DecisionPoint seeks a Cybersecurity Lead to manage and enforce cybersecurity posture, compliance, and continuous monitoring for a cloud-based enterprise environment supporting Department of Defense (DoD) missions.
Requirements
- Lead the design and implementation of the program’s cybersecurity framework across multiple IL environments (IL2–IL5).
- Perform RMF lifecycle management, including control identification, tailoring, inheritance, and mapping to DoDI 8510.01.
- Develop and maintain continuous RMF evidence generation through automated compliance and monitoring pipelines using eMASS, Tenable ACAS, AWS Inspector, or similar tools.
- Manage cybersecurity architecture documentation including network diagrams, system boundaries, and data flow mappings.
- Oversee vulnerability management, penetration testing, and remediation tracking through POA&M management.
- Ensure alignment with DISA STIGs, SRGs, and PPSM compliance requirements; perform periodic audits and assessments.
- Coordinate with security assessors and system engineers to maintain accreditation and Authorization to Operate (ATO) compliance.
- Lead continuous cyber risk assessments and control mapping to ensure evolving compliance with DoD and program directives.
- Manage the DevSecOps Plan and ensure continuous security integration into all development and deployment pipelines.
- Support implementation of Zero Trust architecture through identity management, segmentation, and telemetry.
- Oversee the generation and maintenance of security documentation, including SSPs, SARs, IRPs, and contingency plans.
- Lead incident response and remediation coordination, ensuring timely logging, root cause analysis, and reporting.
- Mentor cybersecurity staff and communicate compliance posture, risk levels, and readiness metrics to leadership.
Benefits
- Generous Paid Time Off
- 401k Matching
- Retirement Plan
- Four Day Work Week
- Generous Parental Leave
- Tuition Reimbursement
- Relocation Assistance