> Markdown version of [/jobs/ext/2057692-cyber-security-specialist-iv](https://www.wearedevelopers.com/jobs/ext/2057692-cyber-security-specialist-iv). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Security Specialist IV - **Company:** VTG Defense - **Location:** Herndon, VA, United States - **Experience:** Expert - **Salary:** $175,000.0 - $220,000.0 - **Contract:** Permanent contract - **Skills:** Xacta, Amazon Web Services, CentOS, Software Quality, Cyber Security, Information Systems, Linux, Network Monitoring, Red Hat Enterprise Linux, Security Information and Event Management, SonarQube, Toolchain, Information Security Management System, Google Cloud, Gitlab, Operational Systems, Splunk, Devsecops, Plan of Action and Milestones, Vulnerability Analysis - **Published:** August 14, 2026 - **Apply:** https://jobs.localjobnetwork.com/apply/add/88029951/1 ## About the Role * 9+ years supporting Assessment and Authorization (A&A) and information assurance processes and documentation using RMF, BS degree; 7 years of experience with a masters; an additional 4 years of experience required in lieu of a degree * Hands-on experience to validate control implementations and test procedures * Knowledge of current security risks and protocols * Willingness to work outside of standard hours if circumstances require * DoD Approved 8140 Baseline Certifications (eg, Security+) certifications * RMF, Xacta experience * TS/SCI with Poly * Work 100% onsite in a secure environment * Must be indoc'd to start Desired Qualifications: * Experience working with AWS/Google cloud-hosted information systems or applications * Experience working with Containerized Systems or Applications * Experience working with Redhat or CentOS Linux operating systems * Experience working in a DevSecOps environment and tool chain ## Description Byte Systems, a subsidiary of VTG, is seeking a seasoned Information Systems Security Engineer (ISSE) to join our diverse Information Assurance team supporting the Intelligence Community at our Herndon, VA office. What will you do? The candidate will be expected to: * Design and implement safety measures and controls. Monitor network activity to identify vulnerable points. Address privacy breaches and malware threats. * Support the Assessment and Authorization (A&A) processes and Information Assurance documentation for multiple analytic and mission systems across all CLINs * Generate and maintain the complete security Body of Evidence (BoE) while leading the A&A activities according to the Risk Management Framework (RMF) processes (ICD 503, CNSSI-1253, NIST 800-37, NIST 800-53, etc.) for all multiple information systems * Author, complete and maintain the System Security Plan (SSP) within XACTA * Develop the Security Controls Traceability Matrices (SCTM), and the Security Test Plan (STP) procedures within Xacta. * Analyze existing security systems and make recommendations for changes or improvements * Prepare reports and action plans if a security breach does occur * Monitor the network and provide early warning of abnormalities or problems * Communicate the system status and keep users informed of downtime or changes to the system * Experience working with software developers and architects to understand security requirements * Experience guiding the application developers on security policy, identifying security requirements, providing technical guidance for the satisfaction of requirements * Experience creating and managing the plan of action and milestones (POA&Ms), and working with project managers and engineers to develop schedules and engineering actions that mitigate open findings * Experience supporting the Continuous Monitoring of operational systems; experience monitoring and auditing operational systems for proper use * Log Review/Analysis using SIEM tools (Splunk, etc.) * Vulnerability Analysis and Review (ACAS, Prisma, SonarQube, JFrog X-Ray, GitLab Code Quality) * DISA STIGs and STIG Viewer experience Do you have what it takes? ## Related Videos - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [Discover the open source trio you didn’t expect: .NET and PostgreSQL on Linux](https://www.wearedevelopers.com/videos/2042-discover-the-open-source-trio-you-didn-t-expect-net-and-postgresql-on-linux) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)