Risk Management Framework (RMF) Security Control Assessor – TestPros – Remote

Company Overview

TestPros is a successful and growing business, established in 1988 to provide Information Technology (IT) technical support services to a wide range of Commercial and U.S. Federal, State, and Local Government customers. Our capabilities include Program Management, Program Oversight, Process Audit, Intelligence Analysis, Cyber Security, NIST SP 800-171 Assessment and Compliance, Computer Forensics, Software Assurance, Software Testing, Test Automation, Section 508 and WCAG Accessibility Assessment, Localization Testing, Independent Verification and Validation (IV&V), Quality Assurance (QA), Compliance, and Research and Development (R&D) services. TestPros is an Equal Opportunity Employer.

TestPros delivers innovative independent IT assessment solutions to critical challenges facing the nation and the world. We support the U.S. Federal Government and Commercial clients within the continental USA. TestPros is dedicated to making lives better, safer and more secure.

TestPros is looking for junior-to-mid level cybersecurity professionals to participate in short-term project supporting a team of security control assessors. .

You should have recent and relevant expertise with the Risk Management Framework (RMF) Assessment and Authorization (A&A) process, NIST 800-53 rev.4 security control catalog, as well as other requirements necessary for a system to receive an Authority to Operate on a U.S. Federal Network.


Responsibilities and Duties:

You should also be able to deliver on the following expertly and consistently:

  • Support NIST Risk Management Framework (RMF) based Assessment and Authorization (A&A) activities.
  • Monitor and prepare required actions and documents pertaining to the A&A of the system throughout its lifecycle, to include security evaluation findings and residual risks.
  • Conduct comprehensive reviews of security authorization documents to ensure the appropriate NIST security guidelines were used during the assessments and the selections of security controls are relevant to the confidentiality, integrity, and availability of the systems.
  • Experienced with reviewing and preparing necessary RMF/ATO authorization documentation, such as Security Assessment Reports (SARs), Security Assessment Plans (SAPs), Risk Assessment Reports, Authorization Attestations, etc.


Qualifications and Skills:

  • 5+ years of directly related experience in IT security assessment and compliance
  • Experience developing programs and methods to monitor and measure risk, compliance, and assurance efforts.
  • Develop specifications to ensure risk, compliance, and assurance efforts conform with security, resilience, and dependability requirements at the software application, system, and network environment level.
  • Understanding of writing statements of preliminary or residual security risks for system operation.
  • Maintain information systems assurance and accreditation materials.
  • Experience performing security reviews, identify gaps in security architecture, and develop a security risk management plan.
  • Practical experience performing risk analysis (e.g., threat, vulnerability, and probability of occurrence) whenever an application or system undergoes a major change.
  • Plan and conduct security authorization reviews and assurance case development for initial installation of systems and networks.
  • Verify that application software/network/system security postures are implemented as stated, document deviations, and recommend required actions to correct those deviations (e.g., reviewing systems against secure baseline configurations / guidance, such as STIGS)
  • Strong attention to detail, self-starter, and ability to take direction and handle ambiguity.
  • Military, government, or other professional practical job experience required
  • Military and/or practical job experience may be considered in-lieu of formal education, with significant industry certifications


Benefits

TestPros offers a competitive salary, medical/dental/vision insurance, life insurance, paid time off, paid holidays, 401(k) retirement plan with company match, opportunities for professional growth, cell phone discounts, and much more! All benefits are per TestPros current policies and are subject to change without notice. Benefits are available to full-time employees.

TestPros, Inc. is an Equal Opportunity Employer.


EEO Statement

All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, sexual orientation, gender identity, marital status, age, national origin, or protected veteran status.

4kYsk2mbXv

Source: Indeed.com
Click Here To Apply