The Role
Lead and execute Assessment & Authorization (A&A) and RMF activities, maintain security documentation (SSP, BoE, SCTM, STP, POA&Ms) in Xacta, perform SIEM log review and vulnerability analysis, advise developers on security requirements, monitor networks for threats, and respond to incidents in a 100% onsite secure environment.
Summary Generated by Built In
At Excelity, we're passionate about delivering innovative technology solutions that help businesses thrive. Whether you're looking to streamline your operations, improve efficiency, or enhance customer engagement, our team of experienced professionals is here to help. So why wait? Visit excelity.io today to learn more about how we can help you achieve your goals and take your business to the next level.
Excelity is seeking a Software Developer for a project responsible for building the next generation Mission Integration System for an exciting Government customer with a very critical mission. The candidate will work with the engineering team and customer to ensure successful development of high profile, complex, technical deliverables that are core to the continued success of our award-winning projects.
Required Clearance: TS/SCI with CI Poly
Description:
- Design and implement safety measures and controls. Monitor network activity to identify vulnerable points. Address privacy breaches and malware threats.
- Support the Assessment and Authorization (A&A) processes and Information Assurance documentation for multiple analytic and mission systems across all CLINs
- Generate and maintain the complete security Body of Evidence (BoE) while leading the A&A activities according to the Risk Management Framework (RMF) processes (ICD 503, CNSSI-1253, NIST 800-37, NIST 800-53, etc.) for all multiple information systems
- Author, complete and maintain the System Security Plan (SSP) within XACTA
- Develop the Security Controls Traceability Matrices (SCTM), and the Security Test Plan (STP) procedures within Xacta.
- Analyze existing security systems and make recommendations for changes or improvements
- Prepare reports and action plans if a security breach does occur
- Monitor the network and provide early warning of abnormalities or problems
- Communicate the system status and keep users informed of downtime or changes to the system
- Experience working with software developers and architects to understand security requirements
- Experience guiding the application developers on security policy, identifying security requirements, providing technical guidance for the satisfaction of requirements
- Experience creating and managing the plan of action and milestones (POA&Ms), and working with project managers and engineers to develop schedules and engineering actions that mitigate open findings
- Experience supporting the Continuous Monitoring of operational systems; experience monitoring and auditing operational systems for proper use
- Log Review/Analysis using SIEM tools (Splunk, etc.)
- Vulnerability Analysis and Review (ACAS, Prisma, SonarQube, JFrog X-Ray, GitLab Code Quality)
- DISA STIGs and STIG Viewer experience
Required Skills:
- 9+ years supporting Assessment and Authorization (A&A) and information assurance processes and documentation using RMF, BS degree; 7 years of experience with a masters; an additional 4 years of experience required in lieu of a degree
- Hands-on experience to validate control implementations and test procedures
- Knowledge of current security risks and protocols
- Willingness to work outside of standard hours if circumstances require
- DoD Approved 8140 Baseline Certifications (eg, Security+) certifications
- RMF, Xacta experience
- Work 100% onsite in a secure environment
Desired Skills:
- Experience working with AWS/Google cloud-hosted information systems or applications
- Experience working with Containerized Systems or Applications
- Experience working with Redhat or CentOS Linux operating systems
- Experience working in a DevSecOps environment and tool chain
Benefits:
- Competitive salary
- Flexible work schedule
- 100% Health, Dental, Vision, and Life Insurance plans with Flexible Spending Account (FSA)
- Long and Short-term disability coverage
- Generous paid vacation and holiday time
- Safe Harbor 401(k) Retirement Plan with 6% Employer matching contributions
- Reimbursement for professional and training development
- Company-paid memberships to professional organizations
Skills Required
- Active TS/SCI clearance with CI Polygraph
- 9+ years supporting A&A and information assurance using RMF (or 7 years with a Masters; additional 4 years in lieu of degree)
- Experience authoring and maintaining System Security Plans (SSP) and Body of Evidence (BoE) in Xacta
- Hands-on experience validating control implementations and test procedures
- Experience generating Security Controls Traceability Matrices (SCTM), Security Test Plans (STP), and POA&Ms
- Log review and analysis using SIEM tools (Splunk or similar)
- Vulnerability analysis and review using tools such as ACAS, Prisma, SonarQube, JFrog X-Ray, GitLab Code Quality
- DISA STIGs and STIG Viewer experience
- Knowledge of RMF, NIST 800-37, NIST 800-53, ICD 503, CNSSI-1253 and A&A processes
- DoD 8140 baseline certifications (e.g., Security+) or equivalent
- Willingness to work outside standard hours when required
- Work 100% onsite in a secure environment
Am I A Good Fit?
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.
Success! Refresh the page to see how your skills align with this role.
The Company
What We Do
Excelity is a small business and services provider to the federal government providing senior and thought leadership in Agile development. Excelity solves the government’s most systemic challenges by applying rigorous approaches to understanding the customer base in order implement the right IT solutions and advance agency missions.







