Cybersecurity Assessment & Authorization SME
Listed on 2026-08-03
-
IT/Tech
Cybersecurity, Information Security & Data Protection
Description
Remote role but must live within 150 miles of the following DLA
Location:
Ft. Belvoir VA (HQ)
Contingent Upon Contract Award
Connected Logistics is seeking a Cybersecurity Assessment & Authorization SME to assist in managing the implementation, maintenance and monitoring of cybersecurity in support of J6 Program Executive Officer's Portfolio of IT capabilities, associated Program Management Offices, IT infrastructure support and Operational Technology areas for Information Systems/Programs throughout the entirety of its system development life cycle.
The Cybersecurity Assessment & Authorization SME serves as a cybersecurity Subject Matter Expert (SME) with regards to Assessment and Authorization (A&A) of information systems and all associated cybersecurity policies and procedures.
Key Responsibilities:The Cybersecurity Assessment & Authorization SME executes DoW/DLA cybersecurity processes to authorize information systems, maintain authorization of information systems, or serves as a Subject Matter Expert (SME) for systems undergoing the authorization process. Specific duties for this position include but aren't limited to:
- Possessing an understanding of how security controls identified in the NIST 800-53 apply to the process of assessing and authorizing a large organization’s IT infrastructure such as DLA, in which there is a compilation of large and small enclaves, Cloud Hosted Services, Operational Technology, AIS applications and outsourced IT processes.
- Determining the residual risk of an identified vulnerability (e.g., non-compliant security control) and determines the possible ramifications on the system’s current or future authorization.
- Briefs senior management on the progress or results of an information system undergoing the Risk Management Framework (RMF) process.
- Possess excellent analytical and writing skills.
- Possess Microsoft Office programs (Excel, Word, PowerPoint, MS Project, etc.) knowledge.
- Possess experience working with DoD/DLA.
Requirements
KP-1 Enterprise RMF & Authorization LeadPurpose:
Serves as the senior cybersecurity authority for enterprise RMF execution, authorization strategy, and executive engagement across the DLA portfolio. Leads assessment, authorization, and risk management activities while serving as the primary advisor for AO, SCA, ISSM, and PM stakeholders.
Minimum Requirements- Five years RMF, C&A, and DoD cybersecurity experience
- Experience conducting authorization reviews
- Secret clearance
- Tier 3/NACLC/ANACI
- IAM Level III certification
- CISSP
- CAP
- Former ISSM, SCA, AO support staff, or Cyber Program Lead
- DLA or Fourth Estate experience
- eMASS administration experience
- Experience briefing SES and Flag Officer equivalents
Purpose:
Leads security control assessment, independent validation, compliance reviews, and risk determination activities. Responsible for ensuring assessment consistency and quality across the enterprise workload.
Minimum Requirements- Five years RMF and NIST experience
- Security control assessment experience
- Authorization review experience
- Secret clearance
- Tier 3 investigation
- IAM Level III certification
- CAP
- CISSP
- CISA
- Extensive NIST 800-53 assessment background
- Experience conducting SCA-style reviews
- Knowledge of FISMA and Federal compliance frameworks
Purpose:
Leads ongoing cybersecurity compliance, vulnerability management, remediation tracking, STIG validation, and continuous monitoring operations throughout system life cycles.
Minimum Requirements- Five years DoD cybersecurity experience
- RMF experience
- Secret clearance
- Tier 3 investigation
- IAM Level III certification
- CISSP
- SecurityX (formerly CASP+)
- ACAS experience
- Enterprise vulnerability management experience
- STIG implementation expertise
- POA&M governance experience
Purpose:
Serves as the lead for Operational Technology (OT), Facility Related Control Systems (FRCS), cloud-hosted environments, and specialized authorization efforts requiring advanced cybersecurity expertise.
Minimum Requirements- Five years DoD cybersecurity experience
- RMF and C&A experience
- Auth…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).