Verifying configuration management and tracking security update implementation to the systems using existing automated tools. Adhering to pre-defined configuration management and change management policies and procedures for authorizing software prior to its implementation on systems. Ensuring systems are operated, used, maintained, and disposed of in accordance with all applicable security policies and practices. Performing cybersecurity testing, analysis, and reporting by conducting the following: Assured Compliance Assessment Solution (ACAS) scans, Security Technical Implementation Guide (STIG) checks, port scanning, application code review, Risk Management Framework (RMF) control review, and Plan of Action and Milestone (POAM). Providing in depth analysis on cybersecurity test results, remediation steps, and potential mitigating factor(s). Supporting the Information System Security Manager (ISSM) and Cybersecurity Lead in meeting all RMF documentation, process, policy, risk assessment, testing, and continuous monitoring requirements per the NIST SP-800 series. Providing RMF support for all future and/or new Assessment and Authorization (A-A). Maintaining security reporting compliance requirements outlined in the System SLCM Strategy. FILLING THIS POSITION IS CONTINGENT UPON FUNDING.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Entry Level
Education Level
No Education Listed