We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results
New

Information Security Eng 3

CDO Technologies, Inc
85000.00 To 95000.00 (USD) Annually
United States, Kansas, Mcconnell Air Force Base
Jun 24, 2026

Members of this Service Area provide technical expertise to manage RMF Authority to Operate (ATO) packages and support Cybersecurity functions. Review and implement applicable assessment and authorization (A&A) documentation in compliance with DoD Cybersecurity policy and agency guidance, including DoD 8500 series, CNSS 1253, and NIST special publications. Provide A&A and Cybersecurity support, including RMF for DoD IT, assessing compliance with STIGs, reviewing automated scans, security test and evaluation (ST&E), vulnerability assessments, and computer security responses. Create new and manage existing RMF packages using eMASS (or the applicable Air Force system of record).

The contractor shall provide Cyber Surety support on first shift and manage ANG NOS Risk Management Framework (RMF) packages for three networks and complete the following tasks:

  • Provide technicalexpertiseto manage ANG enterprise Risk Management Framework Authority to Operate packages.
  • Manage RMF packages for 2 enterprise networks, another separate but interconnected information system, and supports inheritance artifacts for 90 ANG wings.
  • Create andmaintainPlans of Action and Milestones (POA&M), waiver and technical feasibility documentation while ensuring the technical accuracy of all evidence provided for RMF packages
  • Monitor relevant policies and regulations for changes that may affect the system
  • Provide and/or develop supporting evidence for RMF IA controls
  • Monitor DISA and other authority repositories for relevant security bulletins and alerts
  • Develop and/ormaintainpolicies and procedures documentation
  • Review and implement current applicable assessment and authorization (A&A) documentation in compliance with DoD Cybersecurity policy and agency guidance, including DoD 8500 series, ICD 503, CNSS 1253, and NIST special publications.

Special Qualifications

  • Knowledge of DoD and A&A processes, activities,standardsand available analytical tools
  • Experience with the Risk Management Framework
  • Experience with NIST 800-53
  • Experience with DISA STIGs
  • Experience witheMASStools
  • Experience with BMC Remedy for tracking and coordinating work requirements
  • Must have a minimum of three (3) years of related professional IP experience commensurate with tasks outlined in the service area.
  • Must have theCertified in Governance, Risk and Compliance (CGRC)Certification offered from ISC2or earn the certification within90 days.
  • SECRET Security Clearance (FINAL)
Applied = 0

(web-77cf7d65c7-rcc7h)