Establish, maintain, and enhance the security and compliance of our Federal cloud environments.
Manage security controls to achieve and sustain Authorization to Operate (ATO) status across multiple federal systems.
Utilize deep proficiency in Python, JavaScript, C, or C++ to architect and implement advanced AI automation pipelines.
Automate the Continuous Monitoring (ConMon) strategy from the System Security Plan (SSP).
Manage the full Authorization to Operate (ATO) lifecycle, including preparing documentation for initial and continuous security authorizations.
Serve as the expert authority on cloud security architecture, providing guidance and implementing defense-in-depth strategies.
Maintain the System Security Plan (SSP) and all security authorization packages.
Requirements
Bachelor's degree (or equivalent experience) in a relevant technical field (Engineering, Computer Science, Cybersecurity, IT); advanced degree preferred.
Must hold a DoD 8140/8570 IAM Level II Baseline Certification (CGRC, CASP+, CISM, CISSP/Associate, or CCISO).
U.S. Citizenship and residency required for work on sensitive government systems.
Expert knowledge of NIST SP 800-53, RMF, FedRAMP, and FISMA, with significant hands-on experience implementing and assessing controls in cloud environments (e.g., AWS GovCloud).
Proven success managing 3PAO audits and maintaining a sophisticated Continuous Monitoring (ConMon) program in federal settings.
Advanced technical familiarity with modern cloud infrastructure and security tools (e.g., SIEM, Endpoint Security, CI/CD, vulnerability management).
Exceptional analytical, communication, and documentation skills essential for a highly regulated environment.