Back to jobs

Information Security Subject Matter Expert (SME)

Colorado Springs, CO

ABOUT NOOKS

Are you seeking an exciting and unique opportunity to grow and support our national security? As a startup, we are offering a limited-time opportunity to be an equity owner in a pioneering new industry. Nooks is pioneering Classified Infrastructure-as-a-Service (CIaaS) to provide government and industry partners with the fastest, most efficient access to classified infrastructure. We are building a nationwide network of accredited classified spaces and systems, ensuring that the best technologies equip our nation’s warfighters. At Nooks, we value innovation, collaboration, and a service-first mindset.

ABOUT THE ROLE

We are seeking a highly specialized and experienced Information Security Subject Matter Expert (SME) to manage, lead, and administer the information security program for Sensitive Compartmented Information (SCI) systems and networks across the entire US Space Force classified enterprise. This critical role is dedicated to protecting SCI data from unauthorized access, compromise, disruption, modification, or destruction.

The SME will serve as the authoritative Information Security resource for the HQ Special Security Officer (SSO) and Information System Security Manager (ISSM). The role involves providing expert guidance on system security planning, compliance with ICD 503 and CNSSI 1253, incident response, and continuous monitoring of classified IT infrastructure.

KEY RESPONSIBILITIES:

1. System Security Planning and Compliance

  • Regulatory Oversight: Serve as the Subject Matter Expert for all regulations pertaining to SCI Information Security, including ICD 503 (Security for Information Systems), CNSSI 1253, and relevant DoD/AFMAN directives.
  • Vulnerability Management: Proactively identify system security vulnerabilities and provide expert recommendations for corrective actions and the implementation of appropriate security controls.
  • Policy and Procedure Development: Lead the development, implementation, and maintenance of comprehensive security policies, procedures, and guidelines for SCI systems and networks across the enterprise.
  • Risk Management Framework (RMF): Support the RMF process by ensuring security controls are properly implemented, documented, and assessed to maintain system Authority to Operate (ATO).

2. Incident Response and Operations

  • Incident Response Leadership: Lead and participate in all security incident response activities, including the identification, containment, eradication, and recovery from security incidents impacting SCI systems.
  • SOP Development: Develop and maintain detailed Standard Operating Procedures (SOPs) for security incident instigation, mitigation, and reporting activities.
  • Coordination: Coordinate incident response and forensic activities with the ISSM, SSO, command leadership, law enforcement, and other government agencies as required.
  • Monitoring and Reporting: Stay up-to-date on the latest security threats, vulnerabilities, and technologies to inform defensive strategies.

3. Content Review and Security Awareness

  • Security Awareness and Training: Develop and deliver advanced security awareness training programs to educate personnel on their information security responsibilities. Conduct initial and recurring security briefings for personnel with access to SCI systems and networks.
  • Prepublication Reviews: Develop and manage SOPs for pre-publication reviews of classified information. Serve as a liaison between the requestor and Subject Matter Experts to ensure timely and compliant reviews are completed.
  • Classification Management: Serve as a liaison between requestors and Subject Matter Experts to ensure accurate classification level reviews are completed. Maintain the repository of applicable SCI Security Classification Guides (SCGs).

4. Compliance, Audits, and Liaison

  • Audits and Inspections: Lead and coordinate internal self-inspections and serve as the Information Security expert during external government compliance audits and inspections (e.g., DCSA, customer-led) across all USSF sites.
  • Compliance Reporting: Prepare and submit required security reports. Maintain accurate records of security incidents, investigations, and compliance activities.
  • Collaboration: Work closely with the SSO, Physical Security SME, and Personnel Security SME to ensure a unified and comprehensive security posture.

THE SKILLSET:

  • Experience: Minimum 10 years of dedicated professional experience in Information Security, with a significant focus on SCI security and networks within the U.S. Defense Industrial Base or Intelligence Community.
  • Clearance: Must possess and maintain an Active Top Secret (TS) / Sensitive Compartmented Information (SCI) eligibility security clearance. U.S. Citizenship is required.
  • Regulatory Expertise: Expert-level, current knowledge of U.S. government Information Security regulations, specifically ICD 503 and CNSSI 1253.
  • Technical Knowledge: Strong understanding of information security principles, network security protocols, cloud security principles, and expertise with operating systems such as Windows and Linux.
  • Skills: Excellent communication, problem-solving, and analytical skills. Proven ability to handle sensitive information with discretion and maintain confidentiality.

PREFERRED QUALIFICATIONS:

  • Education: Bachelor's degree in Computer Science, Information Systems, or a related field.
  • Certification: Current security certification such as Security Professional Education Development (SPeD) or CISSP (Certified Information Systems Security Professional).
  • Experience: Direct, embedded experience supporting a US Space Force or other Combatant Command Special Security Office (SSO) with direct responsibility for secure networks.

This position requires the ability to travel to USSF and partner facilities, work in Sensitive Compartmented Information Facilities (SCIFs), and involves physical requirements such as climbing stairs/ladders or working in confined spaces to complete facility inspections and assessments.

This employment offer is contingent upon continued funding of the underlying government contract. Should the contract be modified, or terminated, or if funding is reduced or eliminated, the employer reserves the right to adjust or rescind the offer accordingly. 

Salary Range for all departments

Salary Range

$140,000 - $170,000 USD

Create a Job Alert

Interested in building your career at Nooks? Get future opportunities sent straight to your email.

Apply for this job

*

indicates a required field

Phone
Resume/CV*

Accepted file types: pdf, doc, docx, txt, rtf

Cover Letter

Accepted file types: pdf, doc, docx, txt, rtf


Select...
Select...

Voluntary Self-Identification

For government reporting purposes, we ask candidates to respond to the below self-identification survey. Completion of the form is entirely voluntary. Whatever your decision, it will not be considered in the hiring process or thereafter. Any information that you do provide will be recorded and maintained in a confidential file.

As set forth in Nooks’s Equal Employment Opportunity policy, we do not discriminate on the basis of any protected group status under any applicable law.

Select...
Select...
Race & Ethnicity Definitions

If you believe you belong to any of the categories of protected veterans listed below, please indicate by making the appropriate selection. As a government contractor subject to the Vietnam Era Veterans Readjustment Assistance Act (VEVRAA), we request this information in order to measure the effectiveness of the outreach and positive recruitment efforts we undertake pursuant to VEVRAA. Classification of protected categories is as follows:

A "disabled veteran" is one of the following: a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or a person who was discharged or released from active duty because of a service-connected disability.

A "recently separated veteran" means any veteran during the three-year period beginning on the date of such veteran's discharge or release from active duty in the U.S. military, ground, naval, or air service.

An "active duty wartime or campaign badge veteran" means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.

An "Armed forces service medal veteran" means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985.

Select...

Voluntary Self-Identification of Disability

Form CC-305
Page 1 of 1
OMB Control Number 1250-0005
Expires 04/30/2026

Why are you being asked to complete this form?

We are a federal contractor or subcontractor. The law requires us to provide equal employment opportunity to qualified people with disabilities. We have a goal of having at least 7% of our workers as people with disabilities. The law says we must measure our progress towards this goal. To do this, we must ask applicants and employees if they have a disability or have ever had one. People can become disabled, so we need to ask this question at least every five years.

Completing this form is voluntary, and we hope that you will choose to do so. Your answer is confidential. No one who makes hiring decisions will see it. Your decision to complete the form and your answer will not harm you in any way. If you want to learn more about the law or this form, visit the U.S. Department of Labor’s Office of Federal Contract Compliance Programs (OFCCP) website at www.dol.gov/ofccp.

How do you know if you have a disability?

A disability is a condition that substantially limits one or more of your “major life activities.” If you have or have ever had such a condition, you are a person with a disability. Disabilities include, but are not limited to:

  • Alcohol or other substance use disorder (not currently using drugs illegally)
  • Autoimmune disorder, for example, lupus, fibromyalgia, rheumatoid arthritis, HIV/AIDS
  • Blind or low vision
  • Cancer (past or present)
  • Cardiovascular or heart disease
  • Celiac disease
  • Cerebral palsy
  • Deaf or serious difficulty hearing
  • Diabetes
  • Disfigurement, for example, disfigurement caused by burns, wounds, accidents, or congenital disorders
  • Epilepsy or other seizure disorder
  • Gastrointestinal disorders, for example, Crohn's Disease, irritable bowel syndrome
  • Intellectual or developmental disability
  • Mental health conditions, for example, depression, bipolar disorder, anxiety disorder, schizophrenia, PTSD
  • Missing limbs or partially missing limbs
  • Mobility impairment, benefiting from the use of a wheelchair, scooter, walker, leg brace(s) and/or other supports
  • Nervous system condition, for example, migraine headaches, Parkinson’s disease, multiple sclerosis (MS)
  • Neurodivergence, for example, attention-deficit/hyperactivity disorder (ADHD), autism spectrum disorder, dyslexia, dyspraxia, other learning disabilities
  • Partial or complete paralysis (any cause)
  • Pulmonary or respiratory conditions, for example, tuberculosis, asthma, emphysema
  • Short stature (dwarfism)
  • Traumatic brain injury
Select...

PUBLIC BURDEN STATEMENT: According to the Paperwork Reduction Act of 1995 no persons are required to respond to a collection of information unless such collection displays a valid OMB control number. This survey should take about 5 minutes to complete.