> Markdown version of [/jobs/ext/1471541-cybersecurity-sme-lead](https://www.wearedevelopers.com/jobs/ext/1471541-cybersecurity-sme-lead). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity SME Lead - **Company:** Anonymous Employer - **Location:** United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Apache HTTP Server, Software System Penetration Testing, Unix, Configuration Management, Cyber Security, Databases, Domain Name System (DNS), Internet Information Services (IIS), Microsoft SQL Server, System Center Configuration Manager, Network Installation Services, Oracle (Applications), Phishing, Security Content Automation Protocol, Web Services, Information Technology, Nessus, Vulnerability Analysis - **Published:** July 28, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9061618/cybersecurity-sme-lead ## About the Role 7+ years IT experience - 5+ years Cybersecurity experience - Proven experience with CCRI, vulnerability assessment, and penetration testing across networks, databases, applications, and IT frameworks, CCRI certification (candidate must possess one of the following): Retina scan analysis, Operating Systems (Windows/Unix), Boundary Defense, Internal Defense (L2/L3 switch), DNS, HBSS, Traditional Security, or Wireless Communications - Penetration testing certification (candidate must possess one of the following): LPT, CEPT, CEH, or GPEN - DISA FSO Certified CCRI Team Lead - Tenable Certified NESSUS Auditor Technical Knowledge: - DoD security regulations and DISA STIGs - SCAP and RMF - VULNERATOR, USCYBERCOM CTO Compliance Program - Web services (IIS, Apache, Proxy), databases (SQL Server, Oracle), email (Exchange) - Vulnerability scanning tools (NESSUS, SCCM) - Wireless vulnerability assessment, phishing exercises, USB detection, physical security Skills: - Strong analytical and problem-solving ability for complex security issues - Strong network implementation/configuration skills - Exceptional written and verbal communication ## Description The Cybersecurity Subject Matter Expert (SME) serves as the technical expert on our Cybersecurity Assessment Program, providing direction and solutions on complex cybersecurity assessment and compliance challenges. This role works independently under broad guidance, shaping assessment strategy and driving innovative solutions to unusually complex technical problems - including recommending tools, building product-specific STIGs from DISA SRGs, and guiding new methodologies from concept to execution. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Passkeys: Truly Phishing-Resistant? Implementation and Pitfalls](https://www.wearedevelopers.com/videos/100156-passkeys-truly-phishing-resistant-implementation-and-pitfalls) - [WeAreDevelopers LIVE - Node and Package Security](https://www.wearedevelopers.com/videos/2138-wearedevelopers-live-node-and-package-security) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Skynet wants your Passwords! The Role of AI in Automating Social Engineering](https://www.wearedevelopers.com/videos/770-skynet-wants-your-passwords-the-role-of-ai-in-automating-social-engineering) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)