Cybersecurity Engineer guiding systems through the Risk Management Framework at Skyward Federal. Ensuring compliance with DoD cybersecurity requirements and maintaining secure technologies.
Responsibilities
Enable Skyward Federal’s mission by guiding systems through the Risk Management Framework (RMF) and maintaining secure authorization packages for mission-critical technologies.
Lead systems through the RMF lifecycle, supporting authorization, continuous monitoring, and ongoing compliance activities for DoD systems.
Interpret and implement security requirements across NIST 800-53, ICD 503, and JSIG frameworks within real system architectures.
Develop and maintain RMF artifacts and ensure traceability between system components, security controls, and supporting evidence.
Partner closely with engineering, platform, and product teams to ensure system architectures and deployments align with required security controls.
Guide systems through the RMF lifecycle including categorization, control implementation, assessment support, authorization, and continuous monitoring.
Develop and maintain RMF documentation including System Security Plans (SSPs), POA&Ms, control narratives, and Body of Evidence artifacts.
Map and validate NIST 800-53 controls against system architecture, ensuring accurate implementation and traceability.
Maintain authorization packages within RMF tools such as eMASS, Xacta, similar compliance platforms, or especially with individual artifact (paper) packages.
Analyze system architecture, components, and authorization boundaries to ensure RMF artifacts accurately reflect deployed technologies.
Support ATO acquisition and sustainment activities for classified and mission systems.
Coordinate with ISSOs, ISSMs, and Security Control Assessors during authorization and assessment activities.
Track remediation activities and support continuous monitoring efforts across secure environments.
Requirements
Experience implementing RMF for DoD systems aligned to NIST 800-53 and ICD 503
Experience developing and maintaining ATO packages and RMF artifacts
Strong understanding of system architecture, authorization boundaries, and control traceability
Experience working with RMF management tools such as eMASS or Xacta
Ability to translate security controls into actionable guidance for engineering teams
Ability to operate independently and proactively manage RMF workstreams
Senior Security Engineer responsible for implementing security systems and conducting incident response at Emburse. Collaborating with teams to identify and mitigate security threats.
Cybersecurity Intern at Thndr. Gain hands - on experience in securing cloud - native infrastructure and applications while collaborating with senior security engineers.
Account Executive driving new business growth for Strider Technologies via strategic client relationships. Transforming open - source data into actionable insights to protect from nation - state risks.
Senior Security Engineer leading security initiatives to protect customer data at an AI - native legal tech company. Collaborating across functions to ensure compliance and security best practices.
Working Student in Information Security at Allianz Direct supporting security monitoring and managing vulnerability assessments. Collaborating with cross - functional teams to enhance cybersecurity posture and awareness.
Cyber Security Specialist at Vodafone responsible for shaping and deploying security measures. Collaborating with business, IT, and Network teams as a trusted security partner.
Enterprise Security Implementation Specialist at Vodafone supporting customers in implementing security solutions. Responsibilities include onboarding, incident management, and ensuring service quality with Fortinet and Zscaler products.
Manager at PwC contributing to digital transformation in Utilities through technology consulting and stakeholder management. Focused on creating strategies and providing technology solutions in a data - driven world.
Research Associate conducting advanced research in iOS security within a leading institute for applied cybersecurity. Emphasis on secure application development and vulnerability analysis.