Demo

Security Assessment & Authorization (SA&A) Lead

Digital Global Connectors
Mc Lean, VA Full Time
POSTED ON 2/12/2025
AVAILABLE BEFORE 4/12/2025

Security Assessment & Authorization (SA&A) Lead

 

General Info:

  • Citizenship Required: US Citizenship
  • Clearance: Public Trust
  • Job Duration: Full Time Temporary (Contract)
  • Site: Hybrid Remote
  • Travel:Less than 10%

 

Digital Global Connectors is seeking an experienced Security Assessment & Authorization (SA&A) Lead to manage and oversee the development, execution, and continuous improvement of security assessment and authorization activities. The ideal candidate will have extensive experience in developing Authority to Operate (ATO) packages, implementing the Risk Management Framework (RMF), and ensuring compliance with federal standards, including NIST and FedRAMP. This role requires a deep understanding of cloud security, boundary protection, and automation in security practices, along with the ability to communicate effectively with C-suite stakeholders.

 

Responsibilities:

  • Lead and support Assessment and Authorization (A&A) efforts for various agency systems, including those deployed in cloud environments (AWS, Azure).
  • Guide federal clients through the ATO process for new and modernized systems, ensuring compliance with NIST standards and RMF.
  • Develop and oversee the preparation of ATO documentation, including:
    • System Security Plans (SSP)
    • Security Assessment Reports (SAR)
    • Risk Assessment Memos for Risk-Based Decisions
    • Continuous Monitoring Plans
    • Plan of Action and Milestones (POA&M) management
  • Conduct control implementation assessments and validate statements against NIST SP 800-53 requirements.
  • Test and validate security controls, identify gaps, and ensure remediation through POA&M tracking and management.
  • Create and maintain a comprehensive Risk Register, updating stakeholders on high-risk areas.
  • Facilitate Incident Response (IR) and Contingency Plan (CP) tests, providing timely updates and recommendations.
  • Lead stakeholder interviews and exit meetings to review and debrief identified findings.
  • Provide pre-submission review of ATO packages for approval by the CISO and CIO.
  • Design and implement security controls to enhance the security posture of systems and environments.
  • Perform security controls assessments on security boundaries and produce required security documentation.
  • Leverage automation and artificial intelligence (AI) technologies to enhance efficiency in A&A processes.

 

Required Skills & Experience:

  • Certifications:
    • Certified Information Systems Security Professional (CISSP)
    • Certified Authorization Professional (CAP)
  • Technical Experience:
    • 10 years of experience with A&A and FedRAMP processes, including cloud deployments (SaaS, PaaS, IaaS).
    • 5 years of management/leadership and/or client-facing experience.
    • Experience assessing systems deployed in cloud environments (Microsoft Azure and AWS).
    • Strong expertise with NIST publications, including SP 800-53 R5, SP 800-37 R2, SP 800-137, and related frameworks.
    • Extensive knowledge of IT security policies, processes, and governance.
    • Proficiency with multiple operating systems (Windows, Linux, Solaris).
  • Key Competencies:
    • Strong understanding of control testing, control requirements, and supporting artifacts.
    • Familiarity with AI, large language models (LLM), guardrails, and automation.
    • Deep expertise in cloud security, boundary protection, asset management, and vulnerability management
  • Other Experience:
    • Prior experience with healthcare sector systems is a plus.
    • Strong oral and written communication skills, with the ability to present findings and recommendations to C-suite executives.

 

Desired Qualifications:

  • Proven experience in the development and submission of ATO packages for enterprise and cloud systems.
  • Strong organizational skills and ability to manage multiple A&A initiatives simultaneously.
  • Experience with continuous monitoring and proactive security operations.

 

About Digital Global Connectors:

DGCis a Top-Secret Facilities cleared, Woman-Owned Small Business (WOSB) founded in2012thatoffers cyber security engineering, consulting, training, and operations services. For over 25 years, DGC personnel have served the American public by enabling and supporting the missions of critical U.S. government agencies. DGC integratescutting-edgesecurity services with commercial best practices toassistgovernment and private sector organizations in understanding andoptimizingtheir cyber security posture.


If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Security Assessment & Authorization (SA&A) Lead?

Sign up to receive alerts about other jobs on the Security Assessment & Authorization (SA&A) Lead career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$87,466 - $114,731
Income Estimation: 
$114,790 - $146,930
Income Estimation: 
$115,647 - $153,495
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$164,835 - $201,088
Income Estimation: 
$135,994 - $168,063
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$152,549 - $188,894
Income Estimation: 
$194,072 - $240,547
Income Estimation: 
$135,994 - $168,063
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Digital Global Connectors

Digital Global Connectors
Hired Organization Address Mc Lean, VA Full Time
Job Title: Security Operations (SOC) Analyst Job Duration: Full-Time, Day-time Operating Hours Location: Washington, DC ...
Digital Global Connectors
Hired Organization Address Mc Lean, VA Full Time
Job Title: Information System Security Officer (ISSO) Job Duration: Full-Time Location: Washington, DC (on-site) Citizen...
Digital Global Connectors
Hired Organization Address Washington, DC Full Time
RSA Archer SME Citizenship Required: US Citizenship Clearance: Public Trust Site: Washington D.C. Metro Area (Rockville,...
Digital Global Connectors
Hired Organization Address Mc Lean, VA Contractor
General info: Citizenship Required: US Citizenship Job Duration: Temporary/Per Engagement Site: On-site, Washington, DC ...

Not the job you're looking for? Here are some other Security Assessment & Authorization (SA&A) Lead jobs in the Mc Lean, VA area that may be a better fit.

ISSO/Cyber Security Assessment and Authorization Analyst

Visionsoft International, Rockville, MD

Security Assessment Lead

gTANGIBLE Corporation, Washington, DC

AI Assistant is available now!

Feel free to start your new journey!