... scans in ACAS • Analyze scan results to identify vulnerabilities, misconfigurations, and compliance gaps. • Validate findings against the latest released DISA STIGs and applicable security ...
... scans in ACAS • Analyze scan results to identify vulnerabilities, misconfigurations, and compliance gaps. • Validate findings against the latest released DISA STIGs and applicable security ...
DISA ACAS and Trellix Certifications preferred. Why Join Cyber Defense Technologies? At CDT, we offer a collaborative and inclusive work environment where your expertise in system engineering can ...
DISA ACAS and Trellix Certifications preferred. Why Join Cyber Defense Technologies? At CDT, we offer a collaborative and inclusive work environment where your expertise in system engineering can ...
DISA ACAS and Trellix Certifications preferred. Why Join Cyber Defense Technologies? At CDT, we offer a collaborative and inclusive work environment where your expertise in system engineering can ...
Quick apply
DISA ACAS and Trellix Certifications preferred. Why Join Cyber Defense Technologies? At CDT, we offer a collaborative and inclusive work environment where your expertise in system engineering can ...
... DISA ACAS and Trellix Certifications preferred. Why Join Cyber Defense Technologies? At CDT, we offer a collaborative and inclusive work environment where your expertise in system engineering can ...
... DISA ACAS and Trellix Certifications preferred. Why Join Cyber Defense Technologies? At CDT, we offer a collaborative and inclusive work environment where your expertise in system engineering can ...
ACAS Administrator
Beverly, KS · On-site
Client Solution Architects (CSA) is currently seeking an ACAS/AESS Administrator to support our ... AESS specific training and/or certification (e.g., DISA AESS 201 Admin ePO5.1 and DISA AESS 301 ...
Quick apply
ACAS Administrator
Beverly, KS · On-site
Client Solution Architects (CSA) is currently seeking an ACAS/AESS Administrator to support our ... AESS specific training and/or certification (e.g., DISA AESS 201 Admin ePO5.1 and DISA AESS 301 ...
DISA ACAS and Trellix Certifications preferred. Why Join Cyber Defense Technologies? At CDT, we offer a collaborative and inclusive work environment where your expertise in finance and HR can help ...
DISA ACAS and Trellix Certifications preferred. Why Join Cyber Defense Technologies? At CDT, we offer a collaborative and inclusive work environment where your expertise in finance and HR can help ...
DISA ACAS Best Practices Exam * ACAS Training Certificate * Active Secret clearance or above * Active Security+ (or 8 equivalent) Benefits Benefits Include: * Covers 100% of employee benefit premiums ...
New
DISA ACAS Best Practices Exam * ACAS Training Certificate * Active Secret clearance or above * Active Security+ (or 8 equivalent) Benefits Benefits Include: * Covers 100% of employee benefit premiums ...
New
ACAS Administrator
Fort Leavenworth, KS · On-site
Description Client Solution Architects (CSA) is currently seeking an ACAS/AESS Administrator to ... AESS specific training and/or certification (e.g., DISA AESS 201 Admin ePO5.1 and DISA AESS 301 ...
ACAS Administrator
Fort Leavenworth, KS · On-site
Description Client Solution Architects (CSA) is currently seeking an ACAS/AESS Administrator to ... AESS specific training and/or certification (e.g., DISA AESS 201 Admin ePO5.1 and DISA AESS 301 ...
ACAS Administrator
Leavenworth, KS · On-site
Job Type Full-time Description Client Solution Architects (CSA) is currently seeking an ACAS/AESS ... AESS specific training and/or certification (e.g., DISA AESS 201 Admin ePO5.1 and DISA AESS 301 ...
ACAS Administrator
Leavenworth, KS · On-site
Job Type Full-time Description Client Solution Architects (CSA) is currently seeking an ACAS/AESS ... AESS specific training and/or certification (e.g., DISA AESS 201 Admin ePO5.1 and DISA AESS 301 ...
Prior experience with DISA Security Technical Implementation Guides (STIG), Assured Compliance Assessment Solution (ACAS), VRAM, and other DoN, and DoD cybersecurity tools * Strong ability to ...
Prior experience with DISA Security Technical Implementation Guides (STIG), Assured Compliance Assessment Solution (ACAS), VRAM, and other DoN, and DoD cybersecurity tools * Strong ability to ...
... similar. • DISA ACAS and Trellix Certifications preferred. Why Join Cyber Defense Technologies? At CDT, we offer a collaborative and inclusive work environment where your expertise security ...
... similar. • DISA ACAS and Trellix Certifications preferred. Why Join Cyber Defense Technologies? At CDT, we offer a collaborative and inclusive work environment where your expertise security ...
Ensure GEN networks receive daily plugin and feed updates from the DISA/DoD Patch Repository ... ACAS Security Center and Nessus experience * Scripting (Nessus Attack Scripting Language (NASL ...
Ensure GEN networks receive daily plugin and feed updates from the DISA/DoD Patch Repository ... ACAS Security Center and Nessus experience * Scripting (Nessus Attack Scripting Language (NASL ...
Ensure GEN networks receive daily plugin and feed updates from the DISA/DoD Patch Repository ... ACAS Security Center and Nessus experience * Scripting (Nessus Attack Scripting Language (NASL ...
Ensure GEN networks receive daily plugin and feed updates from the DISA/DoD Patch Repository ... ACAS Security Center and Nessus experience * Scripting (Nessus Attack Scripting Language (NASL ...
DISA ACAS Best Practices Exam * ACAS Training Certificate * Active Secret clearance or above * Active Security+ (or 8 equivalent) Benefits Benefits Include: * Covers 100% of employee benefit premiums ...
New
DISA ACAS Best Practices Exam * ACAS Training Certificate * Active Secret clearance or above * Active Security+ (or 8 equivalent) Benefits Benefits Include: * Covers 100% of employee benefit premiums ...
New
Experience of DIACAP and RMF are required as well as ACAS experience and DISA ACAS certification * Experience with eMass * Computing Environment/Operating System (CE/OS) certifications (Preferably ...
Experience of DIACAP and RMF are required as well as ACAS experience and DISA ACAS certification * Experience with eMass * Computing Environment/Operating System (CE/OS) certifications (Preferably ...
ACAS/AESS Administrator
Annville, PA · On-site
Description Client Solution Architects (CSA) is currently seeking an ACAS/AESS Administrator to ... AESS specific training and/or certification (e.g., DISA AESS 201 Admin ePO5.1 and DISA AESS 301 ...
ACAS/AESS Administrator
Annville, PA · On-site
Description Client Solution Architects (CSA) is currently seeking an ACAS/AESS Administrator to ... AESS specific training and/or certification (e.g., DISA AESS 201 Admin ePO5.1 and DISA AESS 301 ...
Cyber Security Engineer
$62.50 - $72.11/hr
... DISA ACAS Training Certificate -Minimum of seven (7) years of hands-on experience in the IT/Engineering field -Must have at minimum (2) years' experience with DoN, DoD RMF process; must have ...
Cyber Security Engineer
$62.50 - $72.11/hr
... DISA ACAS Training Certificate -Minimum of seven (7) years of hands-on experience in the IT/Engineering field -Must have at minimum (2) years' experience with DoN, DoD RMF process; must have ...
DISA ACAS Best Practices Exam * ACAS Training Certificate * Active Secret clearance or above * Active Security+ (or 8 equivalent) Benefits Benefits Include: * Covers 100% of employee benefit premiums ...
New
DISA ACAS Best Practices Exam * ACAS Training Certificate * Active Secret clearance or above * Active Security+ (or 8 equivalent) Benefits Benefits Include: * Covers 100% of employee benefit premiums ...
New
... NIST, DISA STIGs, CIS Benchmarks). The ACAS Engineer will collaborate with other cybersecurity professionals, system administrators, and IT staff to identify vulnerabilities, track remediation ...
... NIST, DISA STIGs, CIS Benchmarks). The ACAS Engineer will collaborate with other cybersecurity professionals, system administrators, and IT staff to identify vulnerabilities, track remediation ...
ACAS/AESS Administrator
Annville, PA · On-site
Client Solution Architects (CSA) is currently seeking an ACAS/AESS Administrator to support our ... AESS specific training and/or certification (e.g., DISA AESS 201 Admin ePO5.1 and DISA AESS 301 ...
Quick apply
ACAS/AESS Administrator
Annville, PA · On-site
Client Solution Architects (CSA) is currently seeking an ACAS/AESS Administrator to support our ... AESS specific training and/or certification (e.g., DISA AESS 201 Admin ePO5.1 and DISA AESS 301 ...
Disa Acas information
See salary details
$38K - $70.9K
3% of jobs
$70.9K - $103.8K
8% of jobs
$103.8K - $136.7K
5% of jobs
$136.7K - $169.6K
2% of jobs
$169.6K - $202.5K
1% of jobs
$202.5K - $235.5K
4% of jobs
$242.3K is the 25th percentile. Wages below this are outliers.
$235.5K - $268.4K
6% of jobs
$268.4K - $301.3K
10% of jobs
The median wage is $316.9K / yr.
$301.3K - $334.2K
22% of jobs
$360.4K is the 75th percentile. Wages above this are outliers.
$334.2K - $367.1K
17% of jobs
$367.1K - $400K
22% of jobs
$38K
$357.5K
$400K
How much do disa acas jobs pay per year?
What is DISA ACAS?
What does a DISA ACAS do?
A DISA ACAS (Assured Compliance Assessment Solution) job involves managing and maintaining ACAS, a vulnerability scanning and compliance tool used within the Department of Defense (DoD). Professionals in this role are responsible for configuring and running scans, analyzing security data, and ensuring network compliance with DoD cybersecurity policies. They often work with tools like Tenable Nessus and Security Center to identify and mitigate vulnerabilities. This role requires knowledge of risk management frameworks, DoD security protocols, and network security principles.
What are the key skills and qualifications needed to thrive as a DISA ACAS administrator?
What are some typical challenges faced by individuals working in DISA ACAS roles, and how can they prepare for them?
What is the difference between Disa Acas vs Disa Acas?
| Aspect | Disa Acas |
|---|
Since the comparison is between the same job title, Disa Acas, there is no difference in roles, responsibilities, or qualifications. Both refer to the same position, typically involving advisory and support roles within organizations, often in HR or compliance sectors. They usually require similar certifications and work in similar environments, such as corporate offices or consultancy firms. The primary distinction may be in specific employer terminology or regional usage, but generally, Disa Acas is a singular role without variation.
What are the most commonly searched types of Disa Acas jobs?
The most popular types of Disa Acas jobs are:
What states have the most Disa Acas jobs?
States with the most job openings for Disa Acas jobs include:
What job categories do people searching Disa Acas jobs look for?
The top searched job categories for Disa Acas jobs are:

Cybersecurity Analyst (Vulnerability Management & Continuous Monitoring)
Oakton, VA • On-site
Full-time
Re-posted 12 days ago
Job description
Chenega MIOS is a company that supports large-scale government operations by leveraging cutting-edge technology. They are seeking a Cybersecurity Analyst to support Department of Defense cybersecurity operations by executing vulnerability management, security compliance, and Continuous Monitoring activities in accordance with the Risk Management Framework.
Responsibilities:
• Perform vulnerability scanning using Assured Compliance Assessment Solution (ACAS) (e.g., Tenable.sc / Nessus).
• Enforcing the ACAS best practice guide requirements when performing vulnerability scans in ACAS
• Analyze scan results to identify vulnerabilities, misconfigurations, and compliance gaps.
• Validate findings against the latest released DISA STIGs and applicable security baselines.
• Review of provided checklists and working with system admins in identifying gaps for POA&M creation.
• Assess and track vulnerabilities in accordance with DoD timelines and risk severity.
• Correlate vulnerabilities with IAVA/IAVM notices and ensure timely remediation or mitigation.
• Develop and maintain Plan of Action and Milestones (POA&M) documentation.
• Maintenance of Risk Acceptance (RA) POA&M items within SOR (System of Record) and coordinating with System administrators to validate that RA is required instead of a POA&M.
• Apply and validate Security Technical Implementation Guides (STIGs) across operating systems, applications, and network devices.
• Conduct manual and automated STIG compliance checks using tools such as ACAS Audit checks, STIG Viewer, SCAP Compliance Checker (SCC), and Evaluate-STIG.
• Document compliance status and provide remediation guidance to system administrators.
• Support system hardening efforts aligned with DoD baseline configurations.
• Ensure that golden images are maintained for Servers (RHEL and Windows) and Workstations following STIG guidance.
• Monitor and assess Information Assurance Vulnerability Alerts (IAVAs) and Bulletins (IAVBs).
• Determine system applicability and operational impact.
• Coordinate remediation actions and track compliance deadlines.
• Maintain IAVA compliance reporting and documentation for audits.
• Execute Continuous Monitoring activities in accordance with RMF Step 6.
• Monitor security controls for effectiveness and ongoing compliance.
• Conduct control assessments and assist with periodic security reviews.
• Support automated and manual data collection for ConMon dashboards and reporting.
• Identify trends, recurring issues, and systemic risks across systems.
• Support RMF activities across all six steps, with emphasis on:
• Control implementation validation
• Security control assessment support
• Ongoing authorization (ATO sustainment)
• Update and maintain RMF artifacts, including:
• System Security Plan (SSP)
• Security Assessment Report (SAR)
• Plan of Action and Milestones (POA&M)
• Security Assessment Plan (SAP)
• Map vulnerabilities and findings to NIST SP 800-53 controls.
• Generate vulnerability and compliance reports for leadership and Authorizing Officials (AOs).
• Provide risk-based recommendations and remediation strategies.
• Maintain audit-ready documentation in accordance with DoD and agency requirements.
• Other duties as assigned
Qualifications:
Required:
• High school diploma or GED equivalent
• 5+ years of experience in DoD cybersecurity or RMF-based environments
• Hands-on experience with ACAS (Nessus / Tenable.sc)
• Hands-on experience with STIG implementation and validation
• Hands-on experience with IAVA/IAVM processes
• Experience with vulnerability assessment, risk analysis, and remediation tracking
• DoD 8570/8140 Compliance: Must meet IAT Level II requirements (e.g., Security+)
• Active DoD Top Secret clearance with SCI eligibility
• Strong understanding of DoD RMF (DoDI 8510.01)
• Strong understanding of NIST SP 800-53 security controls
• Ability to manage multiple systems and priorities in a regulated environment
• Strong analytical and problem-solving skills
• Attention to detail and compliance rigor
• Ability to translate technical risk into mission impact
• Effective communication with technical and non-technical stakeholders
Preferred:
• Certified Information Systems Security Professional (CISSP)
• Certified Ethical Hacker (CEH) or equivalent
• DISA ACAS Training Certificate
• Experience with ACAS
• Experience with SCAP Compliance Checker (SCC) / Evaluate-STIG
• Experience with STIG Viewer
• Experience with eMASS, Xacta
• Experience with Trellix, MDE
• Experience with Splunk, Elastic
• Familiarity with scripting (e.g., PowerShell, Python) for automation
• Experience in enterprise-level ConMon programs or NOSC/SOC environments
Company:
Chenega MIOS (Military, Intelligence, and Operations Support) brings together a family of high‑performing companies united by a common purpose: supporting the most critical missions of the federal government, the Department of Defense, and the Intelligence Community. Founded in 1974, the company is headquartered in Anchorage, USA, with a team of 1001-5000 employees. The company is currently Late Stage.
About Chenega MIOS
Sourced by ZipRecruiter
Industry
Guided missile and space vehicle manufacturing
Company size
1,001 - 5,000 Employees
Headquarters location
Lorton, VA, US
Year founded
2010