Назад
Company hidden
4 дня назад

Assessment and Authorization Team Lead (Cybersecurity)

160 000 - 170 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior/lead
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Assessment and Authorization Team Lead (Cybersecurity) (RMF/NIST/FISMA): Leading cybersecurity assessments, risk analysis, security control testing, and authorization packages for Department of Energy systems with an accent on NIST SP 800-53, cloud and non-cloud environments, and federal compliance. Focus on mentoring assessment teams, reviewing findings and remediation plans, coordinating POA&Ms, and presenting security risks to federal leadership.

Location: Remote within the United States; the position is associated with Washington, DC and requires work supporting the Department of Energy.

Salary: $160,000–$170,000 per year

Company

Federal logistics and administrative support organization serving government customers and Alaska Native shareholder communities.

What you will do

  • Lead all phases of the Risk Management Framework, including planning, analysis, testing, integration, documentation, and presentations.
  • Assess NIST and FISMA systems, evaluate security controls, identify weaknesses, and communicate security risks and implications.
  • Lead and mentor Assessors, Security Assessment, Continuous Monitoring, and FedRAMP teams.
  • Review security packages, findings, system changes, deviations, System Security Plans, Risk Assessments, and POA&Ms.
  • Coordinate remediation schedules and milestones with ISSOs, system owners, TPOCs, SCAs, contractors, government stakeholders, and federal leadership.
  • Respond to internal and external audit data calls and brief federal leadership on assessment outcomes.

Requirements

  • Bachelor’s degree or four years of equivalent work experience.
  • 10+ years of experience in cybersecurity operations, security control assessments, or related technical security functions.
  • Expert knowledge of the RMF process, NIST SP 800-53, the NIST Cybersecurity Framework, and applicable security and privacy regulations.
  • Experience leading control applicability assessments and technical testing across inherited, hybrid, and standalone controls in cloud and non-cloud environments.
  • Strong written and verbal communication skills for preparing, presenting, and defending security documentation and assessment results.
  • Ability to complete a DOE background investigation and obtain federal government clearance, including DOE L clearance.

Culture & Benefits

  • Remote work arrangement supporting federal projects.
  • Regular full-time employment with medical, dental, vision, life insurance, and 401(k) benefits.
  • Paid time off and additional voluntary benefits.
  • Supportive environment focused on innovation, diversity, professional growth, and retirement options.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →