· Provide cybersecurity expertise to surface combat system program offices.
· Lead efforts to bring platform information technology systems through the full life cycle of the Risk Management Framework (RMF) process to achieve/renew Authority to Operate (ATO).
· Develops, coordinates, and reviews detailed Assessment & Authorization documentation in accordance with DoD Instruction 8510.01 – DoD Information Assurance Assessment and Authorization (A&A) Process (RMF).
· Review systems scans/tests using the Security Content Automation Protocol (SCAP) Compliance Checker (SCC), and the Assured Content Assessment Solution (ACAS).
· Coordinate with support team to ensure the hardening of systems under test to conforms all applicable regulations from DoD and the Defense Information Systems Agency (DISA). This includes but is not limited to Security Technical Implementation Guides (STIG), Security Requirements Guides (SRG).
· Work with the NAVSEA, PEO IWS, combat system program offices to ensure DOD/DON cybersecurity regulations and best practices are followed in the design, development, and sustainment of the integrated combat systems and weapon systems.
· Work as a team player comfortable interacting with many different people and effective at verbal and written communication, supporting face-to-face meetings, phone, and email interactions with program leads, engineers, and team members.
· Advise DoD customers on secure design and implementation of systems and capabilities.
· Identify security vulnerabilities and weaknesses in SW, HW and Architecture design for mission environments and be able to make recommended mitigations.
· Provide mentorship and training to other team members.
· Build briefs to convey critical information to decision makers.
· Track and report status of RMF packages in portfolio.
· Advise leadership and stakeholders on the cybersecurity integration, alignment, and implementation of capabilities and systems.
· Identify security vulnerabilities and weaknesses in SW, HW, and Architecture design for mission environments and recommend mitigations.
· Provide general cybersecurity and RMF expertise and support to DoD programs.