About Us:
Unity Technologies Corporation is recognized as an Economically Disadvantaged and Woman Owned Small Business (EDWOSB/WOSB) that specializes in delivering a broad range of consultation and professional support services to the Department of Defense and other government agencies. The company focuses on several key areas including audit readiness, data analysis, industrial/enterprise systems modernization, and program/project management support.
Position Overview:
* This role is only open to United States Citizens. *
The Cybersecurity Assessment and Authorization (A&A) SME will support the Defense Logistics Agency (DLA) Enterprise Hosting Mission by providing expert guidance with regards to Assessment and Authorization (A&A) of information systems and all associated cybersecurity policies and procedures utilizing Risk Management Framework (RMF) processes, and continuous monitoring activities across DLA hosted systems and applications. The SME ensures systems meet DOD cybersecurity requirements while enabling secure, efficient, and resilient mission operations within DLA's Enterprise Hosting environment.
Duties Include:
- Performs a DOD cybersecurity process serving as a SME for an information system undergoing authorization.
- Determines the applicable severity value for an identified vulnerability (e.g., non-compliant security control) and determines the possible ramifications on the system’s current or future authorization.
- Provides audit readiness and sustainment support by participating in all phases of audit and creates compliance documentation.
- Ensure Cybersecurity compliance and corresponding RMF, ATO, audit documentation is maintained in a repository to include any dates and/or modifications to all relevant documented artifacts.
- Support system owners and engineers in implementing security controls, ensuring compliance with NIST SP 800-53 Standards
Minimum Requirements:
- Active Secret DoD clearance
- Five (5) years of relevant Risk Management Framework (RMF) and NIST A&A experience, Zero Trust, SCCA FRD and SRG.
- Certification as a Certified Cloud Security Professional - CCSP
- DOD cybersecurity experience
- Experienced in the general tenets supporting the overall DOD implementation of its authorization process, to include supporting cybersecurity policy, procedures, and processes.
- Knowledgeable in the cybersecurity of emerging technology areas such as Cloud and Industrial Control Systems (ICSs), warehouse execution systems and Operational Technology (OT) infrastructures.
- DoD Approved 8570/8140 Baseline Certification - IAT Level II
- Experience in assessing Information Assurance Controls and conducting Certification & Accreditation reviews for large, complex organizations.
- Strong business and technical writing skills.
- Strong analytical and problem-solving skills for resolving security issues.
- Experience with DoD Audit Readiness.
- Computing Environment: (s) - examples include: AWS Developer Associate, AWS Solutions Architect, AWS SysOps Administrator, AWS DevOps Engineer, Azure Fundamentals, Azure AI Engineer Associate, Google Cloud Platform Cloud Engineer
Job Types: Full-time, Contract
Pay: $138,000.00 - $190,000.00 per year
Benefits:
- 401(k)
- 401(k) matching
- Dental insurance
- Employee assistance program
- Health insurance
- Life insurance
- Paid time off
- Vision insurance
Experience:
- DoD Cybersecurity: 3 years (Required)
- DoD Audit Readiness: 3 years (Required)
- NIST, RMF, Zero Trust: 5 years (Required)
License/Certification:
- CCSP (Required)
- Industry Cloud Certificate (Required)
- DoD Approved 8570/8140 Baseline Certification (Required)
Security clearance:
Ability to Commute:
- Fort Belvoir, VA 22060 (Required)
Work Location: Hybrid remote in Fort Belvoir, VA 22060