Salary
💰 $130,000 - $175,000 per year
Tech Stack
AWSCloudCyber SecurityPMP
About the role
- Own the RMF lifecycle: system categorization, control tailoring (NIST 800-53r5), evidence development, POA&M management, and AO briefings
- Maintain eMASS records, packages, and artifacts; drive continuous monitoring cadence
- Lead meeting DoD and organizational compliance obligations
- Design, implement, and mature SP and enclave security controls (boundary protections, identity/access, logging, incident response, vulnerability & patch management)
- Ensure STIG/SRG compliance (DISA guidance) and maintain situational awareness using ACAS, Nessus, and other compliance scanning tools
- Map and validate inherited controls from AWS GovCloud, ensuring IL5 isolation is properly documented
- Ensure IS security measures align with applicable DoD and federal cybersecurity policies
- Draft, review, and maintain cybersecurity policies, SOPs, and technical documentation
- Oversee audit log monitoring, analysis, and reporting to meet DoD and organizational requirements
- Act as primary interface with Authorizing Officials (AOs), Security Control Assessors (SCAs), auditors, partners, and mission owners
- Translate risk posture, timelines, and remediation progress into executive-ready briefings
- Support Configuration/Change Assurance Board (CAB) activities and provide risk-based recommendations
- Supervise and mentor ISSO staff; establish operating cadence, SLAs, and dashboards
- Prepare for SCA-V assessments and drive remediation through closure
Requirements
- 8–12+ years in cybersecurity
- 4+ years leading DoD RMF/ATO efforts
- Prior experience supporting IL4/IL5 ATOs as an ISSO/ISSM
- Hands-on eMASS and POA&M management expertise
- Deep familiarity with NIST 800-53r5, DISA CC SRG, STIGs/SRGs, and continuous monitoring practices
- Cloud security experience with AWS GovCloud, including IL5 isolation patterns
- DoD 8570/8140 IAM III baseline certification (e.g., CISSP, CISM)
- CAP, PMP, or similar certifications preferred
- Strong communication and executive briefing skills
- U.S. citizenship and eligibility for DoD Secret clearance (preferred/required by most IL5 programs)