CYBERSECURITY
ASSESSMENT AND AUTHORIZATION SUBJECT MATTER EXPERT (SME)
Position :
Remote
Serves
as a cybersecurity Subject Matter Expert (SME) with regards to Assessment and
Authorization (A&A) of information systems and all associated cybersecurity
policies and procedures. Performs a DOD cybersecurity process while either
authorizing an information system or serving as a SME for an information system
undergoing authorization.
Possess
an understanding of how the security controls identified in the NIST 800-53
apply to the process of assessing and authorizing a large organization’s IT
infrastructure such as DLA’s, in which there is a compilation of large and
small enclaves, AIS applications and outsourced IT processes.
Determines
the applicable severity value for an identified vulnerability (e.g.,
non-compliant security control) and determines the possible ramifications on
the system’s current or future authorization. Briefs senior management on the
progress or results of an information system undergoing the Risk Management
Framework (RMF) process.
Minimum
Requirements:
- Five
(5) years of relevant Risk Management Framework (RMF) and NIST A&A
experience
- DOD
cybersecurity experience
- Experience
in assessing security controls and conducting authorization reviews for
large, complex organizations.
- Experienced
in the general tenets supporting the overall DOD implementation of its
authorization process, to include supporting cybersecurity policy,
procedures, and processes.
- Knowledgeable
in the cybersecurity of emerging technology areas such as Cloud and
Industrial Control Systems (ICSs), warehouse execution systems and
- Operational
Technology (OT) infrastructures.
- DOD
Top Secret Clearance and must possess IT-II Non-Critical Sensitive security clearance or Tier 3
(T3) at time of proposal submission.
- CERT
Personnel: Any team member assigned duties at DLA CERT shall possess a DOD
TOP SECRET Clearance and must possess IT-I Critical Sensitive security
clearance or Tier 5 (T5) at time of proposal submission.
- Any
team member assigned duties as DLA CERT Analyst will maintain CSSP-Analyst
certification
Contract
Start is May 17th. 5 Year POP.