Cybersecurity Authorization Services RMF SME
LeidosAbout the role
More About the Role:
Leidos is seeking a Cybersecurity Authorization Services (Cyber IA) Risk Management Framework Subject Matter Expert to support the Service Management, Integration, and Transport (SMIT) contract, the largest IT services program for the Navy. Under SMIT, the Leidos team delivers the core backbone of the Navy-Marine Corps Intranet (NMCI), including areas such as cybersecurity services, network operations, service desk, voice & video, messaging & mobility, and data transport. The Leidos team supports the Navy in unifying its shore-based networks and data management to improve capability and service while also striving for cost efficiencies and savings by focusing efforts under one enterprise network. The successful candidate will support the engineering (planning, designing, and implementing) for cyber services for the NMCI.
As a senior leader within the SMIT Engineering organization, the successful candidate will also be responsible for the Cybersecurity Authorization Services, Solution Information Security System Engineering (ISSE) services execution ensuring systems are maintained per security policies and procedures and maintaining compliance and ongoing reporting to senior SMIT leadership (Leidos and Navy).
•Lead and drive enterprise-wide activities involving both NMCI Engineering and Operations to elevate, develop, maintain and restore security compliance in a timely manner to meet ATO timelines and requirements.
•Effectively and proactively manage cross-organization dependencies necessary for the successful implementation of RMF for solution delivery and Cybersecurity Authorization services.
•Work with project managers to determine schedules, identify risk, and ensure accurate reporting of status to program leadership and the government Cyber leadership team
•Manage the day-to-day activities of RMF ATO and ASR security control management services.
•Lead and participate in regular briefings with the customer on cybersecurity status, including preparing briefing materials.
-Author, review, coordinate and submit cybersecurity authorization required artifacts in eMASS (including change requests) to achieve milestones such as Interim Authority to Test (IATT) and Authorization to Operate (ATO) in accordance with the project and program level schedules.
-Develop and maintain system security documentation, including drafting, reviewing, editing and recommending guidance for Standard Operating Procedures (SOP), Tactics, Techniques, & Procedures (TTP), Plan of Action and Milestones (POA&M) and Federal Information Security Management Act (FISMA) Score Card.
-Evaluate software and hardware during pre-acquisition phases to determine its ability to meet minimum security requirements based on NIST SP 800-53 Rev4 security controls.
-Comply with current Cybersecurity and IA manuals, instructions, and guides within the DoDI 8500.01 and DON 5239.
•Work closely with government Cyber leadership team to support ATO and ASR conditions and requirements.
•Participate in strategic network, security, and operations new technology planning.
What You'll Get to Do:
•Serve as a primary interface for the customer and Leidos program leadership to answer questions, address concerns, and provide status/updates around solution ISSE activities.
•Serve as a primary interface for the A&A team for senior program leadership and internal project managers, driving the teams’ technical deliverables and progress.
•Oversee the Solution ISSE team enterprise-wide activities to create/maintain the necessary RMF packages for Authorization as required by existing solutions or what is planned for implementation.
•Oversee the planning of upgrades, replacements, configuration changes, and other applicable changes regarding impacts to ATO validation efforts.
•Review Statement of Objectives (SOOs) and develop Basis of Estimates (BOEs) for cyber service Solution ISSE areas.
•Lead analysis, review, and validation with customers, stakeholders, and team members for NMCI projects and changes related to cyber Solution ISSE services.
•Comply with ITSM processes and procedures, Model Based Systems Engineering (MBSE) governance, and Cybersecurity requirements within the DoDI 8500.01 and DON 5239.
•Develop and maintain processes, checklists, and procedures necessary to support cyber authorization Solution ISSE services.
•Perform manager functions such as department meetings, performance management, timecard approvals, one-on-ones, training, etc., to provide employees with appropriate Leidos management/oversight.
•Manage subcontractor activities and plans for any subcontracted workload.
You'll Bring These Qualifications:
•Typically requires a BA/BS Degree or equivalent experience and 12-15 years of prior relevant experience or
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s