Cybersecurity Assessment and Authorization SME

🕒 vor 4 Tagen

🇺🇸 Vereinigte Staaten – Remote

💵 $115.000 - $125.000 / Jahr

⏰ Vollzeit

🟡 Mittelstufe

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

Cloud

Cyber Security

Jetzt Bewerben
Ähnliche Remote-Jobs finden

📊 Überprüfen Sie Ihre Lebenslauf-Bewertung für diese Stelle

Verbessern Sie Ihre Chancen auf ein Vorstellungsgespräch, indem Sie Ihre Lebenslauf-Bewertung vor der Bewerbung überprüfen.

Logo of Electrosoft

Electrosoft

51 - 200 Mitarbeiter

Gegründet 2001

🔒 Cybersecurity

🤖 Künstliche Intelligenz

🏛️ Regierung

Cybersecurity • Artificial Intelligence • Government

Electrosoft ist ein Technologie-Dienstleistungsunternehmen mit Sitz in Reston, VA, das sich auf die Unterstützung US-amerikanischer Bundesbehörden in den Bereichen Cyber-Sicherheit, Identität und Zero Trust, digitale Ingenieurleistungen und Transformation sowie Unternehmens-KI und intelligente Automatisierung spezialisiert hat. Das Unternehmen positioniert sich als missionsgetriebener Auftragnehmer für Bundesbehörden und bietet sichere, skalierbare Lösungen sowie modernisierungsbewusste Compliance unter staatlichen Vertragsrahmen an. Es hebt Arbeiten in Bereichen wie der Vorbereitung auf Post-Quanten-Kryptographie hervor und hat interne KI-Chatbot-Prototypen als Teil seiner Innovationsbemühungen entwickelt. Electrosoft ist ein SBA-zertifiziertes 8(a) und EDWOSB Kleinunternehmen und betont die Bedeutung von Teamarbeit und den Zugang zu Vertragsrahmen, um Bundesbehörden zu bedienen.

Beschreibung

• Serve as a Cybersecurity Assessment & Authorization (A&A) Subject Matter Expert supporting enterprise Risk Management Framework (RMF) activities across customer Information Systems, Cloud Hosted Services, Operational Technology (OT), Platform Information Technology (PIT), Facility Related Control Systems (FRCS), and hybrid computing environments. • Lead and support all phases of the RMF lifecycle, including system categorization, security control selection, implementation, assessment, authorization, and continuous monitoring. • Develop, review, update, and maintain RMF artifacts including System Security Plans (SSPs), Security Assessment Plans (SAPs), Security Assessment Reports (SARs), Plans of Action & Milestones (POA&Ms), Continuous Monitoring Strategies, Privacy Impact Assessments (PIAs), Risk Assessment Memorandums (RAMs), Authorizing Official Risk Acceptance (AORA) documentation, and authorization packages. • Assess and validate security controls in accordance with DoDI 8510.01, NIST SP 800-53, DLA RMF guidance, and applicable Federal and DoD cybersecurity requirements. • Conduct security control assessments, vulnerability analyses, and compliance reviews to evaluate the effectiveness of implemented cybersecurity controls. • Support authorization decisions by identifying residual risk, evaluating compensating controls, and providing technical recommendations to Security Control Assessors (SCAs), Authorizing Officials (AOs), and senior Government leadership. • Perform cybersecurity assessments supporting enterprise IT infrastructure, Cloud environments, Operational Technology (OT), Facility Related Control Systems (FRCS), warehouse execution systems, and Platform IT (PIT) environments. • Support implementation and validation of Security Technical Implementation Guides (STIGs), Security Requirements Guides (SRGs), Assured Compliance Assessment Solution (ACAS) scans, IAVA compliance, vulnerability remediation, and continuous monitoring activities. • Utilize eMASS to manage authorization packages, track security control implementation, document vulnerabilities, and maintain authorization status throughout the system lifecycle. • Coordinate remediation efforts with ISSMs, System Owners, engineers, Information Owners, Program Managers, and Government stakeholders to resolve cybersecurity findings and maintain authorization. • Support cybersecurity inspections, audits, compliance assessments, incident response activities, and investigations involving potential cybersecurity events or unauthorized disclosures. • Prepare executive-level briefings, technical reports, dashboards, and risk assessments communicating authorization status, cybersecurity posture, and recommendations to Government leadership. • Monitor evolving cybersecurity threats, regulatory changes, and emerging technologies to ensure continued compliance and improve enterprise cybersecurity posture. • Provide technical mentorship and cybersecurity expertise to project teams while promoting continuous improvement, collaboration, and cybersecurity best practices.

🎯 Anforderungen

• Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Information Systems, Engineering, or a related technical discipline. Four (4) additional years of directly related experience may be substituted for the degree requirement. • Minimum of five (5) years of experience supporting Cybersecurity Assessment & Authorization (A&A), Certification & Accreditation (C&A), or Risk Management Framework (RMF) activities within Department of Defense or Federal environments. • Demonstrated experience implementing and applying the DoD Risk Management Framework (RMF) in accordance with DoDI 8510.01 and NIST SP 800-53. • Candidates must meet applicable DoD 8140 workforce qualification requirements, including IAM Level III (or successor qualification), as required by the contract. • Security Clearance Level: Must have a SECRET Clearance and be able to obtain or currently possess IT-II Non-Critical Sensitive security clearance or Tier 3 (T3) • Experience assessing security controls and conducting authorization activities for large, complex enterprise environments supporting multiple systems, enclaves, applications, and infrastructure components.

🏖️ Vorteile

• Meaningful work • Growth opportunities • Work-life balance

Jetzt Bewerben

Ähnliche Jobs

🕒 vor 4 Tagen

Abacus Group

501 - 1000

🔒 Cybersecurity

🏥 Gesundheitswesen

Cybersecurity Engineer collaborating closely with Cybersecurity and Engineering teams to handle escalated issues. Supporting new security initiatives and mentoring junior members of the team.

🇺🇸 Vereinigte Staaten – Remote

⏰ Vollzeit

🟡 Mittelstufe

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 4 Tagen

Quadratic

2 - 10

☁️ SaaS

🤖 Künstliche Intelligenz

🤝 B2B

Senior Network Security Engineer responsible for designing and maintaining network security infrastructure for various clients. Work across multiple sectors with compliance requirements including CMMC and SOC 2.

🇺🇸 Vereinigte Staaten – Remote

🔥 Finanzierung im letzten Jahr

💰 €5.500.000 Seed Round - Quadratic im 2025-08

⏰ Vollzeit

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

Cloud

Switching

🕒 vor 4 Tagen

Trilogy Innovations, Inc.

51 - 200

🏢 Unternehmen

🔒 Cybersecurity

🤖 Künstliche Intelligenz

Account Executive driving new business and expanding Trilogy Innovations’ footprint across DHS agencies. Responsible for building relationships and managing complex federal sales processes.

🇺🇸 Vereinigte Staaten – Remote

💵 $120.000 - $135.000 / Jahr

⏰ Vollzeit

🟡 Mittelstufe

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

Cyber Security

🕒 vor 4 Tagen

Imagineeer

11 - 50

🏛️ Regierung

🔒 Cybersecurity

💼 Beratung

SME Security Control Assessor supporting security control assessment activities for HHS-ACF. Responsible for evaluating control implementation and effectiveness using NIST frameworks.

🇺🇸 Vereinigte Staaten – Remote

💵 $45 - $50 / Stunde

⏰ Vollzeit

🟢 Junior

🟡 Mittelstufe

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

Cyber Security

🕒 vor 4 Tagen

Velocity, A Managed Solutions Company

501 - 1000

☁️ SaaS

📡 Telekommunikation

🤝 B2B

Senior Network Engineer specializing in routing, switching, and security for Velocity. Designing and implementing network services across diverse environments with a focus on customer experience.

🇺🇸 Vereinigte Staaten – Remote

⏰ Vollzeit

🟠 Senior

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

Switching