Lead Risk Management Framework (RMF) Specialist (Cyber Network Analysis Tech 4)
Huntington Ingalls Industries
Job Description
Lead Risk Management Framework (RMF) Specialist (Cyber Network Analysis Tech 4)
Requisition Number: 28122
Required Travel: 0 - 10%
Employment Type: Full Time/Salaried/Exempt
Anticipated Salary Range: $115,642.00 - $140,000.00
Security Clearance: TS/SCI
Level of Experience: Senior
Mission Technologies, a division of Huntington Ingalls Industries, is looking for a qualified individual to fill the role of the Lead Risk Management Framework (RMF) Specialist. You will be responsible for providing cybersecurity technical support to the Navy Enterprise Tactical Training Network (NETTN).
Position requires flexibility to work non-standard work hours and work weeks of more than 40 hours to meet business, customer, and contractual requirements. Additionally, the position requires flexibility as duties and responsibilities may be adjusted to meet business, customer, and contractual requirements.
- Lead the team in conducting security testing and evaluation of servers, workstations, databases, and network infrastructure devices (e.g. firewalls, switches, routers, load balancers) to identify security vulnerabilities and weaknesses, and produce detailed findings reports that support the security authorization process.
- Develop customized scanning and testing configurations within cybersecurity tools to meet specific security and configuration requirements.
- Map identified findings whether discovered through manual assessment, automated scanning, or associated with CVEs to the appropriate NIST SP 800-53 security controls, DoD policies, and relevant technical standards.
- Analyze and interpret cybersecurity directives, policies, and instructions, including CTOs, FRAG/TASK/OPORDs, IAVMs, PKI guidance, and STIG requirements, to assess applicability and required actions.
- Create or Update eMASS artifacts to support Assessments and Authorizations and Annual Security Reviews.
- Evaluate the adequacy of current security testing and assessment toolsets; identify capability gaps and recommend new tools or enhancements to improve assessment coverage and effectiveness.
- Serve as a subject matter expert on known and emerging vulnerabilities, providing analysis of exploitation methods, mitigation and remediation strategies, severity impacts, and operational considerations.
- Review Assessment & Authorization (A&A) documentation to ensure compliance with applicable DoD and RMF cybersecurity policies and standards.
- Perform risk analyses and recommend mitigating controls.
- Assist in drafting, updating, and maintaining cybersecurity policies, procedures, and technical guidance for systems and emerging technologies.
- Provide critical written and oral analysis of security architecture documentation and vulnerability and risk assessments.
- Support the creation, management, and tracking of Plans of Action and Milestones (POA&Ms), ensuring accurate status reporting and alignment with cybersecurity requirements.
- Advise Government in all aspects of Cybersecurity and Risk Management Framework (RMF).
- Track and report cybersecurity compliance status in VRAM and other applicable vulnerability tracking or reporting platforms.
- Conduct independent verification and risk analysis of security configurations, STIG findings, and POA&M entries for systems and devices across the enterprise.
- Demonstrate the ability to work independently with minimal oversight as well as collaboratively in a team environment.
Minimum Qualifications
- Must be able to obtain and maintain US Top Secret security clearance.
- Current DISA ACAS Administrator Training certificate (Preferred).
- Experience using DISA ACAS.
- Advanced knowledge of Microsoft Excel.
- Comply with the DoD Cyber IT/CSWF Program requirements of DoD 8570.1-M and SECNAV M-5239.2 at the Intermediate (IAT-II) level.
- COMPTIA Security+ CE certification.
- 9 years relevant experience with Bachelor’s in related field OR
- 7 years relevant experience with Master’s in related field OR
- 4 years relevant experience with a PhD.
- High School Diploma or equivalent and 13 years relevant experience.
Physical Requirements
May require working in an office, industrial, shipboard, or laboratory environment. Capable of climbing ladders and tolerating confined spaces and extreme temperature variances.
The listed salary range for this role is intended as a good faith estimate based on the role's location, expectations, and responsibilities. When extending an offer, HII's Mission Technologies division takes a variety of factors into consideration which include, but are not limited to, the role's function and a candidate's education or training, work experience, and key skills.
We offer competitive benefits such as best-in-class medical, dental and vision plan choices; wellness resources; employee assistance programs; Savings Plan Options (401(k)); financial planning tools, life insurance; employee discounts; paid holidays and paid time off; tuition reimbursement; as well as early childhood and post-secondary education scholarships. Bonus/other non-recurrent compensation is occasionally offered for qualified positions, and if applicable to this role will be addressed by the recruiter at the screening phase of application.
All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, physical or mental disability, age, or veteran status or any other basis protected by federal, state, or local law.
If you need a reasonable accommodation for any part of the employment process, please send an e-mail to [email protected] and let us know the nature of your request and your contact information. Reasonable accommodations are considered on a case‑by‑case basis. Please note that only those inquiries concerning a request for reasonable accommodation will be responded to from this email address.
Additionally, you may also call 1-844-849-8463 for assistance. Press #3 for HII Mission Technologies.
#J-18808-Ljbffr