> Markdown version of [/jobs/ext/2015779-nmcc-systems-administrator](https://www.wearedevelopers.com/jobs/ext/2015779-nmcc-systems-administrator). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # NMCC - Systems Administrator - **Company:** JCS Solutions LLC - **Location:** Arlington, VA, United States - **Experience:** Expert - **Salary:** $80,000.0 - $115,000.0 - **Contract:** Permanent contract - **Skills:** Xacta, Cyber Security, Information Security Management, Sysadmin, Nessus, Plan of Action and Milestones - **Published:** August 10, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9084543/nmcc-systems-administrator ## About the Role JCS Solutions Cybersecurity Team is seeking an experienced Information System Security Officer (ISSO)/Security Impact Assessment (SIA) to support a government customer on site at the Pentagon. The primary responsibilities for the position are to support the Risk Management Framework (RMF) activities for the 844CS National Military Command Center (NMCC). The nature of the work requires that the candidate demonstrate initiative, organization, responsibility, customer service skills, and the ability to be flexible and adaptive to a fast-paced environment. The candidate must be able to communicate effectively and decisively with all levels of the organization and be able to solve practical problems as well as exercise sound judgement with regards to sensitive and confidential information., * Demonstrate initiative, organization, responsibility, customer service skills, and the ability to be flexible and adaptive to a fast-paced environment. * Communicate effectively and decisively with all levels of the organization. * Solve practical problems. * Exercise sound judgement with regards to sensitive and confidential information. * Strong verbal and written skills required providing management status reports and document system changes. * Analyze problems and provide focused solutions to effectively communicate information to various audiences verbally and through written communications. * Experience with continuous monitoring and Plans of Actions and Milestones (POA&Ms). * Bachelor Degree or equivalent work experience and certifications. * Current DoD 8570 baseline certification for IAT II (one of the following: GSEC, Security+, SCNP and SSCP certifications). * 8-10 years of Cyber Security experience. * Familiarity with DoD STIG process. * Excellent verbal and written communication skills. * Familiarity with ACAS, eMASS and XACTA. * STIG Analysis. * Clearance Required: Active DoD TS/SCI How will you wow us: * Experience with Nessus * System Admin experience * Experience with CCRI scoring. * Security Control Knowledge and Self-Assessment Experience * Received an ATO for a system and has worked the system through the entire process. ## Description * Support RMF activities for the 844CS NMCC. * Review and validate STIG scans and checklists. * Analyze vulnerabilities and coordinate remediation or mitigation efforts. * Develop and manage POA&Ms throughout the lifecycle. * Provide remediation recommendations based on DoD and Air Force guidance. * Validate hardware and software inventories. * Create and maintain SOPs and work instructions. * Track STIG implementation through Remedy tickets. * Prepare monthly STIG status reports and POA&M updates. * Complete quarterly STIG/SRG validation activities. ## Related Videos - [Hacking MSSQL on Cloud. All of them. How I became sysadmin on Azure, AWS, GCP and Alibaba.](https://www.wearedevelopers.com/videos/100339-hacking-mssql-on-cloud-all-of-them-how-i-became-sysadmin-on-azure-aws-gcp-and-alibaba) - [Organizational Change Through The Power Of Why - DevSecOps Enablement](https://www.wearedevelopers.com/videos/478-organizational-change-through-the-power-of-why-devsecops-enablement) - [Fake or News: Self-Driving Cars on Subscription, Crypto Attacks Rising and Working While You Sleep - Théodore Lefèvre](https://www.wearedevelopers.com/videos/1793-fake-or-news-self-driving-cars-on-subscription-crypto-attacks-rising-and-working-while-you-sleep-theodore-lefevre) - [Maturity assessment for technicians or how I learned to love OWASP SAMM](https://www.wearedevelopers.com/videos/351-maturity-assessment-for-technicians-or-how-i-learned-to-love-owasp-samm) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Everything a Developer Needs to Know About MCP with Neo4j](https://www.wearedevelopers.com/magazine/604-everything-a-developer-needs-to-know-about-mcp-with-neo4j) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Dev Digest 164: AI Agents, AI Blindspots and MCP security problems](https://www.wearedevelopers.com/magazine/578-dev-digest-164-ai-agents-ai-blindspots-and-mcp-security-problems)