- Company Name
- TekSynap
- Job Title
- Cybersecurity Assessment and Authorization Subject Matter Expert (SME) w/Top Secret Clearance
- Job Description
-
Job Title: Cybersecurity Assessment & Authorization Subject Matter Expert (SME) – Top Secret
Role Summary:
Lead and execute Risk Management Framework (RMF) and NIST Assessment & Authorization (A&A) activities for DoD information systems, ensuring compliance with DoD cybersecurity policies. Provide expert guidance on security control assessments, vulnerability analysis, and authorization package development across complex enterprise, cloud, and OT environments.
Expectations:
- Maintain Top Secret – IT-I critical clearance.
- Demonstrated 5+ years of RMF/NIST A&A experience in DoD or similar federal contexts.
- Expertise in evaluating NIST SP 800‑53 controls, DoD cybersecurity requirements, and emerging technologies (cloud, ICs, OT, warehouse execution).
- Strong analytical, communication, and stakeholder‑management skills.
- Ability to travel <10% and work required shifts.
Key Responsibilities:
1. Conduct comprehensive security control assessments and evaluate compliance with NIST SP 800‑53 and DoD requirements.
2. Analyze vulnerabilities, assign severity levels, and assess impact on system authorization status.
3. Develop, review, and validate authorization packages ensuring completeness and adherence to DoD policy.
4. Serve as SME for A&A processes, providing technical guidance to system owners, cybersecurity teams, and government representatives.
5. Evaluate cybersecurity posture across multi‑enclave IT infrastructures, including cloud, ICs, OT, and warehouse execution systems.
6. Brief senior management and stakeholders on RMF progress, risk posture, and authorization status.
7. Ensure documentation, procedures, and processes align with DoD policies and enterprise security standards.
Required Skills:
- Advanced knowledge of RMF, NIST SP 800‑53, and DoD cybersecurity policies.
- Proficiency in assessing security controls in cloud, IC, OT, and industrial environments.
- Strong analytical, problem‑solving, and risk‑management capabilities.
- Excellent written and verbal communication; experience briefing senior stakeholders.
- Collaborative approach with cross‑functional teams and government entities.
- Ability to interpret and apply complex cybersecurity requirements to large, complex enterprise environments.
Required Education & Certifications:
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field.
- CSSP Analyst Certification (or equivalent).
- Active Top Secret – IT-I critical clearance, Tier 5 investigation.