top of page
Information Systems Security Specialist III
Virginia Beach, Va
This position is contingent upon funding with an expected start date of December 2025
SECRET Clearance required
SRG is seeking an Information System Security Engineer (ISSE) to perform STIG assessments using SCAP benchmarks, conduct vulnerability assessments with ACAS, manage compliance tracking in eMASS, develop POA&Ms, and complete RMF Step 5 authorizations
On-site only, no telework.
Position Responsibilities
- Conduct Security Technical Implementation Guide (STIG) assessments using SCAP benchmarks and Evaluate STIG to ensure compliance with security standards.
- Perform vulnerability assessments using the Assured Compliance Assessment Solution (ACAS) tool.
- Execute processes within Enterprise Mission Assurance Support Service (eMASS) for security authorization and compliance tracking.
- Develop and maintain Plans of Action and Milestones (POA&M) to address security vulnerabilities and ensure risk mitigation.
- Complete Risk Management Framework (RMF) Step 5 authorizations in an Information System Security Engineer (ISSE) capacity.
- Provide recommendations to stakeholders on risk reduction strategies and security enhancements.
- Ensure compliance with DoD 8570.01-M and DFARS 252.239-7001 security baseline requirements.
Required Qualifications
- Active DOD Secret security clearance
- Education: Bachelor’s degree in Cybersecurity, Cyber Operations, Cyber Engineering, Information System, Information Technology, Computer, Electrical, or Electronics Engineering, Software Engineering, Computer Science, Mathematics with a concentration in Computer Science, or equivalent to above disciplines.
- Ten (10) years of full-time professional experience performing Risk Management Framework activities.
- Demonstrated experience in the following areas
- Performing STIG assessments to include using SCAP benchmarks and Evaluate STIG
- Performing vulnerability assessments with the Assured Compliance Assessment Solution tool
- Utilization and process execution within eMASS
- Developing Plans of Actions and Milestones (POA&M) entries
- Completing Risk Management Framework Step 5 authorizations in the ISSE capacity
- Communicating risk reduction recommendations to stakeholders
- DoD Approved 8570 Baseline Certification: Category IAM Level III (One of the Following):
- CISM
- CISSP (or Associate)
- CCISO
- GSLC
Preferred Qualifications
Ready to Apply?
If you meet the qualificationsand are mission ready, we encourage you to apply.
Apply Now
You are applying for:
Information Systems Security Specialist III
Fields marked with * are required.
1
Contact Information
2
Application Documents
Upload Resume
Max: 2 MB
Upload Cover Letter
Max: 2 MB
3
Optional Demographic Information
The questions below are designed for demographic data collection purposes only. They are entirely optional and will not be taken into account when evaluating candidates for the position. Your responses to these questions will be kept confidential and solely used for statistical analysis.
Race
Your application has been submitted.
Please make sure all required fields are completed.
Explore more opportunities
bottom of page
