Senior Cybersecurity Internal Controls Administrator (Information Assurance Engineer - Senior)
Job Description
CGI Group, Inc. seeks a Senior Cybersecurity Internal Controls Administrator to deliver RMF and eMASS services under DoD guidance for the Army PL ALTESS contract, located onsite in Radford, VA.
Responsibilities
- Provide DoD-aligned support in accordance with DoDI 8500.01, DoDI 8510.01, and AR 25-2.
- Lead Enterprise eMASS and RMF activities, including developing RMF packages, maintaining asset lists and categorizations, and coordinating system validation reviews.
- Generate artifacts to demonstrate control compliance.
- Review ACAS and STIG reports and drive remediation efforts.
- Create, track, and manage Plan of Action Mitigations (POA&Ms).
- Perform annual security reviews.
- Participate in Continuity of Operations (COOP) testing and Incident Response exercises.
- Maintain Army PPSM and Circuit Registry records.
- Contribute to SW Assurance reviews to ensure items are documented via eMASS POA&M.
Requirements
- Cybersecurity certification (such as CISSP or equivalent).
- Active DoD Secret Security Clearance.
- 10+ years of experience in Cybersecurity and RMF related areas.
- Extensive experience with Enterprise eMASS and RMF services.
- Proficiency in developing RMF packages and maintaining asset lists and categorizations.
- Ability to schedule and coordinate system validation reviews.
- Experience generating artifacts to support control compliance.
- Knowledge of ACAS and STIG reports and remediation coordination.
- Experience creating, tracking, and maintaining POA&Ms.
- Ability to perform annual security reviews.
- Participation in COOP and Incident Response testing.
- Ability to maintain Army PPSM and Circuit Registry records.
- Participation in SW Assurance reviews and documenting items via eMASS POA&M.
- Experience with security compliance and control documentation.
- Bachelor's degree in Computer Science or equivalent experience.
- Familiarity with DoDI 8500.01, DoDI 8510.01, and AR 25-2.
- Strong analytical and problem-solving skills.
- Excellent communication and coordination abilities.
- Experience with Army enterprise monitoring tools and practices.
- Knowledge of security regulations and best industry practices.
- Ability to work effectively in a team and collaborate with multiple stakeholders.
- Experience with incident response activities.
- Understanding of Continuity of Operations Plans and Communication Plans.
Desired qualifications
- Bachelor's degree in Computer Science or equivalent years of experience.
- Familiarity with DoDI 8500.01, DoDI 8510.01, and AR 25-2.
- Strong analytical and problem-solving skills.
- Excellent communication and coordination skills.
- Experience with Army enterprise monitoring tools and practices.
- Knowledge of security regulations and best industry practices.
- Ability to work in a collaborative, cross-functional environment.
- Experience with incident response activities.
- Understanding of Continuity of Operations Plans and Communication Plans.
Technologies
- eMASS
- RMF
- ACAS
- STIG
Benefits
- Competitive compensation
- Comprehensive insurance options
- 401(k) matching contributions and share purchase plan
- Paid time off for vacation, holidays, and sick leave
- Paid parental leave
- Learning opportunities and tuition assistance
- Wellness and wellbeing programs