Fort Knox KY or Remote Active Secret Clearance Required
@Orchard is supporting a growing Federal contractor with a need for a Risk Management Framework Lead. The individual in this position will be responsible for analyzing security requirements for information protection for enterprise systems and networks as well as sensitivity of information. They will perform vulnerability and risk assessments on the basis of defined sensitivity and information flows and assist in the development of security policies.
As the RMF Lead you will:
Performs Certification and Accreditation (C&A) or other IA/CND Compliance and Auditing processes and inspections for all enterprise systems and networks; ensures validity and accuracy review of all associated documentation.
Performs compliance reviews of computer security plans performs risk assessments and performs security test evaluations and audits.
Support of contract transition to ensure minimum service disruption to vital business and no service degradation during and after transition; ensure continuity of services while helping onboard personnel and jointly inventory intellectual and real property.
Supports operations under the Cybersecurity standards defined in all required regulations and directives.
Provides realtime compliance continuous monitoring IAW NETCOMs sampling requirements routine assessments and heightened scrutiny of the cybersecurity posture and associated risks for all Customer systems including but not limited to over 200 different system types.
Delivers required reports listing compliant and noncompliant findings vulnerabilities Control Correlation Identifier (CCI) Security Technical Implementation Guides (STIGs) and Security Requirements Guides (SRGs) for each system assessed.
Provides surge support technical guidance and expertise in the areas of Cybersecurity to support Customer Mission Partners IMOs ISSOs IS Owners Software Developers Network System and Database Administrators IAW all related cyber regulations and directives; provide results in reports briefs and deliverables as required to the appropriate Government representative.
Provide Cybersecurity surge support in the event of real world or additional requirements in support of RMF compliance checks and documentation review across authorization boundaries including but not limited to:
Perform security review preparation for all security controls associated with RMF applicable to an assigned authorization boundary based upon the Confidentiality Integrity or Availability designation.
Perform on site or offsite reviews of all information systems to audit and validate compliance with associated security controls.
Perform as reviewers of audit teams during inspections assessments evaluations audits etc.
Provide reports to the assigned Government representative as required.
Provide reviews validation and deliverable efforts in support of compliance or noncompliance IAW CCI STIGs and SRGs for each finding or vulnerability IAW RMF.
Provide embedded Cybersecurity support across Customer or other supported organizations as required.
Requirements:
Active Secret clearance
BA/BS; MA/MS preferred
5 years of experience with RMF
IAT Level I certification CySA CND SSCP GSEC CCNASecurity or Security recommended
Established in 2010 @Orchard has an exceptional reputation providing staffing solutions to timesensitive talent scarcity issues to deliver better talent management ROI. Our specialty lies in the critical area of program talent acquisition and resource management not in one narrow skillset but across many areas of technical and functional delivery. To learn more about our other exciting opportunities visit our Jobs Page at .
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.