Cybersecurity Assessment & Authorization SME

Ariel Partners

Fairfax (VA)

On-site

USD 90,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Ariel Partners is seeking a Cybersecurity Assessment & Authorization SME in Fairfax, VA. This role involves guiding A&A processes, performing RMF assessments, and ensuring compliance with DoD cybersecurity policies.

Candidates must have an Active Secret Clearance and a Bachelor’s degree in a related field along with 5+ years of experience in cybersecurity. Strong communication and technical skills are essential for this position. Join a team committed to excellence as an Equal Opportunity Employer.

Qualifications

  • Must hold Active Secret Clearance.
  • Bachelor’s degree in Cybersecurity, Information Technology, or related field.
  • Minimum 5+ years of relevant experience in RMF and NIST assessments.

Responsibilities

  • Serve as primary A&A cybersecurity SME for Legacy AMPS systems.
  • Perform RMF assessments in accordance with NIST guidelines.
  • Assess and document security controls for complex IT systems.
  • Conduct Authorization Reviews and provide mitigation recommendations.

Skills

Active Secret Clearance
5+ years in RMF and NIST A&A assessments
DoD/Federal cybersecurity policies
Identity & Access Management (IAM) systems
Privileged Access Management (PAM) tools
Communication and presentation skills

Education

Bachelor’s degree in Cybersecurity or related field

Tools

Oracle Identity Manager
PAM tools (e.g., CyberArk)

Job description

Cybersecurity Assessment & Authorization SME

Serves as a Cybersecurity Subject Matter Expert (SME) with regards to Assessment and Authorization (A&A) of information systems and all associated cybersecurity policies and procedures. Performs a DOD cybersecurity process while either authorizing an information system or serving as a SME for an information system undergoing authorization. Possesses an understanding of how the security controls identified in the NIST 800-53 apply to the process of assessing and authorizing a large organization’s IT infrastructure such as DLA’s, in which there is a compilation of large and small enclaves, AIS applications and outsourced IT processes. Determines the applicable severity value for an identified vulnerability (e.g., non-compliant security control) and determines the possible ramifications on the system’s current or future authorization. Briefs senior management on the progress or results of an information system undergoing the Risk Management Framework (RMF) process.

RESPONSIBILITIES
  • Serve as the primary A&A cybersecurity SME, guiding assessment and authorization of Legacy AMPS systems.
  • Perform Risk Management Framework (RMF) assessments in accordance with NIST 800-53/800-37 guidelines.
  • Assess, evaluate, and document security controls for complex enterprise IT systems, including provisioning, SSO, and PAM environments.
  • Conduct Authorization Reviews for existing and new systems; determine impact of vulnerabilities and provide mitigation recommendations.
  • Coordinate with government stakeholders and PMO to ensure compliance with all applicable DoD cybersecurity policies, procedures, and regulations.
  • Prepare and deliver technical reports, briefing materials, and evidence for audit and security compliance reviews.
  • Monitor and maintain security posture of systems in development, test, and production environments, including Cloud and on-premises infrastructure.
  • Leverage AI/ML tools as appropriate to automate assessment tasks and identify potential security gaps.
  • Provide guidance on emerging cybersecurity technologies, cloud security, and identity governance within the DLA environment.
REQUIRED SKILLS & QUALIFICATIONS
  • Must hold Active Secret Clearance
  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or related field.
  • Minimum 5+ years of relevant experience in RMF and NIST A&A assessments.
  • Strong knowledge of DoD/Federal cybersecurity policies and regulations.
  • Experience with Identity & Access Management (IAM) systems, Oracle Identity Manager, and SSO solutions.
  • Familiarity with Privileged Access Management (PAM) tools (e.g., CyberArk).
  • Hands-on experience assessing cloud (OCI, FedRAMP IL5) and on-prem systems.
  • Knowledge of vulnerability assessment, patch management, and security compliance auditing.
  • Excellent communication, documentation, and presentation skills; ability to liaise with government personnel and PMO staff.
  • Certifications: DoD-approved 8570 Baseline Certification (IAM Level I); additional Cloud/Security Certifications preferred (e.g., CCSP, CCSK).

Ariel Partners is an Equal Opportunity Employer in accordance with federal, state, and local laws.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

CYBERSECURITY ASSESSMENT AND AUTHORIZATION SUBJECT MATTER EXPERT (SME)
CYBERSECURITY ASSESSMENT AND AUTHORIZATION SUBJECT MATTER EXPERT (SME)

Y-Tech, LLC. • Mobile (AL)

On-site
USD 90,000 - 130,000
Cybersecurity Assessment & Authorization SME
Cybersecurity Assessment & Authorization SME

ADEPT Force Group Incorporated • Alexandria (VA)

On-site
USD 110,000 - 125,000
Cybersecurity SME
Cybersecurity SME

Interactive Process Technology LLC • Fort Belvoir (VA)

On-site
USD 120,000 - 160,000
Cybersecurity SME
Cybersecurity SME

Prana Comunicación • Fort Belvoir (VA)

On-site
USD 110,000 - 170,000
Cybersecurity SME
Cybersecurity SME

IPTA • Fort Belvoir (VA)

On-site
USD 90,000 - 130,000
Cyber Security Subject Matter Expert
Cyber Security Subject Matter Expert

Nisga'a TEK, LLC • United States

On-site
USD 105,000 - 155,000
Remote RMF A&A SME for DoD Cybersecurity
Remote RMF A&A SME for DoD Cybersecurity

ADEPT Force Group Incorporated • Alexandria (VA)

On-site
USD 110,000 - 125,000
Cybersecurity RMF & A&A SME - DoD Security Lead
Cybersecurity RMF & A&A SME - DoD Security Lead

Interactive Process Technology LLC • Fort Belvoir (VA)

On-site
USD 120,000 - 160,000
Security Control Assessor (SCA) - Level II
Security Control Assessor (SCA) - Level II

Rividium • Washington

On-site
USD 150,000 - 190,000
Information Assurance / Security Specialist
Information Assurance / Security Specialist

Vinstuen Femmeren jazzværtshus • Bethesda (MD)

On-site
USD 120,000 - 170,000