** Security Clearance Required
Company Overview
Systems Technology Forum LTD (STF) is an established industry partner with a passion for exceptional performance and an unwavering commitment to our clients. As a premier provider of management, engineering, information technology, and logistics services, STF is committed to delivering high-quality systems engineering, technical and professional support services that meet and exceed deliverable requirements.
STF offers superior out-of-the-box solutions to end-to-end problems and customer-centric support to the United States Government, Military, Department of Defense (DoD), and other federal agencies.
Job Summary
Supports Risk Management Framework (RMF) initial authorization and reauthorization tasks for an Intel Program’s new and current systems.
Travel is not required.
Responsibilities and Duties
Provides RMF support in an Information Systems Security Engineer/Information Systems Security Officer (ISSE/ISSO) role and in accordance with applicable NSA, DoD, and DoN policies. Participates in system categorization and maintain the formal decision document as part of the system's authorization package. Identifies and documents all hardware and software within the system architecture using the format/template on eMASS. Drafts and updates system architecture and data flow diagrams. Ensures all IA-enabled devices and applications are DON application and Database Management System (DADMS) approved. Tailors system security controls and identify any common controls and overlays in eMASS. Develops policy letters for control families and ensures appropriate Control Correlation Identifier are appropriately documented. Develops and executes Security Assessment Plans to include completing all applicable STIGs, performing vulnerability scans and documenting results. Ensures traceability throughout the system eMASS records are completed and reading for Security Control Assessment. Performs annual security reviews. Manage Plan of Action & Milestone (POA&M) entries and ensure vulnerabilities are properly tracked, mitigated, and resolved. Plans and performs cybersecurity testing to assess security controls and record security control compliance status as required. Validate all required artifacts are current and representative of the systems being presented for AO adjudication. Evaluates continuous monitoring plans and participate in operational assessments. Participates in weekly and/or adhoc meetings.
Qualifications and Skills
Required knowledge and years of experience
Must have at least five (5) years of experience providing cybersecurity services using Risk Management Framework (RMF). At least five (5) years experience of experience with the DoD authoritative Enterprise Mission Assurance Support Service (eMASS). At least five (5) years of experience supporting Independent Validation and Verification (IV&V) test events. At least five (5) years of experience providing validation of required artifacts in the Information System Security Manager/Engineer (ISSM/ISSE) Security Assessment Package.
Education Requirements
Bachelor's Degree
Certifications
SEC+, CISSP, CASP (Desired)
Clearance Requirement
TS/SCI
Benefits and Perks
At STF, we recognize that talented employees are the foundation of our success. STF provides benefits and compensation packages to help our employees meet the diverse and changing needs throughout their careers and lives.
Benefits packages include the following:
- Medical Plans administered through United HealthCare
- Vision and Dental Plan Benefits
- 401(k) Tax-Deferred Retirement Plan
- Accidental Death and Dismemberment Insurance
- Dependent / Medical Care Flexible Spending Account
- Direct Deposit
- Health and Welfare Medical
- Holiday Leave
- Industry Competitive Salaries
- Life Insurance (basic and supplemental)
- Paid Time Off / Annual Comprehensive Personal Leave
- Performance / Award Bonuses
- Professional Development Coursework
- Technical Training
- Tuition Assistance Program
- TotalChoice™ Voluntary Benefits
- STF Cares / Paid Time Off to Volunteer
Equal Opportunity Employer/Veterans/Disabled
#IND123


