1

Poam Jobs in Virginia (NOW HIRING)

... POAM and bug fix - Plan and manage Workstream scope, schedule, deliverables, risks, issues, and cross-team dependencies - Coordinate Agile team execution, sprint planning, release planning, backlog ...

Cybersecurity Engineer

Chantilly, VA · On-site

$90 - $120/hr

Compile deliverables and documentation related to cybersecurity compliance with contractual requirements including system diagrams, tailored Common Control Identification (CCI) lists, POAM checklists ...

Systems Engineer Expert

Chantilly, VA · On-site

$131K - $237K/yr

Plan of Action & Milestone (POAM) tracking * Excellent customer support and attention to detail - Tier 3 and Tier 4 level support to team and customer base. * Provide Release Management for ...

Delivery Manager

Reston, VA · On-site

$170K - $185K/yr

... POAM and bug fix - Plan and manage Workstream scope, schedule, deliverables, risks, issues, and cross-team dependencies - Coordinate Agile team execution, sprint planning, release planning, backlog ...

Delivery Manager

Reston, VA · On-site

$170K - $185K/yr

... POAM and bug fix - Plan and manage Workstream scope, schedule, deliverables, risks, issues, and cross-team dependencies - Coordinate Agile team execution, sprint planning, release planning, backlog ...

Cyber Security

Norfolk, VA · On-site

$75K - $158K/yr

  • Medical

  • Retirement

  • PTO

Prepare and review Authorization Packages, including SSP, SAR, POAM, and GCP * Collaborate with System Administrators to develop policy documentation for NIST controls * Apply system security ...

System Administrator

Quantico, VA

$85K - $141K/yr

  • Medical

  • Life

  • Retirement

  • PTO

Working knowledge of DoD STIGs related to the applicable technologies and how to implement, mitigate, and write POAM statements Clearance Requirements: * Must have a current / active DoD Top Secret ...

System Administrator

Quantico, VA · On-site

$85K - $141K/yr

  • Medical

  • Life

  • Retirement

  • PTO

Working knowledge of DoD STIGs related to the applicable technologies and how to implement, mitigate, and write POAM statements Clearance Requirements: * Must have a current / active DoD Top Secret ...

Cyber Security with Security Clearance

Norfolk, VA · On-site

$75K - $158K/yr

  • Medical

  • Retirement

  • PTO

Prepare and review Authorization Packages, including SSP, SAR, POAM, and GCP * Collaborate with System Administrators to develop policy documentation for NIST controls * Apply system security ...

CyberSecurity Engineer

Arlington, VA · Hybrid

$100K - $150K/yr

You will serve as a technical expert responsible for continuous scanning, STIG application, POAM tracking, and remediation strategies to safeguard our federal client's assets. Location: Arlington, VA ...

Showing results 21-40

Poam information

What are common challenges faced by POAM managers when managing multiple projects?

POAMs often juggle several projects with competing deadlines and priorities, which can make it challenging to allocate resources and maintain clear communication across teams. Balancing the need for thorough documentation with timely progress reporting—especially in highly regulated environments—requires strong organizational skills and attention to detail. Collaborating with diverse stakeholders, such as technical leads, compliance officers, and executive sponsors, is essential to ensure all program objectives are met and risks are effectively managed. Successful POAMs develop efficient tracking systems and proactive communication strategies to stay ahead of potential issues.

What is a POAM?

POAMs, or Plans of Action and Milestones, are management tools used in cybersecurity and compliance to identify, track, and remediate security weaknesses within an organization’s information systems. They document specific steps needed to address vulnerabilities, assign responsibilities, and set deadlines for completion. POAMs are essential for maintaining compliance with standards such as NIST and FedRAMP, ensuring that organizations have a clear plan to achieve and maintain security requirements.

What skills and qualifications are needed to thrive as a POAM manager?

To thrive as a POAM Manager, you need a solid understanding of cybersecurity compliance frameworks, risk assessment, and project management, typically supported by experience in IT security or compliance roles. Familiarity with tools such as GRC (Governance, Risk, and Compliance) platforms, NIST SP 800-53, and related certification like CISSP or CISA is highly valuable. Strong organizational skills, attention to detail, and effective communication are crucial soft skills for coordinating remediation efforts and reporting to stakeholders. These competencies ensure that security gaps are properly tracked, managed, and remediated to maintain organizational compliance and reduce risk.

What is the difference between Poam vs Network Security Analyst?

AspectPoamNetwork Security Analyst
Required CredentialsTypically security certifications like CISSP, CEH, or CompTIA Security+Same certifications, often with additional network-specific credentials
Work EnvironmentSecurity teams, government agencies, or private firms focusing on security plansIT departments, cybersecurity firms, or corporate security teams
Employer & Industry UsageUsed in security planning and compliance documentationUsed in monitoring, analyzing, and responding to security threats

Poam (Plan of Action and Milestones) and Network Security Analyst roles both require security certifications and work within cybersecurity environments. Poam focuses on security planning and compliance, while Network Security Analysts actively monitor and respond to security threats. Both roles are essential in maintaining organizational security but serve different functions within the cybersecurity landscape.

What are popular job titles related to Poam jobs in Virginia?

For Poam jobs in Virginia, the most frequently searched job titles are:

Infographic showing various Poam job openings in Virginia as of August 2026, with employment types broken down into 90% Full Time, 4% Part Time, and 6% Contract. Highlights an 88% Physical, 4% Hybrid, and 8% Remote job distribution.

Full-time

Re-posted 11 days ago


Job description

Overview
The Cybersecurity Engineer is responsible for overseeing cybersecurity strategy, compliance, and technical execution across proposal development, system implementation, and operational environments. This role leads the integration of cybersecurity requirements into bid proposals by analyzing solicitations, defining compliant solutions, and developing supporting documentation in alignment with contractual and regulatory standards.
Responsibilities
What You'll Get To Do:
  • Lead the cybersecurity aspects of our bid proposal processes, ensuring that all security requirements and considerations are comprehensively addressed.
  • Expertly analyze RFQs, RFPs, PWS, and SOWs, devise comprehensive cybersecurity solutions to include estimating the level of effort required to address all applicable requirements, and draft these sections in our proposals.
  • Compile deliverables and documentation related to cybersecurity compliance with contractual requirements including system diagrams, tailored Common Control Identification (CCI) lists, POAM checklists, STIG checklists, and other tailored specifications as they relate to the proposed or installed system.
  • Perform preventive maintenance on existing networks to include, but not limited to, software updates, backup testing, and conducting vulnerability and compliance assessments to include SCAP and NESSUS scans of installed systems.
  • Work with system manufacturers and other subject matter experts to analyze STIG implementation and compile exemptions as required.
  • Manage the operations, strategies, and growth of our Systems Integration Laboratory (SIL).
  • Mentor, guide, and assist a team of electronic technicians, ensuring tasks related to network configuration and hardware installation are executed efficiently and to the highest standard.
  • Collaborate closely with client IT and cybersecurity teams, sharing best practices and ensuring compliance standards are maintained.
  • Drive the RMF process from Categorization through Monitoring.
  • Interface with Authorizing Officials (AO) and ISSM/ISSO related to ATO actions/status.
  • Supervise the implementation, upkeep, and management of Electronic Security Systems across client facilities.
  • Keep abreast of emerging technologies, strategies, and best practices in the Electronic Security Systems domain.
  • Address and rectify client security system issues, striving for the maximization of system uptime and performance.
  • Ensure effective communication and collaboration between our technical teams, non-technical stakeholders, and clients.
  • This position exercises independent judgment and discretion on matters of significance related to cybersecurity architecture, regulatory compliance, system authorization, and operational risk management.
  • Other duties as assigned.

Qualifications
  • Minimum three (3) years of experience.
  • Due to federal contract requirements, applicants must be U.S. Citizens.
  • CompTIA Sec+ and CCNA required.
  • Ability to obtain and maintain a Secret security clearance.
  • Comprehensive and demonstrated expertise in Active Directory, Full Server Stacks, Switches, ATO/ATC processes, and Systems Administration.
  • Successfully pass background and drug screening

Knowledge, Skills and Abilities:
  • Proficiency in C+/++/#, JavaScript, Python, SQL, LUA, or similar languages is preferred.
  • CEH or CISSP preferred.
  • Knowledge of federal standards to include UFC 4-010-06 , DoDI 8510.01, NIST SP 800-53, and 800-82 preferred.
  • Expertise in understanding technical prerequisites and crafting compelling segments for bid proposals.
  • A board background and experience with the design, installation, and maintenance of Electronic Security Systems.
  • The ideal candidate would have relevant experience and/or be certified in the following systems: LenelS2, AMAG, Genetec, Milestone, Hirsch, and Software House C-CURE 9000.