Senior Security Engineer
Core
Develop and maintain IT security policies, architectures, and RMF security assessments for complex information systems.
Role type
Senior Security Engineer (RMF/IA)
Builds
Security assessment plans, POA&M reports, security authorization packages, and mitigation plans.
Domain
Federal government contracting / Information Assurance
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
NIST A&A/RMF guidelines, Risk Assessment and Management, Vulnerability Analysis, Contingency Planning, Configuration Management, Security Assessments, Mitigation Plans, System Security Categorization
Preferred skills
Information Assurance and Security certification
Technologies
NIST frameworks, RMF tools
Responsibilities
Conduct technical security assessments of complex information systems with minimal supervision. Develop security assessment plans and document results in Security Assessment Reports. Develop POA&M Reports including identified weaknesses and remediation recommendations. Coordinate assessment efforts with points of contact and work with a high degree of independence. Collaborate with system owners and IT operations to conduct system security categorizations. Develop initial system security plans and contingency plans aligned with organizational policies.
