Job Description
Responsibilities
- Serve as the principal advisor to senior leadership on cybersecurity and compliance for assigned portfolios, including FISMA-based and cloud environments
- Lead, mentor, and supervise a team of ISSOs and junior security analysts
- Oversee the full Risk Management Framework (RMF) lifecycle (NIST SP 800-37)
- Develop and maintain System Security Plans (SSP), SAR, POA&M, and Incident Response Plans
- Coordinate independent Security Controls Assessments (SCA) with third-party assessors
- Ensure compliance with FISMA, Executive Order 14028, and NIST SP 800-53 Rev 5
- Act as primary liaison with FSA/ED Security Operations Centers, CISA, and auditors
- Manage continuous diagnostics and mitigation (CDM) and vulnerability management programs
- Oversee secure software supply chain practices including SBOMs
Requirements
- Bachelor’s degree in Cybersecurity, IT, Computer Science, ...