Logo for Connected Logistics

Cybersecurity Assessment & Authorization SME

Role overview

Qualifications

  • Five years RMF, CA, and DoD cybersecurity experience
  • Secret clearance
  • IAM Level III certification
  • CISSP

Responsibilities

  • Execute DoW/DLA cybersecurity processes to authorize information systems
  • Determine the residual risk of identified vulnerabilities
  • Brief senior management on progress of information systems undergoing RMF process
  • Serve as a Subject Matter Expert for systems undergoing the authorization process

About the company

Connected Logistics logo

Connected Logistics

IT Services & IT Consulting

Connected Logistics is a certified Service Disabled Veteran Owned Small Business based in Huntsville, Alabama and Springfield, Virginia. We specialize in network enabled logistics, program management, decision support systems, and lean design of processes and defense technology. We provide direct support to the US Army and Department of Defense from multiple States, the National Capital Region and South West Asia. Connected Logistics is currently seeking resumes for contingent hires. Visit our website for job opportunities http://www.logc2.com/careers.

Company details

IndustryIT Services & IT Consulting
Company size51 - 200

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Description

Remote role but must live within 150 miles of  following DLA Location: Richmond VA

Contingent Upon Contract Award

Connected Logistics is seeking a Cybersecurity Assessment & Authorization SME to assist in managing the implementation, maintenance and monitoring of cybersecurity in support of J6 Program Executive Officer's Portfolio of IT capabilities, associated Program Management Offices, IT infrastructure support and Operational Technology areas for Information Systems/Programs throughout the entirety of its system development life cycle.


The Cybersecurity Assessment & Authorization SME serves as a cybersecurity Subject Matter Expert (SME) with regards to Assessment and Authorization (A&A) of information systems and all associated cybersecurity policies and procedures.

Key Responsibilities:
The Cybersecurity Assessment & Authorization SME executes DoW/DLA cybersecurity processes to authorize information systems, maintain authorization of information systems, or serves as a Subject Matter Expert (SME) for systems undergoing the authorization process.  Specific duties for this position include but aren't limited to:

  • Possessing an understanding of how security controls identified in the NIST 800-53 apply to the process of assessing and authorizing a large organization’s IT infrastructure such as DLA, in which there is a compilation of large and small enclaves, Cloud Hosted Services, Operational Technology, AIS applications and outsourced IT processes.
  •  Determining the residual risk of an identified vulnerability (e.g., non-compliant security control) and determines the possible ramifications on the system’s current or future authorization. 
  • Briefs senior management on the progress or results of an information system undergoing the Risk Management Framework (RMF) process.

Preferred Qualifications:

  • Possess excellent analytical and writing skills.
  • Possess Microsoft Office programs (Excel, Word, PowerPoint, MS Project, etc.) knowledge.
  • Possess experience working with DoD/DLA.
Requirements

 KP-1 Enterprise RMF & Authorization Lead  

Purpose: Serves as the senior cybersecurity authority for enterprise RMF execution, authorization strategy, and executive engagement across the DLA portfolio. Leads assessment, authorization, and risk management activities while serving as the primary advisor for AO, SCA, ISSM, and PM stakeholders.   

Minimum Requirements 

  • Five years RMF, C&A, and DoD cybersecurity experience 
  • Experience conducting authorization reviews 
  • Secret clearance 
  • Tier 3/NACLC/ANACI 
  • IAM Level III certification 
  • CISSP 
  • CAP 
  • Former ISSM, SCA, AO support staff, or Cyber Program Lead 
  • DLA or Fourth Estate experience 
  • eMASS administration experience 
  • Experience briefing SES and Flag Officer equivalents 

KP-2 Security Control Assessment Lead  Purpose: Leads security control assessment, independent validation, compliance reviews, and risk determination activities. Responsible for ensuring assessment consistency and quality across the enterprise workload.  

Minimum Requirements 

  • Five years RMF and NIST experience 
  • Security control assessment experience 
  • Authorization review experience 
  • Secret clearance 
  • Tier 3 investigation 
  • IAM Level III certification 
  • CAP 
  • CISSP 
  • CISA 
  • Extensive NIST 800-53 assessment background 
  • Experience conducting SCA-style reviews 
  • Knowledge of FISMA and Federal compliance frameworks  

KP-3 Continuous Monitoring & Vulnerability Management Lead Purpose: Leads ongoing cybersecurity compliance, vulnerability management, remediation tracking, STIG validation, and continuous monitoring operations throughout system lifecycles.  

Minimum Requirements 

  • Five years DoD cybersecurity experience 
  • RMF experience 
  • Secret clearance 
  • Tier 3 investigation 
  • IAM Level III certification 
  • CISSP 
  • SecurityX (formerly CASP+) 
  • ACAS experience 
  • Enterprise vulnerability management experience 
  • STIG implementation expertise 
  • POA&M governance experience 

KP-4 OT, Cloud & Emerging Technology Security Lead  Purpose: Serves as the lead for Operational Technology (OT), Facility Related Control Systems (FRCS), cloud-hosted environments, and specialized authorization efforts requiring advanced cybersecurity expertise.  

Minimum Requirements 

  •  Five years DoD cybersecurity experience  
  • RMF and C&A experience 
  • Authorization review experience 
  • Secret clearance 
  • Tier 3 investigation 
  • IAM Level III certification 
  • CISSP 
  • CCSP or AWS/Azure security certification 
  • OT/ICS security experience 
  • Cloud authorization experience 
  • Experience supporting hybrid architectures 
  • Experience with platform and enclave authorizations 

Total Rewards Statement 


We believe in fairness and clarity throughout our hiring process. The anticipated salary range for this position is $115,000.00 to $125,000.00 USD. This is a good-faith range based on factors such as your experience, geographic location, and any applicable contractual requirements, and may vary slightly.


Beyond salary, we provide a robust benefits package and encourage ongoing professional development, because your growth and well-being matter to us. We’re excited to support you in building a rewarding career with us!


Connected Logistics respects the need for confidentiality for all applicants.


Connected Logistics has been named a 2026 WTOP Top Workplace in the medium sized business category. Our mission is clear: we deliver mission-focused IT, cybersecurity, logistics, and enterprise modernization support to federal agencies. When we invest in our people and create an environment where they feel valued and empowered, we deliver stronger outcomes for our clients and the missions we support. 


Connected Logistics offers an excellent benefits package that includes health, dental, vision, life, and disability insurance, a great 401(k) package, and generous Paid Time Off.


EOE/Disability/Veterans  

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Related jobs

Other jobs at Connected Logistics

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.