Enter a job title or keyword

Cybersecurity SME Level II

OneZero Solutions


Job Location:

Alexandria, VA - USA

Yearly Salary: USD 120000 - 200000
Posted: 1 September 2026 (6 hours ago)
Application Deadline: 29 November 2026
Vacancies: 1 Vacancy

Job Summary

We are an employee-centric company that truly values our team members and the contributions they make to our customers and the missions they support. We pride ourselves on being forward-leaning thinkers and on building teams that are and continue to be technically proficient across a broad range of cyber mission areas. OneZero full-time employees receive a highly competitive benefits package including health dental vision and life insurance a 401(k) with company matching paid time off and holidays an employee referral program and educational assistance. Additional details are available on our website: Cybersecurity SME Level II

Location: Hybrid National Capital Region (USCG Headquarters 2703 Martin Luther King Jr. Ave SE Washington DC and USCG CG-C5I-Y 7323 Telegraph Rd Alexandria VA)

Clearance: Active DoD SECRET (final) required

OneZero LLC is seeking a Cybersecurity SME (Level II) to support a federal cybersecurity program office under an Information Assurance Risk Management Framework (IA RMF) support services contract. The Cybersecurity SME serves as a technical expert performing Information System Security Engineer (ISSE) services and cybersecurity compliance assessment management and reporting for federal information systems and operational technology. The SME provides insight and guidance on strategic tactical and operational cybersecurity plans; analyzes system and architecture requirements; recommends cybersecurity solutions; and advises on the impact of new legislation mandates regulations technologies and industry best practices.

Key Responsibilities
  • Serve as the designated Information System Security Engineer (ISSE) for assigned USCG information systems operational technology (OT) and hybrid cyber-physical platforms; lead the full NIST SP 800-37 RMF lifecycle from categorization through continuous monitoring and decommissioning.
  • Develop maintain and manage RMF authorization packages in eMASS including SSPs SCTMs POA&Ms Security Assessment Reports Contingency Plans Incident Response Plans risk assessments hardware/software lists network topology and boundary diagrams and data flow diagrams.
  • Perform Security Readiness Reviews (SRRs); review and analyze ACAS/Nessus vulnerability scan results; assign track and validate remediation through patching cycles or POA&Ms including false-positive management and DISA ticket coordination.
  • Maintain continuous monitoring and ensure ongoing compliance with DoD DHS and USCG security requirements and DISA STIGs; support cATO initiatives automated evidence collection and dashboard integration.
  • Conduct Security Impact Assessments for proposed system changes; participate in change management boards DHS SELC reviews acquisition milestones (PMR PDR CDR) CONOPS working groups and technical exchange meetings.
  • Integrate Zero Trust principles RMF controls and OT/ICS-specific security requirements into system designs; conduct security engineering analyses trade studies and architectural risk assessments.
  • Evaluate emerging threats adversary TTPs OT/ICS vulnerabilities and supply-chain risks; recommend safeguards and mitigation strategies that reduce cyber-attack surface and enhance resilience.
  • Track and report status on authoritative orders (OPORDs TASKORDs FRAGOs ALCOASTs TCTOs) from JFHQ-DoDIN USCYBERCOM and CGCYBER.
  • Produce weekly monthly and quarterly cybersecurity readiness updates metrics executive-level briefings and risk memorandums for Government leadership; respond to ad hoc cybersecurity data calls.
Required Qualifications
  • Bachelors degree in Computer Science Cyber Security Information Technology Software Engineering Information Systems Computer Engineering or other related technical discipline from an accredited institution. No substitution of experience for the education requirement is permitted for this labor category.
  • Minimum 6 years of related progressive cybersecurity experience in a technical field related to this labor category.
  • DoD 8140 certification - required on the first day of performance. Must hold one of the certifications listed under Certification Requirements below (CISSP CompTIA SecurityX/CASP CSSLP CCSP or CompTIA Cloud) active and in good standing before starting work. Waivers will not be granted.
  • Active final SECRET personnel security clearance (Tier 3 / SF-86 investigation)
  • Recognized expertise and technical leadership in the cybersecurity discipline with exceptional oral and written communication skills and the ability to interface with all levels of Government management.
  • Demonstrated experience implementing the RMF including system categorization control selection implementation assessment and continuous monitoring.
  • Core knowledge of: risk management processes; national and international cybersecurity laws regulations policies and ethics; cybersecurity principles; cyber threats and vulnerabilities; computer networking concepts protocols and network security methodologies; and the operational impacts of cybersecurity lapses.
Certification Requirements (DoD 8140)

Cyber work roles on this task order are qualified under DoD Directive 8140.01 and DoD Manual 8140.03 Cyberspace Workforce Qualification and Management Program which replaced DoD 8570.01-M. This position is mapped to DoD Cyber Workforce Framework (DCWF) work role 631 Information Systems Security Developer (ISSE) at the Intermediate proficiency level. The legacy 8570 equivalent is IASAE Level II.

Accepted certifications - the candidate must already hold one of the following:

  • CISSP - ISC2 Certified Information Systems Security Professional
  • CompTIA SecurityX - the current name for CASP (rebranded December 2024). Either name on a résumé refers to the same credential.
  • CSSLP - ISC2 Certified Secure Software Lifecycle Professional
  • CCSP - ISC2 Certified Cloud Security Professional
  • CompTIA Cloud
  • CISSP-ISSEP or CISSP-ISSAP - exceeds this requirement and also qualifies the candidate for the Level III position

Rules that apply to every candidate:

  • The certification must be in hand before the start date. In progress test scheduled or will obtain within 90 days does not qualify. Per PWS Section 2.2 waivers and exceptions for contractor certifications will not be granted.
  • The certification must be active and in good standing. Ask the candidate for the certification number and expiration date and confirm continuing education credits are current.
  • Associate of ISC2 status does not The candidate must hold the full certification.
  • Security alone does not qualify for this position.
  • A higher-level certification satisfies a lower level for the same work role; a lower-level certification never satisfies a higher one.
  • If the candidate will hold privileged (administrator) access to USCG systems they must also hold an industry certification in the technology area of focus per the USCG Privileged User Management Program (PUMP).
  • After hire qualification is maintained through continuous professional development - a minimum of 20 hours per year or the continuing education required by the certification held. The Government verifies certification status through the DoD DMDC (milConnect) database.
  • Source of record for accepted qualification options is the DoD 8140 Foundational Qualification Matrix Version 2.1 (effective 19 September 2025) published at and updated quarterly. Contract requirements may be more stringent than the matrix; the list above governs for this position.
Desired Qualifications
  • Experience with USCG/DoD security tools: eMASS ACAS/Nessus/Security Center Elastic SIEM HBSS Tanium Splunk ServiceNow and Burp Suite.
  • Experience with OT/ICS/SCADA security shipboard or aviation platform systems and the DoD Assess Only process.
  • Familiarity with DHS 4300A COMDTINST cybersecurity policy DoDAF artifacts ITIL/DESMF practices and DevSecOps pipelines.
  • Prior USCG DHS or DoD RMF support experience.
Work Environment & Additional Requirements
  • Hybrid schedule: routine telework is authorized but personnel must report on-site (hoteling) for classified (SECRET) work SIPRNet access meetings and events requiring presence training and personnel on/offboarding - at no additional cost to the Government.
  • Work schedules mirror Government staff requirements performed within a window including all core hours Monday through Friday.
  • SIPRNet account may be required; a final SECRET clearance and NATO security briefing/read-on are prerequisites for SIPRNet access.
  • Occasional CONUS travel (and potentially Alaska Hawaii or U.S. Territories) including other DoD facilities and USCG vessels/aircraft; travel is COR-approved and reimbursed per the FTR/JTR.

OneZero Solutions LLC is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race color religion sex sexual orientation gender identity national origin age pregnancy genetic information disability status as a protected veteran or any other protected category under applicable federal state and local laws.

To request an accommodation please contact us at or call .