Senior RMF Specialist/Information System Security Officer; ISSO; JWICS Modernization
Listed on 2026-09-08
-
IT/Tech
Cybersecurity, Information Security & Data Protection
Senior RMF Specialist / Information System Security Officer (ISSO) - JWICS Support Modernization
EOE Statement
Technology Automation & Management (TeAM), Inc.
TeAM is looking for highly motivated and highly skilled individuals who are ready for exciting opportunities with a growing company. For more than a quarter of a century, we ve built our reputation as a premier solutions provider to the Federal Government, and eagerly seek creative problem solvers to join our TeAM.
We are an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, national origin, disability status, protected veteran status or any other characteristic protected by law.
Pending Contract Award
Mission Objectives - The Senior RMF Specialist/ISSO is responsible for the day-to-day execution of the Risk Management Framework (RMF) lifecycle for AMC s JWICS systems and enclaves. This position ensures that all required controls are implemented, assessed, documented, and monitored in eMASS to support AO risk decisions and maintain AMC s JWICS Authorization to Operate.
Position Responsibility Summary
- Lead the comprehensive RMF lifecycle management for assigned JWICS systems within the AMC eMASS portfolio, covering categorization, control selection/implementation, assessment, authorization, and continuous monitoring.
- Develop, maintain, and update system security documentation (e.g., SSPs, SARs, POA&Ms, security control traceability matrices, risk assessments) in accordance with DoD and Army RMF guidance.
- Collaborate with the P-ISSM, AO, AODRs, system owners, and ISSOs to optimize RMF workflows and coordinate approvals for system changes, boundary updates, and new capabilities.
- Implement and manage a robust continuous monitoring strategy, including vulnerability scanning, configuration management, control assessments, and security log reviews; ensure results are captured in eMASS and associated tools.
- Support cybersecurity assessments of JWICS computing environments to identify vulnerabilities and non-compliance with IA standards; recommend and track mitigations.
- Provide RMF and security engineering input to mission mapping and cyberspace terrain mapping activities, helping define authorization boundaries and risk posture.
- Produce timely RMF/eMASS updates and risk reports that enable AMC to meet QASP measures (e.g., =95% of priority systems with current eMASS status, =95% of identified gaps with recommended actions within 5 business days).
- Provide RMF and IA guidance to JWICS system administrators, Tier 1 support staff, and other technical personnel to ensure security considerations are built into day-to-day operations.
- Support cyber exercises and inspections/assessments (e.g., CCRIs, inspections by higher headquarters) by preparing RMF artifacts, responding to findings, and tracking corrective actions.
Position Requirements
Minimum Required
Qualification:
[These qualifications are mandatory for consideration]
Experience
- Hands‑on experience performing ISSO or similar RMF/IA roles for DoD or IC systems, preferably TS/SCI and JWICS or SIPR environments.
- Demonstrated experience with eMASS or equivalent RMF tracking systems, including building and managing system packages and POA&Ms.
- Experience with ACAS/Tenable, HBSS, Splunk/SIEM, STIG implementation, and vulnerability management processes.
- Familiarity with NIST SP 800‑37/53, DoDI 8510.01, CNSSI 1253, and Army cyber security policy.
- Experience working with AOs, ISSMs, system owners, and engineering teams to balance security and mission needs.
Education and Credentials
- Education:
Bachelor’s degree in Cybersecurity, Information Assurance, Computer Science, or related technical field (substitution for extensive experience may be considered per labor category). - Certifications:
DoD 8570/8140 IAT II or IAM II level, such as Security+ CE, CAP, GSLC, CISSP, or equivalent (as mapped to role). - Years of
Experience:
Typically 5–8+ years of RMF/IA experience, including multiple ATO/RMF efforts for DoD systems.
Optional/Value‑Added Qualifications
Optional/Value‑Added Experience
- Prior experience supporting AMC, INSCOM, DIA, or other…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).