Cybersecurity Assessment and Authorization Subject Matter Expert (SME)

Remote
Full Time
DLA
Experienced
Title: Cyberscurity Assessment and Authorization Subject Matter Expert (SME)
Location: Remote
Clearance Required: DoD Secret clearance
Position Type: Full-Time 

About VivSoft:

At VivSoft, we aim to solve complex federal problems using emerging and open technologies in a collaborative and rewarding environment. VivSoft is a diverse team of strategists, engineers, designers, and creators experienced in building high performance effective softwares, with impactful organizational design and organizational dynamics for software delivery. We build secure Software Factories based on DoD reference designs and NIST Frameworks for Cloud and DevSecOps. These factories deliver AI/ML Applications, Data Science Platforms, Blockchain and Microservices for DoD, Healthcare and Civilian Agencies


Job Summary
The Defense Logistics Agency (DLA) is seeking a highly experienced Cybersecurity Assessment & Authorization Subject Matter Expert (SME) to support the sustainment and security of the Contingency and Adaptive Planning Software Integration System (CAPSIS). CAPSIS is a mission‑critical, SAS‑based analytics platform operating on the classified SIPRNet, used to forecast consumable supply requirements and analyze supply chain readiness for U.S. military contingency operations.
The selected individual will serve as the technical authority for cybersecurity compliance, assessment, and authorization, ensuring CAPSIS remains fully compliant with DoD Information Assurance (IA), RMF, DISA STIG, and CCRI requirements throughout its lifecycle. This role requires deep technical expertise, independent judgment, and close collaboration with DLA IA, infrastructure, and cybersecurity teams.

Key Responsibilities:
  • Serve as the Cybersecurity Assessment & Authorization Subject Matter Expert (SME) for the CAPSIS system
  • Lead and support CCRI inspections, vulnerability assessments, and penetration testing
  • Implement and validate DoD IA controls across the system lifecycle
  • Ensure compliance with RMF, SCAP, DISA STIGs, and DoD cybersecurity regulations
  • Analyze and resolve highly complex cybersecurity issues on classified systems
  • Recommend and evaluate cybersecurity tools, architectures, and mitigations
  • Develop product‑specific STIGs aligned with DISA SRGs
  • Support secure configuration of networks, operating systems, databases, and web services
  • Collaborate with DLA IA teams, CERT, program managers, and infrastructure teams
  • Contribute to knowledge transfer to enable long‑term DLA system sustainment

Required Skills:
  • Must possess an active DoD SECRET Clearance
  • 7+ years of IT experience with 5+ years in cybersecurity
  • Hands‑on experience with CCRI, vulnerability assessments, and penetration testing
  • Strong expertise in RMF, SCAP, DISA STIGs, and DoD security policies.
  • Advanced knowledge of network security (boundary and internal defense), Windows and Unix/Linux operating systems, enterprise databases (SQL Server and Oracle), web services (IIS, Apache, proxy servers), and enterprise email systems such as Microsoft Exchange.
  • Proficiency with cybersecurity tools, including NESSUS, VULNERATOR, and SCCM, as well as wireless and phishing assessment tools, and USB detection and physical security methodologies.
  • Strong analytical, problem‑solving, and communication skills
  • Ability to work independently under consultative direction

Required Certifications:
  • CCRI Certification in one or more of the following areas:
  • Retina scan analysis
  • Operating systems security
  • Boundary defense (routers, firewalls)
  • Internal defense (switching technologies)
  • DNS, HBSS, and wireless communications
  • DISA FSO–Certified CCRI Team Lead
  • Penetration Testing Certification (one or more): CEH, GPEN, LPT, or CEPT
  • Tenable Certified NESSUS Auditor
  • Additional relevant certification from a nationally recognized technical authority

Preferred Skills:
  • Prior experience supporting DLA or DoD classified systems
  • Experience securing SAS platforms or enterprise analytics environments
  • Familiarity with classified cloud or hybrid cloud environments
  • Experience supporting logistics, supply chain, or contingency planning systems
  • Expertise in enterprise cybersecurity strategy and long‑term risk mitigation

Benefits:
  • Comprehensive Medical, Dental, and Vision Plans (Healthcare benefits are 100% employer-paid for employees only) 
  • Life Insurance 
  • Paid Time Off (Flexible/Combined PTO, Bereavement Leave, 11 Company Paid Holidays) 
  • 401K Retirement Plan with employer match 
  • Professional Development Training Reimbursement.
Share

Apply for this position

Required*
We've received your resume. Click here to update it.
Attach resume as .pdf, .doc, .docx, .odt, .txt, or .rtf (limit 5MB) or Paste resume

Paste your resume here or Attach resume file

Human Check*