Senior Cybersecurity SME/SCA

M9 SolutionsChantilly, VA
Onsite

About The Position

M9 Solutions is seeking a Senior Cybersecurity SME/SCA to work onsite in support of a government contract for a client located in Chantilly, VA. An active Top Secret clearance is required. This role involves strategic advisement, lifecycle integration, engineering technical reviews, DevSecOps alignment, and threat modeling. The position also includes advanced assessment and risk determination, including technical validation, RMF execution, and evaluation of diverse architectures. A key focus is on Zero Trust and next-generation architecture implementation, including Cross Domain Solutions (CDS) and emerging technology evaluation. Stakeholder engagement and liaison are also critical components, involving technical translation and community representation.

Requirements

  • Active Top Secret security clearance.
  • Bachelor’s degree in Information Technology, Computer Science, or related field (or equivalent experience).
  • Minimum of twelve (12) years of demonstrated experience in IT, cybersecurity engineering, and Assessment & Authorization (A&A), with increasing responsibility.
  • Significant and proven multi-domain experience with SAP and SCI Systems, to include PIT, Cloud environments, Cross Domain Solutions.
  • Active baseline certification equivalent to DoD 8140.01 / 8570.01-M Information Assurance Workforce Improvement Program (IA WIP) for IAT Level III or IAM Level III (e.g., CISSP, CISM, GSLC, CASP+ CE).
  • Aptitude for aligning cyber risk management with real-world mission outcomes, proactively tailoring security assessments to enable and protect the mission rather than imposing dogmatic compliance hurdles.
  • Ability to translate complex technical vulnerabilities into clear, operational risk statements (Mission Impact) for executive leadership and the AO.
  • Deep understanding of system architectures, data flows, port/protocol matrix analysis, and network boundary defense concepts.
  • Proficiency in analyzing outputs from technical tools such as ACAS, SCAP, STIG Viewer, Splunk/SIEMs, and cloud security posture management (CSPM) tools.
  • Expertise in securing and assessing Cloud environments (AWS, Azure IL5/IL6) and containerized applications (Kubernetes, Docker).
  • Understanding of MASS, Xacta, or similar A&A workflow tools within classified and unclassified environments.

Nice To Haves

  • Direct experience working within the defense innovation ecosystem, specifically with rapid prototyping, test environments, and Platform IT (PIT) systems.
  • Proven hands-on technical experience working as a systems integrator or cybersecurity engineer, specifically with enterprise networks, cloud computing systems, and/or all-domain platform IT architectures.

Responsibilities

  • Actively participate in System Requirements Reviews (SRR), Preliminary Design Reviews (PDR), and Critical Design Reviews (CDR) to ensure security is baked in, rather than bolted on.
  • Guide project teams in integrating automated security testing (SAST/DAST) and continuous compliance monitoring into Agile development pipelines where appropriate.
  • Conduct system-level threat modeling during the design phase to identify potential attack vectors and recommend architectural mitigations before code is written or hardware is procured.
  • Conduct deep technical reviews of vulnerability scans (e.g., ACAS/Nessus), STIG checklists, and penetration testing reports. Correlate technical findings to actual operational risk.
  • Demonstrate mastery of RMF policies (NIST SP 800-53 Rev 5, CNSSI 1253, DoD 8510.01, ICD 503). Assist the government Authorizing Official (AO) by translating complex technical compliance shortfalls into actionable, mission-contextualized risk decisions.
  • Evaluate the security performance, integrity, and residual risk of varied environments, including Platform Information Technology (PIT), hardware/software systems, communication networks, and satellite control systems, etc.
  • Drive the adoption of Zero Trust architectural pillars (User, Device, Network, Application/Workload, Data, Visibility/Analytics, and Automation/Orchestration) across all client portfolios.
  • Provide specialized expertise in designing, evaluating, and implementing CDS technologies. This includes complex enterprise deployments in classified compartmentalized environments and “point-to-point” solutions for isolated, tactical IT architectures.
  • Continuously monitor state-of-the-art technologies (e.g., AI/ML, edge computing, quantum-resistant cryptography) and the evolving threat landscape to ensure client systems anticipate and mitigate next-generation threats.
  • Facilitate seamless communication with the client Portfolio technical SMEs, effectively translating AO directives to engineers and engineering challenges to the AO.
  • Serve as a key liaison between the Defense Industrial Base (DIB), government cybersecurity entities, security assessment organizations, and Special Access Program (SAP) IT working groups to maintain alignment with the broader defense innovation ecosystem.

Benefits

  • Competitive compensation package
  • Value diverse perspectives in driving the vision of the company
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service