Senior Cybersecurity SME/Security Control Assessor

QinetiQ

Chantilly (VA)

On-site

USD 150,000 - 185,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

QinetiQ US in Chantilly, VA seeks a highly technical Senior Cybersecurity Subject Matter Expert (SME) and Security Control Assessor (SCA). This role transcends compliance by providing deep engineering and integration experience to secure complex multi-domain systems and advise the AO and CIO.

You will drive RMF, zero-trust initiatives, and risk-informed decisions across SCO portfolios. The ideal candidate holds TS/SCI with SAP access, 12+ years in IT/cybersecurity, DoD 8140/8570 IAM III, and

Qualifications

  • Requires active TS/SCI with SAP access and 12+ years in IT/cybersecurity/A&A.
  • Demonstrated multi-domain experience with SAP/SCI, PIT, cloud environments.
  • Baseline DoD IA workforce certification at IAM III or IAT III level.
  • Proven experience in defense innovation, rapid prototyping and platform IT environments.

Responsibilities

  • Actively participate in SRR, PDR, and CDR to ensure security is integrated from design.
  • Guide DevSecOps and integrate automated security testing in Agile pipelines.
  • Conduct system-level threat modeling and translate findings into architectural mitigations.
  • Perform technical validation of vulnerability scans, RMF execution, and risk decisions.

Skills

Top Secret clearance
12+ years IT/cybersecurity
SAP/SCI experience
DoD 8140/8570 IAM III
Defense-sector expertise

Education

Master's Degree in Engineering/IT/Cybersecurity
IA Workforce cert (IAT III/IAM III)

Tools

SAST/DAST
ACAS/Nessus
Stig checklists
RMF (NIST SP 800-53 Rev 5)
Cross Domain Solutions (CDS)

Job description

Company Overview

We are a world-class team of professionals who deliver next generation technology and products in robotic and autonomous platforms, ground, soldier, and maritime systems in 50+ locations world-wide. Much of our work contributes to innovative research in the fields of sensor science, signal processing, data fusion, artificial intelligence (AI), machine learning (ML), and augmented reality (AR).

QinetiQ US’s dedicated experts in defense, aerospace, security, and related fields all work together to explore new ways of protecting the American Warfighter, Security Forces, and Allies. Being a part of QinetiQ US means being central to the safety and security of the world around us. Partnering with our customers, we help save lives; reduce risks to society; and maintain the global infrastructure on which we all depend.

Why Join QinetiQ US?

If you have the courage to take on a wide variety of complex challenges, then you will experience a unique working environment where innovative teams blend different perspectives, disciplines, and technologies to discover new ways of solving complex problems. In our diverse and inclusive environment, you can be authentic, feel valued, be respected, and realize your full potential. QinetiQ US will support you with workplace flexibility, a commitment to the health and well-being of you and your family and provide opportunities to work with a purpose. We are committed to supporting your success in both your professional and personal lives.

Position Overview

QinetiQ US is seeking a highly technical Senior Cybersecurity Subject Matter Expert (SME) and Security Control Assessor (SCA). This role is explicitly designed to transcend traditional compliance validation. The ideal candidate possesses deep technical engineering and integration experience, enabling them to dissect, analyze, and secure highly complex, multi-domain systems. Acting as a trusted technical adviser to the Authorizing Official (AO) and directly supports the CIO of SCO. The candidate will provide continuous risk determinations, influence system architecture, and ensure that cutting-edge capabilities are developed with intrinsic security that aligns with aggressive agency timelines, modern threat landscapes, and advanced operational requirements.

Responsibilities

Strategic Advisement & Lifecycle Integration

  • Engineering Technical Reviews: Actively participate in System Requirements Reviews (SRR), Preliminary Design Reviews (PDR), and Critical Design Reviews (CDR) to ensure security is baked in, rather than bolted on.
  • DevSecOps Alignment: Guide SCO project teams in integrating automated security testing (SAST/DAST) and continuous compliance monitoring into Agile development pipelines where appropriate.
  • Threat Modeling: Conduct system-level threat modeling during the design phase to identify potential attack vectors and recommend architectural mitigations before code is written or hardware is procured.

Advanced Assessment & Risk Determination

  • Technical Validation: Move beyond paperwork by conducting deep technical reviews of vulnerability scans (e.g., ACAS/Nessus), STIG checklists, and penetration testing reports. Correlate technical findings to actual operational risk.
  • RMF Execution: Demonstrate mastery of Federal, DoD, and Intelligence Community (IC) RMF policies (NIST SP 800-53 Rev 5, CNSSI 1253, DoD 8510.01, ICD 503). Assist the government AO by translating complex technical compliance shortfalls into actionable, mission-contextualized risk decisions.
  • Diverse Architectures: Evaluate the security performance, integrity, and residual risk of varied environments, including Platform Information Technology (PIT), hardware/software systems, communication networks, and satellite control systems, etc.

Zero Trust & Next-Generation Architecture

  • Zero Trust Implementation: Drive the adoption of DoD Zero Trust architectural pillars (User, Device, Network, Application/Workload, Data, Visibility/Analytics, and Automation/Orchestration) across all SCO portfolios.
  • Cross Domain Solutions (CDS): Provide specialized expertise in designing, evaluating, and implementing CDS technologies. This includes complex enterprise deployments in classified compartmentalized environments and “point-to-point” solutions for isolated, tactical IT architectures.
  • Emerging Technology Evaluation: Continuously monitor state-of-the‑art technologies (e.g., AI/ML, edge computing, quantum-resistant cryptography) and the evolving threat landscape to ensure SCO systems anticipate and mitigate next‑generation threats.

Stakeholder Engagement & Liaison

  • Technical Translation: Facilitate seamless communication with SCO Portfolio technical SMEs, effectively translating AO directives to engineers and engineering challenges to the AO.
  • Community Representation: Serve as a key liaison between the Defense Industrial Base (DIB), government cybersecurity entities, security assessment organizations, and Special Access Program (SAP) IT working groups to maintain alignment with the broader defense innovation ecosystem.

Required Qualifications

  • Active Top Secret clearance with SCI and SAP accesses. #qinetiqclearedjob
  • Minimum of twelve (12) years of demonstrated experience in IT, cybersecurity engineering and Assessment & Authorization (A&A), with increasing responsibility.
  • Significant and proven multi-domain experience with SAP and SCI Systems, to include PIT, Cloud environments, Cross Domain Solutions.
  • Active baseline certification equivalent to DoD 8140.01 / 8570.01-M Information Assurance Workforce Improvement Program (IA WIP) for IAT Level III or IAM Level III (e.g., CISSP, CISM, GSLC, CASP+ CE).
  • Direct experience working within the defense innovation ecosphere, specifically with rapid prototyping, test environments, and Platform IT (PIT) systems.

Preferred Qualifications

  • Proven hands‑on technical experience working as a systems integrator or cybersecurity engineer, specifically with enterprise networks, cloud computing systems, and/or all‑domain platform IT architectures.
  • Master's Degree in Engineering, IT or Cybersecurity

Pay Transparency

The salary range for this role is $150,000 - $185,000 USD. The salary range provided is a good faith estimate representative of all experience levels. QinetiQ US considers several factors when extending an offer, including but not limited to, the role, function and associated responsibilities, a candidate’s work experience, location, education/training, and key skills.

Company EEO Statement

Accessibility/Accommodation:

If because of a medical condition or disability you need a reasonable accommodation for any part of the employment process, please send an e‑mail to staffing@us.QinetiQ.com or call (540) 658-2720 Opt. 1 and let us know the nature of your request and contact information.

QinetiQ US is an Equal Opportunity employer. All Qualified Applicants will receive equal consideration for employment without regard to race, age, color, religion, creed, sex, sexual orientation, gender identity, national origin, disability, or protected Veteran status.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Cybersecurity SME/Security Control Assessor
Senior Cybersecurity SME/Security Control Assessor

QinetiQ US • Chantilly (VA)

On-site
USD 150,000 - 185,000
Senior Cybersecurity SME/Security Control Assessor
Senior Cybersecurity SME/Security Control Assessor

Operational Intelligence LLC • Chantilly (VA)

On-site
USD 150,000 - 185,000
Senior Cybersecurity SME/Security Control Assessor
Senior Cybersecurity SME/Security Control Assessor

QinetiQ U.S. • Chantilly (VA)

On-site
USD 150,000 - 185,000
Security Administrator
Security Administrator

QinetiQ US (formerly Avantus Federal) • Huntsville (AL)

On-site
USD 95,000 - 135,000
Security Administrator
Security Administrator

QinetiQ US • Huntsville (AL)

On-site
USD 65,000 - 90,000
Senior Program Security Representative (Cyber & Long Range Fires)
Senior Program Security Representative (Cyber & Long Range Fires)

QinetiQ US (formerly Avantus Federal) • Chantilly (VA)

On-site
USD 150,000 - 200,000
Senior Analyst / Portfolio Manager
Senior Analyst / Portfolio Manager

QinetiQ • Falls Church (VA)

On-site
USD 125,000 - 140,000
Senior Analyst / Portfolio Manager
Senior Analyst / Portfolio Manager

QinetiQ US (formerly Avantus Federal) • Falls Church (VA)

On-site
USD 125,000 - 140,000
Senior Program Security Representative (Cyber & Long Range Fires)
Senior Program Security Representative (Cyber & Long Range Fires)

QinetiQ • Chantilly (VA)

On-site
USD 150,000 - 200,000
Senior Analyst / Portfolio Manager
Senior Analyst / Portfolio Manager

QinetiQ U.S. • Falls Church (VA)

On-site
USD 125,000 - 140,000