Cyber Engineer - RMF
Soft Tech Consulting
- New Mexico
- Permanent
- Full-time
MUST HAVE INTERIM TOP SECRET CLEARANCE OR HIGHER100% ONSITE - WHITE SANDS MISSILE RANGE (WSMR), WHITE SANDS, NEW MEXICOSALARY IS DEPENDENT UPON THE CANDIDATE’S SKILLS, EXPERIENCE, EDUCATION AND CERTIFICATIONS
SALARY RANGE: $110K - $130K
HIGH END OF THE SALARY RANGE IS CONSIDERED FOR THOSE WHO EXCEED QUALIFICATIONS IN A REQUIRED AREASoft Tech offers competitive BENEFITS in the areas of: MEDICAL, DENTAL, VISION, 401K, Short Term Disability, Long Term Disability, Life Insurance, PTO, AND PAID HOLIDAYSSoft Tech Consulting is seeking a highly motivated, self-directed individual to fill the role of Cyber Engineer (RMF). We are looking for a Cyber Engineer (RMF) who is team-oriented with strong information assurance skills and experience. The selected individual will join a collaborative team environment where they will provide expertise and guidance for the project, including defining the projects objectives, facilitating quality control and assist in coordinating the efforts of team members in order to deliver the project according to plan. The Cyber Engineer (RMF) plays a strong role in client relations and project success. Key to the success of this position is the successful delivery of projects and effective communication to all levels of staff for reporting project status. Responsibilities:
- Govern and monitor the IT security posture of network enclaves, unclassified and classified, as well as provide authority on Cybersecurity policies.
- Work closely with the client regarding policy creation, best business practices, and general Cybersecurity governance.
- Act as a POC for RMF Assess and Authorize (A&A) responsibilities and Cybersecurity inspection actions.
- Responsible for activities relating to Cybersecurity procedures and systems.
- Confer with and advise subordinates on administrative policies and procedures and resolving technical problems, priorities, and methods.
- Consult with and advise other support teams regarding internal controls and security procedures.
- Prepare activities and progress reports relating to the information systems audit function.
- Manage the Authority to Operate (ATO) lifecycle for associated systems.
- Develop Plan of Actions and Milestones (POA&M) for registered systems.
- Manage and maintain the System Security Plan (SP).
- Assess security controls in accordance with NIST SP 800-53.
- Possess knowledge of all NIST and CNSSI publications related to RMF and security controls for national security systems (NSS).
- Register new systems within eMASS as required.
- Create Assess-only RMF instances for software packages (NETCOM Certificate of Networthiness replacement).
- Develop and maintain System-level artifacts for associated systems within eMASS.
- Coordinate the development of technology-level artifacts with other teams.
- Advise other teams on STIG compliance and mitigation strategies.
- BA or BS Bachelor’s Degree with 10+ years of overall applicable experience highly preferred.
- Minimum requirement is HS Diploma with 12+ years of overall applicable experience.
- Interim Top Secret clearance accepted at start, but ultimately requires Top Secret clearance.
- Must have Security+ certification (also desire any of the following: CAP, GSLC, CCNA, CASP).
- Experience in RMF Assess and Authorize (A&A) processes.
- Experience assessing security controls in accordance with NIST SP 800-53.
- Experience creating Assess-only RMF instances for software packages.
- Experience developing Plan of Actions and Milestones (POA&M).
- Must be able to work independently.
- Must have strong verbal and written communication skills.
- Must be able to follow instructions and provide support to all team members.