Security Compliance SME

Johnson Technology Systems, Inc.

$129K — $134K *
Aerospace & Defense
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years leading A&A for a FedRAMP or FISMA Moderate system.
  • Proven experience managing FedRAMP significant change requests with 3PAO coordination.
  • Expertise in crafting SSP control implementation statements per NIST SP 800-53 Rev 5.
  • Skilled in performing security impact analysis and making risk recommendations.
  • Experience with POA&M management and monthly ConMon reporting.
  • Familiarity with UiPath for describing bot operations in control terms.
  • Strong technical writing abilities for Communication with AOs and assessors.

Responsibilities

  • Manage the authorization process to connect and operate in a DISA Impact Level 5 environment.
  • Oversee eMASS entries and maintain the eMASS profile.
  • Utilize the ACAS platform to conduct daily vulnerability scans.
  • Assist in the development of various compliance plans and system protection artifacts.
  • Conduct security assessments and incident response planning.
  • Prepare and manage POA&M and monitor for deviations.
  • Ensure compliance with configuration management standards.

Benefits

  • Remote work flexibility, with a preference for local candidates.
  • Opportunity to lead crucial compliance projects in a prominent security framework.
Full Job Description
Company Name: - JTSi (Johnson Technology Systems, Inc.)
Title: Security Compliance SME
Location: Remote - Local to Herndon, VA preferred but will accept remote candidates. If local to Herndon, resource must be onsite 4 days per week.
Salary : $129K - $134K


Title: Security Compliance SME

As a Security Compliance SME, you are responsible for attaining an Authority to Connect and an Authority to Operate in a DISA Impact Level 5 security enclave. Duties include eMASS entrees and management of the eMASS profile. You will also manage the ACAS platform and run daily vulnerability scans. You will assist in the development of the System Security Plan, System Assessment Plan, Security Assessment Plan, Plan of Action & Milestones, Contingency Plan, Incident Response Plan, Configuration Management Plan, and System and Communications Protection artifacts.

Required Skills
• 5+ yrs leading A&A for a FedRAMP or FISMA Moderate system through authorization and continuous monitoring.
• Demonstrated ownership of a FedRAMP significant change request, including direct 3PAO coordination (SAP scoping, evidence packages, test support, SAR adjudication).
• Expert authorship of SSP control implementation statements against the NIST SP 800-53 Rev 5 Moderate baseline.
• Security impact analysis, change type determination, and risk-based recommendations to an AO.
• POA&M management, deviation requests, and monthly ConMon reporting.
• Working knowledge of UiPath sufficient to describe bot behavior, credentials, and data flows in control terms.
• Technical writing for AOs and assessors.

Other Required Skill Requirement
Microsoft Excel, Excellent verbal and written communication skills, Microsoft Word

Similar Jobs

More Jobs at Johnson Technology Systems, Inc.

More Aerospace & Defense Jobs

Find similar Security Compliance SME jobs: