--- title: 'Security Engineer Lead at TSTC' canonical: 'https://feeny.ai/job/security-engineer-lead-tstc-annapolis-junction-mm9022c4rg26' type: 'job' last_seen: '2026-09-14' --- # Security Engineer Lead at TSTC - **Company:** TSTC - **Location:** Annapolis Junction, MD - **Compensation:** $155k–$170k - **Employment:** full-time - **Work type:** hybrid - **Posted:** 2026-07-22 - **Last confirmed live:** 2026-09-14 - **Apply:** https://jobs.lever.co/totalsystech/6901418a-0d9f-4d7d-9ece-f72701208e4f ## Job description Who Are We? TSTC is an award-winning, Woman Owned, HUBZone certified Small Business providing services to federal intelligence, law enforcement, civilian and defense agencies. Built upon our Total Service - Total Commitment® cornerstone, TSTC takes pride in our commitment to delivering excellence. Total Service - Total Commitment® is our commitment to our employees, to our teams, and to our clients. What We're Looking For: TSTC is looking for a security engineer lead with depth of knowledge in the nuances of government security engineering requirements and policies. We need someone who is self-motivated, able to work in a geographically dispersed team of highly technical security personnel, and who loves problem solving. The ideal candidate combines hand’s on security engineering with the ability to translate that and help manage tasks for more junior level staff and is discussing complex topics with senior leadership. TSTC is looking for candidates for this Key Personnel position that meet or exceed the stated requirements;  are excited to join our team and willing to sign a binding letter of commitment; and can start 2 to 3 weeks after notification of contract award. Basic Qualifications/Preferred Qualifications: - Bachelor’s Degree and 15 years of related security engineering experience - Must have a CISSP or a CISM - Provide subject matter expertise to the security requirements allocation and security architecture processes - Provide expert technical guidance in translating National Institute for Standards and Technology (NIST), and government agency cybersecurity standards, policies, and procedures into actionable tasks including: - Reviewing and analyzing all evidence used to verify security vulnerabilities have been sufficiently addressed and/or system artifacts such as those used in the Assessment & Authorization (A&A) process, i.e. Security Plan (SP), Contingency Plan (CP), Contingency Plan Test (CPT), Incident Response Plan, and Configuration Management Plan (CMP), as some, but not all examples - Reviewing draft documents and providing feedback on allocation of security and privacy requirements (e.g. technical review board (TRB), review of security policies, risk assessments, contingency plans, Plan of Action & Milestone (POA&M) reports) - Determining the security impact of new technologies or policies (e.g., Continuous Diagnostics & Mitigation (CDM) technologies, anomaly-based tools, virtual environments, etc.) on the TSA information security program for TSA review and approval. The review of security impact should be documented through the completion of the Security Impact Analysis (SIA) process as documented by TSA’s Information Assurance and Cybersecurity Division (IAD) - Ensuring security requirements are identified, appropriately allocated, and addressed throughout the TSD/SFD mission systems’ architectures - Experience with Security scan tools and techniques. Examples include: - Tenable Security Center - Invicti 360 - Trustwave DbProtect - CyberArk Certificate Manager (formerly known as Venafi) - Portswigger Burp Suite Pro - Lead the preparation of responses to federal ad hoc reporting requirements - Lead written reviews or assessments in the form of short briefings, written documents, or presentations (expected average of 5-8 per month) as accomplishment reports of Ad hoc Security Engineering services provided (Deliverable #4) - Help develop alternatives of IT system designs and/or architectures which consider trade-offs between security requirements, functional/operational requirements and cost for TSA review and final approval - Help determine the impact of new or changing applicable NIST, DHS, and TSA cybersecurity standards and policy changes - Lead the impact assessments of new or revised legislation and regulations (examples are OMB Memos and Federal Information Security Modernization Act (FISMA)) for review. Lead and support standard operating procedure documentation and updates - Support weekly security team staff meetings - Review and ensure security compliance deliverables are accurate and correct - Skilled in MS office Suite - Works independently, proactively identifies, and completes task - Excellent verbal and written skills Security Clearance and Where You’ll Work - Candidate must be able to pass a comprehensive background investigation required to obtain a Government suitability determination - Work will be performed in Annapolis Junction, Maryland or Colorado Springs, Colorado - This is a hybrid role with 4 days of work on site each week - Travel 4-5 times per year for weeklong assignments ## Benefits at TSTC Competitive Salary & Bonuses – Includes personal and team merit bonuses, with salary matching for 401(k) up to 3%. Comprehensive Health Coverage – Multiple medical, dental, and vision plans, plus HSA and FSA options. 100% TSTC-paid life and disability insurance, including short- and long-term plans. Flexible Work Options – Remote work allowed, flexible schedules, and telework opportunities. (varies per position) Paid Time Off & Holidays – Generous PTO and paid holidays. Professional Development – Continuous performance evaluation process… Dedicated annual budget for educational opportunities. Comprehensive Wellness Programs - confidential employee assistance program (EAP). Wellness Resource Group and wellness programs throughout the year. All TSTC employees operate according to the terms of the specific contract under which they work. They are responsible for fulfilling the duties of the specific job and are accountable for complying with the terms and conditions of their employment, the TSTC Code of Conduct, and with applicable federal, state and local laws. As TSTC is an Equal Opportunity Employer, we follow current Federal Discrimination Laws and we do not discriminate against any employee or applicant for employment. TSTC does not discriminate against any employee or applicant for employment due to race, color, national origin, citizenship, religion, creed, age, sex, disability, veteran status and liability for service in the U.S. Armed Forces or any other characteristic protected by applicable law. If you need assistance or an accommodation due to a disability, please email us at HR@totalsystech.com or call us at (276) 496-4458. ## About TSTC ## Company Overview - **One-liner**: Total Systems Technologies Corporation (TSTC) is a woman-owned, HUBZone-certified government contractor delivering professional services in cybersecurity, data analytics, intelligence, and program management to federal agencies. - **Entity Type**: Private – Bootstrapped (no external funding disclosed) - **Headquarters**: Arlington, Virginia, United States - **Founded**: 2002 - **Founders**: Christine Podracky (President & CEO), Mark Podracky (COO / CRO) ## Core Business - **Primary industry**: Federal government contracting – cybersecurity, risk management, data analytics, intelligence, program management, financial management, digital transformation - **Target customers**: U.S. Federal agencies (DHS, others) – B2G / Government - **Mission or purpose**: “Total Service – Total Commitment®” – a focus on customer value, quality, professionalism, continual improvement, and community investment. ## Products & Services TSTC offers professional services in the following areas: - **Cybersecurity & Risk Management**: Security assessments, compliance, and risk mitigation. - **Data Analytics and Visualization**: Turning data into actionable insights for decision-makers. - **Intelligence & Analysis**: Analytical support for national security and intelligence missions. - **Program & Acquisition Management**: Oversight and execution of complex government programs. - **Digital Transformation & Cloud Modernization**: Migrating legacy systems to modern cloud architectures. - **Financial Management & Internal Control**: Budgeting, accounting, and internal control services. All offerings are delivered as professional services (services-based, not proprietary software/hardware). ## Market Standing - **Valuation**: Not publicly available - **Key Metric**: Annual revenue described as “multi-million dollar business” (exact figure not publicly available) - **Notable Investors/Partners**: Not applicable (bootstrapped). Key certifications include SBA HUBZone, WOSB, ISO 9001, 14001, 20000‑1, 27001 (including cloud/privacy extensions), and CMMI‑SVC/DEV Maturity Level 3. - **Growth Signals**: Prime contractor to DHS since 2003; holds GSA MAS and OASIS+ contract vehicles; awarded “Platinum Award Winning Veteran’s Training Program”; Virginia Values Veterans certified. ## Competitive Advantages - **HUBZone & WOSB certifications** allow sole‑source contracts with federal agencies. - **Multiple ISO certifications** (quality, security, service management, privacy, environment) and **CMMI Level 3** (both services and development) demonstrate rigorous process maturity. - **Decades‑long institutional knowledge** of federal governance, policies, and working groups. - **Strong employee focus** and community involvement create high retention and expertise. ## Strategic Focus - Continual improvement of service quality and processes. - Deepening relationships with existing federal clients while leveraging HUBZone and WOSB status to win new contracts. - Expanding digital transformation and cloud modernization offerings. - Investing in employee development to maintain a highly skilled, cleared workforce. ## Why Work Here - **Culture**: Collaborative, supportive, and mission‑driven, with a focus on “Total Service – Total Commitment” extending to employees and communities. - **Work arrangements**: Hybrid, on‑site, and remote positions available (varies by contract/location). Locations include Washington, DC, Arlington/Reston/Springfield/Ashburn VA, Annapolis Junction MD, Colorado Springs CO. - **Benefits**: Competitive salaries, 401k with 3% match, annual and spot bonuses, flexible work arrangements, PTO plus holiday/wellness/birthday leave, medical/dental/vision, wellness programs, employee assistance program, training and development, performance reviews, tuition reimbursement. - **Veteran support**: Virginia Values Veterans certified, award‑winning veteran training program, veteran employee resource group, and proactive veteran/military spouse recruiting. - **Growth**: Clear advancement paths with training and upward mobility. ## Sources 1. [jobs.lever.co/totalsystech](https://jobs.lever.co/totalsystech) – Career listings (hybrid/on-site/remote details) 2. [totalsystech.com/who-we-are](https://totalsystech.com/who-we-are) – Company history, leadership, mission, certifications 3. [totalsystech.com/join-our-team](https://totalsystech.com/join-our-team) – Benefits, work environment, veteran programs 4. [totalsystech.com/learn-about-us](https://totalsystech.com/learn-about-us) – Service areas, certifications, company overview 5. [www.totalsystech.com/home](https://www.totalsystech.com/home) – Homepage summary ## Other roles at TSTC - [Systems Enginer](https://feeny.ai/job/systems-enginer-tstc-washington-xmx4yqg1n7gp) — Washington, DC - [Information Security Systems Officer](https://feeny.ai/job/information-security-systems-officer-tstc-ashburn-v632c1at07k3) — Ashburn, VA - [Strategic Functional Consultant](https://feeny.ai/job/strategic-functional-consultant-tstc-washington-fb1na4132ezw) — Washington, DC - [Senior Management Consultant](https://feeny.ai/job/senior-management-consultant-tstc-washington-xh5f4shbpdya) — Washington, DC - [Project Lead](https://feeny.ai/job/project-lead-tstc-annapolis-junction-nawjtsa1fs24) — Annapolis Junction, MD - [Security Compliance Lead](https://feeny.ai/job/security-compliance-lead-tstc-annapolis-junction-9kgdaa4xn5rz) — Annapolis Junction, MD - [Functional Expert](https://feeny.ai/job/functional-expert-tstc-washington-gd1940563xjv) — Washington, DC - [Part-Time IT Support Assistant](https://feeny.ai/job/part-time-it-support-assistant-tstc-arlington-s64grmyp3a3c) — Arlington, VA - [Junior Data Analyst](https://feeny.ai/job/junior-data-analyst-tstc-arlington-xj8t1wmkt3ws) — Arlington, VA - [Part Time CMMI Audit Support](https://feeny.ai/job/part-time-cmmi-audit-support-tstc-remote-fwpx785n9g43)