Security / RMF Engineer

AretumMcLean, VA
Remote

About The Position

Aretum is seeking a skilled and highly motivated Security / RMF Engineer. As a Security / RMF Engineer, you will ensure compliance with VA security requirements and manage ATO lifecycle. Due to the nature of our work as a federal consulting organization, employees may be expected to handle Controlled Unclassified Information (CUI) and must adhere to applicable safeguarding and compliance requirements.

Requirements

  • RMF Framework: NIST 800-53, control families, tailoring
  • ATO Process: SSP development, POA&M management, authorization workflows
  • ServiceNow GRC (or similar): Documentation and tracking
  • Cloud Security: AWS security controls, shared responsibility model
  • Identity & Access Management: RBAC, least privilege, federation concepts
  • Encryption: TLS, data-at-rest encryption, key management (KMS)
  • Vulnerability Management: Scanning tools, remediation workflows
  • Logging & Monitoring: SIEM integration (Splunk, Datadog concepts)
  • Network Security: Segmentation, ingress/egress control, TIC awareness
  • Compliance Standards: HIPAA awareness, FISMA/FEDRAMP basics
  • DevSecOps Integration: Security in CI/CD pipelines
  • Risk Assessment: Identifying and documenting system risks and mitigations

Responsibilities

  • Develop and maintain RMF documentation (SSP, POA&M, SAR inputs)
  • Map and implement security controls across system layers
  • Coordinate with VA security stakeholders
  • Support vulnerability scanning and remediation
  • Enable continuous monitoring and compliance

Benefits

  • Health Care Plan (Medical, Dental & Vision)
  • Retirement Plan (401k)
  • Life Insurance (Basic, Voluntary & AD&D)
  • Paid Time Off
  • Family Leave (Maternity, Paternity)
  • Short Term & Long-Term Disability
  • Training & Development
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service