Senior RMF & A&A Cybersecurity SME (Remote)
Connected Logistics
Description Remote role but must live within 150 miles of the following DLA Location: Ft. Belvoir VA (HQ) Contingent Upon Contract Award Connected Logistics is seeking a Cybersecurity Assessment & Authorization SME to assist in managing the implementation, maintenance and monitoring of cybersecurity in support of J6 Program Executive Officer's Portfolio of IT capabilities, associated Program Management Offices, IT infrastructure support and Operational Technology areas for Information Systems/Programs throughout the entirety of its system development life cycle. The Cybersecurity Assessment & Authorization SME serves as a cybersecurity Subject Matter Expert (SME) with regards to Assessment and Authorization (A&A) of information systems and all associated cybersecurity policies and procedures. Key Responsibilities: The Cybersecurity Assessment & Authorization SME executes DoW/DLA cybersecurity processes to authorize information systems, maintain authorization of information systems, or serves as a Subject Matter Expert (SME) for systems undergoing the authorization process. Specific duties for this position include but aren't limited to: Possessing an understanding of how security controls identified in the NIST 800-53 apply to the process of assessing and authorizing a large organization's IT infrastructure such as DLA, in which there is a compilation of large and small enclaves, Cloud Hosted Services, Operational Technology, AIS applications and outsourced IT processes. Determining the residual risk of an identified vulnerability (e.g., non-compliant security control) and determines the possible ramifications on the system's current or future authorization. Briefs senior management on the progress or results of an information system undergoing the Risk Management Framework (RMF) process. Preferred Qualifications: Possess excellent analytical and writing skills. Possess Microsoft Office programs (Excel, Word, PowerPoint, MS Project, etc.) knowledge. Possess experience working with DoD/DLA. Requirements KP-1 Enterprise RMF & Authorization Lead Purpose: Serves as the senior cybersecurity authority for enterprise RMF execution, authorization strategy, and executive engagement across the DLA portfolio. Leads assessment, authorization, and risk management activities while serving as the primary advisor for AO, SCA, ISSM, and PM stakeholders. Minimum Requirements Five years RMF, C&A, and DoD cybersecurity experience Experience conducting authorization reviews Secret clearance Tier 3/NACLC/ANACI IAM Level III certification
CISSP
CAP Former ISSM, SCA, AO support staff, or Cyber Program Lead DLA or Fourth Estate experience eMASS administration experience Experience briefing SES and Flag Officer equivalents KP-2 Security Control Assessment Lead Purpose: Leads security control assessment, independent validation, compliance reviews, and risk determination activities. Responsible for ensuring assessment consistency and quality across the enterprise workload. Minimum Requirements Five years RMF and NIST experience Security control assessment experience Authorization review experience Secret clearance Tier 3 investigation IAM Level III certification CAPCISSP
CISA Extensive NIST 800-53 assessment background Experience conducting SCA-style reviews Knowledge of FISMA and Federal compliance frameworks KP-3 Continuous Monitoring & Vulnerability Management Lead Purpose: Leads ongoing cybersecurity compliance, vulnerability management, remediation tracking, STIG validation, and continuous monitoring operations throughout system lifecycles. Minimum Requirements Five years DoD cybersecurity experience RMF experienceSecret clearance Tier 3 investigation IAM Level III certificationCISSP
SecurityX (formerly CASP+)
ACAS experience
Enterprise vulnerability management experience
STIG implementation expertise
POA&M governance experience
KP-4 OT, Cloud & Emerging Technology Security Lead
Purpose: Serves as the lead for Operational Technology (OT), Facility Related Control Systems (FRCS), cloud-hosted environments, and specialized authorization efforts requiring advanced cybersecurity expertise.
Minimum Requirements
Five years DoD cybersecurity experience
RMF and C&A experience
Authorization review experience
Secret clearance
Tier 3 investigation
IAM Level III certification
CISSP
CCSP or AWS/Azure security certification
OT/ICS security experience
Cloud authorization experience
Experience supporting hybrid architectures
Experience with platform and enclave authorizations
Total Rewards Statement
We believe in fairness and clarity throughout
#J-18808-Ljbffr Connected Logistics
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior RMF & A&A Cybersecurity SME (Remote). Be the first to apply!
- senior safety specialist Fort Belvoir, VA
- senior technology project manager Fort Belvoir, VA
- remote senior business analyst Fort Belvoir, VA
- senior leadership Fort Belvoir, VA
- senior manager data science Fort Belvoir, VA
- senior business analyst Fort Belvoir, VA
- senior grant accountant Fort Belvoir, VA
- senior storage engineer Fort Belvoir, VA
- senior manager automotive Fort Belvoir, VA
- senior magento developer Fort Belvoir, VA
