Cybersecurity Assessment & Authorization (A&A) Subject Matter Expert (SME)

DirectViz Solutions, LLC

$90K — $130K *
Technical Services
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of experience in Cybersecurity Assessment & Authorization (A&A) or Certification & Accreditation (C&A).
  • Expert knowledge of DoD Risk Management Framework (RMF).
  • Strong familiarity with NIST SP 800-53 security controls.
  • Experience with large, complex enterprise environments in a DoD context.
  • Active Secret Clearance required.
  • Possession of a relevant certification (CISSP, CISM, GSLC).

Responsibilities

  • Serve as Cybersecurity SME for A&A activities and policies.
  • Execute DoD/DLA cybersecurity processes for Authorization to Operate (ATO).
  • Provide guidance throughout the RMF lifecycle for assessments and authorizations.
  • Evaluate NIST SP 800-53 security controls across various environments.
  • Assess security control deficiencies and determine residual risk.
  • Review security documentation for DoD compliance.
  • Brief senior leadership on RMF progress and cybersecurity risks.

Benefits

  • Hybrid work model with flexible on-site requirements.
  • Opportunity to work with a large DoD customer.
  • Impactful position that supports critical cybersecurity efforts.
Full Job Description
Position Overview

DirectViz Solutions is seeking an experienced Cybersecurity Assessment & Authorization (A&A) Subject Matter Expert (SME) to support a large Department of Defense (DoD) customer. This is a hybrid position supporting locations throughout the DC, Maryland, and Virginia area, with on-site support required as needed.

The ideal candidate will have deep expertise in the DoD Risk Management Framework (RMF), NIST 800-53 security controls, and the Assessment & Authorization (A&A) process for complex enterprise environments.

Key Responsibilities
  • Serve as the Cybersecurity Subject Matter Expert (SME) for Assessment & Authorization (A&A) activities and associated cybersecurity policies and procedures.
  • Execute DoD/DLA cybersecurity processes to obtain and maintain Authorization to Operate (ATO) for information systems.
  • Provide expert guidance throughout the RMF lifecycle for systems undergoing assessment and authorization.
  • Evaluate and assess NIST SP 800-53 security controls across complex enterprise environments, including:
    • Large and small enclaves
    • Cloud-hosted services
    • Operational Technology (OT)
    • Automated Information Systems (AIS)
    • Outsourced IT services
  • Assess security control deficiencies, determine residual risk, and evaluate the impact on current and future system authorizations.
  • Review security documentation and conduct authorization assessments to ensure compliance with DoD cybersecurity requirements.
  • Brief senior leadership on RMF progress, authorization status, cybersecurity risks, and recommended mitigation strategies.
  • Support continuous authorization and ongoing cybersecurity compliance efforts.

Required Qualifications

Experience
  • Minimum of 5 years of experience in Cybersecurity Assessment & Authorization (A&A) or Certification & Accreditation (C&A).
  • Strong experience with the DoD Risk Management Framework (RMF) and NIST SP 800-53.
  • Experience supporting DoD cybersecurity programs and authorization processes.
  • Experience assessing security controls and conducting authorization reviews within large, complex enterprise environments.

Clearance
  • Active Secret Clearance (required).

Certifications Must possess one of the following:
  • CISSP
  • CISM
  • GSLC

If you thrive on solving complex problems and building meaningful connections, we'd love to hear from you. Join our team and make an impact today!

Physical and Mental Qualifications:
  • Maintain focus and awareness throughout scheduled working hours.
  • Perform tasks requiring prolonged periods of sitting or standing at a desk, utilizing a computer, mouse, and keyboard.
  • Lift and move objects weighing up to 15 pounds as needed.
  • Exhibit excellent verbal and written communication skills, with a strong command of the English language.
  • Demonstrate the ability to work independently while also collaborating effectively as part of a team.
  • Quickly learn and retain routine tasks and processes.
  • Possess strong organizational skills, attention to detail, business correspondence proficiency, and self-management capabilities.
  • Perform the essential functions of the role satisfactorily; reasonable accommodation will be provided for employees with disabilities upon request.
  • Accept and adapt to additional responsibilities or changes to assigned duties as determined by DirectViz Solutions (DVS).

Similar Jobs

More Jobs at DirectViz Solutions, LLC

More Technical Services Jobs

Find similar Cybersecurity Assessment & Authorization (A&A) Subject Matter Expert (SME) jobs: