
Cybersecurity SME – Clearance Required
Posted Jun 12

Posted Jun 12
This is a fully remote position, open to applicants in Virginia.
• Supervise the execution and utilization of technologies, processes, and methodologies aimed at safeguarding applications, networks, devices, programs, and data against malicious threats, damage, or unauthorized access.
• Optimize the application of existing tools to correlate information and distill data into actionable intelligence for incident response and comprehensive cybersecurity situational awareness.
• Evaluate, assess, and incorporate new technologies to bolster cybersecurity defenses, while conducting thorough research on emerging cybersecurity technologies, practices, policies, and procedures.
• Articulate complex technical concepts and project specifics clearly to both technical and non-technical stakeholders across various levels, providing situational awareness and enabling informed decision-making by government leadership.
• Offer expert insights into industry trends and make strategic recommendations regarding the future direction of the program’s cybersecurity systems and network defenses, ensuring effective incident response capabilities.
• Assist with additional cybersecurity initiatives, which include patch and vulnerability management, network monitoring, intrusion detection/prevention, and log analysis.
• Identify and propose mitigations for recognized threats, vulnerabilities, and capability gaps, ensuring ongoing protection.
• Create and manage Plans of Action and Milestones (POA&M) to support risk mitigation strategies.
• Review and provide recommendations on program-level documentation (e.g., system architecture, design documents, test plans, security plans, POA&Ms).
• Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or a related field, or equivalent professional experience.
• A minimum of 10 years of experience in cybersecurity risk management, including at least 5 years specifically in cybersecurity risk management for the Department of Defense or another federal government agency.
• Proven ability to produce high-value technical and strategic outputs, such as reports, presentations, executive summaries, white papers, and decision-support materials for senior leadership.
• Comprehensive understanding of DoD cybersecurity frameworks, including the DoD Cloud Computing Security Requirements Guide (CC SRG) and Secure Cloud Computing Architecture (SCCA).
• Strong familiarity with DoD, NIST, FIPS, FISMA, and FedRAMP cybersecurity standards and frameworks.
• At least 7 years of experience with cybersecurity tools, including Security Information and Event Management (SIEM) platforms (e.g., ArcSight, ELK Stack, Splunk), Host-Based Intrusion Prevention Systems (HBSS/ESS), and Vulnerability Management Tools (e.g., ACAS, Tenable Nessus).
• Knowledge of Security Technical Implementation Guides (STIG) and Security Requirements Guides (SRG).
• Must possess an active Secret Security Clearance; U.S. citizenship is required.
• Must have or obtain within 6 months of hire the following certification(s) based on the role: For ISSM role: IAM III Certification (CISSP, CSSLP, GSLC, CCISO). For technical cybersecurity role: IAT III Certification (CISSP, CASP+, CCNP Security, CISA, GCED, GCIH, CCSP).
• Health insurance
• 401(k) matching
• Professional development opportunities
Redpanda Data
Oxfam America
Dragonfli Group
Akamai Technologies
Get handpicked remote jobs straight to your inbox weekly.