is seeking a Cybersecurity Subject Matter Expert – Lead to support the DLA JETS Cybersecurity Policy and Oversight Support Services (CPOSS) program. This is a fully remote position and contingent on contract award.
Job Summary
BMA is seeking a Cybersecurity Subject Matter Expert (CS SME) – Lead to support our DLA Cybersecurity Policy and Oversight Support Services (CPOSS) contract. The CS SME – Lead provides senior-level technical leadership and advisory support to the CPOSS program supporting DLA’s J6/J611 Cybersecurity Directorate. The SME serves as the principal cybersecurity authority for complex technical and governance challenges related to the enterprise Risk Management Framework (RMF) program, cybersecurity policy development, continuous monitoring, and control validation activities across the DLA enterprise. Working under consultative direction, the SME independently evaluates exceptionally complex cybersecurity issues, develops innovative solutions, and provides authoritative technical guidance to government leadership, Security Control Assessors (SCAs), Authorizing Officials (AOs), and enterprise cybersecurity stakeholders. The role also contributes to the development of enterprise cybersecurity methodologies, advanced assessment techniques, and improved cybersecurity governance practices aligned with DoD cybersecurity policy and DLA strategic initiatives.
Key Responsibilities
Enterprise Cybersecurity Technical Leadership: Serves as the senior technical advisor to the DLA cybersecurity assessment and oversight program, providing expert interpretation of cybersecurity policies, standards, and technical requirements. Provides authoritative guidance on complex cybersecurity issues involving enterprise systems, networks, applications, enclaves, and emerging technologies. Analyzes highly complex cybersecurity challenges and recommends innovative solutions that balance mission requirements, operational risks, and regulatory compliance.
RMF and Cybersecurity Assessment Expertise: Provides subject matter expertise on implementation and governance of the DoDI 8510.01 Risk Management Framework for DoD IT across DLA information systems. Advises government stakeholders on security control validation, risk assessments, and authorization readiness determinations. Provides technical review of security control assessments, continuous monitoring activities, and RMF authorization packages submitted through eMASS. Supports development of enterprise-level recommendations regarding residual risk acceptance and cybersecurity posture improvements.
Cybersecurity Tools, Standards, and Architecture Support: Evaluates cybersecurity tools and technologies to support enterprise security assessment, monitoring, and compliance activities. Recommends cybersecurity software solutions and assists in defining functional and technical requirements for tool selection. Supports development of product-specific Security Technical Implementation Guides (STIGs) based on Defense Information Systems Agency Security Requirements Guides (SRGs). Provides technical leadership in evaluating network security architectures, vulnerability assessment methodologies, and cybersecurity implementation strategies.
Enterprise Cybersecurity Policy and Methodology Development: Contributes to the development of new cybersecurity principles, methodologies, and governance practices that improve the DLA enterprise cybersecurity program. Provides expert guidance in the development and refinement of enterprise cybersecurity policies, directives, and standard operating procedures supporting the CPOSS program. Supports the development of advanced cybersecurity concepts and technical approaches that strengthen enterprise security posture and compliance with DoD cybersecurity regulations.
Strategic Analysis and Innovation: Conducts research and analysis of emerging cybersecurity threats, technologies, and best practices relevant to the DLA mission environment. Develops innovative approaches for improving cybersecurity assessment processes, continuous monitoring practices, and enterprise risk management strategies. Identifies opportunities to enhance cybersecurity oversight capabilities through improved tools, automation, analytics, and governance frameworks.
Senior-Level Advisory and Communication Support: Provides expert written and oral briefings to senior government leadership regarding cybersecurity risks, program status, and recommended solutions. Prepares technical reports, white papers, and presentations addressing enterprise cybersecurity challenges.
Clearance Requirements
There is a Secret Security clearance requirement for this position.
Required Skills & Certifications
Desired Skills & Certifications
Other Duties
Overview
BMA is an employee-owned small business headquartered in Huntsville, AL that provides superior customer service by empowering all levels of our staff to make timely decisions to produce high-quality results. BMA fosters an environment of passion, precision, and dedication in order to fulfill our commitments to our partners, government, and country.
Benefits
We believe that our employees well-being is paramount to our success so our benefits package has been crafted with that in mind. We offer multiple healthcare coverage options to include low deductible, high deductible, and plans eligible for our Health Savings Account (HSA) option. Along with medical coverage, employees have dental, vision, accident & illness, short- and long-term disability all available to them. BMA proudly maintains a 401(k) plan with an industry leading 6% match that can include profit sharing based on company performance. Lastly, being an employee-owned company means that BMA offers a 100% Employee Stock Ownership Plan (ESOP), providing eligible employees the opportunity to earn stock in BMA, subject to plan eligibility and vesting requirements.
AAP & EEO Statement
Beshenich Muir & Associates, LLC (BMA) is an Equal opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regards to race, color, religion, religious creed, gender, sexual orientation, gender identity, gender expression, transgender, pregnancy, marital status, national origin, ancestry, citizenship status, age, disability, protected Veteran Status, genetics or any other characteristics protected by applicable Federal, State, or Local Law.

GMR

Private Label Staff

Private Label Staff

Cyberfort Group

Cyberfort Group

Beshenich Muir & Associates

Beshenich Muir & Associates

Beshenich Muir & Associates