← Back to results

system-security-plans-ssp jobs in San Diego

Posted 1 day ago

The Cybersecurity Engineer III will support Risk Management Framework (RMF) activities, Assessment & Authorization (A&A) processes, and continuous monitoring for DoD accredited systems. Responsibilities include developing and maintaining security documentation (SSPs, SAPs, SARs, POA&Ms), performing vulnerability assessments, managing eMASS tasking, and conducting security control validation and testing. The role requires 10+ years in cybersecurity, RMF compliance, or incident response; expertise with eMASS, DISA STIGs, and vulnerability assessment tools; and an active Secret clearance with DoD 8570/8140 IAT Level III certification (CASP+, CCNP Security, CISA, CISSP, GCED, or GCIH).

San DiegoLast seen today
Posted 11 days ago

OWT Global seeks a Cybersecurity Analyst to serve as technical authority for ServiceNow platform security, ensuring compliance with federal cybersecurity protocols including NIST SP 800-53 and DoD RMF. Responsibilities include mapping ServiceNow roles and access controls to compliance frameworks, developing and maintaining System Security Plans (SSP) and POA&Ms, supporting vulnerability management and security assessments, and providing advisory support to government personnel on cybersecurity matters. The role requires five years of practical cybersecurity experience, a Bachelor's degree in Cybersecurity or related field, and relevant certifications (CISSP or Security+ preferred), with strong understanding of ServiceNow architecture and DoD RMF processes.

San DiegoLast seen 9 days ago
$130,000 – $159,987 · Posted 13 days ago

The RMF Engineer will support DoD Assessment & Authorization activities by developing, maintaining, and managing Risk Management Framework documentation and artifacts throughout the system lifecycle. Key responsibilities include system categorization, creating and updating security plans and control evidence, managing RMF packages in eMASS, assessing security controls, and coordinating with engineering and cybersecurity teams on remediation. The role requires 3+ years of hands-on DoD RMF experience, deep knowledge of NIST SP 800-53 and RMF processes, and proficiency with authorization management tools. This hybrid position is mostly remote and demands strong technical documentation and stakeholder communication skills.

San DiegoLast seen 11 days ago