GovCon Sourcing

Cleared Technical Sourcing: RHEL, Clearance Language, Geography, and the Limits of Public Evidence

Dan — Senior Technical Sourcer · Published June 26, 2026 · Updated June 26, 2026

A practitioner guide to sourcing cleared Linux and infrastructure talent: what clearance terminology actually means in 2026, why geography behaves differently in GovCon, and the hard boundary on what public text can establish.

Direct answer

Cleared technical sourcing fails in three predictable ways: treating clearance language on a profile as a status, treating metro labels as geography, and searching job titles in a market where the titles are least informative. The boundary that governs all three is that eligibility cannot be established from public text by anyone, at any level of effort. Public clearance language is a discovery breadcrumb. Verification happens through the sponsoring organisation and the proper process, with a human.

What the terminology means in 2026

The classification levels are Confidential, Secret and Top Secret, with Sensitive Compartmented Information and Special Access Programs as access categories layered on top rather than higher levels. The Department of Energy runs parallel Q and L clearances for nuclear-related information. Public trust determinations under 5 CFR Part 731 are a separate framework measuring risk to agency integrity, not national security, which is why a public trust position is not a lesser clearance and should not be searched as one. Background investigations were organised into five tiers under the 2012 Federal Investigative Standards and are consolidating toward three under Trusted Workforce 2.0.

Operating notes

  • Clearance eligibility cannot be established from public text by anyone.
  • Continuous vetting retired the reinvestigation cadence; profile dates infer less than they used to.
  • Search RHEL and RMF vocabulary, not GovCon job titles.
  • Anchor geography on the facility and its corridor, not the metro.
  • Never infer eligibility from employer, facility, contract, or prior service.

Why "active clearance" is a weaker signal than it used to be

Under Trusted Workforce 2.0 the government replaced scheduled periodic reinvestigations with continuous vetting, in which records are checked throughout the period of eligibility rather than on a five or ten year cycle. The Defense Counterintelligence and Security Agency, which conducts about 95% of federal background investigations, published updated continuous vetting guidance for National Industrial Security Program contractors on 19 May 2026: periodic reinvestigations for NISP contractor national security personnel are no longer required, replaced by a questionnaire every five years. That guidance governs cleared industry, not federal civilian, military or intelligence community employees. The practical consequence for sourcing is that a profile line reading "active TS/SCI, last reinvestigated 2022" no longer means what a recruiter used to infer from it, because the reinvestigation cadence it refers to has been retired.

The sourcing consequence of continuous vetting

Eligibility is tied to enrolment and sponsorship rather than to a date on a certificate. That makes profile-stated dates close to meaningless as a currency signal, and it makes the question you ask in screening different: not "when were you last reinvestigated" but "who currently sponsors your eligibility and are you currently enrolled". You still cannot establish the answer from public text. You can stop drawing false inferences from a date.

Searching the technical evidence instead of the title

Cleared infrastructure work produces a recognisable vocabulary. For Red Hat environments: RHEL with a version, kickstart, Satellite, SELinux in enforcing mode, subscription-manager, systemd unit work, STIG and SCAP compliance, DISA benchmarks. For the federal compliance layer: RMF, ATO, NIST 800-53, FedRAMP, eMASS, POA&M, Nessus and ACAS. These terms are specific enough that their presence is genuine evidence of the work, which is why they outperform titles in this market. Titles in GovCon are frequently contract-derived labels that describe a billet rather than a skill set.

Geography behaves differently in GovCon

Cleared work is frequently on-site at a named facility, and the relevant geography is the commute to that facility rather than the metro label. Anchoring a search on a metro swallows enormous distance and returns people well outside a workable commute, while excluding people who list a neighbouring town. Search the named communities around the installation, the installation itself, and the corridor language local practitioners actually use. Accept that a second lane is needed for people whose location is stated imprecisely, because in this market a large share state it imprecisely on purpose.

Employer-led sourcing and contract data

In cleared markets the employer set is small and substantially public. Federal contract award data identifies which firms hold work where, and that list is a legitimate sourcing input. It surfaces people whose public profiles carry almost no technical detail, which is common among cleared practitioners who deliberately publish little. This lane trades evidence density for reach, and it should be run alongside evidence-led retrieval rather than instead of it.

What you must not infer

Do not infer clearance status from an employer name, a facility location, a contract, or a former military role. Do not infer level from the presence of the word polygraph. Do not record any of these as a candidate attribute. In SourcingOS terms, clearance language is an unverified breadcrumb, it is never written onto a candidate as a claim, and the interface will not present it as established. This is not caution for its own sake: recording an unverified eligibility claim and acting on it is how a recruiter ends up misrepresenting a candidate to a programme.

SourcingOS workflow

The X-Ray Launcher runs the evidence-led lanes against public surfaces. BooleanOS handles the ambiguous surface forms that break cleared searches, including the TS/SCI token being parsed as TypeScript. Candidate Search keeps clearance language visible as source text with its provenance attached, and never as a verified attribute.

Copy-paste starting strings

(RHEL OR "Red Hat Enterprise Linux") AND (STIG OR SCAP OR DISA) AND (ACAS OR Nessus OR eMASS)
(RMF OR "NIST 800-53" OR ATO OR "POA&M") AND (Ansible OR Puppet OR Chef) -training -bootcamp
("Annapolis Junction" OR Odenton OR Hanover OR "Fort Meade") AND (Linux OR RHEL) -recruiter -staffing

FAQ

Can any tool confirm whether someone holds a clearance?

No public source or commercial tool can establish eligibility. Confirmation happens through the sponsoring organisation and the government process. Anything else is an unverified assertion, however confidently a vendor presents it.

Is clearance language on a profile useless then?

Not useless, just misclassified when treated as a status. It is a discovery signal that helps you find people worth a conversation, and it carries no evidentiary weight about current eligibility.

Why do titles work so poorly in GovCon sourcing?

Cleared job titles are frequently contract-derived labels describing a billet rather than a skill set, so two people with the same title can do unrelated work while the people you actually want carry a different label entirely.

Keep reading in Markets & specialisms

Cleared and federal, healthcare, AI/ML, and other markets where the sourcing rules genuinely differ.

Where to go next

Put this into practice: Open the X-Ray Launcher