Match score not available

DoD Security Accreditations Specialist

extra holidays - extra parental leave
Remote: 
Full Remote
Contract: 
Experience: 
Mid-level (2-5 years)
Work from: 

Offer summary

Qualifications:

Familiarity with NIST 800-53 or FEDRAMP, Cloud-based Cybersecurity experience (AWS, GCP, Azure), Proven experience with DoD/RMF policy and guidance, Experience in certification programs and policy development, Strong technical proficiency and communication skills.

Key responsabilities:

  • Develop accreditation packages for Game Warden Platform.
  • Create/update SOPs, plans, and documentation.
  • Maintain cybersecurity accreditation documents and compliance.
  • Manage and report on certification maintenance activities.
  • Assess security risks and recommend resolutions.
Second Front Systems logo
Second Front Systems Scaleup https://www.secondfront.com/
51 - 200 Employees
See more Second Front Systems offers

Job description

ABOUT THE ROLE

Second Front Systems (2F) seeks a motivated Security Accreditation Specialist to support our team. We are a fast-growing entrepreneurial team working at the convergence of technology and national security. The work will be dynamic and wide-ranging, supporting the deployment and scale of our Game Warden platform.

This position prepares the software accreditation packages, reviews the Risk Management Framework (RMF), and creates and maintains all associated administrative requirements.

Note: This position requires U.S. citizenship due to government contract requirements.

What You'll Do
  • Own the development of the Game Warden Platform as a Service (PaaS) accreditation packages by building and maintaining artifacts applicable to the NIST 800-53 and Risk Management Framework for FEDRAMP and Department of Defense (DoD) Authority to Operate (ATO).
  • Develop Standard Operating Procedures (SOPs),  plans, and other internal policies. Create, track, and update operational instructions, SOPs, and other documentation, including plans, information briefings, and comment resolution matrix supporting cyber operations and Cybersecurity Service Provider (CSSP) activities.
  • Develop documentation incorporating content provided by subject matter experts and prepare documentation and communications related to accreditation and certification packages for their authorization.
  • Build, maintain, and update the Cybersecurity Accreditation Program information and ensure it reflects mission, policy, doctrine, tactics, techniques, and procedural changes, as appropriate.
  • Maintain accreditation by keeping documentation up to date as changes occur, including developing and incorporating additions, deletions, or modifications into the Cybersecurity baseline, certification frameworks, architecture diagrams, schema, procedures, candidate publications, and other documents as appropriate.
  • Produce the Cybersecurity accreditation documents that codify the Cybersecurity programs' policies, processes, and procedures and provide stakeholders visibility into the strategic, operational, and technical elements of an accreditation program according to the format agreed to and aligned with guidance.
  • Prepare and submit application packages and associated documentation for external accreditation of certification programs in accordance with federal and Department of Defense (DoD) guidance and respond to related questions and issues.
  • Manage, track, audit, and report on certification maintenance activities in accordance with established and documented procedures. Recommend and assist with implementing process improvement to increase efficiency and effectiveness and document accordingly.
  • Support leadership and other stakeholder-directed requests for letters, reports, and other communications-related activities, including Reports on Cybersecurity Accreditation and Certification.
  • Shepherd all work products through appropriate review and coordination activities.
  • Assess the risk of identified issues regarding security controls and make recommendations to leadership on the level of risk, possible mitigations, and suggested resolution.
  • Track Plan of Action and Milestones (POA&M) items for their authorization and ATO conditions and create tickets to be assigned to the engineering team for implementation.
  • Assist with preparing briefing materials for the government Information System Security Manager (ISSM) and Authorizing Official (AO) for their authorization.

  • Skills You’ll Bring to Our Team
  • Familiarity with NIST 800-53 or FEDRAMP
  • Cloud-based Cybersecurity experience (AWS, GCP, Azure, etc)
  • Proven experience writing, interpreting, applying DoD/RMF policy and guidance
  • Experience working on certification programs and policy development
  • Strong technical proficiency and ability to communicate effectively with engineers
  • Strong Organizational skills

  • Preferred Qualifications
  • Secret Level (or higher) Security Clearance strongly preferred
  • OSCAL Compliance Automation & Implementation Experience preferred
  • Have a strong interest in matters of national security
  • Striving to be both compassionate and direct with your feedback
  • Being team-oriented and inclusive with your actions
  • Perks & Benefits

    This role is full time.  As a public benefit corporation, we’re a team of purpose-driven trailblazers transforming the future of U.S. national security. We hire the best to do their best and, as such, we are committed to providing the perks and benefits you need to be successful—both in- and outside the workplace.

    We offer you:

    Competitive Salary
    100% Healthcare, vision and dental coverage
    401(k) + 3% company contribution
    Wellness perks (Fitness classes, mental health resources)
    Equity incentive plan
    Tech + office supplies stipend
    Annual professional development stipend
    Flexible paid time off + federal holidays off
    Parental leave
    Work from anywhere

    Referral BonusVisit our careers page to learn more.

    Required profile

    Experience

    Level of experience: Mid-level (2-5 years)
    Spoken language(s):
    English
    Check out the description to know which languages are mandatory.

    Other Skills

    • Organizational Skills

    Security Engineer Related jobs