NextRaiseNextRaiseFind jobs
Sign inSign up free
Jobs / Cybersecurity Consultant in United States of America
11 days ago
Apply with autofill
Apply with autofill
Leidos·11 days ago
11 days ago

Cyber Security STIG Tester

Odenton, United States of AmericaMid · 2-5 yearsCybersecurity Consultant

Sign up free to see how well your resume matches this role.

Boost your chances at leidos

How you compare FREE

?
Your scoreYour score: not yet known
→
48
Top 10%Top 10%: 48 out of 100

Top 10% of NextRaise users matched against Cybersecurity Consultant roles in United States.

Must-have skills for this role

  • stig
  • rmf
  • security+
  • dod 8570 iat ii

PDF or DOCX · no account needed

Apply faster with autofill FREEThe NextRaise extension autofills your application in one click.careers.example.com/applyAutofillingFull namePriya SharmaEmailpriya.sharma@example.comPhone+49 30 1234567LocationBerlGet the extension

What you'll do

  • Ensure STIG Checklists are up to date and settings are enforced with minimal operational impact for all systems (workstations, servers, network) within the environment.
  • Support systems within GMS to have an up to date and complete STIG Checklist; educate systems/network administrators regarding completion/edits as required.
  • Examine results of STIG testing and pass results to system owners and system administrators.
  • Track response times to STIG findings and report on the security briefing.
  • Support POA&M analysis and coordination efforts, as required, including eMASS updates.
  • Perform cybersecurity lab testing/hardening activities supporting deployment of/updates to computer systems and applications.
  • Review data from ACAS/ESS scans and set tickets to add new equipment into scans as necessary.
  • Maintain SOP’s for testing and reporting activities.
  • Support functional testing as necessary for new technology.
  • Support testing events and preparation for testing events.
  • Perform vulnerability/risk analyses of computer systems and applications during all phases of the system development life cycle.
  • Support Authorizing Official (AO) actions by ensuring all testing related security testing artifacts are presented in accordance with RMF as defined in NIST 800-37 revision 2 and related agency specific RMF requirements.

What they're looking for

  • Bachelor’s degree and 8+ years of experience; additional years of directly applicable experience may be accepted in lieu of a degree.
  • Prior relevant experience working with STIG Compliance, SCAP tools, vulnerability assessments and reporting.
  • Have experience performing various types of vulnerability and assessment scans with multiple tools.
  • Have experience using eMASS and/or Xacta.
  • Solid understanding of the Risk Management Framework (RMF) and the System Development Life Cycle (SDLC).
  • Understanding of hardware and software engineering best practices.
  • Demonstrated analytical and problem-solving skills.
  • Must meet eligibility requirements for work assignment on specified contract.
  • Applicants selected will be subject to a government security investigation and must meet eligibility requirements.
  • Current DoD 8570 IAT II Certification is required. (Sec+.)
  • Must hold an active Secret security clearance. (US Citizenship required)

Nice to have

  • Ability to identify needed changes to processes and activities and help to implement continuous improvement solutions.
  • ACAS training completed.
  • Ability to work successfully as part of a virtual team.

Summarised by NextRaise from the employer’s description, which follows in full below.

Full description from employer


Are you ready to make an impact and join a creative, forward-thinking team?
 
Leidos is seeking qualified Cyber Security STIG Tester to join our GSMO-II team at Ft. Meade, MD. 
 
POSITION SUMMARY:
The selected candidate shall perform (or review) technical security assessments using STIG Checklists, SCAP scans, and ACAS/ESS Scans of computing environments to identify points of vulnerability, non-compliance with established Information Assurance (IA) guidelines and regulations and recommend mitigation strategies. In this role, the candidate will ensure that the environments in which DoD information systems reside are secure and compliant, develop approaches to secure the environment, assess threats to the environment, provide inputs on the adequacy of security designs and architectures, perform RMF STIG and compliance testing related activities, and participate in risk assessment mitigation with the system administrators and providing relevant reporting for security briefing.

 

CLEARANCE REQUIREMENT: 
•Must hold an active Secret security clearance. (US Citizenship required)

 

PRIMARY RESPONSIBILITIES:
•Ensure STIG Checklists are up to date and settings are enforced with minimal operational impact for all systems (workstations, servers, network) within the environment. 
•Support systems within GMS to have an up to date and complete STIG Checklist; educate systems/network administrators regarding completion/edits as required. 
•Examine results of STIG testing and pass results to system owners and system administrators.
•Track response times to STIG findings and report on the security briefing.
•Support POA&M analysis and coordination efforts, as required, including eMASS updates.
•Perform cybersecurity lab testing/hardening activities supporting deployment of/updates to computer systems and applications. 
•Review data from ACAS/ESS scans and set tickets to add new equipment into scans as necessary.
•Maintain SOP’s for testing and reporting activities. 
•Support functional testing as necessary for new technology. 
•Support testing events and preparation for testing events.
•Perform vulnerability/risk analyses of computer systems and applications during all phases of the system development life cycle.
•Support Authorizing Official (AO) actions by ensuring  all testing related security testing artifacts are presented in accordance with RMF as defined in NIST 800-37 revision 2 and related agency specific RMF requirements.
•Have experience performing various types of vulnerability and assessment scans with multiple tools.

 

BASIC QUALIFICATIONS:
•Bachelor’s degree and 8+ years of experience; additional years of directly applicable experience may be accepted in lieu of a degree.
•Prior relevant experience working with STIG Compliance, SCAP tools, vulnerability assessments and reporting.
•Have experience performing various types of vulnerability and assessment scans with multiple tools.
•Have experience using eMASS and/or Xacta.
•Solid understanding of the Risk Management Framework (RMF) and the System Development Life Cycle (SDLC).
•Understanding of hardware and software engineering best practices.
•Demonstrated analytical and problem-solving skills.
•Must meet eligibility requirements for work assignment on specified contract.
•Applicants selected will be subject to a government security investigation and must meet eligibility requirements.
•Current DoD 8570 IAT II Certification is required. (Sec+.)

 

PREFERRED QUALIFICATIONS:
•Ability to identify needed changes to processes and activities and help to implement continuous improvement solutions.
•ACAS training completed.
•Ability to work successfully as part of a virtual team.

 

 

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.

Original Posting:

September 10, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:

Pay Range $107,900.00 - $195,050.00

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

Company

Leidos
Odenton, United States of America

Company facts come from this company's own listings. We only show what the postings themselves carry.

Sourced from Leidos's careers site·first seen 10 Sept 2026·last verified 10 Sept 2026·How we source jobs

Similar jobs

  • Senior Security Response & Emergency Representative at Wells FargoCHARLOTTE, United States of America–match not yet calculated
  • Security Officer - On Call at millerknollZeeland, United States of America–match not yet calculated
  • Armed Security Officer for CWD at sentaraVirginia Beach, United States of America–match not yet calculated
  • Senior Information Security Professional (Government) at attReston, United States of America–match not yet calculated
  • Principal Security Advisor (vCISO) at redaptLas Vegas, United States of America–match not yet calculated

Browse more jobs

  • Cybersecurity Consultant jobs in United States
  • IT Consultant jobs in United States
  • Business Analyst jobs in United States
  • Digital Transformation Consultant jobs in United States
  • Cybersecurity Consultant jobs in Germany
  • Cybersecurity Consultant jobs in India