Cybersecurity Policy & RMF Analyst Job at Concept Plus, Remote

cWs1bHZhVGlCUjZhZnlqa216MU9KYnhraFE9PQ==
  • Concept Plus
  • Remote

Job Description

About the role

Concept Plus is seeking a Cybersecurity Policy and RMF Analyst to provide Risk Management Support to identify shortfalls in the assessment and authorization process, track and manage Risk Assessments, assist in implementing a Risk Management strategy and tie together the business continuity of operations plan (COOP) and the IT COOP plans.

What you'll do

  • Adhere to the DoD cybersecurity policy requirements set forth in DoDI 8500.01, "Cybersecurity," and DoDI 8510.01, "Risk Management Framework (RMF) for DoD Information Technology (IT)" and their successors.
  • Monitor identified risks and track response actions to ensure they support the customer Risk Management Strategy and are properly documented in a risk registry.
  • Provide recommendations to business and IT leaders on best business practices followed in the industry to mitigate or remediate risks · Schedule, conduct, and track RMF validations for each IT Portfolio.
  • Review of security controls, as part of a risk assessment, as needed to support an Authorization to Operate (ATO) of an investment.
  • Review vulnerabilities and identify potential risks based on the type of vulnerability and the potential impact.
  • Identify actions needed to protect information flows to ensure adherence to legal and regulatory standards.
  • Coordinate the development of plans and procedures to ensure that business-critical services are recovered in the event of a digital risk event. · Facilitate and support the development of asset inventories, including digital assets in cloud. · Track all technology requests.
  • Track open vulnerabilities and provide a status on each open risk for each IT Portfolio / Investment. Ensure POAMs are current and reflects all known weaknesses.
  • Stay up-to-date with the latest Azure and FedRAMP regulatory changes and industry trends, advising teams on potential impacts and necessary adjustments.

Qualifications

  • US Citizenship
  • Active DoD Secret Clearance (or able to obtain
  • Bachelor’s Degree in an IT related field
  • Meet DoD 8570 Information Assurance Technician (IAT) Level II or Higher (Sec+ CE or Higher)
  • 3+ Years Experience with the Risk Management Framework Process
  • 3+ Years Experience operating the Enterprise Mission Assurance Support Service Application (eMASS)

Concept Plus is an Affirmative Action/Equal Opportunity Employer. As such, we will give your application full consideration without regard to your race, color, religion, sex, age, national origin, disability, veteran status, sexual orientation, gender identity, or any other classification protected by federal, state, or local law.

Job Tags

Remote job, Full time, Local area,

Similar Jobs

Aerotek

Excavator Operator Job at Aerotek

 ...Heavy Equipment Operator Pay : $25-30/hour Location : State College, PA Job Type : Full time Job Description Seeking...  ...in fine-tune grading, trenchwork, and operating a pipe laser. Excavators, skid steers, skid loaders, bulldozers. Responsibilities... 

Openwork

Excavator Operator Job at Openwork

 ...About the Job Openwork/Rock Staffing is now hiring for Excavator Operators in Hampton, GA Must have a min of 3 years of experience Must have experience with laying water and sewer pipes, and storm drains. Must have a clean background and submit to a drug... 

University of New Mexico

Archaeology Crew Member Job at University of New Mexico

 ...interpreting archaeological data during the survey, testing, and excavation phases of an archaeology project. Bachelor's degree in Anthropology, Archaeology, or other relevant field; completion of a field school. List the preferred qualifications within this text box.... 

Johnson & Johnson

Senior Learning Manager - Learning Excellence Neuroscience, Schizophrenia Job at Johnson & Johnson

 ...At Johnson & Johnson, we believe health is everything. Our strength in healthcare innovation empowers us to build a world where complex diseases are prevented, treated, and cured, where treatments are smarter and less invasive, and solutions are personal. Through our expertise... 

Four Seasons Hotels

Pool & Beach Service Attendant (On-Call) Job at Four Seasons Hotels

 ...On-Call Pool & Beach Service Attendant Four Seasons is powered by our people. We are a collective of individuals who crave to become better, to push ourselves to new heights and to treat each other as we wish to be treated in return. Our team members around the world...