Cloud Computing Specialist (CCS), Information Assurance
Job Description
<div class="content-intro"><h3>About Us</h3> <div> <div>AGE Solutions is a premier technology and professional services company, providing in-depth consulting, advanced technology solutions, and essential services throughout the U.S. government, defense, and intelligence sectors. Prioritizing innovation and client-focused solutions, we assist major agencies in addressing intricate issues and ensuring a more secure future.</div> </div></div><p>We are looking for a <strong>Cloud Computing Specialist (CCS)</strong> to join our team in support of a DoD customer in Alexandria, VA. The CCS will serve as an Information Assurance and Cloud Computing SME with regards to Certification and Accreditation (C&A) and a broad coverage of the application of the National Institute of Standards and Technology (NIST) Risk Management Framework (RMF) standards and guidance as outlined in the NIST Special Publication(s) (SP) 800-53 and 800-37 (current versions).</p> <p><strong>Responsibilities Include:</strong></p> <ul> <li>Provide full lifecycle Information Assurance (IA) support for systems maintaining current Authority to Operate (ATO) under RMF via eMASS.</li> <li>Update, maintain, and validate RMF artifacts, IA documentation, scorecards, and accreditation packages.</li> <li>Develop, manage, and execute POA&M, MOUs/MOAs, risk acceptance documentation, and other compliance artifacts.</li> <li>Ensure continuous compliance with DoD/DLA RMF requirements supporting ATO and Authority to Connect (ATC).</li> <li>Support RMF Assessment & Authorization (A&A) processes and validate eMASS inputs.</li> <li>Conduct annual risk assessments and IA control validations.</li> <li>Review engineering projects and change requests to ensure implementation of required IA controls and policies.</li> <li>Support connection approval processes and manage required documentation.</li> <li>Identify security risks and enhancements; develop and track mitigation strategies.</li> <li>Evaluate and recommend security components and configurations (e.g., firewalls, IDS/IPS).</li> <li>Provide IA input to Technical Review Boards (TRB) and Change Control Boards (CCB).</li> <li>Support DLA CERT, network engineering, and NTS teams on IA compliance and security event response.</li> <li>Maintain situational awareness of USCYBERCOM alerts/advisories and assess operational impact.</li> <li>Analyze proposed IT acquisitions for IA, interoperability, architecture, and standards compliance; identify required security configuration guidance.</li> <li>Support DISN sub-network accreditation to achieve/maintain full ATO and ATC.</li> <li>Plan and execute IA requirements for technology migrations affecting accredited systems.</li> <li>Implement and maintain information protection guidance for controlled unclassified and classified information in accordance with DoD/DLA policy.</li> </ul> <p><strong>Required Skills, Qualifications and Experience:</strong></p> <ul> <li><strong>Minimum Requirement:</strong> <ul> <li>Five (5) years of relevant C&A experience; Risk Management Framework (RMF) and NIST C&A experience</li> <li>DOD IA experience.</li> </ul> </li> <li><strong>Certification Requirements:</strong> <ul> <li>Cloud Computing Security Certification</li> <li>Certification meeting DOD 8570.01 IAM III (CISSP, CISM, etc.)</li> </ul> </li> <li><strong>Skills and Experience: </strong> <ul> <li>Experience in assessing IA Controls and conducting C&A reviews for large, complex Information systems.&