View all jobs
RMF Information Assurance Team Lead -
Information Assurance (IA) Team Lead to support the U.S. Coast Guard
Lead cybersecurity engineering and Risk Management Framework (RMF) activities supporting Authorization to Operate (ATO) efforts for complex shipboard operational technology (OT), industrial control systems (ICS), and enterprise information systems.
The successful candidate will provide technical and managerial leadership throughout the Assessment & Authorization (A&A) lifecycle while ensuring compliance with Department of Defense and U.S. Coast Guard cybersecurity requirements.
Responsibilities
Required Qualifications
Required Certification : One of the Following.
Lead cybersecurity engineering and Risk Management Framework (RMF) activities supporting Authorization to Operate (ATO) efforts for complex shipboard operational technology (OT), industrial control systems (ICS), and enterprise information systems.
The successful candidate will provide technical and managerial leadership throughout the Assessment & Authorization (A&A) lifecycle while ensuring compliance with Department of Defense and U.S. Coast Guard cybersecurity requirements.
Responsibilities
- Lead RMF implementation activities from system categorization through ATO authorization.
- Oversee RMF cybersecurity engineers and Information System Security Officers (ISSO)
- Manage Assessment & Authorization (A&A) packages and supporting artifacts in a very fast paced environment
- Develop and review System Security Plans (SSPs), Security Assessment Reports (SARs), Plans of Action and Milestones (POA&Ms), Security Control Traceability Matrices (SCTMs), and other relevant RMF documentation.
- Provide cybersecurity engineering guidance during system design and implementation.
- Coordinate with government stakeholders, system owners, engineers, and security assessors.
- Lead security control implementation and validation efforts.
- Review architecture designs to ensure compliance with DoD, DHS, and USCG cybersecurity requirements.
- Support vulnerability remediation and continuous monitoring activities.
- Lead cybersecurity team members and oversee technical quality of deliverables.
- Possess managerial and leadership responsibility and accountability for on-time and within cost of required deliverables
- Support security reviews, audits, and technical meetings.
Required Qualifications
- Bachelor's degree in Cybersecurity, Information Technology, Engineering, Computer Science, or related field (or equivalent experience).
- Minimum experience of 8 years supporting RMF, Assessment & Authorization (A&A), and cybersecurity engineering.
- Strong experience supporting shipboard Operational Technology (OT) and Industrial Control Systems (ICS) in maritime environments particularly Coast Guard
- Extensive experience with NIST SP 800-53 Revision 5, and federal cybersecurity standards including:
- NIST SP 800-82, NIST SP 800-172 and NIST SP 800-171
- DoDI 8510.01 (RMF) and DoDI 8500.01
- DHS 4300A and relevant USCG cybersecurity guidance
- Identification of Applicable DOD STIGs/SRGs, and IAVM Support
- DoDI 8551.01 – PPSM
- COMDTINST 5500.13I – Cybersecurity policies for the Coast Guard including guidance and requirements for CG Systems and technologies below the system level in alignment with the Department of Defense (DoD) Risk Management Framework (RMF) and the references.
- Experience leading ATO implementations within eMASS or similar governance tools.
- Strong understanding of cybersecurity architecture and secure system design.
- Excellent written and verbal communication skills.
- US Citizenship
Required Certification : One of the Following.
- DoD 8140 Series 802 advance certification
- CISSP
- CISA
- CCSP
- CISSP- ISSEP
- CISSP- ISSMP
- CISM
- Alternates (RCCE Level 1 and CCISO)