Description
You will conduct and oversee cybersecurity audits and assessments against RMF, FISMA, NIST 800-53, and DHS 4300A guidelines.
Responsibilities
- Maintain and update system security documentation, including Authorization to Operate (ATO) and accreditation artifacts.
- Validate security controls across web applications, databases, and cloud infrastructure.
- Manage compliance efforts and remediate vulnerabilities identified during inspections.
- Monitor SIEM systems to detect anomalies and track cybersecurity incidents.
- Support development teams in integrating security controls within Agile DevSecOps and CI/CD pipelines.
Required Skills
- 5+ years of experience in cybersecurity auditing and compliance.
- Deep knowledge of Risk Management Framework (RMF), FISMA, NIST 800-53, and DHS 4300A.
- Experience utilizing vulnerability scanning tools and GRC platforms.
- Proficiency in Agile DevSecOps and CI/CD Pipelines.
- Ability to analyze audit logs and incident reports for security violations.
- Experience developing and enforcing cybersecurity policies and SOPs.
- Familiarity with securing web applications, databases, and cloud infrastructure.