← Back to results

assessment-authorization-a-a jobs in San Diego

$110,000 – $135,000 · Posted 7 days ago

As an Information System Security Officer (ISSO), you will support Information Assurance and cybersecurity activities for cloud-based and classified DoD systems, with primary focus on Risk Management Framework (RMF) and Assessment & Authorization (A&A) processes to achieve Authority to Operate (ATO) approvals. You will prepare and maintain cybersecurity documentation, evaluate security solutions for compliance with DoD requirements, support security control implementation and assessment, and monitor operational security posture.… You will collaborate across engineering, cybersecurity, test & evaluation, and customer teams to resolve security issues and maintain authorization requirements. The role requires 3+ years of industry experience, working knowledge of RMF/DIACAP, IAT/IAM Level I certification (such as Security+), and an active DoD Secret Clearance with ability to obtain TS/SCI.

San DiegoLast seen 5 days ago
Posted 1 month ago

The Cybersecurity Engineer III will support Risk Management Framework (RMF) activities, Assessment & Authorization (A&A) processes, and continuous monitoring for DoD accredited systems. Responsibilities include developing and maintaining security documentation (SSPs, SAPs, SARs, POA&Ms), performing vulnerability assessments, managing eMASS tasking, and conducting security control validation and testing.… The role requires 10+ years in cybersecurity, RMF compliance, or incident response; expertise with eMASS, DISA STIGs, and vulnerability assessment tools; and an active Secret clearance with DoD 8570/8140 IAT Level III certification (CASP+, CCNP Security, CISA, CISSP, GCED, or GCIH).

San DiegoLast seen 1 month ago
$130,000 – $159,987 · Posted 1 month ago

The RMF Engineer will support DoD Assessment & Authorization activities by developing, maintaining, and managing Risk Management Framework documentation and artifacts throughout the system lifecycle. Key responsibilities include system categorization, creating and updating security plans and control evidence, managing RMF packages in eMASS, assessing security controls, and coordinating with engineering and cybersecurity teams on remediation.… The role requires 3+ years of hands-on DoD RMF experience, deep knowledge of NIST SP 800-53 and RMF processes, and proficiency with authorization management tools. This hybrid position is mostly remote and demands strong technical documentation and stakeholder communication skills.

San DiegoLast seen 1 month ago