Security Compliance SME

Johnson Technology Systems Inc

Reston (VA)

Hybrid

USD 129,000 - 134,000

Full time

41 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Johnson Technology Systems Inc. seeks a Security Compliance SME to attain ATO/ATO, manage eMASS entries, and oversee ACAS vulnerability scanning in a DISA IL5 enclave. You will craft SSP/ACP/PoAM artifacts and coordinate with 3PAO for FedRAMP changes.

Required 5+ years leading FedRAMP or FISMA Moderate authorizations, with strong technical writing, risk assessment, and incident response coordination. Remote-friendly with local to Herndon, VA preferred, onsite 4 days if local.

Qualifications

  • 5+ yrs leading A&A for a FedRAMP or FISMA Moderate system through authorization and continuous monitoring.
  • Demonstrated ownership of a FedRAMP significant change request, including direct 3PAO coordination (SAP scoping, evidence packages, test support, SAR adjudication).
  • Expert authorship of SSP control implementation statements against the NIST SP 800-53 Rev 5 Moderate baseline.
  • Security impact analysis, change type determination, and risk-based recommendations to an AO.
  • POA&M management, deviation requests, and monthly ConMon reporting.

Responsibilities

  • Attain an Authority to Connect and an Authority to Operate in a DISA IL5 security enclave; manage eMASS entries and profile.
  • Oversee ACAS platform and run daily vulnerability scans.
  • Assist in developing SSP, System Security Plan, System Assessment Plan, and related artifacts; support PoAM and contingency planning.

Skills

FedRAMP A&A
3PAO coordination
SSP control statements
Vulnerability management
Configuration management
AO risk guidance
ConMon reporting
UiPath knowledge

Tools

eMASS
ACAS
UiPath

Job description

\"WE DO WHAT WE SAY\"

JTSi is a federal government consulting firm, providing technical services to the Federal Government, i.e., DoD, Client and various Civilian Agencies. We are proud to have earned the reputation of honesty, integrity and the ability to build long-term professional relationships with our employees and clients. Please visit our website at www.JTSUSA.com to learn more about who we are and what we do.


\"WE DO WHAT WE SAY\"

JTSi is a federal government consulting firm, providing technical services to the Federal Government, i.e., DoD, Client and various Civilian Agencies. We are proud to have earned the reputation of honesty, integrity and the ability to build long-term professional relationships with our employees and clients. Please visit our website at www.JTSUSA.com to learn more about who we are and what we do.


Company Name: - JTSi (Johnson Technology Systems, Inc.)

Title: Security Compliance SME

Location: Remote - Local to Herndon, VA preferred but will accept remote candidates. If local to Herndon, resource must be onsite 4 days per week.

Salary : $129K - $134K

Title: Security Compliance SME

As a Security Compliance SME, you are responsible for attaining an Authority to Connect and an Authority to Operate in a DISA Impact Level 5 security enclave. Duties include eMASS entrees and management of the eMASS profile. You will also manage the ACAS platform and run daily vulnerability scans. You will assist in the development of the System Security Plan, System Assessment Plan, Security Assessment Plan, Plan of Action & Milestones, Contingency Plan, Incident Response Plan, Configuration Management Plan, and System and Communications Protection artifacts.


Required Skills


  • 5+ yrs leading A&A for a FedRAMP or FISMA Moderate system through authorization and continuous monitoring.

  • Demonstrated ownership of a FedRAMP significant change request, including direct 3PAO coordination (SAP scoping, evidence packages, test support, SAR adjudication).

  • Expert authorship of SSP control implementation statements against the NIST SP 800-53 Rev 5 Moderate baseline.

  • Security impact analysis, change type determination, and risk-based recommendations to an AO.

  • POA&M management, deviation requests, and monthly ConMon reporting.

  • Working knowledge of UiPath sufficient to describe bot behavior, credentials, and data flows in control terms.

  • Technical writing for AOs and assessors.


Other Required Skill Requirement

Microsoft Excel, Excellent verbal and written communication skills, Microsoft Word


We recruit, employ, train, compensate and promote without regard to race, religion, color, citizenship, national origin, age, sex, gender, gender identity/expression, sexual orientation, marital status, disability, genetic information, veteran status or any other characteristic protected by federal, state, or local law.


Disclaimer:

Nothing in this job description/posting shall constitute an offer or promise of employment. If you are not reviewing this job posting on our Careers' site http://jtsusa.com/careers or one of our approved job boards we cannot guarantee the validity of this posting. For a list of our current postings, please visit us at http://jtsusa.com/careers

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer
Security Engineer

Johnson Technology Systems Inc • Reston (VA)

Hybrid
USD 129,000 - 134,000
Security Compliance Lead - Federal A&A (Remote)
Security Compliance Lead - Federal A&A (Remote)

Johnson Technology Systems Inc • Reston (VA)

Hybrid
USD 129,000 - 134,000
Security Compliance SME
Security Compliance SME

NewGen Technologies • Herndon (VA)

On-site
USD 120,000 - 190,000
Cybersecurity Analyst, RMF & ATO
Cybersecurity Analyst, RMF & ATO

JBS International • North Bethesda (MD)

Hybrid
USD 90,000 - 130,000
Cybersecurity Analyst, RMF & ATO
Cybersecurity Analyst, RMF & ATO

JBS International • Virginia Beach (VA)

Hybrid
USD 90,000 - 140,000
Information System Security Manager (req-294)
Information System Security Manager (req-294)

CATHEXIS • Tysons (VA)

On-site
USD 150,000 - 195,000
Performance Bonuses
Medical Insurance
Dental Insurance
+2
Cybersecurity Analyst, RMF & ATO
Cybersecurity Analyst, RMF & ATO

JBS International • Hayward Park (CA)

Hybrid
USD 120,000 - 150,000
Information Systems Security Engineer (ISSE)
Information Systems Security Engineer (ISSE)

D2 Consulting • Arnold (MO)

On-site
USD 120,000 - 130,000
Health/Dental/Vision
401(k) match
Accrued PTO
+3
Cybersecurity Analyst, RMF & ATO
Cybersecurity Analyst, RMF & ATO

JBS International • Los Angeles (CA)

Hybrid
USD 90,000 - 150,000
Information System Security Manager (req-294)
Information System Security Manager (req-294)

Cathexisfederal • Tysons (VA), Northern (KY)

Hybrid
USD 150,000 - 195,000
Performance Bonuses
Medical Insurance
Dental Insurance
+11