> Markdown version of [/jobs/ext/810655-cybersecurity-sme](https://www.wearedevelopers.com/jobs/ext/810655-cybersecurity-sme). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity SME - **Company:** High Side Technology LLC - **Location:** Chantilly, VA, United States - **Contract:** Permanent contract - **Skills:** Microsoft Access, Software System Penetration Testing, Cyber Security, Identity and Access Management, Zero Trust Network Access, SAP (Applications), Systems Integration, Computer Networking Systems, Cloud Platform System, IT Architecture, Information Technology, Nessus, Vulnerability Analysis - **Published:** June 10, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=f025ad9db8b33616 ## About the Role Do you have experience in Zero trust architecture design?, * Clearance: Must possess an active Top Secret clearance with eligibility for SCI and SAP access. * Experience: Requires a minimum of twelve (12) years of demonstrated experience in IT, cybersecurity engineering, and/or Assessment & Authorization (A&A). * Certification: Must hold a current certification compliant with DoD 8140.01 for IAT Level III or IAM Level III (e.g., CISSP, CISM, GSLC, CASP+ CE). * Technical Expertise: Must have proven hands-on experience with systems integration, enterprise networks, cloud computing systems, or Platform IT architectures. * Ample experience with Special Access Program (SAP) and Sensitive Compartmentalized Information (SCI) Systems preferred. ## Description High Side Technology is seeking a Cybersecurity Subject Matter Expert to provide expert-level cybersecurity analysis, engineering, and assessment services for complex, multi-domain systems. This role acts as a senior technical advisor and Security Control Assessor (SCA), specializing in integrating security throughout the system lifecycle, translating technical risks into mission-impact statements, and guiding the implementation of advanced security architectures., * Provides strategic cybersecurity guidance and participates in technical reviews (e.g., SRR, PDR, CDR) to ensure security is integrated from the initial design phase and throughout the system development lifecycle. * Executes the Risk Management Framework (RMF) process, providing risk determinations and recommendations to the Authorizing Official (AO). * As a Security Control Assessor (SCA), executes the Risk Management Framework (RMF) process across Federal, DoD, and IC policies. Provides continuous risk determinations and actionable recommendations directly to the Authorizing Official (AO). * Conducts deep technical validation of security controls by reviewing vulnerability scans (e.g., ACAS/Nessus), STIG checklists, and penetration test reports to correlate findings with operational mission risk. * Evaluates the security performance, integrity, and residual risk of diverse and complex architectures, including Platform Information Technology (PIT), cloud environments, communication networks, and satellite control systems. * Guides the adoption and implementation of DoD Zero Trust principles and provides specialized expertise in the design and evaluation of Cross Domain Solutions (CDS). * Functions as a technical liaison between engineering teams, program leadership, and external government and industry partners. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Architectures that we can use with .NET](https://www.wearedevelopers.com/videos/935-architectures-that-we-can-use-with-net) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [One Does Not Simply Make Architecture Decisions Alone](https://www.wearedevelopers.com/videos/2128-one-does-not-simply-make-architecture-decisions-alone) ## Related Articles - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)