Amentum is seeking a Subject Matter Expert (SME) 3 for a prime contract. Essential Responsibilities: Serve as Lead Technical Advisor for the Secure the Enterprise (STE) and Zero Trust (ZT) initiatives, working one-on-one with the Government Division Chief and Technical Director and Deputy Authorizing Official to advise on STE/ZT strategies, policies, and performance Brief the Chief Information Security Officer and Chief Information Officer on STE data, trends, updates, and changes Serve as the highest level of STE technical support to the security community Converse, analyze and advise on STE areas of concern to include Transport Layer Security (TLS) versions and cipher suites, Network Flow data (NetFlow and its variants), configuration of network devices, audit data logs (syslog and variants) collection and analysis, user activity monitoring, and other technical areas Assist system personnel across the enterprise to maintain the appropriate operational security posture in accordance with STE compliance regulations, policies and playbook guidance for their assigned systems, programs, and/or enclaves Provide guidance and technical expertise on all STE requirements that impact or affect the security compliance of the information system Assist in the development and execution of an enterprise level STE compliance program that facilitates RMF continuous monitoring to minimize security risks and ensure compliance with that program on a routine basis. Manually review submitted evidence and justifications for manual compliance validations, determinations of applicability and exceptions for all STE security controls Based on your review, make recommendations to leadership for approval or rejection of requests for exceptions from STE security requirements Based on your review and written guidance, approve, or reject requests for manual validation or determination of applicability Work with information system personnel to troubleshoot and correct rejected requests for manual compliance validation, determinations of applicability and exceptions Review automated STE compliance data for errors or inconsistencies and report findings to leadership Assess the effectiveness of general IT and specific STE security controls on an ongoing basis to determine the STE program’s effectiveness Maintain, develop, and enforce STE security policies, implementation guidelines and customer training for information system personnel in diverse operational environments Coordinate with software developers to recommend changes, develop system requirements, and test new implementations
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level
Number of Employees
5,001-10,000 employees