ATO System Steward
ATO System Steward
Veterans Engineering is seeking an ATO System Steward to work on a team supporting the Veterans Affairs (VA) to discover and mitigate their cybersecurity risks, understand and apply policies to address requests for information on cyber best practices, conduct risk assessments for specialized devices, support ATO sustainment activities for RMF steps 0-6, and provide information system security expertise to ensure the appropriate operational security posture is maintained for information systems. Perform very detail-oriented system documentation and updates and collaborate closely with system owners and facility ISSOs or Area Managers to execute system steward duties. Work with the clients to translate security concepts into actionable implementable solution recommendations to help the client make informed security decisions. This position is open to remote delivery anywhere within the U.S., to include the District of Columbia.
Must Have:
- 2+ years of experience with supporting system Authority to Operate (ATO) processes and creating artifacts, control implementation details, and POAMs.
- Experience with Information Security Continuous Monitoring (ISCM), RMF automation, and Comply to Connect.
- Experience with National Institute of Standards and Technology (NIST) security controls, the Governance, Risk Management, and Compliance (GRC) security documentation tool, Risk Management Framework (RMF), and security compliance processes.
- Knowledge of Federal Information Security Management Act (FISMA) and Federal Information System Controls Audit Manual (FISCAM) criteria.
- Ability to facilitate meetings, analyze authorization documents and associated artifacts against authorization requirements to identify gaps, establish a schedule to address outstanding authorization requirements, and coordinate directly with system team stakeholders.
- Ability to obtain and maintain a Public Trust or Suitability/Fitness determination based on client requirements.
- HS diploma or GED and 13+ years of experience with IT or bachelor’s degree in CS, IT, Math or Engineering and 8+ years of experience with IT
Nice If You Have:
- Experience with managing complex system records in the Enterprise Mission Assurance Support Service (eMASS) tool.
- Experience with the VA.
- Excellent oral and written communication skills.