> Markdown version of [/jobs/ext/1790683-cybersecurity-assessment-authorization-a-a-subject-matter-ex](https://www.wearedevelopers.com/jobs/ext/1790683-cybersecurity-assessment-authorization-a-a-subject-matter-ex). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Assessment & Authorization (A&A) Subject Matter Ex - **Company:** DirectViz, LLC - **Location:** Washington, DC, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Cloud Computing, Cyber Security, Information Systems, Automated Information System (AIS), SC Clearance, Information Technology, Operational Systems - **Published:** July 22, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9048936/cybersecurity-assessment-authorization-aa-subject-matter-ex ## About the Role * Minimum of 5 years of experience in Cybersecurity Assessment & Authorization (A&A) or Certification & Accreditation (C&A). * Strong experience with the DoD Risk Management Framework (RMF) and NIST SP 800-53. * Experience supporting DoD cybersecurity programs and authorization processes. * Experience assessing security controls and conducting authorization reviews within large, complex enterprise environments. Clearance * Active Secret Clearance (required). Certifications Must possess one of the following: * CISSP * CISM * GSLC If you thrive on solving complex problems and building meaningful connections, we'd love to hear from you. Join our team and make an impact today! Physical and Mental Qualifications: * Maintain focus and awareness throughout scheduled working hours. * Perform tasks requiring prolonged periods of sitting or standing at a desk, utilizing a computer, mouse, and keyboard. * Lift and move objects weighing up to 15 pounds as needed. * Exhibit excellent verbal and written communication skills, with a strong command of the English language. * Demonstrate the ability to work independently while also collaborating effectively as part of a team. * Quickly learn and retain routine tasks and processes. * Possess strong organizational skills, attention to detail, business correspondence proficiency, and self-management capabilities. * Perform the essential functions of the role satisfactorily; reasonable accommodation will be provided for employees with disabilities upon request. * Accept and adapt to additional responsibilities or changes to assigned duties as determined by DirectViz Solutions (DVS). ## Description DirectViz Solutions is seeking an experienced Cybersecurity Assessment & Authorization (A&A) Subject Matter Expert (SME) to support a large Department of Defense (DoD) customer. This is a hybrid position supporting locations throughout the DC, Maryland, and Virginia area, with on-site support required as needed. The ideal candidate will have deep expertise in the DoD Risk Management Framework (RMF), NIST 800-53 security controls, and the Assessment & Authorization (A&A) process for complex enterprise environments., * Serve as the Cybersecurity Subject Matter Expert (SME) for Assessment & Authorization (A&A) activities and associated cybersecurity policies and procedures. * Execute DoD/DLA cybersecurity processes to obtain and maintain Authorization to Operate (ATO) for information systems. * Provide expert guidance throughout the RMF lifecycle for systems undergoing assessment and authorization. * Evaluate and assess NIST SP 800-53 security controls across complex enterprise environments, including: + Large and small enclaves + Cloud-hosted services + Operational Technology (OT) + Automated Information Systems (AIS) + Outsourced IT services * Assess security control deficiencies, determine residual risk, and evaluate the impact on current and future system authorizations. * Review security documentation and conduct authorization assessments to ensure compliance with DoD cybersecurity requirements. * Brief senior leadership on RMF progress, authorization status, cybersecurity risks, and recommended mitigation strategies. * Support continuous authorization and ongoing cybersecurity compliance efforts. ## Related Videos - [Green Cloud Computing](https://www.wearedevelopers.com/videos/592-green-cloud-computing) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Get security done: streamlining application security with Aikido](https://www.wearedevelopers.com/videos/1638-get-security-done-streamlining-application-security-with-aikido) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [WebAssembly: The Next Frontier of Cloud Computing](https://www.wearedevelopers.com/videos/972-webassembly-the-next-frontier-of-cloud-computing) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers)