Technical IT Security Project Manager (Pm)

Zermount•Arlington, VA
•Hybrid

About The Position

Zermount, Inc. is seeking a Technical IT Security Project Manager (PM) to provide project management services and technical oversight for IT Security Engineering and Testing and Compliance services. The candidate will be a key person responsible for ensuring the client receives appropriate support and resources for quality results, while maintaining productive relationships with client leadership and stakeholders. The role involves supporting two main areas: IT Security Engineering (ITSE), which includes architecture, Zero Trust, content enablement, and enterprise security tool administration; and IT Security Compliance and Testing (ITSC&T), which involves developing and sustaining hardening and secure configuration guides, conducting risk and security assessments, performing IT security testing (Application Security Assessments, Technical Testing, etc.), and providing penetration testing services. The PM will manage multiple concurrent efforts, develop integrated schedules, identify workstreams, tasks, dependencies, risks, and resources, and ensure the team produces accurate, audit-ready deliverables. While strong technical knowledge of cybersecurity is required, the role focuses on management, leadership, coordination, and quality assurance, not hands-on execution.

Requirements

  • At least 5 years of experience managing IT Security programs similar in size and scope to this requirement.
  • Experience managing teams, minimally, of 10 direct reports and/or leading delivery teams with equivalent accountability for scope, schedule, and quality.
  • Demonstrated ability to manage multiple projects simultaneously, work under pressure and tight deadlines, and communicate effectively with technical staff and executive stakeholders.
  • Strong ability to develop and manage project schedules, deliverable plans, and reporting cadences, and to coordinate work across multiple technical workstreams.
  • Proven experience producing high-quality written deliverables (plans, reports, briefings) that can withstand audit-level review.
  • Solid technical knowledge of cybersecurity operations and enterprise security services sufficient to provide oversight and quality assurance of technical work products (not hands-on execution).
  • Proficient in Microsoft® Office suite including Word®, Excel®, PowerPoint®, and Project®.
  • Excellent customer-facing skills and proven ability to build and maintain strong client relationships.
  • Ability to effectively communicate both orally (in common English narration) and in writing (to include technical documentation).
  • Must be a United States citizen.
  • Must be able to pass a LOC Public Trust Background Investigation.
  • Must have a minimum of one (1) IT Security certification at the IAM II or III Level referenced in the Department of Defense Approved 8570 Baseline list.

Nice To Haves

  • Preferred technical familiarity with one or more of the following toolsets/areas: Splunk; Cribl; RSA Archer (GRC); Palo Alto NGFW/Prisma/CASB/Cloud DLP; Tenable/Nessus; AWS Inspector; Swimlane; Core Impact; Fortify; Carbon Black Cloud; Microsoft Defender for Endpoint; SQL/SSMS concepts as they relate to GRC platform administration and reporting.
  • Additional certifications preferred: PMI PMP; and ITIL

Responsibilities

  • Provide day-to-day project management oversight for enterprise IT Security services supporting an environment of approximately 5,000 users, 7,500 endpoints, and 10,000 network entities across on-premises data centers and AWS and Azure cloud environments.
  • Provide primary accountability for delivery of task order outcomes and deliverables, ensuring appropriate management practices, to include resource, schedule, risk, quality, communication, performance, and delivery, is implemented and executed to meet the requirements of the client and the company.
  • Develop, maintain, and update the Project Management Plan (PMP) and integrated project schedules, including task and sub-tasks, dependencies, resources, and dates (planned and actual) for all tasks and activities.
  • Develops, maintains, and oversees integrated project schedules across all task order activities, ensuring alignment with program objectives, critical milestones, resource availability, and stakeholder expectations.
  • Develop, maintain, and update Quality Assurance / Quality Control Plan (QAP / QCP) and Quality Assurance Surveillance Plan (QASP) and implement internal QA practices to ensure deliverables are accurate, complete, and audit ready.
  • Provide schedule management and delivery oversight for ongoing security tool support activities including architecture planning, zero trust, content development and enablement activities, engineering services, and administration/maintenance support for tools such as SIEM, SOAR, EDR, Cloud, Scanning, GRC, firewalls, cloud security platforms, DLP, and CASB.
  • Lead recurring status meetings and reporting in accordance with task order requirements, including weekly status meetings and monthly status reporting, and ensure required daily updates are provided when applicable to tasking.
  • Coordinate intake, prioritization, and execution of work requests, including ServiceNow-driven guide development tasks and testing/scanning requests directed by the COR/CISO.
  • Oversee performance against required timelines and SLAs, including (as applicable) responsiveness to tasking, delivery of scan/test outputs, and completion timelines for security assessments and guide deliverables.
  • Ensure tool support activities include appropriate coordination with client teams and vendors for implementation planning, upgrades, patching, tuning, troubleshooting, and change/request tracking through successful completion.
  • Oversee planning and execution coordination for IT Security Testing and Compliance Services, including monthly and ad-hoc vulnerability/compliance scanning, quarterly database scanning, application security assessment coordination, penetration testing support coordination, and required documentation of test plans and results.
  • Ensure security hardening and configuration guide efforts are planned, tracked, and delivered, including review and update of approximately 100 hardening guides and 100 configuration guides, as well as creation of new guides as new technologies are introduced.
  • Track risks, issues, dependencies, and resource constraints; develop mitigation plans; and brief client leadership on schedule impacts and options.
  • Produce briefings, reports, and executive-ready communications as requested by LOC stakeholders, supporting decision-making, risk posture, and program progress.
  • Ensure project execution aligns with client policies and directives, including protection of Controlled Unclassified Information (CUI) and adherence to government information security requirements.
  • Enhance team performance by establishing clear processes, ensuring accountability, supporting continuous improvement, and mentoring team members on project execution and delivery standards.

Benefits

  • Remote work is authorized.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service