Demonstrated proficiency in implementing security controls, conducting risk assessments, and documenting compliance measures based on NIST RMF and ISO standards to meet organizational and regulatory requirements.
Evaluate and support documentation, validation, and accreditation processes necessary to assure that new and existing information technology (IT) systems meet the organization's information assurance (IA) and security requirements.
Ensure appropriate treatment of risk, compliance, and assurance from internal and external perspectives.
Ability to support development of actionable security blueprints, principles, models, designs, standards, and guidelines to ensure enterprise IT architecture and support is consistent, usable, secure and adds value to the business.
Requirements
Bachelors Degree with 4+ years of experience in cybersecurity, RMF or GRC position
Strong understanding of the RMF steps
Ability to obtain a Public Trust clearance
Experience with network and vulnerability scanning tools and technologies to interrogate systems for configuration and status.
In-depth understanding of security architecture principles and best practices to design, implement, and maintain secure IT infrastructures in alignment with A&A policies.
Demonstrated proficiency in utilizing Governance, Risk, and Compliance (GRC) tools for managing Assessment & Authorization (A&A) processes.
Ability to serve as subject matter expert (SME) for the USPS A&A process.
Strong oral and written communication skills and ability to build & maintain schedules and step-by-step action plans.