Coalfire Federal

FedRAMP Assessor, Top Secret Clearance

Job Locations US-Remote
ID
2024-3754
Type
Regular Full-Time

About Coalfire

Coalfire Federal is a market leading cybersecurity consultancy firm that provides independent and tailored advice, assessments, technical testing and a full suite of cyber engineering services to Federal agency customers.  Coalfire Federal along with its parent company, Coalfire, has an unparalleled client list with deep customer relationships with leading cloud and technology providers including Amazon, Microsoft, IBM, Google and Oracle and Federal agencies.  Coalfire has been a cybersecurity thought leader for over 20 years and has offices throughout the United States and Europe and is committed to making the world a safer place by solving our clients’ toughest security challenges. 

 

But that’s not who we are – that’s just what we do.

 

We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team of passionate problem-solvers who are hungry to learn, grow, and make a difference.  

 

We’re currently on the lookout for a FedRAMP Assessor with an active Top Secret Clearance to support our team.

 

Position Summary

Our FedRAMP Assessors support Security Control Assessments (SCAs) and other advanced-level Continuous Monitoring Activities within cloud-based environments. To succeed on our FedRAMP teams, you’ll need a strong understanding of security-related system controls and an understanding of the various testing methods utilized to ascertain the effectiveness of those controls.

 

You will work in a team atmosphere with an experienced Technical Project Lead where you will perform a range of assessment and advisory services, producing quality deliverables, and developing reports for clients.

 

Location Details

FedRAMP positions are remote within the U.S. and limited travel may be expected based on client needs. 

 

What you'll do

  • Function as an Assessor to create, modify, and review Assessment & Authorization (A&A) documentation required to successfully complete projects in accordance with the Statement of Work (SoW) and project scope for FedRAMP and DoD DISA assessments
  • Develop Security Authorization Packages that are compliant with FedRAMP and DoD requirements
  • Conduct Third-Party Assessment Organization (3PAO) activities for customers and stakeholders
  • Conduct comprehensive self-Quality Assurance (QA) reviews to ensure deliverables meet organization and client standards
  • Execute examine, interview, and test procedures in accordance with NIST SP 800-53A, FedRAMP and DoD requirements 
  • Ensure cybersecurity policies are adhered to and that required controls are implemented 
  • Validate respective information system security plans, policies, and procedures to ensure NIST control requirements are implemented 
  • Author concise assessment statements and results to detail whether controls are properly implemented 
  • Author recommendations associated with your findings on how to improve the customer’s security posture in accordance with NIST controls

 

What you'll bring

  • Experience with FedRAMP & DoD DISA security control requirements and how they overlap with additional frameworks
  • Experience with the FedRAMP and RMF assessment and authorization processes having completed at least 10 FedRAMP/DoD assessments
  • Experience in understanding and applying relevant technical knowledge to FedRAMP & DoD DISA environments
  • Previous work experience with a FedRAMP 3PAO
  • Demonstrate knowledge and understanding of Cloud environment services, to include operating systems, networking components, databases, access controls, auditing, boundary protection, and cryptography.
  • Understanding of IT security technologies including network and application security, firewalls, access management, and data protection
  • Ability to assist team members with proper artifact collection and detail to examples of artifacts that will satisfy assessment requirements
  • Strong written and verbal communication skills including the ability to explain technical matters to a non-technical audience.

 

Education

Completed bachelor’s degree from an accredited university, preferably in an IT related field, or equivalent combination of education and experience

 

Clearance / Suitability

    • Must be a U.S. Citizen
    • At minimum an active Top Secret Clearance is required for this position.

 

Certifications

A CISSP is required, along with one additional FedRAMP certification to include: CASP, GCED, GCIH, GSLC, CISA, CISM, CFR, or CCISO

 

Years of Experience

    • Three to Five (3-5) overall years of experience in the IT industry, with strong familiarity with the applicable NIST Special Publications 800-37 Revision 1, 800-53 and 800-53A Revision 4, 5
    • One to three (1-3) years of DoD DISA or FedRAMP assessments experience is strongly preferred

 

Bonus Points

  • Basic knowledge of networking components and various operating systems in a cloud environment, including UNIX and Microsoft
  • A solid understanding of the FedRAMP Framework and DoD Impact levels IL4, IL5 and IL6

 

Why you'll want to join us

Our people make Coalfire Federal great. We work together on interesting things and achieve exceptional results. We act as trusted advisors to our customers and are committed to client-focused innovation as well as innovation in the industries that we serve.

Coalfire offers our people the chance to grow professionally with colleagues they like and respect while tackling challenges that stretch their minds and expand their skill sets. Regardless of location, you’ll experience a company that prioritizes connection and wellbeing and be part of a team where people care about each other and our communities. You’ll have opportunities to join employee resource groups, participate in in-person and virtual events, and more.

And you’ll enjoy competitive perks and benefits to support you and your family, like paid parental leave, flexible time off, certification and training reimbursement, digital mental health and wellbeing support membership, and comprehensive insurance options.  

Coalfire is an EEO employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.  

Options

Sorry the Share function is not working properly at this moment. Please refresh the page and try again later.
Share on your newsfeed