Information Assurance Specialist

Company

Strategic Alliance Consulting

Location

Washington DC

Type

Full Time

Job Description

Strategic ACI is seeking an Information Assurance (IA) Specialist specializing in RMF. The candidate will work as part of a small cybersecurity team. The candidate will manage DoD Risk Management Framework (RMF) processes and will need to be familiar with creating eMASS packages, DISA STIGs, FISMA Compliance Requirements, NIST 800 Series, and the DoD ACAS Scanning tool desired.

Responsibilities:

  • Provide guidance in developing, reviewing, and maintaining security body of evidence BOE such as Security Plans (SSP), POA&Ms, STIG checklists, associated artifacts; and provide strategic recommendations in accordance with DoD and Army policies and procedures
  • Validate resolution of vulnerabilities documented in the POA&M and provide evidence of resolution for approval
  • Support on-site and remote site accreditation testing for networks at CONUS and OCONUS locations - travel up to 25%
  • Ensure security-related concerns and incidents are reported to ISSMs and managed timely
  • Provide guidance on NIST SP 800-53 publication for managing security controls
  • Support the creation or modification of FISMA compliancy documentation such as Contingency Plans, Incident Response Plan, Access Control Plans, etc.
  • Evaluate system’s risk in respect to operation at the network, system, and application level
  • Evaluate vulnerability assessment results and STIG results and manage findings in eMASS
  • Maintain close contact with government POCs to keep abreast of progress, report concerns or issues, and offer COAs as needed.

Qualifications:

Required:

  • Ability to obtain a TS/SCI clearance (Secret or Top Secret preferred to start)
  • 5+ years of Cybersecurity experience
  • 3+ years proficiency in RMF processes
  • Experience using and navigating eMASS tool to manage Assessment & Authorization (A&A) process
  • Possess DoD 8570.01-M IAM Level I or II certifications such as CISSP, CISA, Security+
  • Proficiency in performing risk-based reviews of Security Authorization Package
  • Ability to work independently with minimal supervision or guidance.

Desired:

  • Understanding of Army IC architectures, policies, and authorities.
  • Experience with Nessus Scanner
  • Experience with Security Content Automation Protocol (SCAP) tool
  • Understanding of DevSecOps, containers, cloud computing infrastructures, platforms, and services

 

Apply Now

Date Posted

08/01/2023

Views

20

Back to Job Listings Add To Job List Company Profile View Company Reviews
Positive
Subjectivity Score: 0.9

Similar Jobs

Accounts Receivable Specialist (Hybrid) - Altarum

Views in the last 30 days - 0

Altarum a nonprofit organization with a history dating back to 1946 is seeking an Accounts Receivable Specialist The role involves preparing complex i...

View Details

Information Security Consultant - Application Security Engineer - MassMutual

Views in the last 30 days - 0

MassMutual is seeking an experienced Application Security Engineer to join their dedicated team The role involves driving security best practices cond...

View Details

Regional Director Public Sector Sales DOW - Chainguard

Views in the last 30 days - 0

The job seeks a Regional Director with sales expertise and security clearance to lead public sector initiatives and build partnerships Responsibilitie...

View Details

2025 Sensor Modeling and Simulation Analysis Engineer - The Aerospace Corporation

Views in the last 30 days - 0

The Aerospace Corporation is a trusted partner to the nations space programs providing technical expertise and innovative solutions across satellite l...

View Details

Manager, Customer Success - Bold Penguin

Views in the last 30 days - 0

Bold Penguin a leading digital solution platform for small commercial insurance is seeking a Manager of Customer Success The role involves leading a t...

View Details