Amyx, Inc. logo

Risk Management Support Task Lead

Amyx, Inc.

  • O'Fallon, Illinois
  • 9 days ago
  • Full-time

Highlights

Overview: Amyx is seeking Risk Management Support Task lead to oversee and manage all Risk Management Framework (RMF) requirements supporting the US Transportation Command (TRANSCOM) Senior Information Security Officer (SISO) contract at Scott Air Force Base, IL. Perform cyber security operations, which include: Information Systems Security Engineering (ISSE) services, Risk assessment development and support, Authorization support, Security configuration and vulnerability management support, Software assurance support, Security testing and auditing of security controls.

Numbers & Facts

LocationO'Fallon, Illinois
Job TypeFull-time
IndustryComputer/IT Services
Company Size100 to 499 employees
Year Founded1999
Websitehttp://www.amyx.com/

Description

Overview:

Amyx is seeking Risk Management Support Task lead to oversee and manage all Risk Management Framework (RMF) requirements supporting the US Transportation Command (TRANSCOM) Senior Information Security Officer (SISO) contract at Scott Air Force Base, IL.

As the RMF Lead, you will lead a team of Security Engineers to meet SISO RMF support requirements. As Task Lead, you will be responsible for overall direction and management of the team, and will be responsible for managing on-site deliverables, coordinating with the Government functional lead for method of delivery and Government requirements.

Responsibilities:

 

  • Provide Risk Management support for USTRANSCOM in implementing and conducting operations for all phases of the DoD Risk Management Program (DoDI 8510) and NIST 800-37
  • Perform cyber security operations, which include: Information Systems Security Engineering (ISSE) services, Risk assessment development and support, Authorization support, Security configuration and vulnerability management support, Software assurance support, Security testing and auditing of security controls
  • Conduct risk assessments to determine the risk posed by the integration of new systems or capabilities into the USTRANSCOM environment.
  • As required, obtain supporting data from other DoD/Federal organizations, vendors, or Internet research to support RMF requirements.
  • Conduct risk assessments in accordance with the principles of NIST SP 800-30, Guide for Conducting Risk Assessments, and the principles of NIST SP 800-160 Vol I and Vol II, and security best practices.
  • Maintain current documentation on ISSE processes and procedures and provide direct support for generation and delivery of all required contract deliverables.
  • Implements security measures in accordance with applicable ICDs, NISP, NIST, and guiding government regulations and local facility procedures.
  • Conducts ongoing vulnerability testing of the information system to verify security features and operating controls are functional, effective and meet government standards.
  • Interact with internal and external customers or government security officials to perform security duties, address routine information security matters with employees regarding issues.
  • Must have the ability to communicate accurate information
Qualifications:

Required:

• Approved DoW 8140 degree and/or industry certification deemed relevant to the work role code.
• Minimum of 10 years of related experience
• Secret security clearance
• Comprehensive understanding and experience with DoD RMF tool eMASS
• Understanding of network and host-based security devices and their role in moving packets securely from source to destination.
• Understanding of security requirements, testing, assessment and validation procedures, and best practices applicable to physical, virtual, and cloud (Infrastructure as a Service [IaaS], Platform as a Service [PaaS], Software as a Service [SaaS]) based environments.
• Knowledge of information security technologies (e.g., cryptography, biometrics, forensic analysis, vulnerability assessment, Security Information and Event Management [SIEM]).
• Understanding of Federal and DoD computer security policies, (e.g.,STIGs/SRGs, HIPAA, FISMA and Digital Millennium Act)
• Thorough understanding of NIST Special Publications (SP), and commercial best practices.
• Thorough understanding of DoD policies applicable to implementation of the DoD RMF.
• Working knowledge of ISO 27001, 27002.
• Excellent written and verbal communication skills, demonstrating the ability to present material to senior DoD and non-DoD officials.
 • Able to communicate effectively with senior leaders and customers to clearly present technical approaches and findings.

 

Desired:

• BA/BS degree from an accredited university
• Demonstrated knowledge and understanding of the USTRANSCOM mission
• Experience with PPSM is desired
• Knowledge of applicable DoD, JFHQ DoDIN, USCYBERCOM, and USTRANSCOM security guidelines and best practice

 

Benefits include:

  • Medical, Dental, and Vision Plans (PPO & HSA options available)
  • Flexible Spending Accounts (Health Care & Dependent Care FSA)
  • Health Savings Account (HSA)
  • 401(k) with matching contributions
  • Roth
  • Qualified Transportation Expense with matching contributions
  • Short Term Disability
  • Long Term Disability
  • Life and Accidental Death & Dismemberment
  • Basic & Voluntary Life Insurance
  • Wellness Program
  • PTO
  • 11 Holidays
  • Professional Development Reimbursement

 

 

Please contact talent@amyx.com with any questions!

 

Amyx is proud to be an Equal Opportunity Employer.  All qualified candidates will be considered without regard to race, color, religion, national origin, age, disability, sexual orientation, gender identity, status as a protected veteran, or any other characteristic protected by law. Amyx is a VEVRAA federal contractor and we request priority referral of veterans.



Physical Demands

Employee needs to be able to sit at a workstation for extended periods; use hand(s) to handle or feel objects, tools, or controls; reach with hands and arms; talk and hear. Most positions require ability to work on desktop or laptop computer for extended periods of time reading, reviewing/analyzing information, and providing recommendations, summaries and/or reports in written format. Must be able to effectively communicate with others verbally and in writing. Employee may be required to occasionally lift and/or move moderate amounts of weight, typically less than 20 pounds. Regular and predictable attendance is essential.

About Company

Amyx, Inc. is a financially strong ISO 9001-2008 certified and CMMI-DEV Level 3 appraised small business founded in 1999 and headquartered in Reston, Virginia. Amyx’s services are listed below. These services, backed by proven solutions, are delivered by a workforce of exceptional professionals, many of whom possess over 25 years of experience. Amyx personnel have strong core values rooted in public service and hold an intense belief that service to the Government can make a difference. Additional information on our core capabilities can be found on our Core Capabilities page.

Similar Jobs

See more jobs