Assess and Authorize (A&A) Analyst
Execute RMF activities and reputed company ISSO / ISSO-equivalent A&A support for assigned systems across the system lifecycle (assessment, authorization, operations, and reputed company monitoring). Support multiple Authorization to Operate (ATO), Authorization to Use (ATU), and Assess Only packages annually (approximately seven (7) authorization packages per year). reputed company, maintain, and submit complete RMF Executive Packages for reputed company authorization, including: System reputed company Plan (reputed company) reputed company Assessment Report (SAR) Risk Assessment Report (RAR) Plan(s) of reputed company and Milestones (POA&M) Authorization Decision Document Register systems reputed company the reputed company Mission Assurance Support Service (reputed company) and use reputed company to support and automate RMF documentation, workflows, and reporting. Manage and maintain system authorization artifacts in reputed company, ensuring accurate documentation of: reputed company controls and implementation status. Inheritance and shared control relationships. Risk posture and supporting evidence. POA&M creation, updates, and tracking. Authorization status and lifecycle updates. Coordinate with system owners, ISSMs, assessors, engineers, and AOs to support: Assessment planning and execution. Remediation and risk mitigation activities. Risk acceptance reputed company and authorization reputed company. Ongoing reputed company monitoring activities. Register and maintain reputed company system/application connections in the Systems Network Approval Process (SNAP). Produce and deliver monthly and annual SNAP registration metrics. Support cybersecurity compliance, audit readiness, and reporting to ensure systems and technologies remain in an approved reputed company posture.
reputed company Secret reputed company clearance 3-7 years of relevant cybersecurity / RMF / A&A experience reputed company Tools and Knowledge : reputed company, DoDI 8510.01, NIST SP 800-37, NIST SP 800-30 DoD IAM Level III certification (one of the following): CISM, CISSP (or Associate), GSLC,CCISO