Rigid Tactical is actively seeking a Senior Navy Qualified Validator (NQV) / RMF Security Control Assessor (SCA) to join our mission-focused team as Key Personnel on critical defense contracts. This is not a standard compliance role; it is a vital independent validation function that directly ensures the operational security posture of U.S. Navy IT systems. The successful candidate will apply advanced Risk Management Framework (RMF) expertise to conduct comprehensive security assessments providing the crucial analysis and documentation necessary to achieve and maintain Authorization to Operate (ATO) for systems supporting the warfighter. Your work will directly mitigate risk uphold mission readiness.
This position is contingent upon award of the relevant contract or funding. Furthermore employment is subject to the successful completion of all stages within the companys hiring pipeline which includes but is not limited to background checks drug screenings (if applicable) and verification of credentials.
Qualifications and Requirements / Preferred
- Minimum 8 years experience as an NQV.
- (ISC)² Certified Authorization Professional (CAP)
- CompTIA Cybersecurity Analyst (CySA)
- Certified Information Security Manager (CISM)
- Certified Ethical Hacker (CEH) (Practical/Master)
- Certified Data Privacy Solutions Engineer (CDPSE) or CIPP/G
- TS/SCI clearance
Key Responsibilities:
The core function of this Key Personnel role is to serve as the independent assurance provider ensuring critical DOD/DON systems meet strict security and authorization standards under the Risk Management Framework
Assessment Validation and Auditing
- Independent Security Assessment: Conduct independent comprehensive assessments of management operational and technical security controls and control enhancements within IT systems to determine overall effectiveness.
- Vulnerability Analysis & Validation: Execute and conduct analysis of network and system Assured Compliance Assessment SolutionACAS vulnerability scans or DoD approved tools to validate appropriate security control implementation.
- System Auditing: Conduct periodic auditing of RMFartifacts to ensure proper adherence to DoD instructionNavy requirements and the NIST Special Publication 800series standards.
MF Documentation and Package Management
- Artifact Development: Develop and maintain criticalA&Adocumentation including System Security PlansSSP Contingency Plans Privacy Impact Assessments Certification Reports Accreditation Reports and Plans of Action and Milestones POA
- eMASS Package Management: Initiate and prepareA&A RMFpackages using the Enterprise Mission Assurance Support Service (eMASSensuring existing packages are maintained in a compliant status and that all requirements are verified.
- Authorization Guidance: Apply NavyA&Aguidance and policy to achieving/maintaining program objectives and enhancing the overall quality of RMFpackages for receiving anATO.
Stakeholder Collaboration and Guidance
- Inter-Team Engagement: Actively work with the designated Information Systems Security ManagerISSM Information Systems Security EngineerISSE system owners technical leads and other stakeholders throughout the RMFprocess.
- Risk Reporting and Guidance: Provide final security assessment support and guidance regarding vulnerability remediation and determination of the overall risk posture.
- Coordination: Coordinate technical meetings prioritize topics and identify objectives to supportA&Apackage development and ensure timely program completion.
Expert Knowledge and Compliance
- Expert Knowledge Maintenance: Maintain thorough and current knowledge of RMFand A&A processes standards and industry best practices including theNIST Special Publication 800series.
- Policy Application: Apply knowledge ofDoD or DoN network architectures and policy toward assessment and identification of vulnerabilities.
- Continuous Improvement: Verify implementation of security postures as stated document deviations and recommend new or revised security measures based on review results.
At Rigid Tactical we understand that maintainingATO status for defense systems is critical to national security. If you are a highly experienced and certifiedNavy Qualified Validatorwith a commitment to mission assurance we offer you the opportunity to work independently as a Key Personnel member driving technical compliance and mitigating risk for high-value contracts. We offer a challenging environment where your expertise inRMFand A&Adirectly contributes to the operational readiness of the warfighter.
Apply now to leverage your8 years of NQV experience in a role where validation is not just a checklist but a core component of tactical success.
Required Experience:
Senior IC
Rigid Tactical is actively seeking a Senior Navy Qualified Validator (NQV) / RMF Security Control Assessor (SCA) to join our mission-focused team as Key Personnel on critical defense contracts. This is not a standard compliance role; it is a vital independent validation function that directly ensure...
Rigid Tactical is actively seeking a Senior Navy Qualified Validator (NQV) / RMF Security Control Assessor (SCA) to join our mission-focused team as Key Personnel on critical defense contracts. This is not a standard compliance role; it is a vital independent validation function that directly ensures the operational security posture of U.S. Navy IT systems. The successful candidate will apply advanced Risk Management Framework (RMF) expertise to conduct comprehensive security assessments providing the crucial analysis and documentation necessary to achieve and maintain Authorization to Operate (ATO) for systems supporting the warfighter. Your work will directly mitigate risk uphold mission readiness.
This position is contingent upon award of the relevant contract or funding. Furthermore employment is subject to the successful completion of all stages within the companys hiring pipeline which includes but is not limited to background checks drug screenings (if applicable) and verification of credentials.
Qualifications and Requirements / Preferred
- Minimum 8 years experience as an NQV.
- (ISC)² Certified Authorization Professional (CAP)
- CompTIA Cybersecurity Analyst (CySA)
- Certified Information Security Manager (CISM)
- Certified Ethical Hacker (CEH) (Practical/Master)
- Certified Data Privacy Solutions Engineer (CDPSE) or CIPP/G
- TS/SCI clearance
Key Responsibilities:
The core function of this Key Personnel role is to serve as the independent assurance provider ensuring critical DOD/DON systems meet strict security and authorization standards under the Risk Management Framework
Assessment Validation and Auditing
- Independent Security Assessment: Conduct independent comprehensive assessments of management operational and technical security controls and control enhancements within IT systems to determine overall effectiveness.
- Vulnerability Analysis & Validation: Execute and conduct analysis of network and system Assured Compliance Assessment SolutionACAS vulnerability scans or DoD approved tools to validate appropriate security control implementation.
- System Auditing: Conduct periodic auditing of RMFartifacts to ensure proper adherence to DoD instructionNavy requirements and the NIST Special Publication 800series standards.
MF Documentation and Package Management
- Artifact Development: Develop and maintain criticalA&Adocumentation including System Security PlansSSP Contingency Plans Privacy Impact Assessments Certification Reports Accreditation Reports and Plans of Action and Milestones POA
- eMASS Package Management: Initiate and prepareA&A RMFpackages using the Enterprise Mission Assurance Support Service (eMASSensuring existing packages are maintained in a compliant status and that all requirements are verified.
- Authorization Guidance: Apply NavyA&Aguidance and policy to achieving/maintaining program objectives and enhancing the overall quality of RMFpackages for receiving anATO.
Stakeholder Collaboration and Guidance
- Inter-Team Engagement: Actively work with the designated Information Systems Security ManagerISSM Information Systems Security EngineerISSE system owners technical leads and other stakeholders throughout the RMFprocess.
- Risk Reporting and Guidance: Provide final security assessment support and guidance regarding vulnerability remediation and determination of the overall risk posture.
- Coordination: Coordinate technical meetings prioritize topics and identify objectives to supportA&Apackage development and ensure timely program completion.
Expert Knowledge and Compliance
- Expert Knowledge Maintenance: Maintain thorough and current knowledge of RMFand A&A processes standards and industry best practices including theNIST Special Publication 800series.
- Policy Application: Apply knowledge ofDoD or DoN network architectures and policy toward assessment and identification of vulnerabilities.
- Continuous Improvement: Verify implementation of security postures as stated document deviations and recommend new or revised security measures based on review results.
At Rigid Tactical we understand that maintainingATO status for defense systems is critical to national security. If you are a highly experienced and certifiedNavy Qualified Validatorwith a commitment to mission assurance we offer you the opportunity to work independently as a Key Personnel member driving technical compliance and mitigating risk for high-value contracts. We offer a challenging environment where your expertise inRMFand A&Adirectly contributes to the operational readiness of the warfighter.
Apply now to leverage your8 years of NQV experience in a role where validation is not just a checklist but a core component of tactical success.
Required Experience:
Senior IC
View more
View less