What are the responsibilities and job description for the Cybersecurity RMF Lead with CISSP position at Delviom LLC?
Job Details
Orchestrate the comprehensive Security Testing and Evaluation program, ensuring alignment with technical, financial, and contractual obligations.
Execute thorough security testing and reviews across diverse application landscapes, including web, mobile, and cloud-based applications.
Actively participate in Security Assessments, evaluating cloud service providers, networks, systems, and applications.
Meticulously scrutinize assessment artifacts and produce standardized System Assessment reports.
Update current or create new security plans for each application.
Run validation tests, generate the Validation Test Report, and verify results.
Generate and post the Risk Assessment Report, including residual risk verification and creation of POA&Ms for vulnerabilities.
Establish additional milestones for testing the design and operating effectiveness of controls after corrective actions.
Ensure POA&Ms include testing of control design and operational effectiveness post-correction. Qualifications:
Bachelor s degree in engineering, Computer Science, or related field;
minimum of 8 years of experience in FISMA compliance and auditing.
Profound expertise in NIST RMF framework, security controls, integration testing, Assessment and Authorization (A&A), and advanced understanding of IT concepts pertinent to evaluating security performance and integrity.
Updating current or creating new security plans for each application
Proficiency in NIST Risk Management Framework (RMF) and associated security controls.
Strong understanding of integration testing methodologies and tools.
Experience in conducting Assessment and Authorization (A&A) processes.
Advanced knowledge of IT concepts relevant to evaluating security performance and integrity.
Excellent analytical and problem-solving skills.
Strong communication and interpersonal skills, with the ability to effectively collaborate with diverse teams.
Attention to detail and ability to prioritize and manage multiple tasks effectively.
Leadership skills, with the ability to mentor and guide team members.
Familiarity with industry-standard security testing tools and techniques.