TekSynap

TekSynap is a fast growing high-tech company that understands both the pace of technology today and the need to have a comprehensive well planned information management environment. “Technology moving at the speed of thought” embodies these principles – the need to nimbly utilize the best that information technology offers to meet the business needs of our Federal Government customers.

Cybersecurity Assessment and Authorization Subject Matter Expert

Security EngineerSecurity EngineerFull TimeRemoteTeam 1,001-5,000

Location

United States

Posted

5 days ago

Salary

Not specified

No structured requirement data.

Job Description

This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more.

Role Description

We are seeking a Cybersecurity Assessment and Authorization Subject Matter Expert (SME) to join our Defense Logistics Agency team.

  • Serve as a Cybersecurity Subject Matter Expert (SME) for Assessment and Authorization (A&A) activities supporting Department of Defense (DoD) information systems.
  • Support the implementation and execution of the Risk Management Framework (RMF) for the authorization of information systems.
  • Conduct security control assessments and evaluate compliance with NIST SP 800-53 security controls and DoD cybersecurity requirements.
  • Provide technical guidance and subject matter expertise for systems undergoing the authorization process.
  • Analyze vulnerabilities and determine applicable severity values for identified security control deficiencies.
  • Assess the potential impact of vulnerabilities on a system’s current or future authorization status.
  • Support authorization package development and review to ensure completeness, accuracy, and compliance with DoD cybersecurity policies.
  • Evaluate cybersecurity posture across complex IT infrastructures consisting of multiple enclaves, AIS applications, and outsourced IT processes.
  • Provide cybersecurity expertise related to emerging technologies including Cloud environments, Industrial Control Systems (ICS), warehouse execution systems, and Operational Technology (OT) infrastructures.
  • Brief senior management and stakeholders on RMF progress, risk posture, and authorization status of information systems.
  • Collaborate with system owners, cybersecurity teams, and government representatives to ensure successful completion of A&A activities.
  • Ensure cybersecurity documentation, procedures, and processes align with DoD policies and enterprise security standards.

Qualifications

  • 5+ years of relevant experience supporting Risk Management Framework (RMF) and NIST Assessment and Authorization (A&A) processes.
  • Experience supporting DoD cybersecurity programs and authorization processes.
  • Experience assessing security controls and conducting authorization reviews for large, complex enterprise environments.
  • Strong understanding of DoD cybersecurity policies, procedures, and authorization requirements.
  • Knowledge of cybersecurity considerations for Cloud technologies, Industrial Control Systems (ICS), warehouse execution systems, and Operational Technology (OT) environments.
  • CSSP Analyst Certification.
  • Top Secret - IT-I Critical security clearance, Tier 5 investigation.

Requirements

  • U.S. Citizen.
  • Top Secret - IT-I Critical security clearance, Tier 5 investigation.

Benefits

  • Competitive benefits package including health, dental, vision, 401K, life insurance, short-term and long-term disability plans, vacation time, and holidays.

Job Requirements

  • 5+ years of relevant experience supporting Risk Management Framework (RMF) and NIST Assessment and Authorization (A&A) processes.
  • Experience supporting DoD cybersecurity programs and authorization processes.
  • Experience assessing security controls and conducting authorization reviews for large, complex enterprise environments.
  • Strong understanding of DoD cybersecurity policies, procedures, and authorization requirements.
  • Knowledge of cybersecurity considerations for Cloud technologies, Industrial Control Systems (ICS), warehouse execution systems, and Operational Technology (OT) environments.
  • CSSP Analyst Certification.
  • Top Secret - IT-I Critical security clearance, Tier 5 investigation.
  • U.S. Citizen.

Benefits

  • Competitive benefits package including health, dental, vision, 401K, life insurance, short-term and long-term disability plans, vacation time, and holidays.

Related Categories

Related Job Pages

More Security Engineer Jobs

Full TimeRemote

We are seeking a motivated and technically curious IT Engineer to help design, build, support, and continuously improve technology solutions that enable our business. This role contributes across the full lifecycle of systems and applications, collaborating with cross-functional ...

MuleSoftREST APIIdentity ManagementAccess ManagementAPI Development
United States
$110K - $182K / year
Security Engineer5 days ago
Full TimeRemote

We are seeking a talented, motivated Threat Detection Engineer to join our global team. This individual will be a self-starter excited to take on ownership of complex projects with a wide degree of autonomy. This role is unique in its schedule, providing critical weekend coverage...

PythonSIEMGoogle SecOpsPandasJupyter Notebookspacket capture analysislog analysisthreat detectionincident responsethreat huntingthreat intelligenceDetection-as-Codeautomation
United States
$500K / year
Full TimeRemoteTeam 10,001

The Senior IT Application Security Engineer will act as a subject matter expert, guiding software development teams in designing and implementing secure solutions by enforcing security checks throughout the SDLC. This role involves leading application security initiatives, defining standards, mentoring team members, and advancing the overall maturity of the application security program.

Application SecurityThreat ModelingSecure CodingOWASP Top 10SDLCCISSPPenetration TestingRisk AssessmentC#JavaC++AgileScrumSAFeCloud SecurityContainerizationMicroservicesCI/CD
United States
$120K - $191K / year
Security Engineer5 days ago
Full TimeRemoteTeam 10,001

The Application Security Engineer assists development teams in creating secure solutions by enforcing security checks throughout the SDLC, defining application security standards, and providing curated security training content. Key duties include presenting on security topics, facilitating penetration tests, triaging findings, and offering tailored remediation guidance to developers.

Application SecurityThreat ModelingSecure CodingOWASP Top 10Penetration TestingRisk AssessmentC#JavaCISSP
United States
$100K - $156K / year