Das ist der Job
Requirements
• Must be a U.S.
Darum lohnt es sich
Responsibilities
• serves as a cybersecurity Subject Matter Expert (SME) with regards to Assessment and Authorization (A&A) of information systems and all associated cybersecurity policies and procedures.
• performs a DOD cybersecurity process while either authorizing an information system or serving as a SME for an information system undergoing authorization.
• possesses an understanding of how the security controls identified in the NIST 800-53 apply to the process of assessing and authorizing a large organization’s IT infrastructure such as DLA’s.
• determines the applicable severity value for an identified vulnerability (e.g., non-compliant security control).
• determines the possible ramifications on the system’s current or future authorization.
• briefs senior management on the progress or results of an information system undergoing the Risk Management Framework (RMF) process.
Citizen.
• five (5) years of relevant Risk Management Framework (RMF) and NIST Assess & Analyze (A&A) experience.
• DoD cybersecurity experience.
• experience in assessing security controls and conducting authorization reviews for large, complex organizations.
• experience in the general tenets supporting the overall DoD implementation of its authorization process, to include supporting cybersecurity policy, procedures, and processes.
• knowledge in the cybersecurity of emerging technology areas such as Cloud and Industrial Control Systems (ICSs), warehouse execution systems and Operational Technology (OT) infrastructures.
• IT-II Non-Critical Sensitive security clearance or Tier 3 (T3) at time of proposal submission.