Description
Remote role but must live within 150 miles of DLA Location: Battle Creek MI
Contingent Upon Contract Award
Connected Logistics is seeking a Cybersecurity Assessment & Authorization SME to assist in managing the implementation, maintenance and monitoring of cybersecurity in support of J6 Program Executive Officer's Portfolio of IT capabilities, associated Program Management Offices, IT infrastructure support and Operational Technology areas for Information Systems/Programs throughout the entirety of its system development life cycle.
The Cybersecurity Assessment & Authorization SME serves as a cybersecurity Subject Matter Expert (SME) with regards to Assessment and Authorization (A&A) of information systems and all associated cybersecurity policies and procedures.
Key Responsibilities:
The Cybersecurity Assessment & Authorization SME executes DoW/DLA cybersecurity processes to authorize information systems, maintain authorization of information systems, or serves as a Subject Matter Expert (SME) for systems undergoing the authorization process. ย Specific duties for this position include but aren't limited to:
- Possessing an understanding of how security controls identified in the NIST 800-53 apply to the process of assessing and authorizing a large organization's IT infrastructure such as DLA, in which there is a compilation of large and small enclaves, Cloud Hosted Services, Operational Technology, AIS applications and outsourced IT processes.
- ย Determining the residual risk of an identified vulnerability (e.g., non-compliant security control) and determines the possible ramifications on the system's current or future authorization.ย
- Briefs senior management on the progress or results of an information system undergoing the Risk Management Framework (RMF) process.
Preferred Qualifications:
- Possess excellent analytical and writing skills.
- Possess Microsoft Office programs (Excel, Word, PowerPoint, MS Project, etc.) knowledge.
- Possess experience working with DoD/DLA.
Requirements
KP-1 Enterprise RMF & Authorization Leadย
Purpose: Serves as the senior cybersecurity authority for enterprise RMF execution, authorization strategy, and executive engagement across the DLA portfolio. Leads assessment, authorization, and risk management activities while serving as the primary advisor for AO, SCA, ISSM, and PM stakeholders.
ย ย ย
Minimum Requirementsย
- Five years RMF, C&A, and DoD cybersecurity experienceย
- Experience conducting authorization reviewsย
- Secret clearanceย
- Tier 3/NACLC/ANACIย
- IAM Level III certificationย
- CISSPย
- CAPย
- Former ISSM, SCA, AO support staff, or Cyber Program Leadย
- DLA or Fourth Estate experienceย
- eMASS administration experienceย
- Experience briefing SES and Flag Officer equivalentsย
KP-2 Security Control Assessment Leadย
Purpose: Leads security control assessment, independent validation, compliance reviews, and risk determination activities. Responsible for ensuring assessment consistency and quality across the enterprise workload.ย ย
Minimum Requirementsย
- Five years RMF and NIST experienceย
- Security control assessment experienceย
- Authorization review experienceย
- Secret clearanceย
- Tier 3 investigationย
- IAM Level III certificationย
- CAPย
- CISSPย
- CISAย
- Extensive NIST 800-53 assessment backgroundย
- Experience conducting SCA-style reviewsย
- Knowledge of FISMA and Federal compliance frameworks ย
KP-3 Continuous Monitoring & Vulnerability Management Leadย
Purpose: Leads ongoing cybersecurity compliance, vulnerability management, remediation tracking, STIG validation, and continuous monitoring operations throughout system lifecycles.ย ย
Minimum Requirementsย
- Five years DoD cybersecurity experienceย
- RMF experienceย
- Secret clearanceย
- Tier 3 investigationย
- IAM Level III certificationย
- CISSPย
- SecurityX (formerly CASP+)ย
- ACAS experienceย
- Enterprise vulnerability management experienceย
- STIG implementation expertiseย
- POA&M governance experienceย
KP-4 OT, Cloud & Emerging Technology Security Leadย
Purpose: Serves as the lead for Operational Technology (OT), Facility Related Control Systems (FRCS), cloud-hosted environments, and specialized authorization efforts requiring advanced cybersecurity expertise.ย ย
Minimum Requirementsย
- Five years DoD cybersecurity experienceย
- RMF and C&A experienceย
- Authorization review experienceย
- Secret clearanceย
- Tier 3 investigationย
- IAM Level III certificationย
- CISSPย
- CCSP or AWS/Azure security certificationย
- OT/ICS security experienceย
- Cloud authorization experienceย
- Experience supporting hybrid architecturesย
- Experience with platform and enclave authorizationsย
Total Rewards Statementย
We believe in fairness and clarity throughout our hiring process. The anticipated salary range for this position is $115,000.00 to $125,000.00 USD. This is a good-faith range based on factors such as your experience, geographic location, and any applicable contractual requirements, and may vary slightly. Beyond salary, we provide a robust benefits package and encourage ongoing professional development, because your growth and well-being matter to us. We're excited to support you in building a rewarding career with us!ย
Connected Logistics respects the need for confidentiality for all applicants.ย
Connected Logistics has been named a 2026 WTOP Top Workplace in the medium sized business category. Our mission is clear: we deliver mission-focused IT, cybersecurity, logistics, and enterprise modernization support to federal agencies. When we invest in our people and create an environment where they feel valued and empowered, we deliver stronger outcomes for our clients and the missions we support.ย
Connected Logistics offers an excellent benefits package that includes health, dental, vision, life, and disability insurance, a great 401(k) package, and generous Paid Time Off.ย
EOE/Disability/Veterans ย