Risk Management Engineer

OBXtek · Washington DC

Company

OBXtek

Location

Washington DC

Type

Full Time

Job Description

Company Description

OBXtek Inc.

Job Description

OBXtek is an award winning Service Disabled Veteran Owned Small Business providing information technology and management services to the federal government. As the prime contractor on over 85% of its work, OBXtek is a leader in its field and has a robust corporate infrastructure that provides support for all of its programs. OBXtek has realized exceptional growth over the last four years and has been awarded prime contracts with 10 federal agencies. Solid Financial Resources and low Employee Turnover (5%)

  • Inc. 500 – Ranked #11 Fastest Growing Company in the U.S. and #2 in Government Services for 2013
  • DiversityBusiness.com - selected OBXtek as one of the Top Disabled Veteran Owned Businesses in the U.S for 2013.
  • ISO 9001-2008 Registered Quality Management System
  • 96% Positive Customer Performance Approval Rating – Dun and Bradstreet (D&B) Open Ratings
  • DCAA Approved Accounting System
  • D&B 3A1 Rating and Established Line of Credit


Due to our growth, we have an excellent opportunity for a RISK MANAGEMENT ENGINEER.

 


The Risk Management (RM) Engineer functions as an information system security testing subject matter expert (SME) by providing expertise in developing and implementing security testing for multiple Consular Affairs/Consular Systems and Technology (CA/CST) systems during the Annual Control Assessments (ACAs). In addition, the RM Engineer tracks and reports status, and brings any obstacles that may impact the completion of the ACA to the attention of the PM of RM Team Lead in a timely manner. The RM Engineer ensures that ACA packages are submitted to IA and follows up to ensure IA approval of ACAs prior to fiscal year end. The RM Engineer has the following roles:

Annual Control Assessment (ACA) Engineer: The ACA Engineer is responsible for conducting and completing Annual Control Assessments for all Department of State CA Automated Information Systems (AIS) as part of continuous monitoring. This responsibility requires the engineer to complete work in a timely manner, conduct technical testing, and interview various government employees and contractors. This position requires a working knowledge of the National Institute of Standards and Technology (NIST) Special Publication (SP) 800-53 and previous experience with the technical security testing of various types of software (e.g., MS SQL Server, Windows, Linux, Oracle, and Internet Information Server). The ACA Engineer should be familiar with Commercial-Off-The-Shelf (COTS) products used to facilitate the Assessment and Authorization (A&A) of systems. The ACA Engineer is responsible for entering all ACA results into the Consular Affairs Certification and Accreditation (CACAMS) COTS application and creating Plan of Action and Milestones (POA&M) that result from the ACA so that are actionable with realistic dates.


If interested and qualified kindly send your resume in confidence to Stanley Joe at AND provide your salary requirements.


Qualifications

REQUIRED: CISSP OR CAP, Secret Clearance, ORACLE CERTIFICATION, IA experience

RECOMENDED: CAP Masters degree in a related field, other IT/Security Certifications

Additional Information

All your information will be kept confidential according to EEO guidelines.

Apply Now

Date Posted

11/15/2023

Views

21

Back to Job Listings Add To Job List Company Profile View Company Reviews
Positive
Subjectivity Score: 0.8

Similar Jobs

2025 Sensor Modeling and Simulation Analysis Engineer - The Aerospace Corporation

Views in the last 30 days - 0

The Aerospace Corporation is a trusted partner to the nations space programs providing technical expertise and innovative solutions across satellite l...

View Details

Senior Associate, Data Scientist - Customer Management - Capital One

Views in the last 30 days - 0

Capital One is seeking a Senior Associate Data Scientist for the Mainstreet Customer Management Data Science team The role involves partnering with cr...

View Details

Information Security Consultant - Application Security Engineer - MassMutual

Views in the last 30 days - 0

MassMutual is seeking an experienced Application Security Engineer to join their dedicated team The role involves driving security best practices cond...

View Details

Policy Manager - Plaid

Views in the last 30 days - 0

View Details

Policy Manager - Plaid

Views in the last 30 days - 0

View Details

Regional Director Public Sector Sales DOW - Chainguard

Views in the last 30 days - 0

The job seeks a Regional Director with sales expertise and security clearance to lead public sector initiatives and build partnerships Responsibilitie...

View Details