Cybersecurity Risk Management Framework Authority

5 days ago


Washington, Washington, D.C., United States LMI Full time
Job Title: Cybersecurity Risk Management Framework Authority

LMI is seeking a highly skilled Cybersecurity Risk Management Framework Authority to provide expert support for a DoD client. As a seasoned professional, you will be responsible for overseeing the entire RMF cycle, ensuring compliance with all relevant security policies, standards, and guidelines.

Responsibilities:
  • Develop and maintain system security plans (SSPs) and associated documentation for each system under management.
  • Conduct risk assessments and vulnerability assessments to identify and mitigate security risks.
  • Work closely with multiple DoD cybersecurity personnel to document controls, support authorization, and provide metrics to comply with audits.
  • Responsible for escalating issues, problems, risks, and constraints to the appropriate levels for clarification and resolution.
  • Develop and maintain a working knowledge of AWS products and capabilities.
  • Perform unsupervised, hands-on work in GovCloud environments and eMASS.
  • Manage multiple and competing customer priorities with little supervision.
  • Develop High Availability, Continuity of Operations (COOP) and Disaster Recovery (DR) processes in accordance with government and industry guidelines.
  • Work closely with the DevSecOps teams and system support engineers to provide guidance on security weaknesses in the cloud environment.
  • Review security controls and configuration requirements including secure network design, database access, security testing, authentication methods, implementation of encryption, privilege management, logging, input validation, secure storage design, and secure data transfer.
  • Assist with the development and implementation for cloud security architectures for protecting sensitive data deployed into various cloud (AWS, Azure, GCP, etc.) and hybrid systems.
  • Participate in Requests for Change (RFC), Change Management Processes, and IAVM tracking.
Qualifications:
  • Minimum of a SECRET security clearance, TS/SCI preferred.
  • 8+ years Managerial experience in developing and implementing system information security standards and procedures in a DoD Cybersecurity Enterprise Environment.
  • Previous DoD cybersecurity and technology experience.
  • Demonstrated experience with DoD technology, systems, and command & control policies and procedures.
  • DOD Cyber Workforce (DCWF Intermediate Information Systems Security Manager certification: CGRC/CAP or CASP+ or CCSP or Cloud+ or SSCP or Security+ or GSEC.
  • Experience with security requirements in a federal IT environment, including FedRAMP-certified providers and FISMA requirements for acquiring and maintaining an ATO.
  • Experience with Enterprise Cross Domain Solutions.
  • Experience with DoD STIGs and SRGs.
  • Strong understanding of cybersecurity principles, standards, and best practices.
  • Excellent communication and interpersonal skills, with the ability to interact effectively with technical and non-technical stakeholders.

LMI is a consultancy dedicated to powering a future-ready, high-performing government, drawing from expertise in digital and analytic solutions, logistics, and management advisory services. We deliver integrated capabilities that incorporate emerging technologies and are tailored to customers' unique mission needs, backed by objective research and data analysis. Founded in 1961 to help the Department of Defense resolve complex logistics management challenges, LMI continues to enable growth and transformation, enhance operational readiness and resiliency, and ensure mission success for federal civilian and defense agencies. LMI has been named a 2022 and 2024 #TopWorkplace in the United States by Top Workplaces. We are honored to be recognized as a company that values a people-centered culture, and we are grateful to our employees for making this possible.



  • Washington, Washington, D.C., United States LMI Full time

    Job Title: Cybersecurity Risk Management Framework AuthorityLMI is seeking a highly skilled Cybersecurity Risk Management Framework Authority to provide expert support for a DoD client. As a key member of our team, you will be responsible for overseeing the entire RMF cycle, including initiation, categorization, selection, implementation, assessment,...


  • Washington, Washington, D.C., United States Booz Allen Hamilton Full time

    Protecting Missions, One System at a TimeAs an Information System Security Officer at Booz Allen Hamilton, you'll play a critical role in safeguarding our clients' missions by identifying and mitigating cyber threats. With your expertise in risk management, vulnerability assessment, and authorization, you'll lead the discovery of cyber risks, develop...


  • Washington, Washington, D.C., United States Booz Allen Hamilton Full time

    Opportunity for Navy Cybersecurity Risk Management Lead:Become an integral part of our team as a Navy Cybersecurity Risk Management Lead, where you will significantly contribute to the Navy's efforts in combating cyber threats. We seek a seasoned information security risk expert to aid the Navy in recognizing and alleviating risks linked to their IT...


  • Washington, Washington, D.C., United States Booz Allen Hamilton Full time

    About the RoleWe are seeking an experienced Cybersecurity Risk Management Specialist to join our team at Booz Allen Hamilton. As a key member of our team, you will work closely with the Department of Navy (DoN) to identify and mitigate cyber risks, develop mitigation plans, and ensure compliance with Navy Risk Management Framework (RMF) policies.Key...


  • Washington, Washington, D.C., United States Booz Allen Hamilton Full time

    About the Position:We are seeking a dedicated Navy Cybersecurity Risk Management Lead to join our team at Booz Allen Hamilton. In this pivotal role, you will contribute significantly to the Navy's efforts in combating cyber threats. Your expertise in information security risk management will be essential in identifying and addressing vulnerabilities within...


  • Washington, Washington, D.C., United States Vets Hired Full time

    Job SummaryVets Hired is seeking a highly skilled Cybersecurity Risk Manager to join our team. As a key member of our security team, you will be responsible for ensuring the security and integrity of our IT systems.Key ResponsibilitiesConduct Security Assessments: Conduct initial security assessments and obtain Authorization to Operate (ATO) in line with...


  • Washington, Washington, D.C., United States Aretum Full time

    Job OverviewARETUM, a prominent government contracting firm specializing in technology-driven mission support services, is on the lookout for a skilled Cybersecurity Project Manager to enhance our team. In this role, you will take charge of the planning, execution, and successful delivery of cybersecurity initiatives for our federal clientele.ARETUM is...


  • Washington, Washington, D.C., United States T. White Parker Full time

    Job SummaryT. White Parker is seeking a highly skilled Cybersecurity Program Manager to lead our cybersecurity client engagements. The successful candidate will oversee the execution of cybersecurity projects and initiatives, ensuring they are completed on time, within scope, and within budget.Key ResponsibilitiesDevelop and implement comprehensive...


  • Washington, Washington, D.C., United States VMD Corp Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Analyst to join our team at VMD Corp. As a Cybersecurity Analyst, you will play a critical role in supporting the Department of the Air Force (DAF) in managing the lifecycle cybersecurity requirements of all DAF Systems.Key ResponsibilitiesImplement the Risk Management Framework (RMF) to manage the...


  • Washington, Washington, D.C., United States Booz Allen Hamilton Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Risk Specialist to join our team at Booz Allen Hamilton. As a Cybersecurity Risk Specialist, you will play a critical role in helping our clients understand and mitigate cyber risks.Key ResponsibilitiesConduct risk assessments and develop mitigation plans to help clients understand and manage cyber...


  • Washington, Washington, D.C., United States Gunnison Consulting Group Inc Full time

    Job OverviewWe are looking for a dedicated and client-focused individual to provide support for our esteemed client in the judiciary sector.Key Responsibilities:Act as a Computer Security Specialist on a focused Security Engineering Services initiative.Assist in monitoring and reporting on all Service Level Agreements (SLAs) required by the client.Document...


  • Washington, Washington, D.C., United States Booz Allen Hamilton Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Risk Specialist to join our team at Booz Allen Hamilton. As a Cybersecurity Risk Specialist, you will play a critical role in helping our clients understand and mitigate cyber risks.Key ResponsibilitiesConduct risk assessments and develop mitigation plans to help our clients protect their...


  • Washington, Washington, D.C., United States Booz Allen Hamilton Full time

    Cybersecurity Risk Management SpecialistKey Responsibilities: Collaborate with law enforcement agencies to identify potential cyber threats, comprehend applicable regulations, and develop strategies for risk reduction. Analyze technical, environmental, and personnel information to evaluate possible vulnerabilities. Assist clients in formulating actionable...


  • Washington, Washington, D.C., United States Booz Allen Hamilton Full time

    The OpportunityCyber threats are a persistent concern for the Department of Navy (DoN), and understanding these threats can be overwhelming. As an information security risk specialist, you will work with DoN to identify cyber risks, comprehend applicable policies, and develop a mitigation plan.You will review technical, environmental, and personnel details...


  • Washington, Washington, D.C., United States T. White Parker Full time

    Cybersecurity Program Manager Job DescriptionT. White Parker is seeking a highly skilled and experienced Cybersecurity Program Manager to lead our cybersecurity client engagements. The successful candidate will have a strong background in designing, implementing, and operating comprehensive cybersecurity programs, as well as experience working with senior...


  • Washington, Washington, D.C., United States Barrow Wise Consulting Full time

    Job SummaryBarrow Wise Consulting, LLC is seeking a highly skilled IT Cybersecurity Expert to support our Federal Agency project. As a key member of our team, you will be responsible for providing thought leadership, documentation, facilitation, and best practices to the Cybersecurity Supply Chain Risk Management Community of Interest.Key...


  • Washington, Washington, D.C., United States Vets Hired Full time

    Job SummaryVets Hired is seeking a highly skilled Cybersecurity Compliance Specialist to join our team. As a key member of our IT department, you will be responsible for ensuring the security and compliance of our systems and data.Key ResponsibilitiesConduct thorough security assessments and authorization (A&A) support for IT systems to identify and mitigate...


  • Washington, Washington, D.C., United States Tetrad Digital Integrity LLC Full time

    Job OverviewTetrad Digital Integrity LLC is at the forefront of cybersecurity, dedicated to protecting our clients from the ever-evolving landscape of digital threats and vulnerabilities.The Information Systems Security Manager (ISSM) will play a crucial role in guiding the authorization and accreditation processes for innovative solutions hosted on the...


  • Washington, Washington, D.C., United States Gunnison Consulting Group Inc Full time

    About the RoleGunnison Consulting Group Inc is seeking a highly skilled Cybersecurity Risk Management Lead to support a Department of Defense customer. The successful candidate will be responsible for identifying, assessing, and prioritizing computing risks while developing strategies to secure the Agency's systems, networks, and data.Key...


  • Washington, Washington, D.C., United States Group SSI Full time

    Job Title: Cybersecurity SpecialistGroup SSI is seeking a highly skilled Cybersecurity Specialist to join our team. As a Cybersecurity Specialist, you will be responsible for supporting new Authority to Operate (ATO) packages in eMASS and XACTA, providing cybersecurity planning and maintenance services, and ensuring that hardware and software deliverables...