Principal Cyber RMF Engineer

 Posted a day ago
     
10+ years experience
Apply Now

Please mention DailyRemote when applying

AI Summary

Lead the end-to-end Risk Management Framework (RMF) lifecycle for DoD IT systems to ensure secure development and deployment of space applications. This includes conducting security risk assessments, maintaining security documentation, and ensuring compliance with federal cybersecurity regulations.

Make a meaningful impact on national security by supporting the Space Development Agency (SDA) in delivering the Battle Management Command, Control, and Communications (BMC3) software development and hosting environment for the National Defense Space Architecture (NDSA). These systems accelerate the secure development, testing, and deployment of mission critical space applications that enable Joint All Domain Command and Control (JADC2).

Key Responsibilities: 


1. RMF Process Implementation
  - Lead the end-to-end RMF lifecycle for DoD IT systems, including categorization, control selection, implementation, assessment, and monitoring.  
  - Conduct and oversee system security risk assessments and recommend strategies to mitigate risks effectively.  
  - Develop, review, and maintain security documentation such as System Security Plans (SSPs), Security Assessment Reports (SARs), and Risk Assessment Reports (RARs).  
  - Serve as the Information System Security Officer (ISSO) or provide subject matter expertise to ISSOs.  

2. Compliance and Policy Adherence:  
  - Ensure compliance with DoD 8500.01, 8570.01, NIST 800-53, and other applicable cybersecurity regulations and standards.  
  - Provide guidance for achieving and maintaining Authority to Operate (ATO) and addressing Plan of Action and Milestones (POA&M) items.  

3. Audit and Assessment: 
  - Conduct security audits and vulnerability assessments, utilizing industry-standard tools to identify and mitigate risks.  
  - Facilitate independent verification and validation (IV&V) activities to ensure thorough system testing.  

4. Collaboration and Stakeholder Engagement: 
  - Collaborate with stakeholders, including system owners, process owners, and leadership, to ensure compliance with RMF requirements.  
  - Provide cybersecurity training, awareness, and mentorship to team members and stakeholders. 
5. **Incident Response & Continuous Monitoring:*  
  - Support the development and execution of incident response protocols.  
  - Establish and maintain continuous monitoring initiatives to detect and address emerging threats.  
 


SAIC® is a premier mission integrator focused on advancing the power of technology and innovation to serve and protect our world. Our robust portfolio of offerings across the defense, space, intelligence, and civilian markets includes secure high-end solutions in mission IT, enterprise IT, engineering services, and professional services. We integrate emerging technology, rapidly and securely, into mission critical operations that modernize and enable critical national imperatives.

We are approximately 23,000 strong; driven by mission, united by purpose, and inspired by opportunities. SAIC is an Equal Opportunity Employer. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $7.3 billion. For more information, visit saic.com. For ongoing news, please visit our newsroom.

Similar Jobs

See all Remote Software Development jobs →

Personalize your Remote Job Search in 3 Easy Steps!

Discover remote opportunities in Software Development

Answer easy questions

Answer easy questions

200,000+ jobs across 15+ categories

Get your best job matches

Get your best job matches

Only hand-screened, legit jobs

Find a remote job faster

Find a remote job faster

No ads, scams, or junk

I was the first applicant for a remote marketing position that got listed on the company website the same day I applied. Had an interview within 48 hours!

Sarah J. — Sarah J. · Marketing Manager ★★★★★ Verified