Cybersecurity Automation Subject Matter Expert (SME) (TS/SCI) jobs in United States
cer-icon
Apply on Employer Site
company-logo

Koniag Government Services · 2 weeks ago

Cybersecurity Automation Subject Matter Expert (SME) (TS/SCI)

Koniag Government Services is seeking a Cybersecurity Automation Subject Matter Expert (SME) to support their government customer at the Mark Center. The role involves engineering and implementing automated solutions to modernize and streamline cybersecurity compliance within the Department of Defense Risk Management Framework (RMF).

EnterpriseGovernmentProfessional Services
badNo H1BnoteSecurity Clearance RequirednoteU.S. Citizen Onlynote

Responsibilities

Provide subject matter expertise in the development and deployment of automated RMF security control assessment, informing authorization, and continuous monitoring processes
Develop, integrate, and maintain automated workflows for evidence collection, control validation, and reporting
Leverage scripting, orchestration, and DevSecOps pipelines to embed compliance and security checks
Collaborate with cybersecurity engineers, assessors, system owners, and other stakeholders to align automation solutions with mission needs
Integrate automated testing tools (e.g., vulnerability scanners, configuration management tools) into RMF packages
Provide subject matter expertise on leveraging OSCAL (Open Security Controls Assessment Language) and other machine-readable compliance frameworks
Deliver training, documentation, and guidance to program teams on automated RMF practices
Stay current and provide feedback and recommendations on DoD cybersecurity policies, NIST updates, and emerging compliance automation technologies

Qualification

DoD RMF expertiseCybersecurity compliance knowledgeAutomation solutions developmentPythonPowerShellAnsibleNIST SP 800-53 Rev. 5DoD 8570.01-M certificationContinuous monitoringGRC toolsDevSecOps pipelinesVulnerability managementSTIG compliance

Required

TS/SCI security clearance required
Bachelor's degree in Cybersecurity, Information Systems, Computer Science, or related field
15+ years of experience in DoD cybersecurity compliance, assessment, or risk management
Hands-on expertise with RMF processes, NIST SP 800-53 Rev. 5 controls, and DoD RMF [DoDI 8510.01]
Experience developing automation solutions using Python, PowerShell, Ansible, or similar scripting/orchestration tools
Familiarity with continuous monitoring and automated compliance reporting
DoD 8570.01-M certification (e.g., CISSP, CAP, Security+ CE)
Ability to work on-site 1-4 days a week

Preferred

Experience with Governance, Risk, and Compliance (GRC tools) (e.g., eMASS, Archer, Xacta) and their automation/integration
Knowledge of OSCAL and machine-readable RMF artifacts
Experience with DevSecOps pipelines, CI/CD, and Infrastructure as Code (IaC)
Background in vulnerability management, STIG compliance, or automated security testing

Benefits

Health, dental, and vision insurance
401K with company matching
Flexible spending accounts
Paid holidays
Three weeks paid time off

Company

Koniag Government Services

twittertwitter
company-logo
Koniag Government Services is a Professional Services and Operational Management to Federal Government.

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Kevin Wideman
Chief Executive Officer
linkedin
leader-logo
Jack Wise
SVP Business Development Lifecycle
linkedin
Company data provided by crunchbase