
RMF/CSAM Analyst
Posted Aug 24

Posted Aug 24
This is a fully remote position, open to applicants in United States.
• Ensure the FSA IAM solution consistently meets security authorization and compliance through RMF and CSAM.
• Support the secure functioning of the new cloud-based IAM solution while adhering to federal identity-service standards.
• Guarantee compliance with FedRAMP, OMB M-24-15, and NIST SP 800-63 requirements.
• Manage event logging in alignment with OMB M-21-31 standards.
• Oversee the encryption of data at rest utilizing AES-256 with SHA-256 and data in transit using current TLS protocols.
• Assist with Security Incident Management.
• Maintain documentation for environment support.
• Address key user data encryption and protection requirements.
• Manage CSAM security controls and inheritance statements.
• Monitor and remediate POA&M items.
• Provide support for FISMA reporting and corrective action plans.
• Respond to CDM findings and manage CVE responses.
• Maintain the CSF scorecard at the necessary level or higher.
• Support supply chain risk management, data planning, federal records, CUI handling, Section 508 accessibility, and technology business management reporting.
• Maintain project, risk, and schedule documentation essential for sustaining the ATO.
• Required Public Trust clearance.
• Required Bachelor's degree.
• Minimum of 2 years of relevant experience.
• Strong understanding of the NIST Risk Management Framework (RMF) and CSAM tool.
• Experience with FedRAMP, FISMA, POA&M management, and security control inheritance.
• Familiarity with NIST SP 800-63, OMB M-21-31, and cloud security requirements.
• Capability to analyze scan results, create corrective action plans, and track remediation efforts.
• Excellent skills in documentation, organization, and attention to detail.
• Strong communication and collaboration abilities with ISSOs, security teams, and stakeholders.
• Understanding of data encryption, logging, and compliance reporting.
• Proficiency in Microsoft Office tools and compliance tracking systems.
• Ability to effectively manage routine compliance tasks and urgent security concerns.
• Good understanding of federal cybersecurity policies and compliance requirements.
• Eleven Federal Holidays.
• Paid Time Off accrued each pay period.
• Parental Leave.
• Three medical plan options with generous employer contribution.
• Dental and Vision Insurance.
• Company-paid Short-Term and Long-Term Disability.
• Company-paid Life and AD&D Insurance.
• 401k with competitive matching and vesting schedule.
• Continuing education assistance.
• Medical, Dependent Care, and Commuter Flexible Spending Accounts.
• Employee Assistance Program.
• Wellness benefits, including the Calm Health app and WellHub gym subsidy (formerly GymPass).
• 529 College Savings Plan.
• Legal Insurance.
• Pet Insurance.
XTB online investing
Clinton Health Access Initiative, Inc.
VALCE Talent Solutions
Get handpicked remote jobs straight to your inbox weekly.