Cybersecurity Policy & RMF Analyst

Posted 2 Days Ago
Hiring Remotely in United States
Remote
Mid level
Information Technology
The Role
The Cybersecurity Policy & RMF Analyst will provide risk management support, monitor risks, implement strategies, and ensure compliance with DoD policies.
Summary Generated by Built In

About Concept Plus
Concept Plus is a growing consulting firm headquartered in Fairfax, VA. We are an Oracle Gold Partner, offering deep technical expertise, combined with business insights and an experienced team focused on providing technical solutions for our clients. We are proud to have been recognized as one of the "25 Most Powerful Oracle Solution Providers" in the area! We offer great benefits including competitive pay, comprehensive health insurance, dental and vision insurance, paid life insurance, paid time off, 11 paid holidays, bonuses, tuition reimbursement, unlimited training, and the opportunity to work in a collaborative, flexible, innovative environment! For additional information about our dynamic organization, please visit our website. at www.conceptplus.com. 


About the role

Concept Plus is seeking a Cybersecurity Policy and RMF Analyst to provide Risk Management Support to identify shortfalls in the assessment and authorization process, track and manage Risk Assessments, assist in implementing a Risk Management strategy and tie together the business continuity of operations plan (COOP) and the IT COOP plans.


What you'll do

  • Adhere to the DoD cybersecurity policy requirements set forth in DoDI 8500.01, "Cybersecurity," and DoDI 8510.01, "Risk Management Framework (RMF) for DoD Information Technology (IT)" and their successors.
  • Monitor identified risks and track response actions to ensure they support the customer Risk Management Strategy and are properly documented in a risk registry.
  • Provide recommendations to business and IT leaders on best business practices followed in the industry to mitigate or remediate risks · Schedule, conduct, and track RMF validations for each IT Portfolio.
  • Review of security controls, as part of a risk assessment, as needed to support an Authorization to Operate (ATO) of an investment.
  • Review vulnerabilities and identify potential risks based on the type of vulnerability and the potential impact.
  • Identify actions needed to protect information flows to ensure adherence to legal and regulatory standards.
  • Coordinate the development of plans and procedures to ensure that business-critical services are recovered in the event of a digital risk event. · Facilitate and support the development of asset inventories, including digital assets in cloud. · Track all technology requests.
  • Track open vulnerabilities and provide a status on each open risk for each IT Portfolio / Investment. Ensure POAMs are current and reflects all known weaknesses.
  • Stay up-to-date with the latest Azure and FedRAMP regulatory changes and industry trends, advising teams on potential impacts and necessary adjustments.

Qualifications

  • US Citizenship
  • Active DoD Secret Clearance (or able to obtain
  • Bachelor’s Degree in an IT related field
  • Meet DoD 8570 Information Assurance Technician (IAT) Level II or Higher (Sec+ CE or Higher)
  • 3+ Years Experience with the Risk Management Framework Process
  • 3+ Years Experience operating the Enterprise Mission Assurance Support Service Application (eMASS)

Concept Plus is an Affirmative Action/Equal Opportunity Employer. As such, we will give your application full consideration without regard to your race, color, religion, sex, age, national origin, disability, veteran status, sexual orientation, gender identity, or any other classification protected by federal, state, or local law.


Top Skills

Azure
Dod Cybersecurity Policies
Emass
Fedramp
Risk Management Framework (Rmf)
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Fairfax, VA
102 Employees
Year Founded: 2008

What We Do

Concept Plus is a technology services company offering deep technical expertise, an experienced team, and a dedication to maximizing business productivity. A process driven organization, Concept Plus provides solutions for clients that align technology with strategic goals and business drivers. Oracle, Cloud Computing, Healthcare IT and Mobile technologies are our strength; client service and partner focus our mission. Headquartered outside of Washington, D.C., we are SDB and SBA 8(a) certified, an Oracle Platinum Partner, ISO 9001, 20000-1, and 27001 certified, and CMMI Maturity Level 3 Appraised.

Similar Jobs

Remote
United States
529 Employees

Cloudflare Logo Cloudflare

Account Executive

Cloud • Information Technology • Security • Software • Cybersecurity
Remote or Hybrid
United States
4400 Employees
320K-350K Annually

Dandy Logo Dandy

Account Manager

Computer Vision • Healthtech • Information Technology • Logistics • Machine Learning • Software • Manufacturing
Remote
USA
1800 Employees

BAE Systems, Inc. Logo BAE Systems, Inc.

Lead Tier 2 Remote Support Analyst

Aerospace • Hardware • Information Technology • Security • Software • Cybersecurity • Defense
Remote or Hybrid
St Louis, MO, USA
40000 Employees
105K-179K Annually

Similar Companies Hiring

Axle Health Thumbnail
Logistics • Information Technology • Healthtech • Artificial Intelligence
Santa Monica, CA
17 Employees
Scrunch AI Thumbnail
Software • SEO • Marketing Tech • Information Technology • Artificial Intelligence
Salt Lake City, Utah
Standard Template Labs Thumbnail
Software • Information Technology • Artificial Intelligence
New York, NY
10 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account