TASS (Current Contract) - Cybersecurity Engineer – Sr (Cyber Cloud Assessment) na AGE solutions
AGE solutions · Fort Meade, Estados Unidos Da América · Onsite
- Senior
- Escritório em Fort Meade
About Us
AGE Solutions is looking for a Senior Cyber Cloud Assessment Engineer to join our team in support of an upcoming cybersecurity risk management and assessment program with our DoD customer. As a Team Lead, you will be responsible for performing analysis, conducting independent validations of assessments, and Continuous Monitoring (ConMon) for authorized CSPs and CSOs.
Individuals in this role must be available to work full-time on-site at Ft. Meade, MD.
Essential Duties and Responsibilities
- Conduct cybersecurity assessments and validations of Cloud Service Offerings (CSOs) in support of the Department of Defense (DoD) Provisional Authorization (PA) process.
- Evaluate Cloud Service Provider (CSP) documentation packages following government guidance and procedures, including key artifacts such as the Cloud Architecture Diagram, System Security Plan (SSP), SSP Addendum, Readiness Assessment Report (RAR), System Architecture, Security Assessment Plan (SAP), Security Assessment Report (SAR), and associated Plans of Action & Milestones (POA&Ms).
- Review, analyze, and process additional documents including Change Requests, Extension Requests, Deviation Requests, Whitelist Requests, Corrective Action Plans, templates, process guide approvals, and continuous monitoring (ConMon) artifacts for existing Provisional Authorizations.
- Prepare and deliver up to 30 Cloud Security Assessment Packages annually, each including validated cybersecurity controls, certifier recommendations, and a statement of residual risk.
- Participate in technical kickoff meetings and review preliminary documentation to assess a CSP’s readiness posture.
- Analyze and provide detailed feedback on CSP submissions such as the RAR, SAP, SSP, and architectural diagrams.
- Assess and document the operational impact of authorizations, changes, and vulnerabilities on the CSP environment.
- Develop Cloud Security Assessment Packages in accordance with established guidelines, including the SAR, POA&M, and any Deviation Requests.
- Draft Authorization Recommendation Memoranda outlining CSO compliance with DoD cybersecurity controls, residual risks, and technical findings.
- Prepare formal DoD Provisional Authorization memoranda, detailing authorization length, CSO boundary, services provided, operating conditions, DoD usage considerations, and follow-on activities.
- Validate CSO controls within eMASS or other government-provided Governance, Risk, and Compliance (GRC) tools; ensure accurate tracking in the Mission Status Report (MSR).
- Review and verify the Customer Responsibility Matrix (CRM), ensuring proper control inheritance is reflected in eMASS/GRC systems.
- Upload authorization conditions as system-level POA&Ms in eMASS and monitor their resolution.
- Organize and associate all received documentation with applicable security controls within eMASS.
- Maintain and update the DoD Cloud Process Guide, including all checklists, templates, forms, and guidance documents.
- Assist in developing internal requirements and how-to guides for assessors conducting CSP validations.
- Document and refine assessment procedures and validation best practices to align with DoDI 8510.01 and the DoD Cloud Computing Security Requirements Guide (SRG).
- Contribute to the ongoing development and annual updates of the DoD Cloud Assessment Process Guides as requested by the Government.
Requirements:
- Bachelor's degree (IT-related field preferred)
- Eight (8) years of overall experience in cybersecurity or network security position
- Have an active DoD Top Secret clearance with SCI eligibility
- DoD 8570 IAM/IA Technical (IAT) Level III certification
- Familiarity with security controls for Azure, AWS, and assorted cloud platforms
- Solid understanding of DoD Risk Management Framework (RMF), DoDI 8510.01, and DoD Cloud Computing Security Requirements Guide (SRG)
- Familiarity with security controls for Azure, AWS, and assorted cloud platforms
- Hands-on experience with eMASS or other government-provided GRC tools
- Familiarity with cloud security documentation, including SSPs, SARs, RARs, and POA&Ms
- Ability to analyze complex cloud architectures and provide accurate risk assessments
- Strong technical writing and communication skills to produce security assessment reports and formal recommendations
- Applicants must reside within a commutable distance of Ft. Meade, MD in order to work onsite full time.
Work Environment:
- Must be able to sit for long periods
Compensation: $120,000 - $130,000
This posting is part of a pipeline for future opportunities supporting the current TASS contract. Employment is contingent upon position availability and government customer approval. AGE Solutions is actively engaging talent and encourages incumbents and new candidates to express interest to be considered if/when opportunities may become available.
At AGE Solutions, we reward performance, invest in growth, and share success. Our benefits support the whole person, professionally, financially, and personally.
- 26 Days Paid Leave: Includes vacation, sick, personal time, and holidays. You choose how to use it.
- Performance Bonuses: Performance bonuses are awarded based on individual contributions and company-wide results, aligning recognition with impact.
- 401(k) with Match: We match 3% of your contributions with immediate vesting.
- Financial Protection: Company-paid life insurance up to $300K and options for additional coverage for you and your dependents.
- Health Benefits: Multiple medical plans, dental, vision, FSA and HSA options to fit your needs.
- Parental Leave: 15 days of fully paid leave for new parents, because family matters.
- Military Differential Pay: We bridge the gap for employees on active duty, so they don’t take a financial hit while serving.
- Professional Growth: Paid training and certifications, tuition reimbursement, and the tools and tech to get the job done right.
- Shared Success: In the event of a company sale, our CEO has committed to returning 80% of net proceeds to employees. This ensures our team shares in the long term value they help create.
At AGE, you’ll do work that matters, supported by a company that delivers for its people.