Назад
Company hidden
4 дня назад

Control Validation Specialist (RMF)

Формат работы
onsite/hybrid
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Control Validation Specialist (RMF): Supporting the USTRANSCOM SISO mission by managing eMASS workflows and performing IT audits for compliance with Federal and DoD standards. Focus on conducting IV&V of STIG/SCAP findings, tracking POA&M mitigation, and ensuring A&A packages meet readiness baselines for Authorizing Official review.

Location: Must be based in or able to work on-site at Scott Air Force Base, IL, or government-approved remote/hybrid location. Must be a US Citizen and able to obtain/maintain a DoD Secret clearance.

Company

hirify.global provides expert systems and network engineering solutions to the Department of Defense with a focus on emerging technologies.

What you will do

  • Serve as primary intake support for A&A packages, routing workflows in eMASS to meet 7-day turnaround SLAs.
  • Perform IT audits and control validation on classified and unclassified networks and applications.
  • Conduct deep-dive IV&V of STIG checklists, SCAP scans, and ACAS vulnerability findings.
  • Facilitate Package Readiness Reviews (PRR) to ensure compliance before formal AO routing.
  • Monitor and track POA&M mitigation milestones and maintain the systemic risk ledger.
  • Draft Risk Acceptance Memorandums based on engineering risk analysis of residual vulnerabilities.

Requirements

  • Active DoD Secret clearance required.
  • Must possess a favorable Tier 3 (T3) NACLC/ANACI investigation.
  • Minimum 2 years of experience with DoD 8500.2 or NIST SP 800-53 and RMF principles.
  • Strong working knowledge of eMASS for workflow management.
  • Active DoD 8570.01-M / DoDM 8140 Information Assurance Technical Level II certification.
  • Availability during Central Time core support hours required.

Nice to have

  • Familiarity with ACAS, Vulnerator, STIG Viewer, and SCAP Compliance Checker.
  • Prior experience supporting USTRANSCOM or DLA cybersecurity environments.

Culture & Benefits

  • 100% company-paid medical, dental, and vision premiums for employees.
  • 401(k) match up to 10% of salary contributions.
  • Comprehensive training and development program.
  • 11 paid holidays and 15 days of PTO annually.
  • Short and long-term disability plans provided.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →