Access Authorization, Amazon Web Services (AWS), Best Practices, CISA - Certified Information Systems Auditor, CISM - Certified Information Security Manager, CISSP - Certified Information Systems Security Professional, Capability Maturity Model Integration (CMMI), Cloud Computing, Communication Skills, Computer Science, Computer Security, Contingency Plans, Data Recovery, Defense Intelligence Agency (DIA), Depth Perception, Detail Oriented, Enterprise Architecture, Federal Information Processing Standards (FIPS), GCP (Good Clinical Practices), GSNA - GIAC System & Network Auditor, Government, Homeland Security, ISO 9001, Industry Standards, Information Assets, Information Technology & Information Systems, Information/Data Security (InfoSec), International Information Systems Security Certification Consortium (ISC)2, Internet Security, Interpersonal Skills, Leadership, Mentoring, Microsoft Windows Azure, Multitasking, Organizational Skills, Policy Implementation, Presentation/Verbal Skills, Process Improvement, Project/Program Management, Publications, Risk, Risk Analysis, Risk Management Framework (RMF), Schedule Development, Security Analysis, Security Monitoring, Small Business, Team Lead/Manager, Team Player, Test Tools, U.S. National Institute of Standards and Technology (NIST), United States Citizen, United States Department of Agriculture (USDA), United States Department of Energy (DOE), Value-Added Resellers (VAR), Writing Skills
Attainx Inc.
Position Title: Cybersecurity / Assessment and Authorization (A&A) Team Lead
Location: Hybrid-Remote / Silver Spring, MD (2 days on-site per week)
Clearance: Public Trust / US Citizenship Required
Position Overview AttainX, Inc. is seeking an experienced and highly motivated Cybersecurity / Assessment and Authorization (A&A) Team Lead to support a federal cybersecurity program. This position provides leadership and technical oversight for Security Assessment and Authorization (SA&A) activities across multiple federal information systems and cloud environments.
The successful candidate will lead teams performing Risk Management Framework (RMF) assessments, coordinate assessment activities with government stakeholders, evaluate security controls, develop authorization packages, and provide recommendations to support Authorization to Operate (ATO) decisions.
Required Qualifications - Bachelor's degree or higher in Information Systems, Cybersecurity, Information Technology, Computer Science, or related field.
- Four (4) years of combined relevant education and experience will be accepted in lieu of a degree.
- Knowledge of DOC, NOAA, and NWS IT security policies and implementation standards or similar organizations.
- Comprehensive understanding of NIST guidance, including NIST Special Publications and FIPS.
- Experience leading teams of IT Security Specialists or Security Assessors.
- At least 5 years of recent experience applying IT security concepts, methodologies, principles, procedures, and industry-standard security tools.
- At least 5 years of recent experience with enterprise architecture methodologies, contingency planning, backup/recovery best practices, technical testing tools, and RMF assessments.
- Robust verbal and written communication skills.
- Effective interpersonal, project management, and organizational skills
- Ability to work effectively in a team-oriented environment.
Required Certification Must possess at least one (1) of the following:
- CISSP
- CISA
- GSNA
- CEH
- ISC2 CGRC
- CISM
Preferred Qualifications - Bachelor's degree or higher in Information Systems, Cybersecurity, Information Technology, Computer Science, or related field.
- Experience assessing cloud-hosted systems in AWS, Azure, or GCP.
- Experience supporting federal ATO decisions and Continuous Authorization programs.
- Knowledge of High Value Asset (HVA) requirements.
- Clear-cut attention to detail and ability to manage multiple priorities.
Job Duties and Responsibilities - Lead and oversee full lifecycle Security Assessment and Authorization activities.
- Plan, coordinate, and manage assessment schedules, resources, and deliverables.
- Conduct security control assessments in accordance with NIST RMF and NIST SP 800-53.
- Review SAPs, SARs, VARs, POA&M recommendations, and ATO briefing materials.
- Conduct risk analyses and evaluate security control effectiveness.
- Assess cloud-hosted environments against federal cybersecurity requirements.
- Serve as the primary liaison between assessment teams and government stakeholders.
- Present assessment findings, risk determinations, and remediation recommendations.
- Support executive-level briefings and ATO decision activities.
- Mentor and guide cybersecurity personnel and assessment teams.
- Recommend security measures to protect organizational information assets.
- Implement process improvements that enhance assessment quality and efficiency.
About Us
AttainX Inc. is SBA Certified 8(a), Women Owned Small Business (WOSB), Economically Disadvantaged WOSB (EDWOSB), CMMI Level 3, ISO 9001:2015 certified QMS, and a Gold Level SAFe Partner. For over 14 years, AttainX has delivered innovative IT and cloud-based solutions for a broad portfolio of federal clients, including USDA, NOAA, DOE, DHS, and DIA.
Benefits:
- Paid vacation
- Medical, dental, and vision coverage
- Matching 401(k) plan
- Tuition/training reimbursement
- Long & Short-Term Disability
Accommodations:
Individuals with disabilities may request reasonable workplace accommodations by contacting AttainX Human Resources directly and specifying the nature of the support needed.
EEO Commitment:
AttainX is an Equal Employment Opportunity employer and prohibits discrimination in the workplace based on Title VII of the Civil Rights Act, VEVRAA, Section 503, and other applicable laws. These protections extend to all applicants and employees.
Physical Demands:
This position requires extended periods of sitting, computer use, and communication via phone or email. Occasional lifting of up to 10 pounds may be necessary. Vision abilities required include close, distance, and peripheral vision as well as depth perception.
Work Environment:
The work environment is typically moderate in noise and may require onsite presence during standard business hours.
AttainX Inc. is SBA Certified 8(a), Women Owned Small Business (WOSB), Economically Disadvantaged WOSB (EDWOSB), CMMI Level 3, ISO 9001:2015 certified QMS, and a Gold Level SAFe Partner. For over 14 years, AttainX has delivered innovative IT and cloud-based solutions for a broad portfolio of federal clients, including USDA, NOAA, DOE, DHS, and DIA.
Benefits:
- Paid vacation
- Medical, dental, and vision coverage
- Matching 401(k) plan
- Tuition/training reimbursement
- Long & Short-Term Disability
Accommodations:
Individuals with disabilities may request reasonable workplace accommodations by contacting AttainX Human Resources directly and specifying the nature of the support needed.
EEO Commitment:
AttainX is an Equal Employment Opportunity employer and prohibits discrimination in the workplace based on Title VII of the Civil Rights Act, VEVRAA, Section 503, and other applicable laws. These protections extend to all applicants and employees.
Physical Demands:
This position requires extended periods of sitting, computer use, and communication via phone or email. Occasional lifting of up to 10 pounds may be necessary. Vision abilities required include close, distance, and peripheral vision as well as depth perception.
Work Environment:
The work environment is typically moderate in noise and may require onsite presence during standard business hours.
Compensation details: 00 Yearly Salary
PI570c99058f99-4658