> Markdown version of [/jobs/ext/3224374-information-system-security-iii-secret-clearance-required](https://www.wearedevelopers.com/jobs/ext/3224374-information-system-security-iii-secret-clearance-required). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information System Security III (Secret clearance required) - **Company:** DirectViz Solutions, LLC - **Location:** Virginia Beach, VA, United States - **Experience:** Expert - **Salary:** $120,000.0 - $140,000.0 - **Contract:** Permanent contract - **Skills:** Cyber Security, Information Systems, Identity and Access Management, Information Security Management, Security Content Automation Protocol, Software Engineering, Systems Architecture, SARS Software Products, SC Clearance, Information Technology, Cyber Warfare, Plan of Action and Milestones, Vulnerability Analysis - **Published:** September 10, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=900849e5f7762146 ## About the Role * Degree in Cybersecurity, Cyber Operations, Cyber Engineering, Information Systems, Information Technology, Computer/Electrical/Electronics Engineering, Software Engineering, Computer Science, Mathematics with a concentration in Computer Science, or an equivalent discipline. + Qualifying bachelor's degree plus 10 years of experience + Qualifying master's degree plus 8 years of experience + High school diploma/GED plus 15 years of experience * Demonstrated experience with STIG assessments, SCAP benchmarks/EvaluateSTIG, ACAS, eMASS, POA&M development, RMF Step 5 authorizations in an ISSE capacity, and communicating risk-reduction recommendations to stakeholders. * Certifications: IAM level III: CISM, CISSP, GSLC, CCISO. * SECRET Clearance Required. If you thrive on solving complex problems and building meaningful connections, we'd love to hear from you. Join our team and make an impact today! Physical and Mental Qualifications: * Maintain focus and awareness throughout scheduled working hours. * Perform tasks requiring prolonged periods of sitting or standing at a desk, utilizing a computer, mouse, and keyboard. * Lift and move objects weighing up to 15 pounds as needed. * Exhibit excellent verbal and written communication skills, with a strong command of the English language. * Demonstrate the ability to work independently while also collaborating effectively as part of a team. * Quickly learn and retain routine tasks and processes. * Possess strong organizational skills, attention to detail, business correspondence proficiency, and self-management capabilities. * Perform the essential functions of the role satisfactorily; reasonable accommodation will be provided for employees with disabilities upon request. * Accept and adapt to additional responsibilities or changes to assigned duties as determined by DirectViz Solutions (DVS). ## Description * Perform and support all phases of the RMF lifecycle and Navy A&A activities. * Develop, maintain, review, and update comprehensive RMF authorization packages in eMASS. * Perform STIG assessments using SCAP benchmarks and EvaluateSTIG. * Conduct vulnerability assessments using ACAS and analyze findings for operational and cybersecurity risk. * Develop, manage, and track POA&Ms and corrective actions. * Develop and maintain SSPs, SARs, SCTMs, and related authorization artifacts. * Complete and support RMF Step 5 authorization activities in the ISSE capacity. * Assess security control implementation and identify control deficiencies. * Communicate risk-reduction recommendations to Government and technical stakeholders. * Provide senior cybersecurity engineering guidance for system architecture, configuration, boundary protection, and proposed technical changes. * Coordinate ATO, IATT, IATO, authorization renewal, annual review, and continuous monitoring activities. * Support cybersecurity audits, inspections, assessments, and Government data calls. * Coordinate with system owners, engineers, administrators, laboratory personnel, and cybersecurity stakeholders to resolve authorization and compliance issues. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Unlocking the potential of Digital & IT at Vodafone](https://www.wearedevelopers.com/videos/602-unlocking-the-potential-of-digital-it-at-vodafone) - [Outsmarting the System: What Game Cheaters Can Teach Us About Cyber Security](https://www.wearedevelopers.com/videos/1396-outsmarting-the-system-what-game-cheaters-can-teach-us-about-cyber-security) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology)