Description
Description
This position requires familiarity with the FAA Lifecycle Management Process as well as NIST Risk Management Framework and Air Traffic Organization (ATO) processes for information system approvals.
Expected duties to include but not limited to Completion of annual Information Security Continuous Monitoring (ISCM) security deliverables Security requirements are appropriately incorporated throughout the FAA Lifecycle: from Concept and Requirements Definition, to Solution Implementation, to In-Service Management, System compliance with security and privacy regulations including Zero-Trust Model, Federal Information Security Modernization Act (FISMA) requirements, and FAA Orders, Participation in security requirement testing and validation, Risk management decisions align and minimize security impacts on FAA and NAS Mission, Strong technical writing skills for review, critique and briefing of dashboards and reports to customer.
Writes and updates material for reports, briefs, proposals, and related technical and administrative publications concerned with work methods and procedures. Refines work of writers, and heads and coordinates activities of writers engaged in preparing technical, scientific, medical, or other material for publication in conjunction with or independent from research, and related activities.
Additional security responsibilities:
Data calls for commercial vulnerabilities
Bulletins, Advisories, and Alerts
Plan of Action and Milestones (POA&M maintenance)
Continuous operational security support
Weekly Dashboard and Reports
Qualifications
Required knowledge and skills include:
NIST SP 800-53 as revised,
NIST Risk Management Framework (RMF)
FAA Lifecycle Management Process for Information Systems Security
Strong verbal and written communication skills
Bachelor of Science degree in Computer Science, Cyber Security or Information Systems or related field and ten (10) years or more experience.
US Citizenship is required with the ability to obtain and maintain a Public Trust clearance
Apply on company website