Assessment and Authorization (A&A) Manager

Apply Now

Company: Chenega MIOS

Location: Arlington, VA 22204

Description:

Req ID: 35363

Summary

Assessment and Authorization (A&A) Manager

Arlington, VA

Are you ready to enhance your skills and build your career in a rapidly evolving business climate? Are you looking for a career where professional development is embedded in your employer's core culture? If so, Chenega Military, Intelligence & Operations Support (MIOS) could be the place for you! Join our team of professionals who support large-scale government operations by leveraging cutting-edge technology and take your career to the next level!

The Assessment and Authorization (A&A) Manager will support a key contract at DARPA, leading all activities related to the Risk Management Framework (RMF) process. This includes ensuring that DARPA systems meet federal cybersecurity standards and maintain Authority to Operate (ATO). The role requires strong managerial and project management skills, expertise in federal, DoD, and Intelligence Community cybersecurity policies, and the ability to communicate effectively with government stakeholders, including executive-level briefings.

Responsibilities
  • A&A Lifecycle Management: Lead the full Assessment and Authorization (A&A) process for DARPA systems, ensuring timely and successful ATO packages under the Risk Management Framework (RMF).
  • Security Documentation: Prepare and maintain System Security Plans (SSPs), Security Assessment Reports (SARs), Plans of Action and Milestones (POA&Ms), and other required documentation.
  • Vulnerability Management: Conduct continuous monitoring, identify security vulnerabilities, and coordinate remediation efforts.
  • Compliance Assurance: Ensure systems comply with NIST 800-53, CNSS, DoD 8510.01, and DARPA-specific cybersecurity policies.
  • Security Control Assessor (SCA) Support: Perform detailed NIST 800-53 control assessments, including technical evaluations, documentation reviews, and risk analysis to support ATO decisions. Develop necessary artifacts which include Security Assessment Reports and input to Security Impact Assessments.
  • Risk Management: Lead the identification, assessment, and mitigation of cybersecurity risks, balancing operational needs with security requirements.
  • JIRA Management: Oversee project tracking and workflow management using JIRA, ensuring visibility into task progress and risk mitigation efforts.
  • Stakeholder Engagement: Act as the primary liaison between DARPA stakeholders, Senior Authorizing Officials, and other organizational stakeholders, including external assessment teams.
  • Executive Briefings: Prepare and deliver clear, concise briefings to DARPA leadership and other senior stakeholders.
  • Team Leadership: Lead and mentor cybersecurity staff supporting the contract.
  • Security Architecture: Ensure secure systems design and interconnectivity in accordance with NIST guidelines, including Interconnectivity Service Agreements (ISAs).
  • Other duties as assigned.

Qualifications
  • Bachelor's degree or higher
  • Can be substituted for Associate's degree with 2+ years of relevant experience OR 4+ relevant experience
  • 10+ years of experience in cybersecurity, with a focus on Assessment and Authorization (A&A) and Risk Management Framework (RMF) processes.
  • TS with SCI eligibility required

Knowledge, Skills, and Abilities:
  • Experience working with DARPA, DoD, or IC agencies preferred.
  • Familiarity with eMASS, Xacta, or similar A&A tools preferred.
  • In-depth knowledge of NIST 800-53 controls, including hands-on experience conducting SCA assessments.
  • Experience preparing ATO packages, developing Security Assessment Reports, and managing continuous monitoring programs.
  • Strong project management skills, including the ability to manage multiple tasks and deadlines.
  • Excellent written and verbal communication skills, including the ability to brief executive leadership effectively and communicate complex technical issues to non-technical stakeholders.
  • Experience with JIRA for project and risk management tracking.
  • In-depth understanding of security architecture and Interconnectivity Service Agreements (ISAs) in accordance with NIST guidelines.
  • Experience in establishing and maintaining authority to operate (ATOs) in compliance with security controls based on NIST, RMF and internal cyber security control standards.
  • Experience in managing and implementing the risk management framework (RMF), DCSA requirements, DF ARS compliance, Agency policies and NIST standards.
  • Experience in preparing System Security Plans and Plans of Action and Milestones (POAM).

How you'll grow

At Chenega MIOS, our professional development plan focuses on helping our team members at every level of their careers to identify and use their strengths to do their best work every day. From entry-level employees to senior leaders, we believe there's always room to learn.

We offer opportunities to help sharpen skills in addition to hands-on experience in the global, fast-changing business world. From on-the-job learning experiences to formal development programs, our professionals have a variety of opportunities to continue to grow throughout their careers.

Benefits

At Chenega MIOS, we know that great people make a great organization. We value our team members and offer them a broad range of benefits.

Learn more about what working at Chenega MIOS can mean for you.

Chenega MIOS's culture

Our positive and supportive culture encourages our team members to do their best work every day. We celebrate individuals by recognizing their uniqueness and offering them the flexibility to make daily choices that can help them be healthy, centered, confident, and aware. We offer well-being programs and continuously look for new ways to maintain a culture where we excel and lead healthy, happy lives.

Corporate citizenship

Chenega MIOS is led by a purpose to make an impact that matters. This purpose defines who we are and extends to relationships with our clients, our team members, and our communities. We believe that business has the power to inspire and transform. We focus on education, giving, skill-based volunteerism, and leadership to help drive positive social impact in our communities.

Learn more about Chenega's impact on the world.

Chenega MIOS News- https://chenegamios.com/news/

Tips from your Talent Acquisition Team

We want job seekers exploring opportunities at Chenega MIOS to feel prepared and confident. To help you with your research, we suggest you review the following links:

Chenega MIOS web site - www.chenegamios.com

Glassdoor - https://www.glassdoor.com/Overview/Working-at-Chenega-MIOS-EI_IE369514.11,23.htm

LinkedIn - https://www.linkedin.com/company/1472684/

Facebook - https://www.facebook.com/chenegamios/

Chenega Corporation and family of companies is an EOE.

Equal Opportunity Employer/Veterans/Disabled

Native preference under PL 93-638.

We participate in the E-Verify Employment Verification Program

Similar Jobs