Cyber Resilience for
Complex Ecosystems

Menu Close
  1. Home
  2. »
  3. Contact Us

Current Openings

Purpose-Driven Careers

For the cyber elite

ShorePoint team members are handpicked for their expertise and for their ability to collaborate, communicate and adapt when our Federal customers face complex and evolving challenges, obstacles and threats.

#JoinTeamShorePoint! Explore our current openings and apply to begin your journey with us.

Open Positions

Elasticsearch Architect (Top Secret Clearance)

Who we are:

ShorePoint is a fast-growing, industry recognized and award-winning cybersecurity services firm with a focus on high-profile, high-threat, private and public-sector customers who demand experience and proven security models to protect their data. ShorePoint subscribes to a “work hard, play hard” mentality and celebrates individual and company successes. We are passionate about our mission and going above and beyond to deliver for our customers. We are equally passionate about an environment that supports creativity, accountability, diversity, inclusion and a focus on giving back to our community.  

The Perks:

As recognized members of the Cyber Elite, we work together in partnership to defend our nation’s critical infrastructure while building meaningful and exciting career development opportunities in a culture tailored to the individuals technical and professional growth. We are committed to the belief that our team members do their best work when they are happy and well cared for. In support of this philosophy, we offer a comprehensive benefits package, including major carriers for health care providers. Highlighted benefits offered: 144 hours of PTO, 11 holidays, 85% of insurance premium covered, 401k, continued education, certifications maintenance and reimbursement and more.

Who we’re looking for:

We are looking for a Elasticsearch (Elastic/ELK/ECE) Architect to join our dynamic, fast-paced team within the public sector. The ideal candidate will not only bring technical expertise but also a passion for learning and growth. The Elasticsearch (Elastic/ELK/ECE) Architect will have exposure to all facets of Systems Engineering and be encouraged to continuously expand your skill set as the company evolves. This is a unique opportunity to play a key role in a fast-growing company at the forefront of the cybersecurity market.

What you’ll be doing:

  • Assess current Elasticsearch deployment and architecture, including validation of ingestion patterns, index lifecycle management (ILM) and data retention configurations.
  • Ingest and normalize at least five data sources using the Elastic Common Schema (ECS) format.
  • Verify ILM policies and retention requirements and perform upgrades of the existing Elastic Stack as needed.
  • Provide enablement for dashboards and SIEM capabilities following ingestion, validation and upgrade activities.
  • Design and implement containerized Elastic deployments to support multiple Docker containers per server, including deployment of Elastic Agent and Defender.
  • Collaborate with the Integration and Architecture teams to design, document, build, secure and maintain Elasticsearch, Logstash, Kibana (and X-Pack) enterprise solutions in both cloud and on-premises environments.
  • Work closely with architects, engineers and integrators to assess customer requirements and design Elasticsearch Stack solutions that meet data compliance and performance needs.
  • Follow the development lifecycle processes to transition solutions from Dev to Test to Production environments.
  • Participate in Agile sprint meetings, share progress and ensure that the development aligns with project and customer requirements.
  • Serve as a subject matter expert and trusted advisor, providing guidance and best practice recommendations for Elasticsearch deployments.
  • Configure and maintain Linux-based operating systems (including updates and version upgrades) to support the Elasticsearch platform.
  • Install, configure and manage Elastic Cloud Enterprise (ECE) solutions, ensuring seamless communication and integration among Elasticsearch components and data sources.
  • Create detailed installation and configuration documentation to support deployment.
  • Secure the solution by implementing TLS, certificates, SSO/PIV authentication and encryption technologies.
  • Collaborate with the data lifecycle management team to ensure optimal data flow and integrity.
  • Troubleshoot and monitor data flows and the overall health of the Elasticsearch solution to maximize performance and minimize downtime.
  • Build and maintain effective working relationships across departments and teams to coordinate work and deliver results on schedule.
  • Recommend and implement enhancements to optimize business intelligence processes.

What you need to know:

  • Experience in software development using Java with an IDE (e.g., Eclipse, CodeReady).
  • Proficiency in parsing file formats (e.g., JSON, XML, CSV).
  • Knowledge of SQL Server database design, programming, tuning and writing SQL queries/procedures.
  • Experience in developing/automating test procedures.
  • Familiarity with REST API web services client development.
  • Experience with release management, build tools (e.g., Maven, Jenkins) and configuration tools (e.g., SVN).
  • Understanding of secure coding practices, including encryption (e.g., certificates, TLS connections).

Must have’s:

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, Mathematics, Engineering or a related field or relevant experience in lieu of degree.
  • 2+ years of relevant experience.
  • Proven ability to analyze complex requirements and translate them into clear, actionable tasks and processes through critical thinking.
  • Applicants must hold and maintain an active Top Secret clearance.

Beneficial to have:

  • Experience with SAML authentication and familiarity with domain structures, user authentication and PKI.
  • Experience with Messaging Queues (e.g., RabbitMQ).
  • Knowledge of Microsoft SQL.
  • Experience with programming and regular expressions (XML, Java, JSON, Python, PowerShell, Painless, Grok).
  • Relevant security certifications such as CISSP, CISM, CISA, Security+ or CEH.
  • Understanding of the relationship between critical infrastructure protection and cybersecurity.
  • Knowledge and experience with Assessment & Authorization (A&A) processes in federal environments, including familiarity with the NIST Risk Management Framework (RMF).

Where it’s done:

  • Onsite (Colorado Springs, CO or Huntsville, AL).

Elasticsearch Engineer (Secret Clearance)

Who we are:

ShorePoint is a fast-growing, industry recognized and award-winning cybersecurity services firm with a focus on high-profile, high-threat, private and public-sector customers who demand experience and proven security models to protect their data. ShorePoint subscribes to a “work hard, play hard” mentality and celebrates individual and company successes. We are passionate about our mission and going above and beyond to deliver for our customers. We are equally passionate about an environment that supports creativity, accountability, diversity, inclusion and a focus on giving back to our community.  

The Perks:

As recognized members of the Cyber Elite, we work together in partnership to defend our nation’s critical infrastructure while building meaningful and exciting career development opportunities in a culture tailored to the individuals technical and professional growth. We are committed to the belief that our team members do their best work when they are happy and well cared for. In support of this philosophy, we offer a comprehensive benefits package, including major carriers for health care providers. Highlighted benefits offered: 144 hours of PTO, 11 holidays, 85% of insurance premium covered, 401k, continued education, certifications maintenance and reimbursement and more.

Who we’re looking for:

We are looking for a Elasticsearch (Elastic/ELK/ECE) Engineer to join our dynamic, fast-paced team within the public sector. The ideal candidate will not only bring technical expertise but also a passion for learning and growth. The Elasticsearch (Elastic/ELK/ECE) Engineer will have exposure to all facets of Systems Engineering and be encouraged to continuously expand your skill set as the company evolves. This is a unique opportunity to play a key role in a fast-growing company at the forefront of the cybersecurity market.

What you’ll be doing:

  • Lead and support SIEM migration activities, including transitioning customers from ArcSight to the Elastic Stack.
  • Implement, configure, and document four Elasticsearch clusters in support of enterprise SIEM and analytics requirements.
  • Develop detailed installation, configuration, and operational documentation to support deployment and sustainment.
  • Design and implement data pipelines to support log ingestion, normalization, enrichment, and analytics.
  • Support SIEM development activities, including migration execution, validation, and reporting.
  • Collaborate with the Integration and Architecture teams to design, document, build, secure and maintain Elasticsearch, Logstash, Kibana (and X-Pack) enterprise solutions in both cloud and on-premises environments.
  • Work closely with architects, engineers and integrators to assess customer requirements and design Elasticsearch Stack solutions that meet data compliance and performance needs.
  • Follow the development lifecycle processes to transition solutions from Dev to Test to Production environments.
  • Participate in Agile sprint meetings, share progress and ensure that the development aligns with project and customer requirements.
  • Serve as a subject matter expert and trusted advisor, providing guidance and best practice recommendations for Elasticsearch deployments.
  • Configure and maintain Linux-based operating systems (including updates and version upgrades) to support the Elasticsearch platform.
  • Install, configure and manage Elastic Cloud Enterprise (ECE) solutions, ensuring seamless communication and integration among Elasticsearch components and data sources.
  • Create detailed installation and configuration documentation to support deployment.
  • Secure the solution by implementing TLS, certificates, SSO/PIV authentication and encryption technologies.
  • Collaborate with the data lifecycle management team to ensure optimal data flow and integrity.
  • Troubleshoot and monitor data flows and the overall health of the Elasticsearch solution to maximize performance and minimize downtime.
  • Provide regular status updates and analysis of alternatives in daily sprint meetings.
  • Build and maintain effective working relationships across departments and teams to coordinate work and deliver results on schedule.
  • Recommend and implement enhancements to optimize business intelligence processes.

What you need to know:

  • Experience in software development using Java with an IDE (e.g., Eclipse, CodeReady).
  • Proficiency in parsing file formats (e.g., JSON, XML, CSV).
  • Knowledge of SQL Server database design, programming, tuning and writing SQL queries/procedures.
  • Experience in developing/automating test procedures.
  • Familiarity with REST API web services client development.
  • Experience with release management, build tools (e.g., Maven, Jenkins) and configuration tools (e.g., SVN).
  • Understanding of secure coding practices, including encryption (e.g., certificates, TLS connections).

Must have’s:

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, Mathematics, Engineering or a related field or relevant experience in lieu of degree.
  • 2+ years of relevant experience.
  • CompTIA Security + certification.
  • Proven ability to analyze complex requirements and translate them into clear, actionable tasks and processes through critical thinking.
  • Applicants must hold and maintain an active Secret clearance.

Beneficial to have:

  • Experience with SAML authentication and familiarity with domain structures, user authentication and PKI.
  • Experience with Messaging Queues (e.g., RabbitMQ).
  • Knowledge of Microsoft SQL.
  • Experience with programming and regular expressions (XML, Java, JSON, Python, PowerShell, Painless, Grok).
  • Relevant security certifications such as CISSP, CISM, CISA, Security+ or CEH.
  • Understanding of the relationship between critical infrastructure protection and cybersecurity.
  • Knowledge and experience with Assessment & Authorization (A&A) processes in federal environments, including familiarity with the NIST Risk Management Framework (RMF).

Where it’s done:

  • Onsite (Colorado Springs, CO or Huntsville, AL).

Cyber Analytics Developer (Secret Clearance)

Who we are:

ShorePoint is a fast-growing, industry recognized and award-winning cybersecurity services firm with a focus on high-profile, high-threat, private and public-sector customers who demand experience and proven security models to protect their data. ShorePoint subscribes to a “work hard, play hard” mentality and celebrates individual and company successes. We are passionate about our mission and going above and beyond to deliver for our customers. We are equally passionate about an environment that supports creativity, accountability, diversity, inclusion and a focus on giving back to our community.  

The Perks:

As recognized members of the Cyber Elite, we work together in partnership to defend our nation’s critical infrastructure while building meaningful and exciting career development opportunities in a culture tailored to the individuals technical and professional growth. We are committed to the belief that our team members do their best work when they are happy and well cared for. In support of this philosophy, we offer a comprehensive benefits package, including major carriers for health care providers. Highlighted benefits offered: 144 hours of PTO, 11 holidays, 85% of insurance premium covered, 401k, continued education, certifications maintenance and reimbursement and more.

Who we’re looking for:

We are seeking a Cyber Analytics Developer to enhance threat detection and response capabilities within enterprise SOC operations. This role focuses on optimizing data analytics and building advanced analytics and custom detection solutions. The Cyber Analytics Developer position requires deep technical expertise, creativity in developing innovative approaches and the ability to address complex, multi-dimensional problems. This is a unique opportunity to shape the growth, development and culture of an exciting and fast-growing company in the cybersecurity market.

What you’ll be doing:

  • Enhance threat detection and response capabilities through advanced analytics solutions.
  • Optimize data analytics workflows to improve accuracy and efficiency of SOC operations.
  • Build and implement custom detection capabilities tailored to evolving threats.
  • Resolve undefined and complex technical problems requiring advanced conceptualization.
  • Collaborate with experts to design and apply cutting-edge methodologies and tools.
  • Develop innovative solutions that strengthen enterprise cybersecurity operations.
  • Mentor and coach junior staff in analytics development and advanced detection methods.
  • Contribute to the advancement of knowledge in cyber analytics and detection practices.

What you need to know:

  • Expertise in cyber analytics, detection engineering and custom rule development.
  • Strong knowledge of optimizing data analytics for threat detection and response.
  • Experience building advanced analytics and detection workflows for enterprise SOCs.
  • Ability to solve complex problems using advanced technical principles and concepts.
  • Skilled in mentoring and guiding junior technical staff.

Must have’s:

  • Bachelor’s degree or 3+ additional years of relevant experience in lieu of degree.
  • 12+ years of relevant experience.
  • Proven ability to analyze complex requirements and translate them into clear, actionable tasks and processes through critical thinking.
  • Applicants must hold and maintain an active Secret clearance.

Beneficial to have the following:

  • Industry-recognized certifications.

Where it’s done:

  • Onsite (Washington, DC).

Elasticsearch Engineer

Who we are:

ShorePoint is a fast-growing, industry recognized, and award-winning cybersecurity services firm with a focus on high-profile, high-threat, private and public-sector customers who demand experience and proven security models to protect their data. ShorePoint subscribes to a “work hard, play hard” mentality and celebrates individual and company successes. We are passionate about our mission and going above and beyond to deliver for our customers. We are equally passionate about an environment that supports creativity, accountability, diversity, inclusion, and a focus on giving back to our community.

The Perks:

As recognized members of the Cyber Elite, we work together in partnership to defend our nation’s critical infrastructure while building meaningful and exciting career development opportunities in a culture tailored to the individuals technical and professional growth. We are committed to the belief that our team members do their best work when they are happy and well cared for. In support of this philosophy, we offer a comprehensive benefits package, including major carriers for health care providers. Highlighted benefits offered: 144 hours of PTO, 11 holidays, 85% of insurance premium covered, 401k, continued education, certifications maintenance and reimbursement and more.

Who we’re looking for:

We are looking for a Elasticsearch (Elastic/ELK/ECE) Engineer to join our dynamic, fast-paced team within the public sector. The ideal candidate will not only bring technical expertise but also a passion for learning and growth. The Elasticsearch (Elastic/ELK/ECE) Engineer will have exposure to all facets of Systems Engineering and be encouraged to continuously expand your skill set as the company evolves. This is a unique opportunity to play a key role in a fast-growing company at the forefront of the cybersecurity market.

What you’ll be doing:

  • Collaborate with the Integration and Architecture teams to design, document, build, secure, and maintain Elasticsearch, Logstash, Kibana (and X-Pack) enterprise solutions in both cloud and on-premises environments.
  • Work closely with architects, engineers, and integrators to assess customer requirements and design Elasticsearch Stack solutions that meet data compliance and performance needs.
  • Follow the development lifecycle processes to transition solutions from Dev to Test to Production environments.
  • Participate in Agile sprint meetings, share progress, and ensure that the development aligns with project and customer requirements.
  • Serve as a subject matter expert and trusted advisor, providing guidance and best practice recommendations for Elasticsearch deployments.
  • Configure and maintain Linux-based operating systems (including updates and version upgrades) to support the Elasticsearch platform.
  • Install, configure, and manage Elastic Cloud Enterprise (ECE) solutions, ensuring seamless communication and integration among Elasticsearch components and data sources.
  • Create detailed installation and configuration documentation to support deployment.
  • Secure the solution by implementing TLS, certificates, SSO/PIV authentication, and encryption technologies.
  • Collaborate with the data lifecycle management team to ensure optimal data flow and integrity.
  • Troubleshoot and monitor data flows and the overall health of the Elasticsearch solution to maximize performance and minimize downtime.
  • Provide regular status updates and analysis of alternatives in daily sprint meetings.
  • Build and maintain effective working relationships across departments and teams to coordinate work and deliver results on schedule.

What you need to know:

  • Experience in software development using Java with an IDE (e.g., Eclipse, CodeReady).
  • Proficiency in parsing file formats (e.g., JSON, XML, CSV).
  • Knowledge of SQL Server database design, programming, tuning, and writing SQL queries/procedures.
  • Experience in developing/automating test procedures.
  • Familiarity with REST API web services client development.
  • Experience with release management, build tools (e.g., Maven, Jenkins), and configuration tools (e.g., SVN).
  • Understanding of secure coding practices, including encryption (e.g., certificates, TLS connections).

Must have’s:  

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, Mathematics, Engineering or a related field or relevant experience in lieu of degree.
  • 2+ years of relevant experience.
  • Proven ability to analyze complex requirements and translate them into clear, actionable tasks and processes through critical thinking.
  • Applicants must be a U.S. citizen (non-dual citizenship) and eligible to obtain and maintain a security clearance, in compliance with federal contract requirements.

Beneficial to have:  

  • Experience with SAML authentication, familiarity with domain structures, user authentication, and PKI.
  • Experience with Messaging Queues (e.g., RabbitMQ).
  • Experience with Microsoft SQL.
  • Experience with programming and working with regular expressions (XML, Java, JSON, Python, PowerShell, painless, grok).
  • Relevant security certifications a plus: CISSP, CISM, CISA, Security+, CEH.
  • Understanding of interrelationships between critical infrastructure protection and cybersecurity.
  • Knowledge and experience with Assessment & Authorization (A&A) processes in Federal environments, preferably with experience utilizing the NIST Risk Management Framework (RMF).

Where it’s done:

  • Remote (Herndon, VA).

DOE Sector Growth and Capture Manager

Who we are:

ShorePoint is a fast-growing, industry recognized and award-winning cybersecurity services firm with a focus on high-profile, high-threat, private and public-sector customers who demand experience and proven security models to protect their data. ShorePoint subscribes to a “work hard, play hard” mentality and celebrates individual and company successes. We are passionate about our mission and going above and beyond to deliver for our customers. We are equally passionate about an environment that supports creativity, accountability, diversity, inclusion and a focus on giving back to our community.  

The Perks:

As recognized members of the Cyber Elite, we work together in partnership to defend our nation’s critical infrastructure while building meaningful and exciting career development opportunities in a culture tailored to the individuals technical and professional growth. We are committed to the belief that our team members do their best work when they are happy and well cared for. In support of this philosophy, we offer a comprehensive benefits package, including major carriers for health care providers. Highlighted benefits offered: 144 hours of PTO, 11 holidays, 85% of insurance premium covered, 401k, continued education, certifications maintenance and reimbursement and more.

Who we’re looking for:

We are seeking a DOE Sector Growth and Capture Manager with experience supporting dynamic, fast-paced public sector environments. This role provides broad exposure to program strategy, partner engagement, business development and capture execution. The DOE Sector Growth and Capture Manager will play a key role in driving program success on the CIO Business Support Services (CBOSS) 2 Program by supporting development, execution and collaboration with partners as a prime contractor. This is a unique opportunity to shape the growth, development and culture of an exciting and fast-growing company in the cybersecurity market.

What you’ll be doing:

  • Program Strategy and Execution: Develop and execute a comprehensive DOE sector and CBOSS 2-specific program strategy aligned with company goals and objectives. Define the go-to-market strategy using market trends, corporate capabilities and customer priorities. Support program planning and execution activities that advance DOE sector objectives.
  • Partner Relationship Management: Cultivate and maintain relationships with strategic partners to ensure alignment, communication and shared success. Collaborate with internal teams to manage partner expectations and support delivery commitments.
  • Program Growth and Business Development: Support, identify and execute growth strategies for existing DOE programs within and outside of CBOSS 2. Identify, develop and pursue DOE Task Order opportunities that contribute to revenue growth and market expansion. Align pursuit activities with ShorePoint capabilities, go-to-market strategy and business objectives.
  • Capture Management: Build, maintain and execute comprehensive Capture Plans for strategic pursuits. Coordinate capture activities using matrixed resources across internal and external team members. Support solution development, win strategy formulation, teaming and competitive positioning.
  • Market Analysis and Insight Development: Stay informed about industry trends, market shifts and DOE strategic and priority initiatives to identify new opportunities and potential risks. Use market insights to refine business development and capture strategies.
  • Matrixed Portfolio Leadership: Work collaboratively with ShorePoint Director of Business Development and Capture, Director of Proposal Operations and Executive Director of DOE and Federal Law Enforcement. Contribute to a collaborative, accountable and results-driven environment positioned for consistent growth.

What you need to know:

  • Excellent leadership and creative problem-solving skills with the ability to understand customer priorities and drive program strategy and solution development.
  • Effective approaches for identifying and executing growth strategies for existing and new business opportunities.
  • Proficiency in ShorePoint’s CRM system (Salesforce) and the Microsoft Office Suite.

Must have’s:

  • Proven ability to analyze complex requirements and translate them into clear, actionable tasks and processes through critical thinking.
  • Proven experience in Business Development and Capture Management, preferably in cybersecurity.
  • Strong track record of driving customer engagement, growth and revenue generation.
  • Exceptional interpersonal and communication skills with the ability to build and maintain relationships at all levels.
  • Strategic thinker with demonstrated ability to develop and execute complex program strategies.
  • Ability to contribute to solution development, content creation and quality reviews throughout the pre-proposal and proposal lifecycle.
  • Ability and willingness to travel up to 25 percent for onsite meetings and events.
  • Applicants must be a U.S. citizen and eligible to obtain and maintain a security clearance, in compliance with federal contract requirements.

Beneficial to have:

  • Demonstrated success growing DOE professional services revenue.
  • Strong analytical skills.
  • Experience supporting AI-driven use case implementation.

Where it’s done:

  • Hybrid (must be local to Herndon, VA and attend in person meetings as needed).

Application Security Engineer

Who we are:

ShorePoint is a fast-growing, industry recognized and award-winning cybersecurity services firm with a focus on high-profile, high-threat, private and public-sector customers who demand experience and proven security models to protect their data. ShorePoint subscribes to a “work hard, play hard” mentality and celebrates individual and company successes. We are passionate about our mission and going above and beyond to deliver for our customers. We are equally passionate about an environment that supports creativity, accountability, diversity, inclusion and a focus on giving back to our community.  

The Perks:

As recognized members of the Cyber Elite, we work together in partnership to defend our nation’s critical infrastructure while building meaningful and exciting career development opportunities in a culture tailored to the individuals technical and professional growth. We are committed to the belief that our team members do their best work when they are happy and well cared for. In support of this philosophy, we offer a comprehensive benefits package, including major carriers for health care providers. Highlighted benefits offered: 144 hours of PTO, 11 holidays, 85% of insurance premium covered, 401k, continued education, certifications maintenance, reimbursement and more.

Who we’re looking for:

We are seeking an Application Security Engineer with expertise in Static and Dynamic Application Security Testing (SAST & DAST) methodologies and enterprise-level security controls. Your mission is to fortify our software supply chain by integrating rigorous security testing directly into the development lifecycle to preemptively neutralize vulnerabilities. The Application Security Engineer will be responsible for the end-to-end administration of Burp Suite and Veracode, managing Integrated Development Environment (IDE) plugins and ensuring all enterprise web applications align with federal compliance and OWASP standards. This is a unique opportunity to shape the growth, development and culture of an exciting and fast-growing company in the cybersecurity market.

What you’ll be doing:

  • Support and operate application security testing capabilities across SAST, DAST and IDE plug-in environments, with primary focus on Burp Suite and Veracode.
  • Configure, maintain and troubleshoot Burp Suite and Veracode integrations to enable consistent application security testing workflows.
  • Partner with development and engineering teams to identify, validate and remediate security vulnerabilities.
  • Apply vulnerability standards and scoring methodologies to findings, including OWASP Top 10, CVSS, CWE, WASC and SANS-25.
  • Navigate and troubleshoot within Linux or UNIX environments, including basic website connectivity issues.
  • Support the design and implementation of enterprise-wide security controls that secure applications, systems, networks or infrastructure services.
  • Use IDEs and development toolchains (Eclipse, JDeveloper, Visual Studio) to support developer workflows, including pipeline development activities where applicable.
  • Support compliance-aligned security activities in federal environments leveraging NIST 800-53, FIPS and/or FedRAMP standards.

What you need to know:

  • Strong understanding of application security testing concepts and operational support for SAST, DAST and IDE plug-in environments.
  • Hands-on capability with enterprise web application security and common vulnerability classes.
  • Familiarity with vulnerability scoring, classification and prioritization frameworks (OWASP Top 10, CVSS, CWE, WASC, SANS-25).
  • Working knowledge of federal compliance standards (NIST 800-53, FIPS, FedRAMP).
  • Ability to work effectively in Linux or UNIX environments for navigation and basic troubleshooting.
  • Ability to communicate findings clearly and work cross-functionally to support remediation.

Must have’s:

  • Bachelor’s degree in an IT-related field.
  • 6+ years of Information Technology experience.
  • 3+ years of experience supporting SAST, DAST and IDE plug-in environments using Burp Suite, including 3+ years of hands-on Burp Suite experience.
  • 1+ year of experience supporting SAST, DAST and IDE plug-in environments using Veracode.
  • 3+ years of experience using the design and implementation of enterprise-wide security controls to secure applications, systems, networks or infrastructure services.
  • 2+ years of experience with Java, Python, .NET or C#.
  • 2+ years of experience working in Linux-based environments, including navigating and troubleshooting basic website connectivity issues.
  • Proven ability to analyze complex requirements and translate them into clear, actionable tasks and processes through critical thinking.
  • Experience with Eclipse, JDeveloper and/or Visual Studio, including pipeline development experience.
  • Experience securing enterprise web applications, including familiarity with OWASP Top 10, CVSS, CWE, WASC and SANS-25.
  • Knowledge of federal compliance standards, including NIST 800-53, FIPS and/or FedRAMP.
  • Applicants must be a U.S. citizen in compliance with federal contract requirements.

Beneficial to have:

  • Industry recognized certifications.
  • Experience with Interactive Application Security Testing (IAST) tools and capabilities.
  • Experience with HackerOne.
  • Experience with Selenium.
  • Experience writing bash scripts.
  • Experience with OWASP ZAP or Burp Proxy.

Where it’s done:

  • Remote (Herndon, VA).

HR Coordinator - Compliance & HR Operations (Entry Level)

Who we are:

ShorePoint is a fast-growing, industry recognized and award-winning cybersecurity services firm with a focus on high-profile, high-threat, private and public-sector customers who demand experience and proven security models to protect their data. ShorePoint subscribes to a “work hard, play hard” mentality and celebrates individual and company successes. We are passionate about our mission and going above and beyond to deliver for our customers. We are equally passionate about an environment that supports creativity, accountability, diversity, inclusion and a focus on giving back to our community.  

The Perks:

As recognized members of the Cyber Elite, we work together in partnership to defend our nation’s critical infrastructure while building meaningful and exciting career development opportunities in a culture tailored to the individuals technical and professional growth. We are committed to the belief that our team members do their best work when they are happy and well cared for. In support of this philosophy, we offer a comprehensive benefits package, including major carriers for health care providers. Highlighted benefits offered: 144 hours of PTO, 11 holidays, 85% of insurance premium covered, 401k, continued education, certifications maintenance and reimbursement and more.

Who we’re looking for:

We are seeking an Human Resources (HR) Coordinator – Compliance & HR Operations (Entry Level) with a primary focus on HR compliance support, documentation and process coordination. This role supports the administrative and operational foundation of the HR function through hands-on execution, structured processes and close partnership with the HR team. While administrative-heavy initially, the HR Coordinator role provides exposure to a broad range of HR functions and opportunities for professional growth as experience and capability develop. This is a unique opportunity to shape the growth, development and culture of an exciting and fast-growing company in the cybersecurity market.

What you’ll be doing:

  • Provide administrative and operational support for HR compliance activities, including annual and ongoing filings and tracking (e.g., state compliance requirements, ACA reporting support, EEO-1, VETS-4212, annual training compliance).
  • Monitor state-specific compliance requirements for a remote workforce, assisting with documentation and tracking as needed.
  • Maintain accurate and complete HR records, employee data and documentation within HR systems, ensuring confidentiality, consistency and audit readiness.
  • Own and manage the job description (Value Statement) process, including development coordination, maintenance, tracking, documentation, version control and alignment across roles.
  • Provide backup administrative support for onboarding activities, including documentation coordination, system updates and checklist execution in partnership with the HR team.
  • Assist with tracking and supporting annual compliance training in coordination with the HR Coordinator responsible for learning and development.
  • Support administrative HR processes, including preparing separation letters, assisting with FMLA documentation and supporting corporate goal setup and tracking.
  • Support offboarding processes as needed, including administrative coordination and system updates.
  • Assist with monitoring and maintaining required State and Federal employment law postings (digital and/or physical).
  • Help document HR processes, workflows and administrative procedures to support consistency, scalability and continuity.
  • Provide backup support for employee-experience HR coordination and benefits administration tasks as needed to ensure continuity and team coverage.
  • Provide general administrative support for HR projects and initiatives as assigned.

What you need to know:

  • Ability to manage multiple administrative tasks and deadlines.
  • Clear written and verbal communication skills.
  • Comfort working within structured processes and guidelines.

Must have’s:

  • 1–2 years of experience in HR, HR operations or administrative support, with demonstrated strength in professional written communication (e.g., employee emails, policy updates or compliance-related correspondence.)
  • Basic understanding of HR operations and compliance concepts or strong willingness to learn.
  • Knowledge of state and federal employment laws and regulations.
  • Proficiency in HRIS systems and Microsoft Office Suite.
  • Ability to handle sensitive and confidential information with discretion.
  • Strong organizational skills and attention to detail to ensure accuracy and efficiency.
  • Strong interpersonal and communication skills.
  • Ability to work collaboratively in a team-based environment and independently.
  • Ability to adapt to changing priorities, learn new systems and processes and follow direction while developing independent problem-solving skills.
  • Proven ability to analyze complex requirements and translate them into clear, actionable tasks and processes through critical thinking.
  • Applicants must be a U.S. citizen and eligible to obtain and maintain a security clearance if required.

Beneficial to have:

  • Bachelor’s degree preferred.

Where it’s done:

  • Hybrid (must be local to Herndon, VA and attend in-person meetings as needed).

Systems Security Analyst

Who we are:

ShorePoint is a fast-growing, industry recognized and award-winning cybersecurity services firm with a focus on high-profile, high-threat, private and public-sector customers who demand experience and proven security models to protect their data. ShorePoint subscribes to a “work hard, play hard” mentality and celebrates individual and company successes. We are passionate about our mission and going above and beyond to deliver for our customers. We are equally passionate about an environment that supports creativity, accountability, diversity, inclusion and a focus on giving back to our community.  

The Perks:

As recognized members of the Cyber Elite, we work together in partnership to defend our nation’s critical infrastructure while building meaningful and exciting career development opportunities in a culture tailored to the individuals technical and professional growth. We are committed to the belief that our team members do their best work when they are happy and well cared for. In support of this philosophy, we offer a comprehensive benefits package, including major carriers for health care providers. Highlighted benefits offered: 18 days of PTO, 11 holidays, 85% of insurance premium covered, 401k, continued education, certifications maintenance and reimbursement and more.

Who we’re looking for:

We are seeking a Systems Security Analyst with experience supporting the integration, testing, operations and maintenance of systems security. The ideal candidate has experience applying cybersecurity principles, assessing system security implementations, and supporting monitoring activities to identify vulnerabilities and security risks across systems and databases. The Systems Security Analyst role focuses on analyzing system and organizational security posture, evaluating security controls and supporting cybersecurity risk management activities across the system lifecycle. This is a unique opportunity to shape the growth, development and culture of an exciting and fast-growing company in the cybersecurity market.

What you’ll be doing:

  • Analyze and report organizational and system security posture trends, including monitoring activities related to database security risks.
  • Apply security policies and cybersecurity principles to ensure systems meet defined security objectives and requirements.
  • Assess access control implementations to ensure alignment with least privilege and need-to-know principles.
  • Evaluate configuration management, change management and release management processes for security compliance.
  • Assess and monitor cybersecurity practices associated with system implementation, testing and operational activities.
  • Assess the effectiveness of implemented security controls, including controls protecting databases and data stores, and identify areas requiring improvement.
  • Ensure systems security operations and maintenance activities are properly documented and kept current.
  • Implement security measures to resolve vulnerabilities, mitigate risks and support system confidentiality, integrity, availability, authentication and non-repudiation.
  • Support security testing of applications and systems, including identifying security deficiencies and supporting remediation or risk acceptance processes.
  • Conduct security architecture reviews, identify gaps and contribute to the development of security risk management plans.
  • Support Risk Management Framework (RMF) activities and related documentation, including lifecycle support plans, operational procedures and system documentation updates.
  • Collaborate with stakeholders to resolve security incidents, address vulnerabilities and ensure minimum security requirements are implemented across applications.

What you need to know:

  • Experience assessing security controls and security system designs using cybersecurity frameworks and principles (for example CIS Critical Security Controls, NIST SP 800 series or the Cybersecurity Framework).
  • Understanding of vulnerability identification, security testing methods and vulnerability scanning practices and monitoring of systems and database environments.
  • Knowledge of configuration management, operating systems and system security testing and evaluation methods.
  • Knowledge of network security architecture, networking concepts and protocols and how traffic flows across networks.
  • Knowledge of cybersecurity risk management processes, laws, policies and governance relevant to cybersecurity and privacy.
  • Knowledge of cybersecurity threats, vulnerabilities, cryptography concepts, identity and access management principles and security practices protecting sensitive or regulated information.

Must have’s:

  • 4+ years of experience in cybersecurity, information security or a related field.
  • Proven ability to analyze complex requirements and translate them into clear, actionable tasks and processes through critical thinking.
  • Applicants must be a U.S. citizen and eligible to obtain and maintain a security clearance, in compliance with federal contract requirements.

Beneficial to have:

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, Engineering or a related field.
  • Industry recognized certifications.

Where it’s done:

  • Remote (Herndon, VA).

Elastic Stack Engineer Intern

Who we are:

ShorePoint is a fast-growing, industry recognized and award-winning cybersecurity services firm with a focus on high-profile, high-threat, private and public-sector customers who demand experience and proven security models to protect their data. ShorePoint subscribes to a “work hard, play hard” mentality and celebrates individual and company successes. We are passionate about our mission and going above and beyond to deliver for our customers. We are equally passionate about an environment that supports creativity, accountability, diversity, inclusion and a focus on giving back to our community.  

Internship Overview:

ShorePoint is looking for a highly motivated and detail-oriented intern to participate in our Junior Elastic Stack Engineer Internship Program. Our goal is to provide hands-on, valuable experience that directly aligns with the intern’s education, field of study and career goals, while providing opportunities to gain experience, build a professional network and contribute to real customer challenges. Throughout the program, our goal is to provide the right balance of guidance to help this individual learn and freedom to help them grow in a casual and fun environment.

Who we’re looking for:

We are seeking an Elastic Stack Engineer Intern who is motivated and passionate about gaining hands-on experience with cutting-edge technologies. The ideal candidate will have a strong technical foundation, an eagerness to learn and the ability to work independently in a remote environment. This individual will assist in the installation, configuration and troubleshooting of the Elastic Stack and may have close interaction with customers to understand requirements and help deliver solutions that meet their needs.

What you’ll be doing:

  • Install and configure Elastic Stack components, including Elasticsearch, Kibana, Logstash and Beats on Linux systems.
  • Troubleshoot issues with Elastic Stack components and their integration with various other systems.
  • Collaborate with other engineers and developers to implement new features and functionality.
  • Communicate with customers as needed to understand requirements and provide solutions that meet their needs.
  • Provide technical support to customers to resolve issues related to Elastic Stack components.
  • Contribute to the development of Elastic onboarding documentation, including what a new team member needs to know, how to evaluate their skills and the training curriculum they should follow.
  • Develop a tool for quick discovery within new Elastic cluster environments; this includes creating a set of API calls (or similar methods) to query a cluster during engagement kickoffs to gather configuration information for consultant use.
  • Contribute to the Elastic Accelerators initiative based on the individual’s specific skillset, which may include kibana-py development work, Platinum deployment automation, content dependency mapping and development of compliance-focused dashboards.
  • Investigate new AI and security features within Elasticsearch and present to the team about new capabilities available in recent releases.

What you need to know:

  • Strong foundation with Linux, including the ability to install, configure and troubleshoot Linux systems.
  • Understanding of networking fundamentals and the ability to configure and troubleshoot host-level networking.
  • Excellent communication skills, both written and verbal, with the ability to interface well with customers.
  • Eagerness to learn and ability to work independently.
  • Passionate about working with cutting-edge technologies and solving complex problems.

Must have’s:

  • Must be at least a college Junior.
  • Must be enrolled in an accredited university (undergraduate or graduate).
  • Major must be aligned with ShorePoint’s intern program positions (Information Technology, Computer Science and Cybersecurity).
  • Must have a cumulative GPA greater or equal to 3.0.
  • Ability to work remotely and manage tasks effectively in a virtual setting.
  • Applicants must be a U.S. citizen.

Beneficial to have:

  • Scripting or programming experience, preferably with Python and exposure to version control systems like Git.
  • Experience with cloud platforms such as AWS, Azure or Google Cloud.
  • Experience with containerization technologies such as Docker and Kubernetes
  • Experience with the Elastic Stack or similar platforms such as Splunk or Grafana/Prometheus.

Where it’s done:

  • Remote (Herndon, VA).

Applicants have rights under Federal Employment Laws. For more information please see: