Full-Time

Cybersecurity Engineer SME

Posted on 8/17/2026

Deadline 8/17/27
GovCIO

GovCIO

1,001-5,000 employees

Federal IT modernization and cybersecurity services

Compensation Overview

$160k - $200k/yr

No H1B Sponsorship

Colorado Springs, CO, USA

In Person

US Top Secret Clearance Required

Category
IT & Security (1)
Required Skills
LLM
PowerShell
Python
Git
ServiceNow
Machine Learning
RAG
Cryptography
REST APIs
DevOps

Get referred to GovCIO

See people who can refer or advise you

Requirements
  • A high school education with 10 or more years of experience, or commensurate experience.
  • An active Top Secret/Sensitive Compartmented Information clearance is required.
  • A Department of Defense 8140 IAT III certification is required, such as CISSP, ISSEP, ISSAP, or CGRC.
  • At least 10 years of experience in cybersecurity engineering, Risk Management Framework implementation, security architecture, DevSecOps, continuous monitoring, or security automation.
  • At least five years of experience supporting Department of Defense or Intelligence Community cybersecurity programs.
  • Experience with eMASS, Xacta, NIST Risk Management Framework, DoD Risk Management Framework, Air Force Intelligence Community cybersecurity processes, and classified information systems.
  • Experience with NIST SP 800-37 Rev. 2, NIST SP 800-53 Rev. 5, NIST SP 800-53A Rev. 5, NIST SP 800-137, NIST SP 800-30, FIPS 199 and 200, DoD RMF, CNSSI, ICD 50, OSCAL implementation, machine-readable RMF artifacts, Zero Trust Architecture, continuous authorization, security engineering principles, DevSecOps, and security automation.
  • Programming experience developing automation using Python, PowerShell, REST APIs, JSON/XML, Git, continuous integration and continuous delivery platforms, enterprise APIs, and cybersecurity platforms.
  • Experience implementing artificial-intelligence-assisted cybersecurity capabilities using large language models, Retrieval-Augmented Generation, Natural Language Processing, prompt engineering, vector databases, document intelligence, AI governance, and human-in-the-loop validation.
Responsibilities
  • Correlate threat data from various sources to identify hackers active in client networks and posing potential threats.
  • Provide customer assessments and reports that support situational awareness and understanding of current cyber threats and adversaries.
  • Develop cyber threat profiles based on geographic region, country, group, or individual actors.
  • Produce cyber threat assessments based on entity threat analysis.
  • Provide computer forensic and intrusion support for high-technology investigations, including computer evidence seizure, computer forensic analysis, data recovery, and network assessments.
  • Research and maintain proficiency in tools, techniques, countermeasures, and trends involving computer-network vulnerabilities, data hiding, network security, and encryption.
  • Collaborate with intrusion analysts to identify, report, and coordinate remediation of cyberthreats.
  • Provide timely and actionable sanitized intelligence to cyber incident response professionals.
  • Use technical knowledge of computer systems and networks with cyber threat information to assess the client's security posture.
  • Conduct intelligence analysis of intrusion signatures, tactics, techniques, and procedures associated with cyber attacks.
  • Research hackers, hacker techniques, vulnerabilities, and exploits, and provide detailed briefings and intelligence reports to leadership.
  • Engineer cybersecurity solutions supporting Department of Defense and Intelligence Community information systems.
  • Design, implement, and document security controls consistent with NIST SP 800-53 Rev. 5 and CNSSI 1253 overlays.
  • Develop security architectures supporting Zero Trust, cloud, hybrid, and on-premises environments.
  • Integrate cybersecurity requirements throughout the System Development Life Cycle.
  • Support Authority to Operate, continuous authorization, and continuous monitoring initiatives.
  • Develop and maintain RMF authorization artifacts.
  • Engineer automated evidence-collection and validation processes.
  • Develop reusable security-control implementations and standardized control-inheritance strategies.
  • Support implementation of OSCAL-based RMF automation.
  • Design and implement AI-assisted capabilities for RMF documentation, evidence management, and compliance analysis.
  • Develop Retrieval-Augmented Generation workflows for cybersecurity documentation.
  • Implement Natural Language Processing techniques to analyze RMF artifacts and identify documentation inconsistencies.
  • Develop machine-learning and rule-based models.
  • Implement human-in-the-loop validation for all AI-generated outputs.
  • Apply Responsible AI principles and AI governance throughout solution development.
  • Develop automated RMF workflows.
  • Integrate cybersecurity controls into continuous integration and continuous delivery pipelines.
  • Implement Security-as-Code and Policy-as-Code capabilities.
  • Develop dashboards supporting cybersecurity metrics, authorization status, and continuous monitoring.
  • Integrate automation with eMASS, Xacta, ServiceNow, vulnerability-management platforms, and enterprise asset inventories.
  • Engineer automated collection of cybersecurity evidence supporting continuous monitoring.
  • Integrate security tooling.
  • Develop automated compliance scoring and risk dashboards.
  • Provide technical recommendations supporting authorization decisions.
  • Support modernization of enterprise RMF processes across Air Force Intelligence Community environments.
Desired Qualifications
  • Experience with the Space Force's network environment.

GovCIO provides IT services and digital solutions to the U.S. federal government, including IT modernization, digital services, data analytics, cybersecurity, DevSecOps, and management consulting. It wins prime federal contracts and delivers a full range of services through its business units—Health and Civilian Agencies, National Security Solutions, and Veteran and Enterprise Technology Solutions—along with GovCIO Media & Research. The company differentiates itself by expanding through strategic investments and acquisitions, such as WCAS’s stake and the Salient CRGT purchase, and by targeting federal health, national security, and civilian agencies under major contract vehicles like VA T4NG2. Its goal is to help the government transform and modernize its IT landscape with mission-critical technology and analytics capabilities.

Company Size

1,001-5,000

Company Stage

N/A

Total Funding

N/A

Headquarters

Washington DC, District of Columbia

Founded

2010

Get referred to GovCIO

See people who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • GovCIO won a $389.7 million VA IT support order, extending revenue through 2027.
  • Its February 25, 2026 VLM recompete preserves trusted VA visibility and low-friction renewal work.
  • SoldierPoint transition added nearly 300 employees and deepened access to 4 million veterans.

What critics are saying

  • GovCIO lost the GAO-recompeted $95 million GAO IT services contract in January 2026.
  • A D.C. Federal Claims case opened March 2026 keeps GovCIO exposed to protest volatility.
  • Heavy VA concentration makes any 2027 recompete or budget shift an existential revenue shock.

What makes GovCIO unique

  • GovCIO controls VA-connected care through SoldierPoint’s $2 billion CCIN contract, July 2025.
  • Its GovCIO Media & Research brand shapes federal IT narratives, not just delivery services.
  • WCAS-backed scale and 3,300 employees support rapid acquisition integration across federal health programs.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Remote Work Options

Company News

Startup Daily
Aug 11th, 2026
WA government delivers $1.275 million in grants to 26 startups

A total of $1,274,686 was awarded to ideas span energy, tourism and events, space, health and medical life sciences, and primary industries.

Business Wire
Jul 24th, 2025
Iron Bow Technologies Announces Acquisition of SoldierPoint Digital Health, LLC by GovCIO

Iron Bow Technologies (Iron Bow), a leading provider of innovative IT solutions to government, commercial, education, and healthcare markets, today announced...

GovCon Wire
Jan 21st, 2022
GovCIO acquired Salient CRGT, Inc. for $700M on Aug 1st 21'.

The rebranding effort came after GovCIO acquired IT services contractor Salient CRGT in August 2021, creating a combined entity with more than 2,600 employees and $700 million in annual revenues, GovCIO said Thursday.

PR Newswire
Dec 22nd, 2021
GovernmentCIO signs new client U.S. Department of Veterans Affairs

GovernmentCIO (GovCIO) has been awarded an $37M contract by Department of Veterans Affairs (VA) to continue supporting the Veterans Legacy Memorial (VLM).

PR Newswire
Aug 19th, 2021
GovernmentCIO merges with Salient Federal Solutions, Inc.

GovernmentCIO announced it has merged with Salient CRGT, combining two premier government IT solutions companies.