> Markdown version of [/jobs/ext/2550445-cyber-security-specialist](https://www.wearedevelopers.com/jobs/ext/2550445-cyber-security-specialist). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Security Specialist - **Company:** CACI International Inc. - **Location:** Stafford, VA, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Agile Methodology, Amazon Web Services, Microsoft Azure, Cloud Computing, Cyber Security, Information Systems, Monitoring of Systems, Software Vulnerability Management, Cloud Platform System, Information Technology, Tenable Nessus, Nessus, Oracle Cloud Infrastructure, Vulnerability Analysis - **Published:** August 10, 2026 - **Apply:** https://us.experteer.com/career/view-jobs/cyber-security-specialist-stafford-va-usa-58909912 ## About the Role risk with network, application, and system admins to remediate findings and ensure DISA STIG compliance * Prepare eMASS OPDIR POAMs and government POAMs; support A&A records for GCSS-MC * Develop supporting documentation for new/existing environments and assist with RMF program execution * Lead small technical workstreams to automate ACAS/STIG/control analysis and improve incident response * Support cyber security processes and DoD/MC RMF and security policy adherence * Provide SME guidance on RMF, STIGs, and vulnerability management to cross-functional teams Tasks * Bachelor degree in Cyber Security, Information Technology, or Computer Science with cyber security experience * 5+ years' RMF experience * 5+ years' experience with ACAS/Nessus vulnerability scanners * 5+ years' experience with vulnerability and compliance scanning tools and reporting * 5+ years' knowledge of US government security policies (NIST 800-53 Rev 4/5, NIST 800-171) * Knowledge of DODI 8500.01, DODI 8510.01 * aaaaa with certification * Strong communication skills and ability to work under pressure * Experience with cloud environments (AWS, OCI, Azure) and automation in security operations * Experience in Agile environments and with USMC security processes and DoD monitoring tools Key requirements * flexible time off * robust learning resources * healthcare and retirement benefits * professional development opportunities * competitive compensation ## Description Experteer Overview As a Cyber Security Specialist, you will provide oversight, guidance, and support for RMF and A&A activities within the GCSS-MC program. You will lead assessment, compliance, and validation of DoD IT systems to ensure security regulations are met and risks are mitigated. You'll work with cross-functional teams to remediate vulnerabilities, coordinate with the Cyber PMO, and help transition systems toward cloud-based environments. This role offers impact by safeguarding mission-critical Marine Corps systems and driving compliance in a complex, security-focused landscape. Compensation / Benefits * Coordinate assessment and authorization activities for STIG testing and RMF guidance * Develop and manage Plans of Action and Milestones (POA&Ms) to address deficiencies * Perform risk and vulnerability assessments across networks, cloud environments, and information systems * Validate patching, conduct vulnerability scans, and produce ISCM and security posture reports * Liaise with network, application, and system admins to remediate findings and ensure DISA STIG compliance * Prepare eMASS OPDIR POAMs and government POAMs; support A&A records for GCSS-MC * Develop supporting documentation for new/existing environments and assist with RMF program execution * Lead small technical workstreams to automate ACAS/STIG/control analysis and improve incident response * Support cyber security processes and DoD/MC RMF and security policy adherence * Provide SME guidance on RMF, STIGs, and vulnerability management to cross-functional teams Tasks * Bachelor degree in Cyber Security, Information Technology, or Computer Science with cyber security experience * 5+ years' RMF experience * 5+ years' experience with ACAS/Nessus vulnerability scanners * 5+ years' experience with vulnerability and compliance scanning tools and reporting * 5+ years' knowledge of US government security policies (NIST 800-53 Rev 4/5, NIST 800-171) * Knowledge of DODI 8500.01, DODI 8510.01 * Security+ certification * Strong communication skills and ability to work under pressure * Experience with cloud environments (AWS, OCI, Azure) and automation in security operations * Experience in Agile environments and with USMC security processes and DoD monitoring tools Key requirements * flexible time off * robust learning resources * healthcare and retirement benefits * professional development opportunities * competitive compensation ## Related Videos - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Reporting Active Exploits in 24 Hours: Are You Ready for the CRA?](https://www.wearedevelopers.com/videos/100248-reporting-active-exploits-in-24-hours-are-you-ready-for-the-cra) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Maturity assessment for technicians or how I learned to love OWASP SAMM](https://www.wearedevelopers.com/videos/351-maturity-assessment-for-technicians-or-how-i-learned-to-love-owasp-samm) - [Less Is More: How Lagom and Agile Can Create Harmonious Workflows](https://www.wearedevelopers.com/videos/1993-less-is-more-how-lagom-and-agile-can-create-harmonious-workflows) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)