#R-00158669
ecurity program adheres to DISA, DoD, and National Institute of Standards and Technology (NIST) approved cybersecurity and information assurance (IA) architecture, policies, programs, standards, and guidelines. The SCA-R Manager will report to the SCA-R Lead and be responsible for leading the implementation of DISA RME's assessment and authorization activities in addition to managing other direct reports.
This is a hybrid position allowing 50% remote work after a brief ramp-up period (first 2-3 weeks will be 100% onsite, then your time will be split 50/50 onsite vs remote).
In this role, you will lead the team responsible for implementing and overseeing all of DISA's information systems (new and re-authorization efforts), security posture, and authorization/RMF activities.
You will also:
Under the direction of the SCA-R Lead, assist in leading personnel on A&A activities and adherence to all NIST, Federal, DoD, and DISA policies, procedures, and standards regarding cyber security and the RMF
Develop and maintain the SCA-R/V&V schedule in accordance with the timeline established for A&A and AO ISs and by assigning and adding the necessary resources, based on the technologies that need validation and verification, to conduct assessments and validations of implemented controls and POA&M items
Develop and gain approval of the Security Assessment Plan prior to assessment of all implemented security controls and technology areas through automated and manual assessments in accordance with NIST SP 800-53 and NIST SP 800-115
Develop and submit V&V and security assessment reports that capture automated and manual assessment results and all pertinent information for a comprehensive assessment of the IS for completion of the POA&M
Lead personnel to develop authorization packages with all required artifacts in accordance with NIST SP 800-37 that includes risk analysis/assessment and determination along with recommendation for the authorizing officials' authorization decision
Monitor systems through their lifecycle and in accordance with FISMA requirements, including monitoring for system and environmental changes, ongoing assessments, authorization package updates, ongoing authorizations, and system disposal
Participate in, and provide technical expertise to DISA's configuration management boards while considering Federal, DoD, and DISA security policies, standards and guidelines and its impact to requested changes
Participate in staffing/recruiting and retention efforts and personnel management, including selection and training, performance assessment, work assignments, and recognition/disciplinary actions
Motivate and lead team members, fostering a diverse and inclusive environment
This role will be based onsite in Alexandria, VA and an active Top Secret security clearance is required prior to start.
Basic Qualifications:
Bachelor's degree in IT-related field and 12+ years' experience in the Cybersecurity area. Additional relevant experience may be considered in lieu of degree.
5+ years' experience in Certification and Accreditation/Assessment and Authorization
3+ years' experience in Security Control Assessor/Validator Experience
5 years of project management work experience
DoD 8570 IAM/IAT Level III certification (CISSP or CISM required) prior to start
Demonstrated leadership skills/previous lead position
Customer service skills
Expert knowledge and experience with RMF process, NIST SP 800-37, NIST SP 800-53, CNSSI 1253
Top Secret security clearance required prior to start (program can support up to TS/SCI)
Preferred Qualifications:
PMP, Experience with Microsoft Project
DISA RME Assessment and Authorization experience
GSMO
External Referral Eligible
tn10
Original Posting:
May 5, 2025
For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.
Pay Range:
Pay Range $126,100.00 - $227,950.00
The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.