Concept Plus Logo

Concept Plus

Cybersecurity Policy & RMF Analyst

Reposted 5 Days Ago
Remote
Hiring Remotely in United States
Junior
Remote
Hiring Remotely in United States
Junior
The Cybersecurity Policy and RMF Analyst role involves providing Risk Management support, conducting RMF validations, monitoring risks, and ensuring compliance with DoD cybersecurity policies.
The summary above was generated by AI

About Concept Plus
Concept Plus is a growing consulting firm headquartered in Fairfax, VA. We are an Oracle Gold Partner, offering deep technical expertise, combined with business insights and an experienced team focused on providing technical solutions for our clients. We are proud to have been recognized as one of the "25 Most Powerful Oracle Solution Providers" in the area! We offer great benefits including competitive pay, comprehensive health insurance, dental and vision insurance, paid life insurance, paid time off, 11 paid holidays, bonuses, tuition reimbursement, unlimited training, and the opportunity to work in a collaborative, flexible, innovative environment! For additional information about our dynamic organization, please visit our website. at www.conceptplus.com. 


About the role

Concept Plus is seeking a Cybersecurity Policy and RMF Analyst to provide Risk Management Support to identify shortfalls in the assessment and authorization process, track and manage Risk Assessments, assist in implementing a Risk Management strategy and tie together the business continuity of operations plan (COOP) and the IT COOP plans.


What you'll do

  • Adhere to the DoD cybersecurity policy requirements set forth in DoDI 8500.01, "Cybersecurity," and DoDI 8510.01, "Risk Management Framework (RMF) for DoD Information Technology (IT)" and their successors.
  • Monitor identified risks and track response actions to ensure they support the customer Risk Management Strategy and are properly documented in a risk registry.
  • Provide recommendations to business and IT leaders on best business practices followed in the industry to mitigate or remediate risks · Schedule, conduct, and track RMF validations for each IT Portfolio.
  • Review of security controls, as part of a risk assessment, as needed to support an Authorization to Operate (ATO) of an investment.
  • Review vulnerabilities and identify potential risks based on the type of vulnerability and the potential impact.
  • Identify actions needed to protect information flows to ensure adherence to legal and regulatory standards.
  • Coordinate the development of plans and procedures to ensure that business-critical services are recovered in the event of a digital risk event. · Facilitate and support the development of asset inventories, including digital assets in cloud. · Track all technology requests.
  • Track open vulnerabilities and provide a status on each open risk for each IT Portfolio / Investment. Ensure POAMs are current and reflects all known weaknesses.
  • Stay up-to-date with the latest Azure and FedRAMP regulatory changes and industry trends, advising teams on potential impacts and necessary adjustments.

Required Qualifications

  • US Citizenship
  • Active DoD Secret Clearance (or able to obtain)
  • Bachelor’s Degree in an IT related field
  • Meet DoD 8570/8140 Information Assurance Technician (IAT) Level II or Higher (Sec+ CE or Higher)
  • 1+ Years Experience with the Risk Management Framework Process
  • 1+ Years Experience operating the Enterprise Mission Assurance Support Service Application (eMASS)


Preferred Qualifications

  • Experience in performing IT audits, security planning and policy development
  • An understanding of related information technology (e.g. firewalls, VPN, virtualization, identity management systems etc.)
  • Knowledge of domain structure, user authentication, data encryption, access audits and end-use security best practices
  • CompTIA CySA+, CEH and/or CompTIA Pen Test+ Certifications a plus


Concept Plus is an Equal Opportunity Employer. As such, we will give your application full consideration without regard to your race, color, religion, sex, age, national origin, disability, veteran status, sexual orientation, gender identity, or any other classification protected by federal, state, or local law.


Similar Jobs

24 Minutes Ago
Remote or Hybrid
97K-120K Annually
Senior level
97K-120K Annually
Senior level
Automotive • Professional Services • Software • Consulting • Energy • Chemical • Renewable Energy
Independently manage field engineering projects for product safety evaluations across the Western US. Develop UL requirements, test methods, and equipment for complex or non-standard products. Conduct on-site electrical testing, communicate with clients and AHJs, resolve compliance issues, serve as project handler/reviewer, and present code and certification topics. Frequent domestic and some international travel required.
Top Skills: Building CodesElectrical Test EquipmentHazard Based EngineeringNecUl
24 Minutes Ago
Remote or Hybrid
97K-120K Annually
Senior level
97K-120K Annually
Senior level
Automotive • Professional Services • Software • Consulting • Energy • Chemical • Renewable Energy
Manage and execute field engineering projects independently, develop UL requirements and special test methods, perform on-site electrical product evaluations, resolve compliance issues, communicate with clients and authorities, and supervise major code and regulatory projects with frequent travel.
Top Skills: Building CodesElectrical Test EquipmentHazard Based EngineeringHazardous LocationsNecUl
37 Minutes Ago
Remote or Hybrid
106K-160K Annually
Senior level
106K-160K Annually
Senior level
Cloud • Fintech • Software • Business Intelligence • Consulting • Financial Services
The Tax Manager will oversee tax return reviews, consult on partnership taxation, manage client relationships, mentor staff, and respond to tax authority inquiries.
Top Skills: Tax-Related Software

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account