TekSynap is a fast growing high-tech company that understands both the pace of technology today and the need to have a comprehensive well planned information management environment. “Technology moving at the speed of thought” embodies these principles – the need to nimbly utilize the best that information technology offers to meet the business needs of our Federal Government customers.
Cybersecurity Assessment and Authorization Subject Matter Expert
Location
United States
Posted
5 days ago
Salary
Not specified
No structured requirement data.
Job Description
Role Description
We are seeking a Cybersecurity Assessment and Authorization Subject Matter Expert (SME) to join our Defense Logistics Agency team.
- Serve as a Cybersecurity Subject Matter Expert (SME) for Assessment and Authorization (A&A) activities supporting Department of Defense (DoD) information systems.
- Support the implementation and execution of the Risk Management Framework (RMF) for the authorization of information systems.
- Conduct security control assessments and evaluate compliance with NIST SP 800-53 security controls and DoD cybersecurity requirements.
- Provide technical guidance and subject matter expertise for systems undergoing the authorization process.
- Analyze vulnerabilities and determine applicable severity values for identified security control deficiencies.
- Assess the potential impact of vulnerabilities on a system’s current or future authorization status.
- Support authorization package development and review to ensure completeness, accuracy, and compliance with DoD cybersecurity policies.
- Evaluate cybersecurity posture across complex IT infrastructures consisting of multiple enclaves, AIS applications, and outsourced IT processes.
- Provide cybersecurity expertise related to emerging technologies including Cloud environments, Industrial Control Systems (ICS), warehouse execution systems, and Operational Technology (OT) infrastructures.
- Brief senior management and stakeholders on RMF progress, risk posture, and authorization status of information systems.
- Collaborate with system owners, cybersecurity teams, and government representatives to ensure successful completion of A&A activities.
- Ensure cybersecurity documentation, procedures, and processes align with DoD policies and enterprise security standards.
Qualifications
- 5+ years of relevant experience supporting Risk Management Framework (RMF) and NIST Assessment and Authorization (A&A) processes.
- Experience supporting DoD cybersecurity programs and authorization processes.
- Experience assessing security controls and conducting authorization reviews for large, complex enterprise environments.
- Strong understanding of DoD cybersecurity policies, procedures, and authorization requirements.
- Knowledge of cybersecurity considerations for Cloud technologies, Industrial Control Systems (ICS), warehouse execution systems, and Operational Technology (OT) environments.
- CSSP Analyst Certification.
- Top Secret - IT-I Critical security clearance, Tier 5 investigation.
Requirements
- U.S. Citizen.
- Top Secret - IT-I Critical security clearance, Tier 5 investigation.
Benefits
- Competitive benefits package including health, dental, vision, 401K, life insurance, short-term and long-term disability plans, vacation time, and holidays.
Job Requirements
- 5+ years of relevant experience supporting Risk Management Framework (RMF) and NIST Assessment and Authorization (A&A) processes.
- Experience supporting DoD cybersecurity programs and authorization processes.
- Experience assessing security controls and conducting authorization reviews for large, complex enterprise environments.
- Strong understanding of DoD cybersecurity policies, procedures, and authorization requirements.
- Knowledge of cybersecurity considerations for Cloud technologies, Industrial Control Systems (ICS), warehouse execution systems, and Operational Technology (OT) environments.
- CSSP Analyst Certification.
- Top Secret - IT-I Critical security clearance, Tier 5 investigation.
- U.S. Citizen.
Benefits
- Competitive benefits package including health, dental, vision, 401K, life insurance, short-term and long-term disability plans, vacation time, and holidays.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
We are seeking a motivated and technically curious IT Engineer to help design, build, support, and continuously improve technology solutions that enable our business. This role contributes across the full lifecycle of systems and applications, collaborating with cross-functional ...
We are seeking a talented, motivated Threat Detection Engineer to join our global team. This individual will be a self-starter excited to take on ownership of complex projects with a wide degree of autonomy. This role is unique in its schedule, providing critical weekend coverage...
The Senior IT Application Security Engineer will act as a subject matter expert, guiding software development teams in designing and implementing secure solutions by enforcing security checks throughout the SDLC. This role involves leading application security initiatives, defining standards, mentoring team members, and advancing the overall maturity of the application security program.
The Application Security Engineer assists development teams in creating secure solutions by enforcing security checks throughout the SDLC, defining application security standards, and providing curated security training content. Key duties include presenting on security topics, facilitating penetration tests, triaging findings, and offering tailored remediation guidance to developers.