Senior Information Assurance Engineer

Expression Networks

Fort Meade (MD)

On-site

USD 110,000 - 155,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

401k matching
Medical/dental/vision insurance
Education reimbursement
Life insurance
PTO and holidays
Onsite gym access
Commuter Benefits Plan

Job summary

Expression Networks is seeking an experienced Senior Information Assurance Engineer to lead RMF activities for the JPES/JCRM Sustainment programs at DISA Global Force Management. You will guide cybersecurity efforts across classified and unclassified environments, manage RMF documentation in eMASS, and collaborate with government ISSMs, SCAs, engineers, and DevSecOps teams.

The role requires a Secret clearance, strong DoD/RMF expertise, and proven ability to coordinate remediation across

Qualifications

  • Bachelor's degree or equivalent with four years of additional experience.
  • Minimum 4 years of IA/Cybersecurity/RMF experience in DoD or Federal environments.
  • DoD 8570/8140-level certs (Security+, CISSP, CAP, CASP+ or equivalent).
  • Experience implementing RMF per NIST SP 800-37/800-53 and maintaining RMF docs in eMASS.
  • Experience performing vulnerability assessments, STIG reviews, POA&Ms, and continuous monitoring.
  • Experience supporting ATO packages and cybersecurity accreditation.

Responsibilities

  • Lead RMF activities across DoD systems per DoD/DISA guidance.
  • Maintain cybersecurity docs and authorization artifacts in eMASS.
  • Prepare POA&Ms, security plans, and ARs; coordinate remediation with teams.
  • Perform security control assessments and continuous monitoring.
  • Collaborate with DevSecOps, cloud, and system admins to embed security requirements.
  • Evaluate impacts of releases, patches, and changes for security.
  • Support DoD cybersecurity reviews and government stakeholder engagement.

Skills

RMF knowledge
eMASS
NIST RMF
Documentation
Vulnerability assessments
DoD cybersecurity

Education

Bachelor's degree in IT/CS/Cybersecurity

Tools

eMASS
DISA STIGs
ACAS
HBSS/ESS
Azure IL6

Job description

Expression is looking for an experienced Senior Information Assurance (IA) Engineer to lead cybersecurity and Risk Management Framework (RMF) activities supporting the Defense Information Systems Agency (DISA) Global Force Management (GFM) Program Management Office (PMO) for the Joint Planning and Execution Services (JPES) and Joint Capabilities Requirements Manager (JCRM) Sustainment Program.

The Senior Information Assurance Engineer serves as the cybersecurity lead for the program, ensuring the confidentiality, integrity, availability, and compliance of mission-critical systems operating in classified and unclassified environments. This position provides technical leadership for RMF implementation, security compliance, vulnerability management, continuous monitoring, and cybersecurity documentation while partnering closely with Government Information System Security Managers (ISSMs), Security Control Assessors (SCAs), system engineers, and DevSecOps teams.

Clearance: Secret Clearance required

Location: DISA Headquarters, 6910 Cooper Ave, Fort Meade, MD

Job Responsibilities
  • Lead execution of the DoD Risk Management Framework (RMF) throughout the system lifecycle in accordance with DoD, DISA, and NIST guidance.
  • Maintain and update cybersecurity documentation, security controls, and authorization artifacts within eMASS to support Authority to Operate (ATO) requirements.
  • Develop and maintain cybersecurity documentation, including Self-Assessment Plans, Self-Assessment Reports, Plans of Action and Milestones (POA&Ms), and other required RMF deliverables.
  • Conduct security control assessments, vulnerability assessments, STIG compliance reviews, and continuous monitoring activities to ensure ongoing system compliance.
  • Create, manage, and track POA&Ms, recommend risk mitigation strategies, and coordinate remediation efforts with engineering and system administration teams.
  • Support implementation of security controls aligned with NIST SP 800-37, NIST SP 800-53, DoD RMF, DISA STIGs, and applicable cybersecurity policies.
  • Collaborate with software development, DevSecOps, cloud infrastructure, and system administration teams to integrate cybersecurity requirements throughout the software development lifecycle.
  • Evaluate security impacts of software releases, infrastructure changes, patches, and technology refresh activities to ensure continued compliance.
  • Monitor emerging cybersecurity vulnerabilities, DoD taskings, and security advisories, providing recommendations to maintain secure system operations.
  • Support Government cybersecurity reviews, security inspections, audits, and authorization activities while serving as the primary cybersecurity interface with Government stakeholders.
  • Provide technical guidance on secure system architecture, vulnerability remediation, configuration management, and continuous improvement of cybersecurity processes.
  • Ensure compliance with classified network security requirements supporting NIPRNet, SIPRNet, and Microsoft Azure IL6 environments.
Required Qualifications
  • Bachelor's degree in Information Technology, Computer Science, Cybersecurity, Information Assurance, or a related technical discipline. Four additional years of relevant experience may substitute for the degree.
  • Minimum 4 years of experience supporting Information Assurance, Cybersecurity, or Risk Management Framework (RMF) activities within Federal Government or DoD environments.
  • Security+, CISSP, CAP, CASP+, or equivalent DoD 8570/8140 cybersecurity certification.
  • Demonstrated experience implementing and maintaining DoD RMF in accordance with NIST SP 800-37 and NIST SP 800-53.
  • Experience administering and maintaining RMF documentation within eMASS.
  • Experience performing vulnerability assessments, STIG compliance reviews, POA&Ms management, and continuous monitoring.
  • Experience supporting Authority to Operate (ATO) packages and cybersecurity accreditation activities.
  • Working knowledge of DoD cybersecurity policies, DISA Security Technical Implementation Guides (STIGs), and cybersecurity compliance requirements.
  • Strong understanding of Windows and Linux operating systems, network security principles, cloud environments, and secure system administration.
  • Excellent written and verbal communication skills with experience preparing technical reports and briefing Government stakeholders.
  • Active Secret security clearance with the ability to maintain eligibility for access to classified DoD systems.
Preferred Qualifications
  • Experience supporting DISA, Global Force Management (GFM), or other DoD enterprise systems.
  • Experience with Microsoft Azure IL6 cloud environments and DevSecOps security practices.
  • Experience supporting classified NIPRNet and SIPRNet environments.
  • Familiarity with vulnerability management tools, SCAP, ACAS, HBSS/ESS, and DISA cybersecurity toolsets.
  • Experience supporting Agile software development environments and secure software delivery practices.
Benefits
  • 401k matching
  • PPO and HDHP medical/dental/vision insurance
  • Education reimbursement
  • Complimentary life insurance
  • Generous PTO and holiday leave
  • Onsite office gym access
  • Commuter Benefits Plan
Equal Opportunity Employer/Veterans/Disabled

Expression is an Equal Opportunity Employer. If you require a reasonable accommodation during the application or interview process, please submit your request to our Human Resources department through the application portal.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior RMF & Cybersecurity Engineer
Senior RMF & Cybersecurity Engineer

Expression Networks • Fort Meade (MD)

On-site
USD 110,000 - 155,000
401k matching
Medical/dental/vision insurance
Education reimbursement
+4
Program Manager
Program Manager

Expression Networks • Washington

On-site
USD 120,000 - 180,000
401k matching
Medical/dental/vision insurance
Education reimbursement
+4
Information Assurance Engineer
Information Assurance Engineer

Agile IT Synergy, LLC • Tampa (FL)

On-site
USD 90,000 - 130,000
Information Security Analyst
Information Security Analyst

CALIBRE Systems Inc • Washington

Hybrid
USD 80,000 - 90,000
Information Assurance Engineer III
Information Assurance Engineer III

IP Secure, LLC • Town of Texas (WI)

On-site
USD 120,000 - 180,000
Medical insurance
Dental insurance
401(k) retirement plan
Senior Information Security Analyst
Senior Information Security Analyst

CALIBRE Systems Inc • Washington

Hybrid
USD 105,000 - 115,000
Information Security Analyst
Information Security Analyst

Caliber Systems Inc. • Washington, Northern (KY)

Hybrid
USD 89,000 - 110,000
Chief Architect
Chief Architect

Expression • Fort Meade (MD)

On-site
USD 150,000 - 230,000
401k matching
Medical/dental/vision insurance
Education reimbursement
+4
Information Assurance / Security Specialist
Information Assurance / Security Specialist

Vinstuen Femmeren jazzværtshus • Bethesda (MD)

On-site
USD 120,000 - 170,000
Sr. Cyber Security Analyst
Sr. Cyber Security Analyst

P3S CORPORATION • Dayton (OH)

On-site
USD 95,000 - 120,000