Zermount, Inc.
MOU active through Feb 2028Defense Industrial BaseDetailed listingChecked
Zermount, Inc. is on the Department of Defense SkillBridge authorized organization list. The DoD directory publishes 7 programs for this organization across 7 locations.
Hybrid
MOU status: DoD MOU current through February 23, 2028.
What these labels mean
- MOU active
- An MOU is the agreement between an employer and the SkillBridge program. When it expires, the employer has to renew it before it can take new service members.
- MOU expires soon
- The agreement ends within 90 days. That is not a reason to rule a program out. It is a reason to ask the employer where the renewal stands.
- MOU expired
- The date on the government listing has passed. We still show the program, because hiding it would shrink this directory in a way we could not explain. Confirm status with the employer before you apply.
- MOU date not stated
- The government listing carries no expiration date for this organization.
- Detailed listing
- The employer filled in most of its record: length, delivery method, eligibility, and a description of the work.
- Partial listing
- Some of those fields are filled in and some are blank.
- Sparse listing
- Very little of the record is filled in. That is common, and it is not a judgment about the program or the employer. It does mean you will have to ask them more questions directly.
Dates come from the government SkillBridge export. We do not screen, rank, or endorse organizations, and we take nothing from them.
HiredTroops is not affiliated with, endorsed by, or sponsored by the U.S. Department of Defense, the Department of War, or any branch of the U.S. Armed Forces. SkillBridge is a U.S. government program. Program data on this site comes from the public SkillBridge directory and from employers, and is provided for informational purposes. Confirm all details with the employer and your command.
At a glance
- Programs
- 7
- Locations
- 7
- States served
- 1
- Delivery
- Hybrid (7)
- Program length
- 8 to 12 weeks (6), 4 to 8 weeks (1)
- Program type
- Internship (1)
- Branches accepted
- Air Force, Army, Coast Guard, Marine Corps, Navy, Space Force
Counts are computed from the DoD program listings below -- a provider with several programs can appear more than once in each count.
Reviews
No verified reviews yet -- done a SkillBridge here? Tell the next troop what it was like.
Reviews open soon
Programs
Business Development Specialist - Internship
Partial listing
- Delivery
- Hybrid source value: Hybrid (In-Person and Online)
- Length
- About 4 to 9 weeks source value: 31 - 60 days
- Type
- Internship
- Branches
- Air Force, Army, Coast Guard, Marine Corps, Navy, Space Force
Summary
The BD Specialist Fellow will strengthen Zermount’s business development operations by identifying new opportunities and developing strategies to expand the customer base, supporting ongoing proposal efforts, and developing metrics to increase probability of wins. This role ensures consistency and accuracy in BD support functions while preparing the fellow for future opportunities in corporate BD coordination, proposal support, and capture operations.
What the work involves
Zermount Inc. is seeking a highly motivated, versatile Business Development (BD) Specialist to help drive growth across our federal government contracting portfolio. This role is built for a small-business environment and is ideal for a professional who can operate across the full BD lifecycle, from market intelligence and pipeline development to opportunity qualification, teaming support, capture coordination, proposal development, and submission. As a Service-Disabled Veteran-Owned Small Business (SDVOSB), we need a BD professional who understands how to navigate the Gov Con landscape, identify the right opportunities early, support strategic positioning, and help convert qualified pursuits into compliant, compelling proposals. This individual will serve as a force multiplier for leadership by bridging business development, capture, teaming, proposal operations, and pursuit strategy. The BD Specialist will also support stakeholders on other opportunities to build further capture skillsets, accelerate understanding of capabilities, observe synergies across captures and bridge gaps to increase efficiency. The right candidate is resourceful, organized, proactive, relationship-driven, and comfortable wearing multiple hats in a fast-paced growth environment.
Locations
- Joint Base Myers Henderson Hall, Arlington, VA
Cybersecurity Architect
Detailed listing
- Delivery
- Hybrid source value: Hybrid (In-Person and Online)
- Length
- About 9 to 13 weeks source value: 61 - 90 days
- Branches
- Air Force, Army, Coast Guard, Marine Corps, Navy, Space Force
- Career field
- Computer and Mathematical
Summary
The Cybersecurity Architect evaluates the organization’s security posture and architecture, providing engineering-driven recommendations to advance Zero Trust and strengthen overall security. This role delivers enterprise-level guidance on software, hardware, policy, architecture, and budget priorities.
What the work involves
We are seeking a hands-on Cybersecurity Architect to support a Government Agency operating in a complex hybrid environment across on-premises and cloud infrastructure. This role serves as the technical design authority for the contract, leading cybersecurity architecture, Zero Trust implementation, and Continuous Authorization to Operate (cATO) efforts aligned with EO 14028, NIST guidance, and the Federal Zero Trust Strategy. The Cybersecurity Architect will develop enterprise security architecture and roadmaps, design and implement Zero Trust capabilities, support cloud and network security modernization, and help automate security monitoring and compliance evidence collection. This role will also evaluate emerging technologies, lead proof-of-concept efforts, translate mission needs into technical solutions, and collaborate with government leadership, project teams, and stakeholders to deliver secure, compliant outcomes. Qualifications:10+ years of hands-on IT/cybersecurity experience Experience in cybersecurity architecture, engineering, and compliance Knowledge of LAN/WAN, WAF/CDN/DDo S, firewalls, IDS/IPS, and inline decryption Experience with NIST RMF, FedRAMP, FISMA, and NIST SP 800-53Experience with SIEM platforms (Splunk preferred)Knowledge of virtualization, container security, CI/CD, microservices, and serverless security Cloud security experience required, including AWS and hybrid/multi-cloud; Azure or GCP is a plus Education: Bachelor's degree in Computer Science, Engineering, IT, Cybersecurity, or related field. Relevant experience may substitute. Certifications: Industry-recognized cybersecurity certifications aligned with DoD 8570/8140 IAM Level III or IAT Level III preferred. Preferred: CCSP, AWS Solutions Architect Associate, AWS Security Specialty. Clearance: Must be able to obtain and maintain a Public Trust. Location: Remote with occasional travel. Hours: Core Hours 8:00 AM – 4:00 PM EST.
Locations
- Joint Base Myers Henderson Hall, Arlington, VA
IT Specialist
Detailed listing
- Delivery
- Hybrid source value: Hybrid (In-Person and Online)
- Length
- About 9 to 13 weeks source value: 61 - 90 days
- Branches
- Air Force, Army, Coast Guard, Marine Corps, Navy, Space Force
Summary
Zermount Inc. is seeking a motivated information technology intern who is ready to apply his/her knowledge of IT practices and processes in a fast-paced, real-world environment. The intern will assist in supporting the IT team in the maintenance of hardware, software, and other systems. They must troubleshoot issues with equipment like printers, computers, and servers. They run software update backups when requested. This will be a valuable experience for anyone pursuing a career in the cybersecurity field.
Eligibility
Computer Science, Information Technology, or Management Information Systems major or related field Familiar with Java, .NET, JavaScript or HTML/DHTML and Microsoft Office Suite Strong verbal and written communication Excellent analytical and problem-solving skills Ability to work well in teams Strong work ethic and attention to detail
What the work involves
Support the IT team in maintaining hardware, software, and other systems. Assist with troubleshooting issues and provide technical support Organize and maintain IT resources. Provide technical support in response to user requests for service. Assist with troubleshooting IT issues, provide technical support, and help develop IT solutions. Monitor antivirus software and updates and repair computers infected with spyware, adware, viruses, etc. Lend IT support in areas such as cybersecurity, programming, analytics, and data center management. Develop and provide user training for basic hardware and software use. Work on ad-hoc projects such as software development and implementation. Dedicate 5 hours a week to support Technical Recruiting Department. Dedicate 10-16 hours a month to support Business Development team.
Locations
- Joint Base Myer-Henderson, Arlington, VA
Security Architect
Detailed listing
- Delivery
- Hybrid source value: Hybrid (In-Person and Online)
- Length
- About 9 to 13 weeks source value: 61 - 90 days
- Branches
- Air Force, Army, Marine Corps, Coast Guard, Navy, Space Force
- Defense Industrial Base
- Yes
Summary
and integrate with other Cybersecurity workflow to include: ATO Intake
Eligibility
The candidate must have a: Certified Information Systems Security Professional (CISSP), and At least one of the following, or equivalent: Certified Cloud Security Professional (CCSP),AWS Certified Solutions Architect Associate,AWS Certified Security Specialist,Microsoft Azure Solutions Architect,Google Professional Cloud Architect.
What the work involves
Roadmap and Strategy Provide input to the Cybersecurity roadmap and strategy for key organization strategic initiatives for the following and related areas: Security Architecture: Develop and Recommend Security Architecture and Standards including Cloud Security for government approval. Cybersecurity Operations: Improve Cloud monitoring, detection, and response; Improve Security Operations (SOC) operations. Privacy & Continuous Monitoring: Improve Vulnerability Assessment program; Integrate security scanning in Cloud Pipeline; Improve Cloud vulnerability coverage and scanning. Cybersecurity Authorizations and Compliance: Reduce time to ATO through continuous ATO; Improve Cloud Compliance. Executive Order (EO) 14028 Improving the Nation's Cybersecurity" in terms of: Implementing Zero Trust; Enhancing Supply Chain Risk Management (SCRM); Addressing critical software; and Developing secure Cloud adoption. Security Architecture Reviews Develop
Locations
- Joint Base Henderson - Myers, Arlington, VA
Security Engineer
Detailed listing
- Delivery
- Hybrid source value: Hybrid (In-Person and Online)
- Length
- About 9 to 13 weeks source value: 61 - 90 days
- Branches
- Air Force, Army, Marine Corps, Coast Guard, Navy, Space Force
- Defense Industrial Base
- Yes
Eligibility
The candidate must have a: Certified Information Systems Security Professional (CISSP), and At least one of the following, or equivalent: Certified Cloud Security Professional (CCSP),AWS Certified Solutions Architect Associate,AWS Certified Security Specialist,Microsoft Azure Solutions Architect,Google Professional Cloud Architect.
What the work involves
Roadmap and Strategy Provide input to the Cybersecurity roadmap and strategy for key organization strategic initiatives for the following and related areas: Security Architecture: Develop and Recommend Security Architecture and Standards including Cloud Security for government approval. Cybersecurity Operations: Improve Cloud monitoring, detection, and response; Improve Security Operations (SOC) operations. Privacy & Continuous Monitoring: Improve Vulnerability Assessment program; Integrate security scanning in Cloud Pipeline; Improve Cloud vulnerability coverage and scanning. Cybersecurity Authorizations and Compliance: Reduce time to ATO through continuous ATO; Improve Cloud Compliance. Executive Order (EO) 14028 Improving the Nation's Cybersecurity" in terms of: Implementing Zero Trust; Enhancing Supply Chain Risk Management (SCRM); Addressing critical software; and Developing secure Cloud adoption. Security Architecture Reviews Develop
Locations
- Joint Base Henderson - Myers, Arlington, VA
Zermount - ITSE
Detailed listing
- Delivery
- Hybrid source value: Hybrid (In-Person and Online)
- Length
- About 9 to 13 weeks source value: 61 - 90 days
- Branches
- Air Force, Army, Coast Guard, Marine Corps, Navy, Space Force
- Career field
- Computer and Mathematical
What the work involves
We are seeking a hands-on Cybersecurity Architect to support a Government Agency operating in a complex hybrid environment across on-premises and cloud infrastructure. This role serves as the technical design authority for the contract, leading cybersecurity architecture, Zero Trust implementation, and Continuous Authorization to Operate (cATO) efforts aligned with EO 14028, NIST guidance, and the Federal Zero Trust Strategy. The Cybersecurity Architect will develop enterprise security architecture and roadmaps, design and implement Zero Trust capabilities, support cloud and network security modernization, and help automate security monitoring and compliance evidence collection. This role will also evaluate emerging technologies, lead proof-of-concept efforts, translate mission needs into technical solutions, and collaborate with government leadership, project teams, and stakeholders to deliver secure, compliant outcomes. Qualifications:10+ years of hands-on IT/cybersecurity experience Experience in cybersecurity architecture, engineering, and compliance Knowledge of LAN/WAN, WAF/CDN/DDo S, firewalls, IDS/IPS, and inline decryption Experience with NIST RMF, FedRAMP, FISMA, and NIST SP 800-53Experience with SIEM platforms (Splunk preferred)Knowledge of virtualization, container security, CI/CD, microservices, and serverless security Cloud security experience required, including AWS and hybrid/multi-cloud; Azure or GCP is a plus Education: Bachelor's degree in Computer Science, Engineering, IT, Cybersecurity, or related field. Relevant experience may substitute. Certifications: Industry-recognized cybersecurity certifications aligned with DoD 8570/8140 IAM Level III or IAT Level III preferred. Preferred: CCSP, AWS Solutions Architect Associate, AWS Security Specialty. Clearance: Must be able to obtain and maintain a Public Trust. Location: Remote with occasional travel. Hours: Core Hours 8:00 AM – 4:00 PM EST.
Locations
- Joint Base Myers Henderson Hall, Arlington, VA
Zero Trust (ZT) Virtualization / Application Development Technical SME
Detailed listing
- Delivery
- Hybrid source value: Hybrid (In-Person and Online)
- Length
- About 9 to 13 weeks source value: 61 - 90 days
- Branches
- Air Force, Army, Coast Guard, Marine Corps, Navy, Space Force
- Career field
- Computer and Mathematical
Summary
This fellowship prepares transitioning service members to provide senior technical advisory expertise in application security, cloud security, and DevSecOps supporting a federal agency's Zero Trust initiative. Fellows build framework proficiency across the CISA ZTMM v2.0 Applications & Workloads pillar and develop the practical advisory skills needed to produce application portfolio assessments, API security recommendations, and pillar maturity advancement roadmaps.
Eligibility
Minimum of a Bachelor of Science (or higher) in Information Technology, Computer Science, Software Engineering, Cybersecurity, or a related field. Required: Certified Information Systems Security Professional (CISSP) or Certified Cloud Security Professional (CCSP), or equivalent certification. Strongly preferred: Certified Information Security Manager (CISM) or equivalent senior security management certification. Strongly preferred: Cloud security certification. AWS Security Specialty, Microsoft Azure Security Engineer Associate (AZ-500), or GCP Professional Cloud Security Engineer.
What the work involves
General Duties Serve as the primary technical advisor for the CISA ZTMM v2.0 Applications & Workloads pillar across application security, cloud security, and secure software delivery domains. Continuously assess the agency's application portfolio posture against CISA ZTMM v2.0 Applications & Workloads criteria and NIST SP 800-207; proactively identify emerging application risk indicators, including access control drift, API exposure, and supply chain vulnerabilities, and deliver real-time advisory recommendations. Provide technical advisory guidance on application access control design options, API security strategies, and authorization gateway approaches, recommending solutions and implementation pathways for agency decision-making. Evaluate cloud-hosted and on-premises application environments for ZT compliance; develop recommended approaches for secure configuration, workload isolation, and least-privilege access enforcement for agency adoption. Advise on DevSecOps integration strategies, secure CI/CD pipeline practices, and software supply chain security aligned to OMB M-23-16 and EO 14028; develop recommended solutions for agency review. Assess container and virtualization environments for workload segmentation, access control, and ZT enforcement alignment; develop findings and recommended remediation approaches for agency concurrence. Provide advisory support for the development and maturation of Applications & Workloads pillar entries in the ZT Common Control Catalog (CCC), ensuring traceability to NIST SP 800-53 Rev. 5 control families. Develop recommended Applications & Workloads pillar inputs to the ZT Roadmap, IG CIGIE maturity reporting, and enterprise performance reporting for agency review and approval. Collaborate with Identity, Network, and Data SMEs to ensure application access control approaches integrate coherently across all ZTMM pillars. Review application-related policy documents and technical standards; identify gaps relative to ZT mandates and develop recommended updates for agency concurrence. Support all application and workload-related ZT data calls, audits, and compliance reporting by providing advisory analysis and recommended responses. Prepare and present application security findings, maturity assessments, and advisory recommendations to senior leadership and the CISO.Leverage AI-assisted analysis tools, automation platforms, and prompt engineering techniques to enhance advisory productivity, accelerate gap analysis and documentation tasks, and enable focus on higher-value technical advisory work; apply all AI capabilities in accordance with agency acceptable use policies and Zermount's ethical AI use guidelines.SUBJECT MATTER EXPERTISESME Area #1 – Application Security, Cloud Workload Protection & DevSecOps Advisory Expert-level mastery of application security architecture including ZT application access control design, API security strategy, authorization gateway architecture, and DevSecOps integration demonstrated through operational implementation or senior advisory engagement in a federal or large enterprise environment. Authoritative knowledge of CISA ZTMM v2.0 Applications & Workloads pillar criteria, NIST SP 800-207 application access tenets, NIST SP 800-218 SSDF, EO 14028 software security requirements, OMB M-23-16, and NIST SP 800-53 Rev. 5 SA, SI, and CM control families. Expert-level proficiency with cloud platforms (Azure, AWS, or GCP) at a security architecture or engineering level, including Iaa S, Paa S, and SaaS security constructs, cloud-native access control, and cloud workload protection. Expert-level knowledge of API security frameworks, authorization gateway design, and application-layer access control enforcement in a ZT context. Independent decision-making authority on Applications & Workloads pillar advisory scope, application portfolio assessment methodology, and recommended ZT enforcement approach. Bring solutions for concurrence. Problem-solving at the intersection of application security and cross-pillar ZT integration. Able to identify how application access control gaps create risk in Identity enforcement and Data pillar protection requirements. SME Area #2 – Container, Virtualization & Software Supply Chain Security Strong foundational knowledge of application development concepts, software architectures (microservices, monolithic, serverless), and API design patterns sufficient to assess application security controls and advise on ZT enforcement at the application layer. Working knowledge of container orchestration (Kubernetes, Docker) and virtualization platforms, including container runtime security, image scanning, and workload isolation, as they relate to ZT Applications & Workloads pillar requirements. Hands-on experience with CI/CD pipeline security integration, software supply chain risk management, and SSDF practice alignment in a federal or large enterprise environment. Foundational understanding of database security, data access patterns, and application-to-database authentication mechanisms as they relate to ZT workload protection and least-privilege enforcement. Supports Applications & Workloads pillar advisory by enabling technically credible engagement with agency application developers, cloud architects, DevSecOps engineers, and software delivery teams. Interacts directly with Identity SME on application-layer identity assertion and authorization, Network SME on application traffic segmentation, and the ZT Process Re-Engineering SME on DevSecOps process change advisory. QUALIFICATIONSMinimum Requirements A minimum of 10 years in application security, cloud security architecture, or DevSecOps with demonstrated Zero Trust scope. Hands-on experience implementing ZT-aligned application access control in cloud environments (Azure, AWS, or GCP); must extend beyond administration to include ZT policy design and enforcement architecture. Expert knowledge of NIST SP 800-207, CISA ZTMM v2.0 Applications & Workloads pillar criteria, NIST SP 800-218, and federal secure software development standards. Experience with API security frameworks, authorization gateway design, and application-layer access control enforcement in a ZT context. Demonstrated familiarity with DevSecOps practices, CI/CD security integration, and software supply chain security under EO 14028 and OMB M-23-16.Experience assessing application security controls against NIST SP 800-53 Rev. 5 SA, SI, and CM control families. Demonstrated experience developing and implementing Zero Trust application security solutions operationally, not limited to framework mapping or documentation. Experience supporting ZT-related IG FISMA metrics reporting pertaining to applications and workloads. Strong written and oral communication skills; ability to translate complex application security concepts into CISO-ready recommendations. Demonstrated familiarity with AI-assisted analysis tools or prompt engineering; ability to apply AI capabilities ethically to accelerate advisory work and surface higher-value technical insights. Preferred Qualifications Five years of IT cybersecurity experience, including direct support to the U.S. Government. This experience can be concurrent with the minimum 10 years of application security experience. Prior direct involvement in a ZT Applications & Workloads pillar implementation or enterprise ZT-aligned deployment in a technical design or advisory capacity. Cloud security certification: AWS Security Specialty, Microsoft Azure Security Engineer Associate (AZ-500), or GCP Professional Cloud Security Engineer. Experience with Kubernetes security, container runtime protection, and image vulnerability management in a federal or enterprise environment. Experience with legacy application ZT advisory extending ZT controls to applications that cannot natively support modern authentication or authorization. Prior CISO-facing experience. Competencies Technical: CISA ZTMM v2.0 Applications & Workloads pillar, NIST SP 800-207, NIST SP 800-218, EO 14028, OMB M-23-16, Azure/AWS/GCP cloud security, API security, authorization gateways, DevSecOps, CI/CD pipeline security, Kubernetes, Docker, NIST SP 800-53 SA/SI/CM, AI-assisted analysis. Leadership: Technical advisory leadership for Applications & Workloads pillar; cross-pillar SME coordination with Identity, Network, and Data teams; engagement with agency developers, cloud architects, and DevSecOps engineers. Behavioral: Proactive continuous application posture monitoring; precision in application security architecture assessment; continuous learning toward evolving cloud security capabilities, DevSecOps practices, and federal software security mandates. Clearance Level Active Secret Clearance required.
Locations
- Joint Base Myer-Henderson Hall, Arlington, VA
Where this provider operates
- VirginiaArlington, Joint Base Henderson - Myers · Arlington, Joint Base Myer-Henderson · Arlington, Joint Base Myer-Henderson Hall · Arlington, Joint Base Myers Henderson Hall
Keep looking
Where this comes from
Source is the Department of Defense SkillBridge directory, filtered to Zermount, Inc.. HiredTroops republishes it and adds the plain-language notes. We do not screen, rank, or endorse organizations, and we take nothing from them.
Last checked , which is older than our normal weekly refresh.
Confirm current program status with the organization and with your command before you commit. This directory is not affiliated with or endorsed by the Department of Defense.