user avatar

Cybersecurity Lead / RMF Team Lead

ORBIS INC.

Posted today

Job Requirements

San Diego, CA
Top Secret/SCI Polygraph Unspecified
Career Level not specified
Salary not specified
Join Premium to unlock estimated salaries

Job Description

Job Description:

Position Overview ORBIS is seeking a Cybersecurity Lead / RMF Team Lead to serve as an independent, third-party assessor for the NSWC Corona CCAM contract. The NQV Level III is a critical oversight role responsible for evaluating the security posture of Navy systems and providing trusted recommendations to the Navy Security Control Assessor (SCA). The successful candidate will ensure that system security controls are implemented correctly and effectively to mitigate risk to Navy operations.

Validation & Assessment Responsibilities:

  • Execute independent, comprehensive assessments of complex IT, PIT, and Operational Technology (OT) systems against DoD, DON, and NAVSEA cybersecurity standards.
  • Maintain strict separation of duties, ensuring complete independence from the system engineering, ISSM, and ISSO functions during the validation process.
  • Act as a Trusted Agent to the Navy SCA and SCA Liaison (SCAL), providing objective, risk-based recommendations regarding system authorizations.
  • Perform detailed reviews of System Security Plans (SSPs), architecture diagrams, data flow diagrams, and hardware/software baselines for accuracy and completeness.
  • Validate the implementation of NIST 800-53 security controls by reviewing test evidence, interviewing personnel, and directly observing system configurations.
  • Analyze automated vulnerability scanning results (ACAS), STIG checklists, and manual test data to verify compliance and identify residual risks.
  • Generate and finalize the Security Assessment Report (SAR) and Risk Assessment Report (RAR), clearly articulating the operational impact of unmitigated vulnerabilities.
  • Review and validate the accuracy of Plan of Action and Milestones (POA&M) entries, ensuring proposed mitigations are technically sound and appropriately resourced.
  • Conduct extensive reviews within eMASS, updating the validation status of individual controls and the overall package prior to SCA submission.
  • Provide continuous feedback and mentorship to ISSMs and ISSOs regarding the quality of package artifacts and the proper interpretation of security controls.
  • Support continuous monitoring efforts by validating the closure of POA&M items, assessing the impact of system upgrades, and reviewing annual security control assessments.
  • Maintain active registration on the official Navy Qualified Validators registry and comply with all ongoing training and professional development requirements.
Required Qualifications & Clearances:

  • Clearance: Must possess an active, TS/SCI and be a United States citizen.
  • Education: Bachelor's degree in Computer Science, Information Assurance, Cybersecurity, or a related STEM field from an accredited institution.
  • Experience: A minimum of seven (7) years of experience in cybersecurity, with at least four (4) years directly involved in executing RMF assessments or validations for the DoD.
  • Certifications (NQV): Must hold a current, active Navy Qualified Validator (NQV) Level III certification and provide formal documentation/appointment letters.
  • Certifications (DoD 8570): Must maintain an active IAM Level II or Level III baseline certification (e.g., CAP, CASP+ CE, CISM, CISSP).
  • Deep technical expertise in interpreting vulnerability data, network traffic analysis, and cryptographic implementations.
  • Proven ability to write comprehensive, technically accurate, and highly detailed risk assessment reports for senior government consumption.
Preferred Qualifications:

  • Active Top Secret clearance.
  • Prior experience validating tactical combat systems, weapons systems, or specialized hull, mechanical, and electrical (HM&E) systems.
  • Experience participating in Navy Cybersecurity Inspection and Certification Program (CSICP) or Command Cyber Readiness Inspections (CCRI).

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.

ORBIS offers an excellent benefits package and a competitive salary in a professional atmosphere.
group id: 90973602

Similar Jobs


Job Category
IT - Security
Clearance Level
Top Secret/SCI
Employer
ORBIS INC.