Information Assurance Cybersecurity Subject Matter Expert

Goldbelt, Inc.$90K — $110K *
US-AnywhereRemote in United States
Aerospace & Defense
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years of experience with DoW RMF lifecycle implementation
  • Bachelor's degree in cybersecurity management or computer science
  • Security+ certification
  • Proficient with eMASS system functionality
  • Experience with DISA STIGs implementation
  • Strong written and oral communication skills
  • Ability to work independently in a remote environment

Responsibilities

  • Perform ISSO duties to safeguard information systems
  • Initiate and update ATOs and risk assessments
  • Complete tasks in the eMASS system for accreditation support
  • Implement DISA STIG security measures
  • Develop security solutions for system architecture requirements
  • Create and maintain IA and ATO documentation
  • Conduct vulnerability risk analyses throughout system development

Benefits

  • Medical, dental, and vision insurance
  • 401(k) plan with company matching
  • Tax-deferred savings options
  • Paid time off
  • Professional development opportunities
Full Job Description
Summary:

The DHA Hearing Center of Excellence (HCE) is currently seeking an experienced Information Assurance (IA) Cybersecurity Subject Matter Expert (SME) to support the Department of War (DoW) HCE Enterprise Audiology Programs and Data Solutions branch to assist in leading cyber security efforts for existing and potential future audiology applications and systems in accordance with DoDI 8510.01 Risk Management Framework (RMF), National Institute of Standards and Technology (NIST) Special Publication 800-53 (Revision 5) cyber security compliance requirements outlined within the Defense Health Agency (DHA) RMF.  The IA SME will devise solutions that integrate information security requirements to proactively manage information protection throughout an application and our system's lifecycle.

Responsibilities

Essential Job Functions:

  • Perform Information System Security Officer (ISSO) duties supporting information assurance, cybersecurity, and the application of the information technology security principles, methods, and security products to protect and maintain the availability, integrity, confidentiality, and accountability of information systems.
  • Initiate, obtain, and update the Authority to Operate (ATOs), risk assessments for application/system, complete the continuous monitoring strategy tasks, and annual self-assessments.
  • Complete required tasks within Enterprise Mission Assurance Support Service (eMASS) (asset manager, artifacts, control correlation identifiers (CCIs) responses, Plan of Action and Milestone (POA&M) creation, Ports, Protocols, and Service Management (PPSM) and any other RMF activities supporting accreditation).
  • Implement DoW Defense Information Systems Agency (DISA) Security Technical Implementation Guides (STIG).
  • Perform analysis, design, and development of security solutions and plans for system architecture requirements.
  • Create and maintain IA and ATO related artifacts and documentation.
  • Request Assured Compliance Assessment Solution (ACAS) scans from Data Center Operations (DCOPS) Cyber Security team.
  • Respond to DCOPS Cyber Security requests for ACAS credential validation.
  • Evaluate and coordinate security program requirements; recommend information assurance/security solutions; and identify, report, and mitigate security violations.
  • Conduct vulnerability risk analyses and assessments of applications and peripheral devices during all phases of the system development life cycle.
  • Develop and implement information assurance/security standards and procedures in accordance with NIST publications.
  • Support the medical devices risk assessment and standardization initiative to ensure the audiology community is utilizing commonly used enterprise-wide components to minimize non-compatibility or incident issues when capturing audiometric testing results.
  • Act as a coordinator with costs related to the accreditation including independent audits/Independent Verification and Validation (IV&V).
  • Develop all systems documentation including Privacy Threshold Analysis (PTA)/Privacy Impact Assessment (PIA), Federal Information Processing Standards (FIPS) 199, Standard Operational Procedures, Business Impact Assessment, and all supporting documents and artifacts.
Qualifications

Necessary Skills and Knowledge:

  • Proficient in the application and functionality of the eMASS system.
  • Experience in conducting manual and technical techniques for mitigation of vulnerabilities or requirements.
  • Experience in implementing DISA STIGs, including the ability to find the guidance and tools available for the security measures to be taken for a particular system, application, or environment after assessing standards for implementation and compliance.
  • Prior experience in completing the RMF ATO process (created artifacts, examined CCIs, and compose POA&M records).
  • Strong written and oral communication skills.
  • Work independently in a remote environment.

 Minimum Qualifications:

  • Must possess 5-7 years’ experience with implementation of the DoW RMF lifecycle.
  • Bachelor’s degree in cyber security management and computer science.
  • Certifications: Security+

Preferred Qualification:

  • Certified Information Systems Security Professional (CISSP)
  • Master’s degree in a related field
  • Secret Security Clearance

 

Pay and Benefits

The salary range for this position is $90,000.00 to $110,000.00 annually.

 

At Goldbelt, we value and reward our team's dedication and hard work. We provide a competitive base salary commensurate with your qualifications and experience. As an employee, you'll enjoy a comprehensive benefits package, including medical, dental, and vision insurance, a 401(k) plan with company matching, tax-deferred savings options, supplementary benefits, paid time off, and professional development opportunities.

About Goldbelt, Inc.

Goldbelt, Inc. Careers

Joining Goldbelt, Inc. presents a prime opportunity to be part of a team that values innovation, leadership, and diversity. As a recognized leader in providing innovative solutions, Goldbelt, Inc. offers a variety of job opportunities that cater to professionals seeking growth and development in their careers.

Explore Career Opportunities

Goldbelt, Inc. is actively hiring and offers a range of positions that suit different skills and career aspirations. From internships that provide real-world experience to full-time positions that challenge and expand professional capabilities, Goldbelt, Inc. ensures that every team member can find a path that suits their career goals.

Professional Growth and Development

Goldbelt, Inc. is committed to the professional growth of its employees. With comprehensive training programs and leadership development opportunities, employees are equipped to take on leadership roles within the company. The emphasis on continuous learning and development ensures that every employee has the tools needed to succeed and innovate within their field.

Diversity and Inclusion

At Goldbelt, Inc., diversity is more than just a buzzword. The company fosters an inclusive culture where diverse perspectives are valued and contribute to the company's success. Diversity training programs are integral, ensuring that all team members understand and appreciate the strength that lies in differences.

Benefits and Culture

The benefits at Goldbelt, Inc. go beyond standard employment perks. Employees enjoy a supportive culture that promotes work-life balance, alongside benefits that cater to both personal and professional needs. This supportive environment ensures that employees feel valued and motivated to contribute their best work.

Networking and Career Advancement

Goldbelt, Inc. encourages networking within the industry, providing employees with numerous opportunities to connect with peers and leaders who can influence their career trajectory. These connections are vital for professional development and can lead to new opportunities within the company.

Applying for a Position

To apply for a position at Goldbelt, Inc., candidates are encouraged to submit a resume that highlights relevant experience and skills. The interview process is designed to assess not only professional qualifications but also a candidate's fit within the company culture and their potential to contribute to the team’s success.

Stay Connected with Goldbelt, Inc. Careers

Interested candidates can stay updated on new job opportunities and company news by subscribing to job alert emails. This personalized subscription keeps potential applicants informed about positions that match their skills and career interests.

Join Goldbelt, Inc.

Explore the career opportunities at Goldbelt, Inc. and discover how joining this team can enhance professional skills, foster personal growth, and provide a rewarding career path in a dynamic and supportive environment.

SEARCH GOLDBELT JOBS

READ CAREERS BLOG

Learn more about Goldbelt, Inc.

Similar Jobs

More Jobs at Goldbelt, Inc.

More Aerospace & Defense Jobs

Find similar Information Assurance Cybersecurity Subject Matter Expert jobs: