with federal cybersecurity mandates and operational excellence standards.

## What You'll Do

Your core responsibilities will center around ensuring continuity of cybersecurity operations at designated alternate GPO sites during COOP activations, tests, or real-world contingencies. You'll support the deployment and validation of endpoint protection, log collection, and incident response capabilities at alternate sites, maintaining up-to-date knowledge of COOP plans, playbooks, and contact protocols for security operations staff.

You'll assist in the creation and maintenance of RMF artifacts including System Security Plans (SSPs), Security Assessment Reports (SARs), and POA&Ms. This includes providing operational security documentation, asset inventories, and security control implementation summaries. You'll support RMF review cycles, compliance audits, and incident post-mortem documentation as part of ong