Also available on
Job Description
📋 Description Embed security into software delivery for VA-focused systems. Collaborate with application teams to integrate security into design, development, and deployment Support ATO efforts with SSPs, POA&M, and control documentation. Conduct risk assessments, vulnerability scans, and threat modeling aligned with NIST SP 800-53 and Participate in Agile/DevSecOps pipelines to secure CI/CD lifecycles. Monitor incidents and respond to findings with stakeholders. 🎯 Requirements Experience supporting ATO and RMF processes with documentation and continuous monitoring. Strong understanding of NIST SP 800-53, FISMA, and FedRAMP. Experience securing cloud environments like AWS GovCloud or Azure Government. Familiarity with vulnerability tools such as Nessus or ACAS. Familiarity with SIEM platforms like Splunk or ELK Stack. Some scripting/automation in Python, Bash, or PowerShell is a plus. 🎁 Benefits Fully remote Annual stipend Comprehensive Benefits Package Company Match 401(k) Flexible PTO, Paid Holidays