Senior Cybersecurity SME/Security Control Assessor
QinetiQ US - Chantilly, VA
Hiring: Senior Cybersecurity SME/Security Control Assessor Company: QinetiQ US Location: Chantilly, VA Job Posted Time: 2026-09-16 13:36:42 Target Skills & Keywords : AI, Accessibility, Agile, DAST, IAM, Machine Learning, Penetration Testing, SAP, SAST, SCA, Top Secret Clearance, Zero Trust About the job Required Skills: •Engineering Technical Reviews: Actively participate in System Requirements Reviews (SRR), Preliminary Design Reviews (PDR), and Critical Design Reviews (CDR) to ensure security is baked in, rather than bolted on. •DevSecOps Alignment: Guide SCO project teams in integrating automated security testing (SAST/DAST) and continuous compliance monitoring into Agile development pipelines where appropriate. •Threat Modeling: Conduct system-level threat modeling during the design phase to identify potential attack vectors and recommend architectural mitigations before code is written or hardware is procured. •Technical Validation: Move beyond paperwork by conducting deep technical reviews of vulnerability scans (e.g., ACAS/Nessus), STIG checklists, and penetration testing reports. Correlate technical findings to actual operational risk. •RMF Execution: Demonstrate mastery of Federal, DoD, and Intelligence Community (IC) RMF policies (NIST SP 800-53 Rev 5, CNSSI 1253, DoD 8510.01, ICD 503). Assist the government AO by translating complex technical compliance shortfalls into actionable, mission-contextualized risk decisions. •Diverse Architectures: Evaluate the security performance, integrity, and residual risk of varied environments, including Platform Information Technology (PIT), hardware/software systems, communication networks, and satellite control systems, etc. •Zero Trust Implementation: Drive the adoption of DoD Zero Trust architectural pillars (User, Device, Network, Application/Workload, Data, Visibility/Analytics, and Automation/Orchestration) across all SCO portfolios. •Cross Domain Solutions (CDS): Provide specialized expertise in designing, evaluating, and implementing CDS technologies. This includes complex enterprise deployments in classified compartmentalized environments and “point-to-point” solutions for isolated, tactical IT architectures. Qualifications: •Active Top Secret clearance with SCI and SAP accesses. #qinetiqclearedjob •Minimum of twelve (12) years of demonstrated experience in IT, cybersecurity engineering, and Assessment & Authorization (A&A), with increasing responsibility. •Significant and proven multi-domain experience with SAP and SCI Systems, to include PIT, Cloud environments, Cross Domain Solutions. •Active baseline certification equivalent to DoD 8140.01 / 8570.01-M Information Assurance Workforce Improvement Program (IA WIP) for IAT Level III or IAM Level III (e.g., CISSP, CISM, GSLC, CASP+ CE). •Direct experience working within the defense innovation ecosphere, specifically with rapid prototyping, test environments, and Platform IT (PIT) systems. •Proven hands-on technical experience working as a systems integrator or cybersecurity engineer, specifically with enterprise networks, cloud computing systems, and/or all-domain platform IT architectures. •Master's Degree in Engineering, IT or Cybersecurity •If because of a medical condition or disability you need a reasonable accommodation for any part of the employment process, please send an e-mail to staffing@us. •QinetiQ.com or call (540) 658-2720 Opt. 1 and let us know the nature of your request and contact information. Compensation: •$150,000 - $185,000 / year •Flexible work environment (work from home / hybrid options) Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!