Lead Cybersecurity Risk & Exposure Subject Matter Expert IV with Security Clearance
Why This Role Stands Out
This hybrid role offers a significant opportunity to shape cybersecurity defense strategies for a critical DoD mission, leveraging your expertise to identify and prioritize cyber risks with a TS/SCI clearance. You will thrive here if you are a proactive leader adept at complex analysis and cross-functional collaboration, driving impactful solutions within a reputable organization.
Quick Overview
Job Description
Title: Lead Cybersecurity Risk & Exposure Subject Matter Expert IV Location: Colorado Springs, CO Clearance: TS/SCI with the ability to obtain and maintain a CI polygraph Description: Invictus, a Red River company, delivers technology and services supporting government and national security missions. We combine cleared mission expertise with enterprise engineering, technology partnerships and large-program execution in support of advanced modernization, cybersecurity, intelligence and systems integration. Our teams support complex operational environments across the U.S. and around the world, helping customers strengthen resilience, accelerate mission outcomes and deploy capabilities that meet demanding mission requirements. Learn more at www. InvictusIC.com.
Job Details
- Serve as the senior SME for operational cyber risk, vulnerability/exposure analysis, and continuous monitoring supporting a DoD cyber defense mission
- Establish methodologies for correlating vulnerability, asset, configuration, network reachability, system criticality, security-control, threat, and incident data to identify and prioritize the exposures most likely to create operational or mission risk
- Lead complex exposure and impact assessments, including development of plausible exploitation scenarios, attack paths, affected-system analysis, compensating-control considerations, and risk-informed courses of action
- Provide expert vulnerability, asset, architecture, and security-control context to SOC leadership, Cybersecurity Operations Analysts, Threat Analysts, incident responders, and engineering teams during significant investigations and proactive defensive activity
- Lead analysis of ACAS/Tenable results, runZero asset information, STIG/configuration findings, system documentation, and other approved data to identify systemic weaknesses, exploitable conditions, and remediation priorities
- Own the SOC-side process for coordinating material cyber findings with affected system ISSOs/ISSMs, system owners, administrators, engineers, and authorization stakeholders; ensure operational findings are translated into appropriate mitigation, continuous-monitoring, POA&M, or RMF actions without duplicating system ISSO responsibilities
- Establish and maintain checklists, TTPs, guides, procedures, quality standards, and reporting methods for exposure analysis, risk prioritization, remediation validation, and SOC-to-system-security coordination
- Lead review of remediation evidence, recurring vulnerabilities, exposure trends, control weaknesses, and SOC-derived findings to identify systemic risk and recommend enterprise or site-level corrective actions
- Develop briefings, executive summaries, risk assessments, metrics, dashboards, and technical products that communicate operational exposure, remediation progress, control effectiveness, and mission impact to technical and leadership audiences
- Advise SOC leadership on vulnerability/exposure trends, high-risk assets, recurring security weaknesses, remediation priorities, and opportunities to improve the integration of vulnerability management, threat information, and cyber defense operations
- Mentor senior and developing analysts and provide technical quality review of exposure assessments, risk conclusions, remediation recommendations, and stakeholder coordination products
- Experience integrating vulnerability management, continuous monitoring, RMF/ISSO processes, and SOC or incident-response operations in a DoD/IC or similarly complex enterprise environment is highly desired Requirements:
- Bachelor's degree from an accredited institute in a technical discipline applicable to the position; an additional 4 years of may be substituted in lieu of a degree
- Minimum of eight (8) years of relevant experience in addition to education level
- Demonstrated expert knowledge of vulnerability/exposure management, threat-informed risk analysis, DoD continuous monitoring, RMF/security controls, network/system security, and technical risk assessment
- Experience with ACAS/Tenable, runZero or comparable exposure/asset-discovery tools, DoD STIG/STIG Viewer, SCAP, POA&M processes, and integration of SOC/incident-response findings with ISSO/ISSM or RMF functions is highly desired
- Demonstrated experience establishing exposure-analysis methodology, leading complex risk assessments, prioritizing remediation, and translating operational cyber findings into continuous-monitoring or RMF actions is strongly desired
- Must possess current DoD 8570 IAT II or IAM II certification
- Experience working in a DoD or IC environment
- Current active TS/SCI clearance, with the ability to obtain and maintain a CI polygraph
Equal Opportunity Employer/Veteran/Disabled
Similar jobs
- HS
Lab IT Security Engineer / Endpoint Security Engineer
NewHS Solutions
CA🇺🇸Hybrid23 hours agoActive DirectoryPowerShellTechnology - AG
Ping Identity Security Analyst
NewASCII Group LLC
Dallas, TX🇺🇸$60/hrHybrid23 hours agoTechnology - MA
Principal Network Evaluator with Security Clearance
NewMarkon
Annapolis Junction, MD🇺🇸$120k - $225k/yrHybrid23 hours agoAdministrative - MA
Cyber Ops Hardware Engineer with Security Clearance
NewMarkon
Chantilly, VA🇺🇸$160k - $190k/yrHybrid23 hours agoTechnology - LE
Security Architect
NewLeidos
Bedford, MA🇺🇸$131.3k - $237.3k/yrHybrid23 hours agoOracleAWSAzure+12Technology - SA
Computer Systems Security Specialist with Security Clearance
NewSavvee Inc
Norfolk, VA🇺🇸On-site23 hours agoAdministrative - RE
Cryptologic Cyber Planner 3 with Security Clearance
NewRealmOne
central maryland, MD🇺🇸Hybrid23 hours agoTechnology - MA
Digital Network Exploitation Analyst with Security Clearance
NewMarkon
Chantilly, VA🇺🇸$120k - $150k/yrHybrid23 hours agoTechnology - SD
Cyber Defense Operator (CDO) with Security Clearance
NewSMS Data Products Group, Inc
Lackland AFB, TX🇺🇸On-site23 hours agoTCP/IPAssemblyDNSTechnology - MA
Information Systems Security Officer (ISSO) with Security Clearance
NewMarkon
Annapolis Junction, MD🇺🇸$120k - $200k/yrHybridYesterdayTechnology - II
Information System Security Engineer (ISSE) – ISSD with Security Clearance
NewIDS International
Annapolis Junction, MD🇺🇸Hybrid23 hours agoLESSMicrosoft OfficeTechnology - II
Cyber Virtualization Engineer with Security Clearance
NewIDS International
Arlington, VA🇺🇸On-site23 hours agoDockerOpenStackPacker+16Technology