Senior RMF Security Controls Assessor II

Jobtailor

Bedford (MA)

On-site

USD 120,000 - 170,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Jobtailor seeks an experienced ISSO/ISSM to lead security assessments for information systems in a government-oriented environment. The role focuses on RMF-based evaluations, vulnerability analysis, and authorization activities across SAP, SCI, and collateral information systems.

The candidate will advise senior officials and coordinate with ISO/DAO/AO, supporting SDLC compliance. Required are 7+ years of related experience, a TS/SCI clearance, and relevant IA certifications.

Qualifications

  • Bachelor’s degree in a related discipline; or Associate’s degree in a related area with 2 years’ experience; or equivalent experience (4 years).
  • Information Assurance Technician Level III or Information Assurance Manager Level II certification.
  • Top Secret/SCI clearance required to start; CI polygraph may be required.
  • US Citizenship required.
  • Must be willing to sit for a CI polygraph.

Responsibilities

  • Conduct comprehensive assessments of management, operational, and technical security controls within or inherited by information systems.
  • Assess control effectiveness and severity of identified weaknesses or deficiencies.
  • Recommend corrective actions for identified vulnerabilities.
  • Cover Collateral, SCI, and SAP activities within the customer’s area of responsibility.
  • Oversee development, implementation, and evaluation of IS security program policy, including SAP network infrastructure integration.
  • Assess information systems using RMF methodology in accordance with JSIG.
  • Advise the ISO, IDO, PSO, DAO/AO on assessment and authorization issues.
  • Evaluate authorization packages and recommend authorization decisions.
  • Evaluate system threats and vulnerabilities and determine required safeguards.
  • Advise the Government on confidentiality, integrity, and availability impact levels.
  • Complete and document security assessments and prepare Security Assessment Reports.
  • Initiate POA&Ms for identified weaknesses.
  • Evaluate assessment documentation and provide written authorization recommendations.
  • Submit security authorization packages to the AO/DAO.
  • Assess proposed changes to authorization boundaries, operating environments, and mission needs.
  • Review and concur with sanitization and clearing procedures.
  • Assist with Government compliance inspections and cybersecurity security incidents.
  • Ensure organizations address all phases of the SDLC.
  • Evaluate hardware and software security impacts on authorization boundaries.
  • Evaluate continuous monitoring plan effectiveness and implementation.
  • Represent the customer on inspection teams.

Skills

RMF Methodology
Security Assessments
Vulnerability Assessment
Security Policy Development
Continuous Monitoring
System Authorization
Risk Management

Education

Bachelor’s degree in a related discipline
Associate’s degree in a related area + 2 years’ experience
Equivalent experience (4 years)

Tools

JSIG
NIST RMF

Job description

Jobtailor seeks an experienced ISSO/ISSM to lead security assessments for information systems in a government-oriented environment. The role focuses on RMF-based evaluations, vulnerability analysis, and authorization activities across SAP, SCI, and collateral information systems.

The candidate will advise senior officials and coordinate with ISO/DAO/AO, supporting SDLC compliance. Required are 7+ years of related experience, a TS/SCI clearance, and relevant IA certifications.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Control Assessor I (RMF, SAP/SCI)
Security Control Assessor I (RMF, SAP/SCI)

System High Corporation • Colorado Springs (CO)

On-site
USD 110,000 - 170,000
Security Control Assessor (RMF/SAP, TS/SCI) – Level I
Security Control Assessor (RMF/SAP, TS/SCI) – Level I

TAC Integrated Solutions • Los Angeles (CA)

On-site
USD 90,000 - 130,000
RMF Security Controls Assessor – SCI/SAP
RMF Security Controls Assessor – SCI/SAP

P-11 Security Inc • Colorado Springs (CO)

On-site
USD 90,000 - 130,000
TS/SCI Security Control Assessor II - RMF Expert
TS/SCI Security Control Assessor II - RMF Expert

Redtracetech • Colorado Springs (CO)

On-site
USD 110,000 - 130,000
401(k) plan
Annual performance bonus
Tuition reimbursement
+1
Senior DoD ISSO (TS/SCI) SAP/SCI RMF Lead
Senior DoD ISSO (TS/SCI) SAP/SCI RMF Lead

Targeted Solutions, LLC • Bedford (MA)

On-site
USD 120,000 - 160,000
PTO and flexible holidays
Healthcare cost reimbursement
401K with 4% match
Security Control Assessor I — RMF & SAP/SCI Expert
Security Control Assessor I — RMF & SAP/SCI Expert

System High Corporation • Washington

On-site
USD 120,000 - 180,000
Security Control Assessor II - RMF & SAP Security
Security Control Assessor II - RMF & SAP Security

RedTrace Technologies • Colorado Springs (CO)

On-site
USD 90,000 - 130,000
Competitive salary
401(k) plan
Annual performance bonus
+5
Senior RMF Security Controls Assessor
Senior RMF Security Controls Assessor

Omniscius Consulting • Arlington (VA)

On-site
USD 120,000 - 180,000
ISSO II: RMF Security Lead for SAP Ops (TS/SCI)
ISSO II: RMF Security Lead for SAP Ops (TS/SCI)

RedTrace Technologies • Lincoln (MA)

On-site
USD 80,000 - 100,000
401(k) plan
Annual performance bonus
Certification and advanced degree attainment bonuses
+5
Senior Security Controls Assessor — RMF/JSIG Expert
Senior Security Controls Assessor — RMF/JSIG Expert

Systems Planning and Analysis, Inc. • Washington

On-site
USD 160,000 - 180,000