More jobs:
Senior Cybersecurity SME/SCA Security Clearance
Job in
Chantilly, Fairfax County, Virginia, 20151, USA
Listed on 2026-09-04
Listing for:
M9 Solutions
Full Time
position Listed on 2026-09-04
Job specializations:
-
IT/Tech
Cybersecurity, Systems Engineer
Job Description & How to Apply Below
Senior Cybersecurity SME/SCA Chantilly, VA - Top Secret clearance required Apply M9 Solutions is dedicated to providing IT services and solutions to the Federal Government by mobilizing the right people, skills, clearance levels, and technologies to help organizations that desire improved performance and modern, sustainable change. M9 has provided quality IT services and support to more than 30 Federal Agencies and multiple commercial customers nationwide.
Our capabilities include IT Talent Solutions, Data Delivery & Analytics, Cyber Security, Cloud Migration, Applications and Infrastructure, Software Development, and Finance & Accounting. M9 Solutions is seeking a Senior Cybersecurity SME/SCA to work onsite in support of a government contract for a client located in Chantilly, VA. An active Top Secret clearance is required. Responsibilities
* Strategic Advisement & Lifecycle Integration:
* Engineering Technical Reviews:
Actively participate in System Requirements Reviews (SRR), Preliminary Design Reviews (PDR), and Critical Design Reviews (CDR) to ensure security is baked in, rather than bolted on.
* Dev Sec Ops Alignment:
Guide project teams in integrating automated security testing (SAST/DAST) and continuous compliance monitoring into Agile development pipelines where appropriate.
* Threat Modeling:
Conduct system-level threat modeling during the design phase to identify potential attack vectors and recommend architectural mitigations before code is written or hardware is procured.
* Advanced Assessment & Risk Determination:
* Technical Validation:
Move beyond paperwork by conducting deep technical reviews of vulnerability scans (e.g., ACAS/Nessus), STIG checklists, and penetration testing reports. Correlate technical findings to actual operational risk.
* RMF Execution:
Demonstrate mastery of RMF policies (NIST SP 800-53 Rev 5, CNSSI 1253, DoD 8510.01, ICD 503). Assist the government Authorizing Official (AO) by translating complex technical compliance shortfalls into actionable, mission-contextualized risk decisions.
* Diverse Architectures:
Evaluate the security performance, integrity, and residual risk of varied environments, including Platform Information Technology (PIT), hardware/software systems, communication networks, and satellite control systems, etc.
* Zero Trust & Next-Generation Architecture:
* Zero Trust Implementation:
Drive the adoption of Zero Trust architectural pillars (User, Device, Network, Application/Workload, Data, Visibility/Analytics, and Automation/Orchestration) across all client portfolios.
* Cross Domain Solutions (CDS):
Provide specialized expertise in designing, evaluating, and implementing CDS technologies. This includes complex enterprise deployments in classified compartmentalized environments and “point-to-point” solutions for isolated, tactical IT architectures.
* Emerging Technology Evaluation:
Continuously monitor state-of-the-art technologies (e.g., AI/ML, edge computing, quantum-resistant cryptography) and the evolving threat landscape to ensure client systems anticipate and mitigate next-generation threats.
* Stakeholder Engagement & Liaison:
* Technical Translation:
Facilitate seamless communication with the client Portfolio technical SMEs, effectively translating AO directives to engineers and engineering challenges to the AO.
* Community Representation:
Serve as a key liaison between the Defense Industrial Base (DIB), government cybersecurity entities, security assessment organizations, and Special Access Program (SAP) IT working groups to maintain alignment with the broader defense innovation ecosystem. Required
Skills and Qualifications
* Active Top Secret security clearance.
* Bachelor’s degree in Information Technology, Computer Science, or related field (or equivalent experience).
* Minimum of twelve (12) years of demonstrated experience in IT, cybersecurity engineering, and Assessment & Authorization (A&A), with increasing responsibility.
* Significant and proven multi-domain experience with SAP and SCI Systems, to include PIT, Cloud environments, Cross Domain Solutions.
* Active baseline certification equivalent to DoD 8140.01 / 8570.01-M Information Assurance Workforce Improvement Program (IA WIP) for IAT Level III or IAM Level III (e.g., CISSP, CISM, GSLC, CASP+ CE).
* Aptitude for aligning cyber risk management with real-world mission outcomes, proactively tailoring security assessments to enable and protect the mission rather than imposing dogmatic compliance hurdles.
* Ability to translate complex technical vulnerabilities into clear, operational risk statements (Mission Impact) for executive leadership and the AO.
* Deep understanding of system architectures, data flows, port/protocol matrix analysis, and network boundary defense concepts.
* Proficiency in analyzing outputs from technical tools such as ACAS, SCAP, STIG Viewer, Splunk/SIEMs, and cloud security posture management (CSPM) tools.
* Expertise in securing and assessing Cloud…
Position Requirements
10+ Years
work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×