Digital Consultants, LLC-posted 3 days ago
Full-time • Mid Level
Norfolk, VA

Leading with our people, Digital Consultants’ mission is to deliver the highest level of professional solutions while being a trusted partner and advisor to our customers. With a culture of practicality, opportunity, and creativity we remain dedicated to being honest, trustworthy, respectful, and ethical in everything we do. We are a certified SBA 8(a) small, disadvantaged business that supports multiple IT customers within the Federal, civilian and private sectors. Digital Consultants also offers our employees growth opportunities, competitive wages, and a full benefits package. Our founding principles, Fairness and Common Sense make working here more than a job; it’s the Digital family. The Senior A&A Support Lead serves as the Senior technical authority responsible for leading and executing Assessment and Authorization (A&A) activities in accordance with the DoD Risk Management Framework (RMF) for MSC afloat and ashore systems, networks, and platforms. This role provides expert guidance on RMF control assessment, security validation testing, authorization package development, and ongoing authorization maintenance. The Senior A&A Support Lead interfaces directly with MSC cybersecurity leadership, Navy Security Control Assessors, and Authorizing Officials to ensure systems achieve and maintain Authority to Operate (ATO) in compliance with DoD, DON, and MSC cybersecurity policies and directives, while managing risk to mission-critical operations.

  • Lead and oversee RMF Assessment and Authorization activities for MSC sites, systems, networks, and control systems
  • Conduct and manage site, ship, system, and platform validation testing in accordance with DoDI 8510.01 and Navy validation procedures
  • Serve as a senior subject matter expert for RMF security control assessment, documentation, and compliance determinations
  • Develop, review, and validate A&A artifacts, including System Security Plans (SSPs), control assessments, POA&Ms, risk assessments, and supporting documentation
  • Populate, maintain, and manage A&A data and artifacts within eMASS (NIPR and SIPR), ensuring accuracy and completeness
  • Support Authorizing Officials and Navy Security Control Assessors by responding to findings, adjudicating risks, and supporting authorization decisions
  • Lead and support Mission-Based Cyber Risk Assessments (MBCRAs), including test planning, execution support, and reporting
  • Maintain system and site authorizations through continuous monitoring, Annual Security Reviews (ASRs), and lifecycle updates
  • Develop and apply custom validation procedures when standard Navy or DoD procedures are not available
  • Review and provide feedback on DoD, DON, and MSC cybersecurity policies, instructions, and technical documentation
  • Coordinate and mentor A&A analysts and validation team members
  • Prepare briefings, reports, and technical documentation using Microsoft Word, Excel, and PowerPoint
  • Clearance Required: A minimum of a SECRET clearance is required for this position.
  • Education: Minimum Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Information Systems, Engineering, or a closely related technical field
  • Must comply with certification requirements identified in DoD 8570.01-M for IAM Level III (e.g., CISSP, CISM, or approved equivalent).
  • Must be a designated Navy Qualified Validator (NQV).
  • Minimum of 10 years of progressively responsible experience in information technology security or cybersecurity
  • Demonstrated experience leading DoD RMF Assessment and Authorization efforts
  • Hands-on experience conducting security control assessments, validation testing, and risk determinations
  • Proven experience developing and managing RMF documentation and artifacts
  • Extensive experience using eMASS for A&A execution and authorization maintenance
  • Experience supporting Navy or DoD Authorizing Officials and Security Control Assessors
  • Knowledge of DoD, DON, and Navy cybersecurity policies (e.g., DoDI 8500 series, DoDI 8510.01, DoDM 5200 series)
  • Strong analytical, interpersonal, and communication skills with the ability to lead teams and interface with senior Government stakeholders.
  • Physical Requirements: The candidate must, with or without reasonable accommodation, be able to sit, stand, use computers and monitors, and perform duties in an office environment for extended periods. The candidate must be able to lift up to 40 lbs. on occasion (e.g., move a case of paper or similar task) that may occur on occasion.
  • Master’s degree in Cybersecurity, Information Assurance, or a related field is preferred, but not required.
  • Paid Time Off (PTO)
  • Group health plans
  • Income protection and supplemental benefits
  • 401(k) plan with company matching
  • Health Savings Account (HSA)
  • Flexible Spending Account (FSA)
  • Pet insurance options
  • Employee Assistance Program (EAP)
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service