Information Assurance Compliance Specialist - 30427

HII's Mission Technologies division•Virginia Beach, VA
•$91,072 - $130,104•Hybrid

About The Position

This opportunity resides with Global Security (GS). Mission Technologies’ Global Security (GS) group comprises live, virtual, constructive (LVC) solutions; fleet sustainment; nuclear and environmental; and Australia business. As a trusted partner to our military customers, HII designs, develops and operates the largest LVC enterprise that prepares warfighters for cross-domain battle. With advanced technologies to enable mission readiness, HII understands that preparation requires full coordination—not readiness in piece-parts. For more than 40 years, the U.S. Navy has entrusted HII to maintain and modernize the vast majority of its fleet. With a holistic approach to life-cycle maritime defense systems—from small watercraft to submarines, surface combatants and aircraft carriers—HII ensures a high state of readiness. HII supports the Department of Energy’s national security mission through the management and operation of its sites, as well as the safe cleanup of legacy waste across the country. HII meets clients’ toughest nuclear and environmental challenges. Leadership Mindset at HII – Mission Technologies Leadership at HII is a mindset, not a title. Through our Leadership Capability Framework, we define how every employee grows, leads, and contributes—regardless of role. It sets the standard for how you can develop yourself and what you can expect from leaders across our organization. We look for candidates who want to grow in alignment with these capabilities: Know & Grow Your People – Commit to learning and supporting team success. Build Relationships – Communicate openly, collaborate well, and build trust. Take Ownership – Deliver on commitments and take pride in your work. Customer First – Focus on the mission and those we serve. Shape the Future – Bring ideas, curiosity, and continuous improvement. Act with Urgency – Take initiative and follow through with purpose. These capabilities guide how all employees contribute to our shared success across Mission Technologies. Summary HII's Mission Technologies division is currently seeking an Information Assurance Compliance Specialist to support Naval Surface Warfare Center Dahlgren Division (NSWCDD) Dam Neck Activity (DNA) cybersecurity programs for Shore-Based Training Systems. This position will provide senior-level compliance and auditor support for Risk Management Framework (RMF) Assessment & Authorization (A&A) processes supporting approximately 80 cloud and shore-based training systems across PMS339, DRPM SUBS (SEA07TR), and RRL sponsors.

Requirements

  • 5 years relevant experience with Bachelors in related field; 3 years relevant experience with Masters in related field; 0 years experience with PhD or Juris Doctorate in related field; or High School Diploma or equivalent and 9 years relevant experience.
  • Advanced, specialized experience in Information Assurance compliance
  • Advanced knowledge of RMF processes and Navy Assessment & Authorization procedures.
  • Experience working with Information Assurance tools such as eMASS and Assured Compliance Assessment Solution (ACAS).
  • DoD 8140 (formerly 8570) IAM Level III certification required: CISSP, CISM, GSLC, or CASP.
  • Current or active DoD Secret clearance.
  • Ability to work onsite at Dam Neck, Virginia Beach, VA hybrid schedule. Remote/telework is at the discretion of the government.
  • Strong written and verbal communication skills for briefing senior government leadership.

Nice To Haves

  • Five or more years of experience supporting Navy RMF Assessment & Authorization programs.
  • Experience supporting NSWCDD DNA, PMS339, or submarine training systems programs.
  • Knowledge of Navy cybersecurity policies, OPNAV instructions, FISMA reporting, and continuous monitoring requirements.
  • Experience with cloud security authorizations (AWS, Azure, or other cloud platforms).
  • Familiarity with NIST SP 800-53 Rev 5, NIST SP 800-37 Rev 2, and Navy RMF guidance.
  • Experience with STIG compliance validation and IAVM vulnerability management.
  • CAP (Certified Authorization Professional) or CISSP-ISSAP certification.
  • Experience mentoring junior cybersecurity professionals / assessors on RMF processes, OQE development, control evaluation techniques, and artifact quality standards.
  • U.S. Navy background with information assurance, cybersecurity, or authorization experience.
  • Strong analytical and problem-solving skills with attention to detail.
  • Ability to manage multiple authorization packages simultaneously across different sponsors.
  • Experience presenting to Authorizing Officials and senior Navy leadership.

Responsibilities

  • Oversee, evaluate, and support documentation, validation, and accreditation processes necessary to ensure information technology (IT) systems meet the organization's information assurance (IA) and security requirements.
  • Provide senior Auditor support for RMF packages and continuous monitoring purposes as needed in RMF Steps 0-6 for PMS 339 and DRPM SUBS (UWS TR) systems. Provide security controls risk assessments and validations.
  • Lead annual security reviews and annual testing of security controls; validate control implementation and effectiveness.
  • Independently assess quality of security control implementation against NIST SP 800-53 requirements and Navy cybersecurity policies.
  • Review, validate, and approve security artifacts including System Security Plans (SSP), Security Assessment Plans (SAP), Security Assessment Reports (SAR), and Plan of Action and Milestones (POA&M).
  • Develop and maintain objective quality evidence (OQE) documentation for security control validation and continuous monitoring.
  • Conduct comprehensive reviews of STIG compliance results, ACAS vulnerability scan outputs, and remediation activities; provide recommendations for risk mitigation.
  • Assess POA&M entries for accuracy, completeness, and appropriate risk categorization; track vulnerability remediation timelines.
  • Lead continuous monitoring activities by analyzing security control compliance status, identifying systemic issues, and recommending corrective actions.
  • Coordinate with Information System Security Managers (ISSM), Technical Area Experts (TAE), Security Control Assessors (SCA), Functional Authority Officials (FAO), and Authorizing Officials (AO).
  • Review and approve technical documentation including engineering change proposals, baseline descriptions, and configuration management artifacts for security compliance.
  • Prepare and deliver briefings to senior leadership at TAE, SCA, and FAO/AO checkpoint and authorization signing meetings on system security posture and risk acceptance recommendations.
  • Develop cyber policies, procedures, compliance reports, and risk analysis documentation.
  • Ensure appropriate treatment of risk, compliance, and monitoring assurance from internal and external perspectives across multiple systems and sponsors.
  • Provide expert guidance on Navy cybersecurity policies, instructions, RMF processes, and FISMA reporting requirements.
  • Utilize Enterprise Mission Assurance Support Service (eMASS) to manage authorization packages, track system status, and maintain compliance artifacts.
  • Support cross-sponsor activities for PMS339, SUBS, and RRL programs; coordinate workload prioritization across sponsors.
  • Mentor junior compliance specialists and provide technical guidance on complex authorization issues.
  • Attend DOW, Navy Authorizing Official (NAO), and PAE Maritime RMF meetings to stay current on evolving RMF processes and procedures.
  • Support integration of Artificial Intelligence (AI) into the RMF process and emerging cybersecurity requirements.
  • Review and/or produce white papers, decision option papers, risk analysis, and risk mitigation recommendations.
  • Attend TAE, SCA, and FAO/AO checkpoint and authorization signing meetings to formally brief leadership on systems' security posture and identify potential cybersecurity issues.
  • Utilize SIPRnet access 25-60% of the time depending on specific work assignments.
  • Expected travel up to 10-15% of time for approximately one week per trip to support authorization briefings, stakeholder coordination, or senior-level meetings.

Benefits

  • best-in-class medical, dental and vision plan choices
  • wellness resources
  • employee assistance programs
  • Savings Plan Options (401(k))
  • financial planning tools
  • life insurance
  • employee discounts
  • paid holidays
  • paid time off
  • tuition reimbursement
  • early childhood and post-secondary education scholarships
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service