Bachelor's Degree in a Cyber-related field (experience or certifications may substitute)
4-6 years of relevant cybersecurity experience, particularly with federal clients
Knowledge of federal cybersecurity governance frameworks (RMF, FedRAMP, NIST SP 800-53, SP 800-171)
Strong understanding of cybersecurity principles, threats, and vulnerabilities
Experience applying frameworks for enterprise-wide security compliance
Familiarity with a variety of cybersecurity defense tools and systems
Knowledge of access, architecture, and infrastructure related to authentication and authorization
Responsibilities
Execute all phases of cybersecurity and privacy control assessments
Support the development and review of key authorization artifacts
Assess and mitigate vulnerabilities across federal and commercial environments
Ensure compliance with federal cybersecurity governance frameworks
Develop security documentation including SSPs, SARs, and POA&Ms
Collaborate with stakeholders to enhance cybersecurity measures
Utilize technical systems and tools for effective cybersecurity defense
Benefits
Opportunities for professional development and certifications
Collaborative work environment
Exposure to federal cybersecurity projects
Potential for career advancement within the organization
Flexible work arrangements
Full Job Description
Responsibilities: Execute all phases of cyber security and privacy control assessment support
Required Qualifications:
Bachelors Degree in Cyber-related field (Direct experience or certifications may substitute for the academic credentials)
4-6 years of Relevant Cybersecurity Experience, including supporting federal clients
Demonstrated knowledge in the use of cyber legal, regulatory, and policy, specifically knowledge of federal cybersecurity governance frameworks, i.e., RMF, FedRAMP, and NIST Special Publications such as SP 800-53 and SP 800-171. Development and review of key authorization artifacts such as SSPs, SARs, POA&Ms
Demonstrated knowledge of cybersecurity principles, threats, and vulnerabilities, specifically strong knowledge of cybersecurity principles, i.e., confidentiality, integrity, availability, authentication, and risk management.
Demonstrated experience in the application of frameworks such as RMF, NIST SP 800-53, and FedRAMP to ensure enterprise-wide security compliance
Demonstrated experience of technical systems and tools in a wide range of cyber security defense tools and systems
Demonstrated experience of access, architecture, and infrastructure through applied knowledge of authentication, authorization, and access control methods
Demonstrated experience in business, operations, and risk management in particular risk management processes using frameworks such as RMF, NIST SP 800-53, and FedRAMP to assess and mitigate vulnerabilities across federal and commercial environments. Development of security documentation, including SSPs, SARs, and POA&Ms
Desired Qualifications: Proven experience supporting clients in the financial management sector Excellent communication and stakeholder management skills