Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cybersecurity SME Level II

OneZero Solutions

Job Description

Job Description

We are an employee-centric company that truly values our team members and the contributions they make to our customers and the missions they support. We pride ourselves on being forward-leaning thinkers and on building teams that are, and continue to be, technically proficient across a broad range of cyber mission areas. OneZero full-time employees receive a highly competitive benefits package, including health, dental, vision, and life insurance, a 401(k) with company matching, paid time off and holidays, an employee referral program, and educational assistance. Additional details are available on our website:

Position : Cybersecurity SME Level II

Location : Hybrid – National Capital Region (USCG Headquarters, 2703 Martin Luther King Jr. Ave SE, Washington, DC and USCG CG-C5I-Y, 7323 Telegraph Rd, Alexandria, VA)

Clearance: Active DoD SECRET (final) required

Position Summary

OneZero, LLC is seeking a Cybersecurity SME (Level II) to support a federal cybersecurity program office under an Information Assurance Risk Management Framework (IA RMF) support services contract. The Cybersecurity SME serves as a technical expert performing Information System Security Engineer (ISSE) services and cybersecurity compliance assessment, management, and reporting for federal information systems and operational technology. The SME provides insight and guidance on strategic, tactical, and operational cybersecurity plans; analyzes system and architecture requirements; recommends cybersecurity solutions; and advises on the impact of new legislation, mandates, regulations, technologies, and industry best practices.

Key Responsibilities
  • Serve as the designated Information System Security Engineer (ISSE) for assigned USCG information systems, operational technology (OT), and hybrid cyber-physical platforms; lead the full NIST SP 800-37 RMF lifecycle from categorization through continuous monitoring and decommissioning.
  • Develop, maintain, and manage RMF authorization packages in eMASS, including SSPs, SCTMs, POA&Ms, Security Assessment Reports, Contingency Plans, Incident Response Plans, risk assessments, hardware/software lists, network topology and boundary diagrams, and data flow diagrams.
  • Perform Security Readiness Reviews (SRRs); review and analyze ACAS/Nessus vulnerability scan results; assign, track, and validate remediation through patching cycles or POA&Ms, including false-positive management and DISA ticket coordination.
  • Maintain continuous monitoring and ensure ongoing compliance with DoD, DHS, and USCG security requirements and DISA STIGs; support cATO initiatives, automated evidence collection, and dashboard integration.
  • Conduct Security Impact Assessments for proposed system changes; participate in change management boards, DHS SELC reviews, acquisition milestones (PMR, PDR, CDR), CONOPS working groups, and technical exchange meetings.
  • Integrate Zero Trust principles, RMF controls, and OT/ICS-specific security requirements into system designs; conduct security engineering analyses, trade studies, and architectural risk assessments.
  • Evaluate emerging threats, adversary TTPs, OT/ICS vulnerabilities, and supply-chain risks; recommend safeguards and mitigation strategies that reduce cyber-attack surface and enhance resilience.
  • Track and report status on authoritative orders (OPORDs, TASKORDs, FRAGOs, ALCOASTs, TCTOs) from JFHQ-DoDIN, USCYBERCOM, and CGCYBER.
  • Produce weekly, monthly, and quarterly cybersecurity readiness updates, metrics, executive-level briefings, and risk memorandums for Government leadership; respond to ad hoc cybersecurity data calls.
Required Qualifications
  • Bachelor's degree in Computer Science, Cyber Security, Information Technology, Software Engineering, Information Systems, Computer Engineering, or other related technical discipline from an accredited institution. No substitution of experience for the education requirement is permitted for this labor category.
  • Minimum 6 years of related, progressive cybersecurity experience in a technical field related to this labor category.
  • DoD 8140 certification - required on the first day of performance. Must hold one of the certifications listed under Certification Requirements below (CISSP, CompTIA SecurityX/CASP+, CSSLP, CCSP, or CompTIA Cloud+), active and in good standing, before starting work. Waivers will not be granted.
  • Active final SECRET personnel security clearance (Tier 3 / SF-86 investigation)
  • Recognized expertise and technical leadership in the cybersecurity discipline, with exceptional oral and written communication skills and the ability to interface with all levels of Government management.
  • Demonstrated experience implementing the RMF, including system categorization, control selection, implementation, assessment, and continuous monitoring.
  • Core knowledge of: risk management processes; national and international cybersecurity laws, regulations, policies, and ethics; cybersecurity principles; cyber threats and vulnerabilities; computer networking concepts, protocols, and network security methodologies; and the operational impacts of cybersecurity lapses.
Certification Requirements (DoD 8140)

Cyber work roles on this task order are qualified under DoD Directive 8140.01 and DoD Manual 8140.03, Cyberspace Workforce Qualification and Management Program, which replaced DoD 8570.01-M. This position is mapped to DoD Cyber Workforce Framework (DCWF) work role 631 – Information Systems Security Developer (ISSE) at the Intermediate proficiency level. The legacy 8570 equivalent is IASAE Level II.

Accepted certifications - the candidate must already hold one of the following:

  • CISSP - ISC2 Certified Information Systems Security Professional
  • CompTIA SecurityX - the current name for CASP+ (rebranded December 2024). Either name on a résumé refers to the same credential.
  • CSSLP - ISC2 Certified Secure Software Lifecycle Professional
  • CCSP - ISC2 Certified Cloud Security Professional
  • CompTIA Cloud+
  • CISSP-ISSEP or CISSP-ISSAP - exceeds this requirement and also qualifies the candidate for the Level III position

Rules that apply to every candidate:

  • The certification must be in hand before the start date . "In progress," "test scheduled," or "will obtain within 90 days" does not qualify. Per PWS Section 2.2, waivers and exceptions for contractor certifications will not be granted.
  • The certification must be active and in good standing . Ask the candidate for the certification number and expiration date, and confirm continuing education credits are current.
  • "Associate of ISC2" status does not The candidate must hold the full certification.
  • Security+ alone does not qualify for this position.
  • A higher-level certification satisfies a lower level for the same work role; a lower-level certification never satisfies a higher one.
  • If the candidate will hold privileged (administrator) access to USCG systems, they must also hold an industry certification in the technology area of focus, per the USCG Privileged User Management Program (PUMP).
  • After hire, qualification is maintained through continuous professional development - a minimum of 20 hours per year, or the continuing education required by the certification held. The Government verifies certification status through the DoD DMDC (milConnect) database.
  • Source of record for accepted qualification options is the DoD 8140 Foundational Qualification Matrix, Version 2.1 (effective 19 September 2025) , published at public.cyber.mil and updated quarterly. Contract requirements may be more stringent than the matrix; the list above governs for this position.
Desired Qualifications
  • Experience with USCG/DoD security tools: eMASS, ACAS/Nessus/Security Center, Elastic SIEM, HBSS, Tanium, Splunk, ServiceNow, and Burp Suite.
  • Experience with OT/ICS/SCADA security, shipboard or aviation platform systems, and the DoD "Assess Only" process.
  • Familiarity with DHS 4300A, COMDTINST cybersecurity policy, DoDAF artifacts, ITIL/DESMF practices, and DevSecOps pipelines.
  • Prior USCG, DHS, or DoD RMF support experience.
Work Environment & Additional Requirements
  • Hybrid schedule: routine telework is authorized, but personnel must report on-site (hoteling) for classified (SECRET) work, SIPRNet access, meetings and events requiring presence, training, and personnel on/offboarding - at no additional cost to the Government.
  • Work schedules mirror Government staff requirements, performed within a 0600–1800 window including all core hours, Monday through Friday.
  • SIPRNet account may be required; a final SECRET clearance and NATO security briefing/read-on are prerequisites for SIPRNet access.
  • Occasional CONUS travel (and potentially Alaska, Hawaii, or U.S. Territories), including other DoD facilities and USCG vessels/aircraft; travel is COR-approved and reimbursed per the FTR/JTR.

OneZero Solutions, LLC is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, pregnancy, genetic information, disability, status as a protected veteran, or any other protected category under applicable federal, state, and local laws.

To request an accommodation, please contact us at View email address on ziprecruiter.com or call View phone number on ziprecruiter.com.

 

 

 

Job Posted by ApplicantPro
Vacancy posted 29 days ago
Similar jobs that could be interesting for youBased on the Cybersecurity SME Level II in Alexandria, VA vacancy
  • $89.6k - $204k

    Cybersecurity Systems Engineer (Entry Level to SME) TS/SCI with Poly REQUIRED Position Description CGI Federal has an exciting opportunity for Cybersecurity Systems Engineers within our Intel sector advancing the national security mission through cutting edge technology... 
    Suggested
    Work at office
    Local area
    Arlington, VA
    a month ago
  • $89.6k - $204k

    System Administrator (Entry Level to SME) TS/SCI with Poly REQUIRED Position Description CGI Federal has an exciting opportunity...  ...platforms (e.g., VMware, Hyper-V, Proxmox). Cybersecurity & Compliance • Evaluate enterprise security postures, implement... 
    Suggested
    For contractors
    Work at office
    Local area
    Relocation
    Arlington, VA
    more than 2 months ago
  • $89.6k - $204k

    Application Developer (Entry Level to SME) TS/SCI with Poly REQUIRED Position Description CGI Federal has an exciting opportunity...  ...SQL/NoSQL). • Security Awareness: Strong understanding of cybersecurity best practices, encryption protocols, and vulnerability... 
    Suggested
    Work at office
    Local area
    Arlington, VA
    a month ago
  •  ...Job Description Job Description Cyber Incident Manager II Location: Arlington, VA (On-Site) Citizenship: US only Clearance...  ...Cyber Systems Argo Cyber Systems provides mission-critical cybersecurity support to U.S. Government agencies and critical infrastructure... 
    Suggested
    Monday to Friday
    Shift work

    Argo Cyber Systems

    Arlington, VA
    10 days ago
  • $135k - $175k

    GovCIO is seeking an SME Systems and Network Engineer to support...  ...mentorship to junior and mid-level engineering personnel to maintain...  ...: DoD 8570 IAT Level II or higher (e.g., Security+ CE,...  ...solutions, and strict federal cybersecurity compliance standards.Familiarity... 
    Suggested
    Permanent employment
    Immediate start
    Remote work

    Govcio

    Alexandria, VA
    13 days ago
  • $115k - $130k

     ...highly experienced Network Administrator SME to serve as the technical authority for...  ...classified environments.Collaborate closely with cybersecurity teams, systems engineers, and program...  ...ExperienceCertifications: DoD 8570 IAT Level II or higher (e.g., Security+ CE, CySA+)... 
    Currently hiring

    Govcio

    Alexandria, VA
    3 days ago
  •  ...Job Description Job Description Dark Wolf is looking for a Mid-Level DevSecOps SME / Information System Security Engineer (ISSE) to join a collaborative, dynamic team in a fast-paced, innovative mission environment. This position will work hand-in-hand with the customer... 
    Full time
    For contractors

    Dark Wolf Solutions

    Herndon, VA
    26 days ago
  • $188k

    Description Position:  Network Engineer - Level II Location: Rosslyn, VA Clearance:  Secret   The Network Engineer Level II is a mid-level IT professional responsible for designing, implementing, and maintaining network systems to ensure reliable and secure connectivity... 

    ActioNet, Inc.

    Rosslyn, VA
    more than 2 months ago
  • $131.3k - $237.35k

     ...is seeking a Hybrid Multi-Cloud Engineer SME to support mission-critical Department...  ...will collaborate with systems engineers, cybersecurity professionals, network engineers, and application...  ...time of hire.Current DoD 8570/8140 IAT Level II certification (Security+, CySA+, CCNA... 
    Full time

    Leidos

    Fort Belvoir, VA
    a month ago
  • $89.6k - $204k

    Business Systems Analyst (Entry Level to SME) TS/SCI with Poly REQUIRED Position Description CGI Federal has an exciting opportunity...  ...domains. • Lead, mentor, and train lower-level analysts (BSA I/II) in system analysis, methodologies, and best practices. •... 
    Work at office
    Local area
    Arlington, VA
    a month ago
  • $96k - $105k

     ...a highly skilled Multi-Cloud Engineer SME to support mission-critical Department...  ...Trust principles and Department of Defense cybersecurity requirements. Clearance: Must have...  ...Information (SCI). Current DoD 8570/8140 IAT Level II certification. Microsoft Certified:... 
    Contract work
    Temporary work
    Local area

    JCS Solutions LLC

    Fort Belvoir, VA
    a month ago
  • $120k - $165k

     ...Analytics is seeking a Principal Cyber Systems Engineer, SME to provide high-level technical expertise to the Office of the Undersecretary of...  ...university in computer science, Information Technology, cybersecurity, or a related science or engineering field. Mandatory Certifications... 
    Full time
    Work at office

    Praescient Analytics

    Arlington, VA
    a month ago
  • $117k - $130k

     ...Cybersecurity Engineer II Role Summary Howard University Hospital is seeking a Cybersecurity Engineer II to help protect the hospital’s...  ...Disclaimer The above statements describe the general nature and level of work performed. They are not intended to be an... 
    Full time
    Local area

    Howard University Hospital

    Washington DC
    29 days ago
  • $89.6k - $204k

    Software/Web Developer (Entry Level to SME) TS/SCI with Poly REQUIRED Position Description CGI Federal has an exciting opportunity for Software/Web Developers within our Intel sector advancing the national security mission through cutting edge technology. You... 
    Work at office
    Local area
    Arlington, VA
    more than 2 months ago
  •  ...Description Title: Network Based Systems Analyst II Description:   Solutions³ LLC is...  ..., using host and network-based cybersecurity analysis capabilities.     Solutions³ LLC...  ...performing investigations to characterize the level of severity of breaches and developing... 
    For contractors
    Immediate start

    Solutions³ LLC

    Arlington, VA
    a month ago
  • $135k - $172k

     ...is currently hiring a highly experienced SME Systems Engineer specializing in Federation...  ...years (or commensurate experience)Clearance Level: Must have an active Secret...  ...ExperienceCertifications: DoD 8570 IAT Level II or higher (e.g., Security+ CE, CySA+, or vendor... 
    Currently hiring

    Govcio

    Alexandria, VA
    a month ago
  • $89.6k - $204k

    Network Engineer (Entry Level to SME) TS/SCI with Poly REQUIRED Position Description CGI Federal has an exciting opportunity for a Network Engineers within our Intel sector advancing the national security mission through cutting edge technology. You must have a... 
    Work at office
    Local area
    Arlington, VA
    more than 2 months ago
  • $87k - $127k

     ...seeking an experienced Network Engineer (SME) to join our Integrated Information...  ...~ Active DoD 8570.01-M / DoD 8140 IAT Level II or III baseline certification (e.g., Security+...  ...cloud computing, software development, cybersecurity, digital modernization, and management consulting... 
    Full time
    Contract work
    Temporary work
    For contractors
    Local area
    Remote work

    JCS Solutions LLC

    Fort Belvoir, VA
    20 days ago
  • $89.6k - $204k

    Systems Engineer (Entry Level to SME) TS/SCI with Poly REQUIRED Position Description CGI Federal has an exciting opportunity for Systems Engineers within our Intel sector advancing the national security mission through cutting edge technology. You must have a passion... 
    Work at office
    Local area
    Arlington, VA
    more than 2 months ago
  •  ...~ Annual membership to Costco or Sam's ~401K ~ ...and much, much more!   Role Designation: IT Service Desk Specialist Level II IT Security Designation: ADP/IT-II Investigation Required: Tier 3 (T3) IA Technical/Management Designation: IAT II and... 
    Contract work
    Local area

    Nalu Federal

    Bethesda, MD
    13 days ago
  •  ...available on our website:  Position Title: SME – Information Security AnalystLocation:...  ...as ISSO of record and primary cybersecurity point of contact for an assigned portfolio...  ...ensure realistic milestones, accurate risk levels, and attached closure evidence(RMF Step... 
    Full time
    For contractors
    Local area
    Remote work
    Monday to Friday
    Flexible hours

    OneZero Solutions

    Washington DC
    3 days ago
  •  ...for a Cyber Security Operations Specialist II to operate and manage all aspects of...  ...services on an expanded 12x5 service support level during core hours and on-call support...  ...Infrastructure. Receive tickets from other Cybersecurity Operations Services sub-services and... 

    WILLIAM C BROWN INC (WCBinc)

    Springfield, VA
    24 days ago
  • $108.48k - $184.41k

     ...developers, and researchers to evolve, automate, and enhance cybersecurity capabilities in defense or federal agencies. This is an opportunity...  ...actors5 or more years of Leadership experienceActive high-level security clearance required as part of client contract requirementDue... 
    Full time
    Contract work
    Work experience placement
    Work at office
    2 days per week

    ICF

    Arlington, VA
    a month ago
  •  ...Title: Host Based Systems Analyst II Description:   Solutions³ LLC is supporting...  ...-based, network-based, and cloud-based cybersecurity analysis capabilities. Personnel provide...  ...g. snort) Experience performing packet-level analysis Experience conducting trend analysis... 
    Full time
    For contractors
    Immediate start
    Remote work

    Solutions³ LLC

    Arlington, VA
    a month ago
  •  ...Data Warehouse Subject Matter Expert (SME) 100% on-site Secret Clearance required...  ...Subject Matter Expert (SME) provides senior-level technical leadership in the design,...  ...offer the opportunity to work on high-impact cybersecurity missions alongside experienced professionals... 
    Full time
    For contractors
    Work at office

    Nationwide IT Services

    Arlington, VA
    more than 2 months ago
  •  ...ZERO TRUST (ZT) PROCESS RE-ENGINEERING SME POSITION OVERVIEW The Zero Trust Process...  ...Engineering SME exists to provide senior-level advisory expertise in assessing,...  ...engineering the agency's enterprise IT and cybersecurity processes to advance its Zero Trust implementation... 
    Casual work
    Remote work

    Zermount, Inc.

    Arlington, VA
    3 days ago
  • $150k - $175k

     ...As Sr. Cloud FinOps Engineer II, design secure, scalable, and resilient cloud solutions for complex enterprise environments. You...  ...Collaboration: Partner with client stakeholders, cloud engineers, cybersecurity teams, finance organizations, and program leadership to... 
    Full time
    Local area

    MetroStar Systems

    Arlington, VA
    a month ago
  • $175k - $210k

     ...OpenShift Cloud Engineer Subject Matter Expert (SME) to work Hybrid remote/onsite supporting...  ...environments across multiple classification levels.The successful candidate will coordinate with cloud, infrastructure, cybersecurity, Program and Project Management, Customer, and... 
    Remote work
    3 days per week

    ECS Federal

    Springfield, VA
    a month ago
  •  ...We are seeking a Subject Matter Expert (SME) Solution & Systems Integration Architect...  ...integration, and transition views at the level required for decisions and implementation...  ...integration, data, cloud/platform, network, cybersecurity, endpoint/mobility, identity, ITSM, or... 
    Flexible hours

    Ignite IT

    Washington DC
    a month ago
  •  ...We are seeking a Subject Matter Expert (SME) Enterprise Architect to join our team supporting...  ..., logical, solution, and technical levels. Maintain architecture principles,...  ...Coordinate architecture activities with cybersecurity, data management, cloud, infrastructure,... 
    Flexible hours

    Ignite IT

    Washington DC
    a month ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cybersecurity SME Level II. Be the first to apply!