INNOVIM · 20 hours ago
Cybersecurity Engineer ISSO - DOD
INNOVIM is seeking a Cybersecurity Engineer ISSO to support the Missile Defense Agency (MDA) on the Integrated Research and Development for Enterprise Solutions (IRES) contract. The role involves developing RMF Assessment and Authorization documentation, maintaining Authorization to Operate for assigned systems, and assisting with the implementation of security controls.
Information Technology
Responsibilities
Develop and provide RMF Assessment and Authorization (A&A) documentation in accordance DoD, NIST, and other governing documents
Maintain the current, approved Authorization to Operate (ATO) for assigned system. Gather and/or develop any needed A&A artifacts. Update artifacts as required ensuring that they are current and document findings in the approved Risk Management Framework (RMF) or similar A&A documentation format provided
Assist with monitoring and the implementation of security controls
Experience with incident management, response, and response coordination
Gathering artifacts/data to support cybersecurity metrics and reporting
Understanding of cybersecurity tools (ACAS, Trellix ePO, Elasticsearch) and verification of operation in accordance with requirements
Perform accurate and verified risk assessments that cover all of the security controls and policies for key stakeholders
Track, monitor, and manage the information system’s Plan of Action and Milestones (POA&M) and provide technical assistance as required
Analyze, verify and update PPSMs as required for programs
Provide artifacts that support the maintenance of security packages
Evaluate NIST 800-53 controls for applicability, generate implementation statements, and get implementations approved
Prepare documents in support of Control Validation Tests (CVTs) to confirm compliance of ATOs submitted for RMF packages
Be detail oriented
Be highly motivated
Be able to efficiently and effectively discover and research supporting documents
Qualification
Required
Must have 4, or more, years of general (full-time) work experience. May be reduced with completion of advanced education
Must have 2, or more, years of cyber security experience
Must have a high level of understanding for computer systems, operating systems, and network architecture
Must have a firm understanding and experience with Microsoft Office Suite
Must have experience with Configuration Management processes and workflows
Must have a current DoD 8570 IAT Level II certification (ex: Security+)
Must have an active DoD Top Secret Security Clearance with SCI eligibility
Develop and provide RMF Assessment and Authorization (A&A) documentation in accordance DoD, NIST, and other governing documents
Maintain the current, approved Authorization to Operate (ATO) for assigned system. Gather and/or develop any needed A&A artifacts. Update artifacts as required ensuring that they are current and document findings in the approved Risk Management Framework (RMF) or similar A&A documentation format provided
Assist with monitoring and the implementation of security controls
Experience with incident management, response, and response coordination
Gathering artifacts/data to support cybersecurity metrics and reporting
Understanding of cybersecurity tools (ACAS, Trellix ePO, Elasticsearch) and verification of operation in accordance with requirements
Perform accurate and verified risk assessments that cover all of the security controls and policies for key stakeholders
Track, monitor, and manage the information system's Plan of Action and Milestones (POA&M) and provide technical assistance as required
Analyze, verify and update PPSMs as required for programs
Provide artifacts that support the maintenance of security packages
Evaluate NIST 800-53 controls for applicability, generate implementation statements, and get implementations approved
Prepare documents in support of Control Validation Tests (CVTs) to confirm compliance of ATOs submitted for RMF packages
Be detail oriented
Be highly motivated
Be able to efficiently and effectively discover and research supporting documents
Preferred
Have experience with conducting system and log auditing
Have experience with endpoint security enforcement and validation
Have experience with vulnerability management
Be familiar with Joint SAP Implementation Guide (JSIG)
Be familiar with Security Controls Traceability Matrix (SCTM)
Benefits
Comprehensive nationwide Medical/Dental/Vision insurance programs
Life insurance
Matching 401k contribution
Educational/Training support
Company
INNOVIM
INNOVIM is a defense & space company offering IT, Science and Engineering applications.
Funding
Current Stage
Growth StageRecent News
Washington Technology
2025-09-03
Company data provided by crunchbase