Assessment and Authorization Specialist III - Remote Washington, DC Posted today

NANA Regional Corporation

Washington (District of Columbia)

Hybrid

USD 150,000 - 160,000

Full time

25 hours ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Medical, dental, vision
PTO (paid time off)

Job summary

Akima Mission Optimization (AMO) is seeking an A&A Specialist III (Mid-Level) to oversee comprehensive security and privacy control assessments across cloud and on-prem environments. You will drive findings, remediate controls, and prepare formal reports for leadership and audits.

Ideal candidates bring 5–7 years of federal security assessment experience, NIST SP 800-53 expertise, and the ability to work independently with SOCs and TPOCs.

Qualifications

  • Five or more years conducting security control assessments or similar technical security work.
  • Experience with Security Assessment Teams (SAT) and Security Control Assessors (SCA).
  • Strong understanding of NIST 800-53, NIST CSF, and related privacy laws.
  • Experience aligning assessments with federal cybersecurity frameworks (NIST RMF).
  • Ability to analyze technical documentation and communicate findings clearly.

Responsibilities

  • Oversee and lead assessments of security and privacy controls to determine effectiveness.
  • Document deficiencies and recommend corrective actions to mitigate vulnerabilities.
  • Prepare detailed assessment reports for leadership review and decision-making.
  • Oversee assessments in cloud and on-prem environments; manage ARW, SAP, SARs, and risk assessments.
  • Review findings packages and support remediation planning and oversight.
  • Coordinate data calls for internal and external audits (FISMA, etc.).

Skills

Security control assessments
Cybersecurity evaluations
NIST SP 800-53 knowledge
NIST RMF familiarity
Documentation & reporting
Continuous monitoring understanding
Independent and collaborative work
DOE background investigation readiness
DOE Q clearance readiness

Education

Bachelor’s Degree or four years of equivalent professional experience

Job description

The Office of the Chief Information Officer (OCIO) advances the Department of Energy’s (DOE) mission by establishing and implementing policies, standards, and services that meet mission requirements, balance risk and innovation, and define clear performance expectations across the enterprise information ecosystem. The OCIO is committed to continuously improving information technology (IT) services and strengthening the Department’s cybersecurity posture to enable mission execution while ensuring responsible stewardship of taxpayer dollars through efficient, effective, and innovative management practices.

The A&A Specialist III (Mid-Level) supports this mission by overseeing and conducting comprehensive assessments of security and privacy controls, identifying risks, and recommending corrective actions to ensure DOE systems meet all required cybersecurity and privacy standards. This position also oversees and responds to system- and security-related data calls, research, and analysis as requested from DOE.

Responsibilities
  • Oversee and lead comprehensive assessments of implemented security and privacy controls and control enhancements to determine effectiveness, including whether controls are implemented correctly, operating as intended, and producing desired outcomes.

  • Lead the evaluation and documentation of the severity of deficiencies identified during assessments and provide proper oversight and guidance in recommending appropriate corrective actions to mitigate vulnerabilities.

  • Lead preparation of detailed security and privacy assessment reports outlining results, findings, and recommendations, and deliver these to Team Leaders for review and decision-making.

  • Oversee the assessment of controls in accordance with assessment procedures defined in approved assessment plans.

  • Oversee and conduct initial remediation actions on deficient controls and perform reassessments on remediated controls to validate effectiveness.

  • Assess both system-specific and inherited controls as part of the Department’s continuous monitoring strategy.

  • Apply comprehensive knowledge to multiple complex assignments and contribute to deliverables and performance metrics as required.

Assessment and Authorization Duties:
  • Oversee assessments of existing and new NIST and FISMA systems, including subsystems within respective system boundaries, communicate results, articulate potential implications of identified control weaknesses, and work to document through artifacts and documentation.

  • Lead and oversee assessments within Cloud environments such as SaaS, PaaS, and IaaS, and systems and platforms within an on-prem environment.

  • Lead and oversee the review, analysis, and creation of Assessment & Authorization (A&A) packages to include Assessment Readiness Workbooks (ARW), Security Assessment Plans (SAP), Security Assessment Reports (SARs), and Risk Assessments for completeness, accuracy, and effectiveness of controls.

  • Lead and oversee the review, analysis, and creation of findings packages outlining identified findings, weaknesses, remediation, and provide an overview during findings meeting reviews.

  • Oversee the review of significant system change requests, deviation requests, and provide oversight and leadership on potential system or system security impacts.

  • Review and analyze vulnerability scan reports, test reports, and Plan of Action & Milestones (POA&Ms), Hardware/Software lists, Network Diagrams, Data Flows, System Change Requests/Proposal, for completeness, accuracy, effectiveness of controls, and plans and procedures implementation.

  • Review identified and documented findings and provide oversight, leadership, and recommendations to support documentation, rationalization, and subsequent remediation efforts.

  • Oversee and lead security-and system-related data calls for internal and external audits such as FISMA and data calls as requested.

Qualifications
  • Bachelor’s Degree or four (4) years of equivalent professional experience.

  • Minimum of 5–7 years of relevant experience conducting security control assessments, cybersecurity evaluations, or similar technical security work.

  • Experience overseeing and participating in assessments and working with Security Assessment Teams (SAT), Security Control Assessors (SCA), Information System Security Officers (ISSO), Technical Points of Contact (TPOC), System Owners, and Assessment Coordinators.

  • Possesses a strong understanding of the NIST Special Publication 800‑53 security and privacy controls, the NIST Cybersecurity Framework, and other information security and privacy laws and regulations.

  • Demonstrated oversight experience assessing security and privacy controls aligned with federal cybersecurity frameworks (e.g., NIST RMF, NIST SP 800‑53).

  • Ability to analyze technical documentation, identify security gaps, and communicate findings clearly in written reports.

  • Strong understanding of continuous monitoring processes and system inheritance concepts.

  • Ability to work independently and collaboratively on complex assignments requiring sound judgment and comprehensive technical knowledge.

  • Ability to complete a DOE background investigation and obtain federal government clearance for access to federal systems.

  • Ability to obtain DOE Q clearance.

Job ID

2026-25981

Work Type

Remote

Pay Range

$150,000 - $160,000

Benefits
  • Regular - The company offers a comprehensive benefits program, including medical, dental, vision, life insurance, 401(k) and a range of other voluntary benefits. Paid Time Off (PTO) is offered to regular full-time and part-time employees.
Company Description
Work Where it Matters

Akima Mission Optimization (AMO), an Akima company, is not just another federal logistics contractor. As an Alaska Native Corporation (ANC), our mission and purpose extend beyond our exciting federal projects as we support our shareholder communities in Alaska.

At AMO, the work you do every day makes a difference in the lives of our 15,000 Iñupiat shareholders, a group of Alaska natives from one of the most remote and harshest environments in the United States.

For our shareholders

, AMO provides support and employment opportunities and contributes to the survival of a culture that has thrived above the Arctic Circle for more than 10,000 years.

For our government customers

, AMO delivers innovative administrative support services that streamline operations, and enhance productivity.

As an AMO employee

, you will be surrounded by a challenging, yet supportive work environment that is committed to innovation and diversity, two of our most important values. You will also have access to our comprehensive benefits and competitive pay in addition to growth opportunities and excellent retirement options.

We are an equal opportunity employer and comply with all applicable federal, state, and local fair employment practices laws. All applicants will receive consideration for employment, without regard to race, color, religion, creed, national origin, gender or gender-identity, age, marital status, sexual orientation, veteran status, disability, pregnancy or parental status, or any other basis prohibited by law. If you are an individual with a disability, or have known limitations related to pregnancy, childbirth, or related medical conditions, and would like to request a reasonable accommodation for any part of the employment process, please contact us at job-assist@akima.com or 571-353-7053 (information about job applications status is not available at this contact information).

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Security Analyst III - Remote Washington, DC Posted today
Cyber Security Analyst III - Remote Washington, DC Posted today

NANA Regional Corporation • Washington

Hybrid
USD 130,000 - 150,000
Medical Insurance
401(k) Plan
Paid Time Off
Assessment and Authorization Specialist III - Remote
Assessment and Authorization Specialist III - Remote

Akima • Washington

Hybrid
USD 150,000 - 160,000
Medical, dental, vision coverage
401(k) retirement plan
Paid Time Off (PTO)
Cyber Security Analyst III - Remote
Cyber Security Analyst III - Remote

Akima • Washington

Hybrid
USD 130,000 - 150,000
Medical insurance
Dental insurance
Vision insurance
+2
Cybersecurity SME Rockville, MD Posted today
Cybersecurity SME Rockville, MD Posted today

NANA Regional Corporation • Rockville (MD), Northern (KY)

On-site
USD 140,000 - 185,000
Medical, dental, vision
Paid Time Off (PTO)
Cybersecurity SME
Cybersecurity SME

Akima • Rockville (MD), Northern (KY)

On-site
USD 140,000 - 185,000
Medical insurance
Dental insurance
Vision insurance
+3
Cybersecurity Subject Matter Expert (SME)
Cybersecurity Subject Matter Expert (SME)

Akima • Washington

Hybrid
USD 160,000 - 170,000
Comprehensive benefits
Paid Time Off (PTO)
Administrative Assistant
Administrative Assistant

Akima • Virginia (MN)

Hybrid
USD 37,000 - 50,000
SCA benefits
Senior Cloud Security Architect Alexandria, VA Posted today
Senior Cloud Security Architect Alexandria, VA Posted today

NANA Regional Corporation • Alexandria (VA)

On-site
USD 220,000 - 235,000
Medical insurance
401(k)
PTO
Administrative Assistant (Hybrid)
Administrative Assistant (Hybrid)

Akima • Dahlgren (VA)

Hybrid
USD 33,000 - 44,000
Medical benefits
Dental benefits
Vision benefits
+3
Shipping and Receiving
Shipping and Receiving

Akima, LLC • Dahlgren (VA)

On-site
USD 50,000 - 55,000
Medical insurance
Dental insurance
Vision insurance
+2