Assessment and Authorization SME

Hanahan, SC, US

NexGen Data Systems

NexGen Data Systems is an IT consulting firm that provides highly specialized IT professional services with a focus on advanced cloud, data center, and network solutions with integrated security and management capabilities for complete turn-key...

View all jobs at NexGen Data Systems

Apply now Apply later

Description

NexGen Data Systems is currently seeking a dynamic and motivated Assessment & Authorization Subject Matter Expert. The Assessment and Authorization (A&A) SME will manage Navy-required Risk Management Framework (RMF) efforts for Department of Defense (DoD) customers. This role will work collaboratively with Information Technology (IT) Engineers and System Administrators to conduct Cyber Security (CS) analysis, mitigation, remediation, and monitoring to ensure compliance with applicable DoD and Department of the Navy (DON) policies, procedures, and regulations. This position includes all activities associated with obtaining and maintaining RMF Authority to Operate (ATO) for systems within the customer’s multi-faceted network infrastructure, which includes multiple platforms residing on multiple security enclaves.


Roles and Responsibilities:

  • Manage Plans of Actions and Milestones (POA&Ms) resulting from system vulnerabilities from ACAS scans and STIG checks.
  • Maintain package artifacts and test results within eMASS.
  • Coordinate with configuration management personnel to process Requests for Change (RFCs) into Use Cases.
  • Review and recommend updates to package artifacts such as policies and procedures to address non-compliant controls.
  • Assist with annual security reviews to maintain ATOs.
  • Identify and coordinate with ATO stakeholders to ensure system documentation reflects current system security configurations to include hardware and software components; data flow; interconnections; and ports, protocols, and services, etc.
  • Develop risk acceptance documentation for pending vulnerabilities.

Other Duties: Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities, and activities may change at any time with or without notice.

Requirements

Requirements: 

  • MUST have NAVY RMF experience to include 4+ years performing Navy A&A responsibilities including policy development, control testing, POA&M management, and Configuration Management
  • 8+ years’ experience supporting an IT Enterprise environment in a cyber, system administration, engineering or management capacity. 
  • Experience using MS office tools such as Excel, Word and Visio
  • Experience working with DoD tools such as eMASS
  • Experience working with security engineers to review compliance scans
  • Experience performing cybersecurity assessments using standards such as CIS Benchmarks, DISA STIGS, etc.
  • Broad technical experience related to IT operations, networks, OS's, and system administration
  • Excellent customer service and organization skills
  • Excellent verbal and written communication skills
  • Ability to work both independently and as a member of a team
  • Active Department of Defense clearance level of Secret or higher required. 
  • 8570 compliance required (Active Security and OS certifications)
  • Hybrid position, must live locally in the Charleston, SC area and be able to travel on-site a minimum of once per week.

About the Company:

NexGen Data Systems is an emerging technologies focused company providing expert systems and network engineering solutions to the Department of Defense. NexGen Data Systems promotes a culture of knowledge and career advancement through continued learning, keeping our team current on the latest advances in systems and networking, and enabling our team to provide the best available solutions to our clients.


Benefits:

  • Company covers 100% of premiums for the employee’s medical, dental, and vision insurance and subsidizes premiums for spouse and dependents.
  • Company provides short and long term disability plans.
  • 401(k) match up to 10% of the employee’s salary contributions to 401(K) plan.
  • Comprehensive training and development program.
  • 11 paid holidays and paid time off (PTO) accrual level starts at 15 days annually.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status.


NOTE: US Citizens and those authorized to work in the US are encouraged to apply. In order to be qualified for this position, you must be able to obtain and maintain a United States Department of Defense (DoD) security clearance. We are unable to sponsor Visas at this time. NexGen Data Systems provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, national origin, age, disability, marital status, amnesty, or status as a covered veteran in accordance with applicable federal, state and local laws.

Apply now Apply later
  • Share this job via
  • 𝕏
  • or

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0

Tags: ACAS Clearance Compliance DISA DoD DoDD 8570 eMASS Monitoring POA&M Risk management RMF Security Clearance STIGs Vulnerabilities

Perks/benefits: 401(k) matching Career development Health care Insurance

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.