9+ years in Assessment and Authorization (A&A) and information assurance processes
Bachelor’s degree required (Master’s preferred), with additional experience accepted
Hands-on skills for validating control implementations
Familiarity with current security risks and protocols
Willingness to work flexible hours as needed
DoD Approved 8140 Baseline Certifications (e.g., Security+)
Proficient in RMF and Xacta systems.
Responsibilities
Design and implement security measures and network monitoring
Support A&A processes and documentation for mission systems
Lead A&A activities following the Risk Management Framework (RMF)
Author and maintain System Security Plans (SSPs) in XACTA
Develop Security Controls Traceability Matrices and Security Test Plans
Analyze existing security systems and suggest improvements
Prepare reports and action plans in case of security breaches.
Benefits
Competitive salary
Flexible work schedule
100% health, dental, vision, and life insurance with FSA options
Long and short-term disability coverage
Generous paid vacation and holiday time
Safe Harbor 401(k) plan with 6% employer matching
Reimbursement for professional development
Company-paid memberships to professional organizations.
Full Job Description
Excelity is seeking a Software Developer for a project responsible for building the next generation Mission Integration System for an exciting Government customer with a very critical mission. The candidate will work with the engineering team and customer to ensure successful development of high profile, complex, technical deliverables that are core to the continued success of our award-winning projects.
Required Clearance: TS/SCI with CI Poly
Description:
Design and implement safety measures and controls. Monitor network activity to identify vulnerable points. Address privacy breaches and malware threats.
Support the Assessment and Authorization (A&A) processes and Information Assurance documentation for multiple analytic and mission systems across all CLINs
Generate and maintain the complete security Body of Evidence (BoE) while leading the A&A activities according to the Risk Management Framework (RMF) processes (ICD 503, CNSSI-1253, NIST 800-37, NIST 800-53, etc.) for all multiple information systems
Author, complete and maintain the System Security Plan (SSP) within XACTA
Develop the Security Controls Traceability Matrices (SCTM), and the Security Test Plan (STP) procedures within Xacta.
Analyze existing security systems and make recommendations for changes or improvements
Prepare reports and action plans if a security breach does occur
Monitor the network and provide early warning of abnormalities or problems
Communicate the system status and keep users informed of downtime or changes to the system
Experience working with software developers and architects to understand security requirements
Experience guiding the application developers on security policy, identifying security requirements, providing technical guidance for the satisfaction of requirements
Experience creating and managing the plan of action and milestones (POA&Ms), and working with project managers and engineers to develop schedules and engineering actions that mitigate open findings
Experience supporting the Continuous Monitoring of operational systems; experience monitoring and auditing operational systems for proper use
Log Review/Analysis using SIEM tools (Splunk, etc.)
9+ years supporting Assessment and Authorization (A&A) and information assurance processes and documentation using RMF, BS degree; 7 years of experience with a masters; an additional 4 years of experience required in lieu of a degree
Hands-on experience to validate control implementations and test procedures
Knowledge of current security risks and protocols
Willingness to work outside of standard hours if circumstances require
DoD Approved 8140 Baseline Certifications (eg, Security+) certifications
RMF, Xacta experience
Work 100% onsite in a secure environment
Desired Skills:
Experience working with AWS/Google cloud-hosted information systems or applications
Experience working with Containerized Systems or Applications
Experience working with Redhat or CentOS Linux operating systems
Experience working in a DevSecOps environment and tool chain
Benefits:
Competitive salary
Flexible work schedule
100% Health, Dental, Vision, and Life Insurance plans with Flexible Spending Account (FSA)
Long and Short-term disability coverage
Generous paid vacation and holiday time
Safe Harbor 401(k) Retirement Plan with 6% Employer matching contributions
Reimbursement for professional and training development
Company-paid memberships to professional organizations