Cybersecurity Policy Administrator ISSM AWS
Apply on
We are hiring Cybersecurity Policy Administrator ISSM AWS to work remote and support our Client/Project
Company Name: - JTSi (Johnson Technology Systems, Inc.)
Title: Cybersecurity Policy Administrator ISSM AWS
Location: 100% Remote
Employment Requirements: US Person
Project: DOD
clearance: DOD Secret (Fully Adjudicated), as a minimum
Required Certifications:
- Security+
- DoD 8570.01-M IAM level II certification is required.
- Resource must possess Baseline certification as defined in DoD Instruction 8570.01-M.
Job Responsibilities:
This position is for a Cybersecurity Policy Administrator/ISSM supporting the commercial cloud customers who reside in Amazon AWS (Gov/DoD). Project is a managed service provider (MSP) for Army IT systems, and we support enterprise applications owners in migrating their systems into Amazon AWS and also provide sustainment services to support their applications. This position is for a cybersecurity policy administrator role to support a full range of cybersecurity services that provides to all our customers.
POSITION DUTIES:
- Perform Information System Security Manager (ISSM) role as defined in AR 25-2
- Serve as overall subject matter expert on Cybersecurity Policy Administration.
- Implement and support the organization's RMF activities, update Policies, Procedures, and other documentation as required to maintain RMF baseline.
- Establish and/or enhance procedures related to RMF compliance.
- Work within Enterprise Mission Assurance Support Service (eMASS) to add and update documentation, import ACAS and STIG files, work with POA&Ms, and all other aspects of eMASS management.
- Work between technical and policy teams to implement, maintain, and monitor technical security configuration controls, including Security Technical Implementation Guides (STIGs), Security Requirements Guides (SRGs), and other industry security hardening guidance.
- Work between technical and policy teams to successfully implement and manage requirements for maintaining Authority to Operate (ATO) and security control inheritance capabilities.
- Collaborate with internal and external parties to transform high-level technical objectives into comprehensive technical requirements.
- Oversee activities of supporting ISSO(s) for hosted systems
- Assist hosted customers in obtaining and maintaining RMF for DOD IT and other certifications as required.
- Update and/or assist the hosted system's personnel in updating artifacts of the accreditation package and store the artifacts in organizationally defined repository; i.e., system diagram (logical and physical) Hardware/Software/Firmware Inventory, Interface & Ports, Protocols and Services listing, etc.
- Assist in the preparation of network infrastructure specifications or designs incorporating required information security features.
- Review and evaluate Information Systems Design Plans, Continuity of Operation Plans, Communication Plans, engineering change proposals and configuration changes for compliance with relevant security regulations, policies, and best industry practice.
- Interact with customer ISSOs/ISSMs on a regular basis.
REQUIRED SKILLS:
- Senior level Cybersecurity Policy Administrator experience in a cloud environment.
- Extensive eMASS experience is required.
- Experience with all aspects of eMASS to include:
- Importing technical/scan data into eMASS
- Creating/maintaining POA&Ms
- Maintaining HW/SW list
- Entering/updating Test Results
- Preparing decision briefings for senior leaders
- Strong verbal and written communication skills.
- Experience effectively managing multiple large-scale projects.
- Understanding of network, storage, server, and application technologies.
- Strong working knowledge of DoD STIGs, and the Information Assurance Vulnerability Management (IAVM) process.
If you are available, interested, planning to make a change, or know of a friend who might have the required qualifications and interest, please call me ASAP on 703 - 949 - 9118 / If you do respond via e-mail ( ) please include a daytime phone number so I can reach you. In considering candidates, time is of the essence, so please respond ASAP with your updated resume.
Established in 2003, JTSi is a Professional IT & Engineering Services provider with years of documented experience in the Information Technology and Engineering services field. JTSi has a proven track record for successfully delivering mission critical Professional services to the Government and the industry. JTSi SAP team delivers solutions to its clients by clearly understanding their core business problems. We deliver quality services at equitable rates and focus on constant improvement in all areas of our operation, austerely complying to the customer s desire. We view our-selves more as a business partner than a mere provider of consulting services. At JTSi customer is always first and partnering is our means to customer satisfaction. We do what we say!