Cybersecurity SME Level III Remote / Telecommute Jobs

Location: Hybrid – National Capital Region (USCG Headquarters, 2703 Martin Luther King Jr. Ave SE, Washington, DC and USCG CG-C5I-Y, 7323 Telegraph Rd, Alexandria, VA)
Clearance: Active DoD SECRET (final) required
Employment Type: Full-time (1,912 hours/year)
Position Summary
OneZero, LLC is seeking a Cybersecurity SME (Level III) to support a federal cybersecurity program office under an Information Assurance Risk Management Framework (IA RMF) support services contract. The Cybersecurity SME serves as a technical expert performing Information System Security Engineer (ISSE) services and cybersecurity compliance assessment, management, and reporting for federal information systems and operational technology. The SME provides insight and guidance on strategic, tactical, and operational cybersecurity plans; analyzes system and architecture requirements; recommends cybersecurity solutions; and advises on the impact of new legislation, mandates, regulations, technologies, and industry best practices.
Key Responsibilities
• Serve as the designated Information System Security Engineer (ISSE) for assigned USCG information systems, operational technology (OT), and hybrid cyber-physical platforms; lead the full NIST SP 800-37 RMF lifecycle from categorization through continuous monitoring and decommissioning.
• Develop, maintain, and manage RMF authorization packages in eMASS, including SSPs, SCTMs, POA&Ms, Security Assessment Reports, Contingency Plans, Incident Response Plans, risk assessments, hardware/software lists, network topology and boundary diagrams, and data flow diagrams.
• Perform Security Readiness Reviews (SRRs); review and analyze ACAS/Nessus vulnerability scan results; assign, track, and validate remediation through patching cycles or POA&Ms, including false-positive management and DISA ticket coordination.
• Maintain continuous monitoring and ensure ongoing compliance with DoD, DHS, and USCG security requirements and DISA STIGs; support cATO initiatives, automated evidence collection, and dashboard integration.
• Conduct Security Impact Assessments for proposed system changes; participate in change management boards, DHS SELC reviews, acquisition milestones (PMR, PDR, CDR), CONOPS working groups, and technical exchange meetings.
• Integrate Zero Trust principles, RMF controls, and OT/ICS-specific security requirements into system designs; conduct security engineering analyses, trade studies, and architectural risk assessments.
• Evaluate emerging threats, adversary TTPs, OT/ICS vulnerabilities, and supply-chain risks; recommend safeguards and mitigation strategies that reduce cyber-attack surface and enhance resilience.
• Track and report status on authoritative orders (OPORDs, TASKORDs, FRAGOs, ALCOASTs, TCTOs) from JFHQ-DoDIN, USCYBERCOM, and CGCYBER.
• Produce weekly, monthly, and quarterly cybersecurity readiness updates, metrics, executive-level briefings, and risk memorandums for Government leadership; respond to ad hoc cybersecurity data calls.
• Provide senior technical leadership and mentorship to the ISSE/SME team; formulate and submit continuous improvement recommendations to the COR regarding contracted operations.
Required Qualifications
• Bachelor's degree in Computer Science, Cyber Security, Information Technology, Software Engineering, Information Systems, Computer Engineering, or other related technical discipline from an accredited institution. No substitution of experience for the education requirement is permitted for this labor category.
• Minimum 8 years of related, progressive cybersecurity experience in a technical field related to this labor category.
• DoD 8140 certification — required on the first day of performance. Must hold CISSP-ISSEP or CISSP-ISSAP (each requires an active CISSP), active and in good standing, before starting work. See Certification Requirements below. Waivers will not be granted.
• Active final SECRET personnel security clearance (Tier 3 / SF-86 investigation)
• U.S. citizenship; favorably adjudicated background investigation and FBI fingerprint check; ability to obtain and maintain a DoD Common Access Card (CAC) as a condition of continued employment.
• Recognized expertise and technical leadership in the cybersecurity discipline, with exceptional oral and written communication skills and the ability to interface with all levels of Government management.
• Demonstrated experience implementing the RMF, including system categorization, control selection, implementation, assessment, and continuous monitoring.
• Core knowledge of: risk management processes; national and international cybersecurity laws, regulations, policies, and ethics; cybersecurity principles; cyber threats and vulnerabilities; computer networking concepts, protocols, and network security methodologies; and the operational impacts of cybersecurity lapses.
Certification Requirements (DoD 8140)
Cyber work roles on this task order are qualified under DoD Directive 8140.01 and DoD Manual 8140.03, Cyberspace Workforce Qualification and Management Program, which replaced DoD 8570.01-M. This position is mapped to DoD Cyber Workforce Framework (DCWF) work role 631 – Information Systems Security Developer (ISSE) at the Advanced proficiency level. The legacy 8570 equivalent is IASAE Level III.
Accepted certifications — the candidate must already hold one of the following:
• CISSP-ISSEP — ISC2 Information Systems Security Engineering Professional
• CISSP-ISSAP — ISC2 Information Systems Security Architecture Professional
Rules that apply to every candidate:
• Both accepted certifications require an active CISSP as a prerequisite — the candidate holds the CISSP plus the concentration. A standalone CISSP, SecurityX/CASP+, CSSLP, CCSP, or Cloud+ meets the Level II requirement but does not meet Level III.
• The certification must be in hand before the start date. "In progress," "test scheduled," or "will obtain within 90 days" does not qualify. Per PWS Section 2.2, waivers and exceptions for contractor certifications will not be granted.
• The certification must be active and in good standing. Ask the candidate for the certification number and expiration date, and confirm continuing education credits are current.
• "Associate of ISC2" status does not count. The candidate must hold the full certification.
• A higher-level certification satisfies a lower level for the same work role; a lower-level certification never satisfies a higher one.
• If the candidate will hold privileged (administrator) access to USCG systems, they must also hold an industry certification in the technology area of focus, per the USCG Privileged User Management Program (PUMP).
• After hire, qualification is maintained through continuous professional development — a minimum of 20 hours per year, or the continuing education required by the certification held. The Government verifies certification status through the DoD DMDC (milConnect) database.
• Source of record for accepted qualification options is the DoD 8140 Foundational Qualification Matrix, Version 2.1 (effective 19 September 2025), published at public.cyber.mil and updated quarterly. Contract requirements may be more stringent than the matrix; the list above governs for this position.
Desired Qualifications
• Experience with USCG/DoD security tools: eMASS, ACAS/Nessus/Security Center, Elastic SIEM, HBSS, Tanium, Splunk, ServiceNow, and Burp Suite.
• Experience with OT/ICS/SCADA security, shipboard or aviation platform systems, and the DoD “Assess Only” process.
• Familiarity with DHS 4300A, COMDTINST cybersecurity policy, DoDAF artifacts, ITIL/DESMF practices, and DevSecOps pipelines.
• Prior USCG, DHS, or DoD RMF support experience.
Work Environment & Additional Requirements
• Hybrid schedule: routine telework is authorized, but personnel must report on-site (hoteling) for classified (SECRET) work, SIPRNet access, meetings and events requiring presence, training, and personnel on/offboarding — at no additional cost to the Government.
• Work schedules mirror Government staff requirements, performed within a 0600–1800 window including all core hours, Monday through Friday.
• SIPRNet account may be required; a final SECRET clearance and NATO security briefing/read-on are prerequisites for SIPRNet access.
• Occasional CONUS travel (and potentially Alaska, Hawaii, or U.S. Territories), including other DoD facilities and USCG vessels/aircraft; travel is COR-approved and reimbursed per the FTR/JTR.

Back to blog

Other Jobs To Apply

Remote Customer Support Specialist- Part Time & Full Time

PACS Admin with Site co-ordinator (reputed company and Divrad)

Social Media Lead (m/w/d) | Strategie & Performance | 100 % remote

**Experienced Online Customer Support Specialist – reputed company Chat Support (Remote) – Part-Time Opportunity**

Junior Level/ Entry Level Software Engineer (Remote)

Ramp Agent - Evening Shift

Work from Home Overnight Jobs Late Night Customer Experience Specialist $25-$35/hr ? Enhance customer experiences during late-night hours in a home-based role.

Warehouse Associate - Night Shift- Immediate Hiring

reputed company Careers - Find flexible, work-from-home jobs helping customers while earning $25-$35 per hour.

Call Center Representative- Reno, Nevada- Remote (Any city, NV, US, 99999)

Nurse Consultant (Nursing Home Surveyor)

Warehouse Worker Job at Hayes Company LLC in Forney

SOC Analyst I (Remote)

Remote Part‑Time Customer Service Representative – Flight Operations & Passenger Support – Earn $27/hr at arenaflex

Live Chat Jobs - Remote Position (Up to $35/hour) - No Degree Required, No Experience Necessary

[Remote] DR Systems PACS Administrator / Specialist

-Work From Home Position | Entry-Level | Flexible Hours

Flexible Part-Time Remote Data Entry Specialist | Flexible Hours & Training Provided | Join arenaflex Team

reputed company, Progressive Care, Per-diem

Remote Physical Therapist in ID

Overnight Positions Near Me Online – Non-Phone Digital Chat Role | $25–$35/hr

reputed company RN – Clinical Documentation Specialist – CDIP CCDS Required – 100% Remote, GA

HelpDesk (Customer Support)

Senior Technical Program Manager, Amazon Access - Apply

Entry Level Financial Protection Specialist (Remote)

[Remote] Epic- Clinical Service Desk Specialist-REMOTE

Work from Home as a Game Tester in the United States

Medical Scribe (Remote - Full Time) - Full-time

Part Time Package Handler (Twilight) - YVR Area

Lead Backend Developer – Aviation Systems (Remote, Full-Time)

Remote Cybersecurity Jobs - reputed company

Appeals Nurse (RN) Analyst (670084)

Dealer Development Manager (Nashville, TN)

Entry-Level Data Entry Specialist Remote

Part-Time Remote Typist/Data Entry Clerk

No Experience Necessary | Work from Home Chat Agent Job - $25-$35/hour (Remote), Compensation: $25-$35/hour

**Remote Data Entry Clerk – Part‑Time, Precision‑Focused, Flexible Hours, Global Collaboration**

Remote Product Support Representative (No Degree Required/High Paying)

Entry-Level Data Entry Clerk – No Experience Required – Immediate Start at arenaflex – Grow Your Career in a Dynamic Data‑Driven Environment

**Dedicated Overnight Live Chat Support Agent – Remote, Night Shift Customer Service Specialist with Strong Communication Skills**

**Customer Service & Support Representative – Remote – 6+ Month Engagement – Join arenaflex’s Dynamic Operations & Assurance Team**

Experienced Remote Administrative Support & Data Entry Assistant – Part-Time, Entry Level | Flexible Hours + Great Pay

Weekend Job / Part-time Job - Online Tutor in Türkiye

[Remote] Business Operations Admin

Remote Live Chat & Email Support Specialist – Deliver Outstanding Customer Service from Home, Earn $25–$35 per Hour

Customer Support Jobs No Phone Flexible Schedule – reputed company | $25–$35/hr

**Remote Admin Support - Data Entry Role at blithequark**

**Experienced Customer Support Representative – Night and Weekend Shift – Coppell, TX**

Part-Time Remote Live Chat Support Specialist – No Experience Required, Flexible Hours, Earn Up to $280 Daily

**Experienced Part‑Time Remote Data Entry & Market Research Specialist – Earn Competitive Pay in Paid Focus Groups & Clinical Trials**