Contingent Contract Award
REMOTE
Connected Logistics is seeking as a Subject matter expert with regards to Certification and Accreditation (C&A) and a broad coverage of the application of the National Institute of Standards and Technology (NIST) Risk Management Framework
(RMF) standards and guidance as outlined in the NIST Special Publication(s) (SP) 800-53 and 800-37 (Current versions). To maintain current certification as a Certified Cloud Security Professional.
Job Duties
- Work independently with substantial cloud computing security knowledge.
- Identifies, manages, and resolves cloud computing security risk and implements “best practices” as applied within a cloud environment (across all the different deployment and service models, and derivatives).
• Five (5) years of relevant C&A experience
• Risk Management Framework (RMF) and NIST C&A experience
• DOD Cybersecurity experience
• Experience in assessing Cybersecurity Controls and conducting C&A
Information systems.
• Experience with modern and dynamic computing (e.g., hybrid compu
microservices) and networking protocols or standard Internet of Things
• Experience and well versed in FedRAMP assessment methodology of deployed in cloud information
systems to include six (6) domain areas Concepts & Design Requirements, Cloud Data Security, Cloud
Platfor Application Security, Operations, Legal & Compliance.
Security/Certification Requirements:
Sensitivity Level: IT-I – Critical Sensitive (Tier 5/SSBI)/ High Risk)
Clearance: SECRET
IA Level: IAT II
8570.01-M Baseline Certification:
ISC2 Certified Cloud Security Professional
Plus one of the following Google Cloud Platform certifications: Google Associate Cloud Engineer
Google Professional Cloud Architect Plus of the following:
AWS Certified Cloud Practitioner AWS Certified Security – Specialty
AWS Certified Solutions Architect – Associate AWS Certified Solutions Architect – Professional AWS
Certified SysOps Administrator
Microsoft Certified: Azure Administrator Associate Microsoft Certified: Azure Solutions Architect
Expert
Microsoft Certified Azure Security Engineer Associate
Oracle Cloud Infrastructure Cloud Operations
Desired experience and skill set
• Five (5) years hands-on experience working with Department of Defense (DoD) Commercial Cloud
Hosting solutions.
• In-depth knowledge of DoD security for Google Cloud Platform.
• Hands-on experience with commercial cloud provider hosting solutions in addition to Google (i.e.
Microsoft Azure, AWS, OCI) and associated relevant industry certifications.
Experienced with various cloud deployment solutions and offerings (IaaS, PaaS, SaaS)
• Cyber Security and Risk Management: Deep knowledge of cloud security principles and best practices.
Strong understanding of NIST controls, DISA Security Technical Implementation Guides (STIG)/
IAVAs, and DoD Cloud Computing Security Requirements Guide (CC SRG) relating to cybersecurity
principles with experience in identifying, assessing, and mitigating risks associated with security
posture as well as prepping and supporting successful audits.
• Documentation and Reporting: Skilled in preparing and organizing comprehensive cybersecurity audit
reports and technical documentation.
• Knowledge and understanding of solutions and strategies to meet or exceed requirements of DoD Zero Trust