IA Policy and Compliance Certified Professional – Intermediate
ASRC Federal
Office
Huntsville, AL, US
Full Time
ASRC Federal is a leading government contractor furthering missions in space, public health and defense. As an Alaska Native owned corporation, our work helps secure an enduring future for our shareholders. Join our team and discover why we are a top veteran employer and Certified Great Place to Work™
JOB DESCRIPTION
ASRC Federal is looking for an experienced IA Policy and Compliance Certified Professional – Intermediate to support their work with the U.S. Army Contracting Command (ACC) Chief Information Officer (CIO) G6 at Redstone Arsenal, AL. This position supports the development, implementation, and maintenance of cybersecurity policies, standards, and procedures, ensuring compliance with applicable Department of Defense (DoD), Army, and ACC regulations.
The Intermediate IA Professional will work with a team of intermediate-level and senior-level personnel, focusingon all aspects of Risk Management Framework (RMF) activities, cybersecurity assessments, and incident response. This role requires a deep understanding of cybersecurity principles, a strong analytical ability, and excellent communication skills to effectively convey complex information to both technical and non-technical audiences.
KEY RESPONSIBILITIES
Maintain current Authority to Operate (ATO) status for ACCsystems and provide RMF guidance and support to other ACC locations with similar systems.
Update and maintainthe eMASSrecord for all ACC systems under the Professional’s purview.
Develop, update, and/or modifythe system-level artifacts (e.g., TTPs, plans, policies, procedures, hardware/software lists, data flow, system architecture diagrams, PIAs, Ports/Protocols/Services, MOA/MOU, etc...) and ensure they are associated with corresponding controls in eMASS.
Obtain, run, analyze, and import all applicable vulnerability scanners and compliance checkers as required, including STIGs, Nessus/ACAS Scans, etc...
Track and report IAVAs related to ACC systems.
Create, modify, and/or maintainall aspects of the implementation plan and test results, as defined by DOD, Army, NETCOM, and ACC requirements.
Develop, monitor, and maintain POA&Ms as required.
Create, modify, and/or maintainall aspects of CONMON.
Utilize existing or develop custom solutions to facilitate RMF requirements, reduce timelines and provide up-to-date status reporting of compliance
REQUIRED QUALIFICATIONS
Minimum of 3years of experience in cybersecurity, with a focus on policy development, RMF implementation, and compliance.
Proficient in:
DoD and Army cybersecurity regulations and policies.
The Risk Management Framework (RMF) process.
Strong analytical and problem-solving skills.
Proficiencyin using cybersecurity tools and technologies.
Strong written and verbal communication skills, including the ability to prepare and deliver briefings to senior leadership.
CLEARANCE LEVEL
SECRET Clearance
EDUCATION REQUIRMENTS
Bachelor’s degree in information technology, Cybersecurity, Data Science, Information Systems, or Computer Science from an ABET-accredited or CAE-designated institution. 4+ additional years of relevant experience will be considered in lieu of a degree.
CERTIFICATION
One of the following required: CGRC/CAP, CASP+, CCSP, Cloud+, SSCP, Security+, or GSEC
WORK ENVIRONMENT AND PHYSICAL DEMANDS:
This role is 100% on-site at Redstone Arsenal, AL.
We invest in the lives of our employees, both in and out of the workplace, by providing competitive pay and benefits packages. Benefits offered may include health care, dental, vision, life insurance; 401(k); education assistance; paid time off including PTO, holidays, and any other paid leave required by law.
EEO Statement
ASRC Federal and its Subsidiaries are Equal Opportunity employers. All qualified applicants will receive consideration for employment without regard to race, gender, color, age, sexual orientation, gender identification, national origin, religion, marital status, ancestry, citizenship, disability, protected veteran status, or any other factor prohibited by applicable law.
JOB DESCRIPTION
ASRC Federal is looking for an experienced IA Policy and Compliance Certified Professional – Intermediate to support their work with the U.S. Army Contracting Command (ACC) Chief Information Officer (CIO) G6 at Redstone Arsenal, AL. This position supports the development, implementation, and maintenance of cybersecurity policies, standards, and procedures, ensuring compliance with applicable Department of Defense (DoD), Army, and ACC regulations.
The Intermediate IA Professional will work with a team of intermediate-level and senior-level personnel, focusingon all aspects of Risk Management Framework (RMF) activities, cybersecurity assessments, and incident response. This role requires a deep understanding of cybersecurity principles, a strong analytical ability, and excellent communication skills to effectively convey complex information to both technical and non-technical audiences.
KEY RESPONSIBILITIES
Maintain current Authority to Operate (ATO) status for ACCsystems and provide RMF guidance and support to other ACC locations with similar systems.
Update and maintainthe eMASSrecord for all ACC systems under the Professional’s purview.
Develop, update, and/or modifythe system-level artifacts (e.g., TTPs, plans, policies, procedures, hardware/software lists, data flow, system architecture diagrams, PIAs, Ports/Protocols/Services, MOA/MOU, etc...) and ensure they are associated with corresponding controls in eMASS.
Obtain, run, analyze, and import all applicable vulnerability scanners and compliance checkers as required, including STIGs, Nessus/ACAS Scans, etc...
Track and report IAVAs related to ACC systems.
Create, modify, and/or maintainall aspects of the implementation plan and test results, as defined by DOD, Army, NETCOM, and ACC requirements.
Develop, monitor, and maintain POA&Ms as required.
Create, modify, and/or maintainall aspects of CONMON.
Utilize existing or develop custom solutions to facilitate RMF requirements, reduce timelines and provide up-to-date status reporting of compliance
REQUIRED QUALIFICATIONS
Minimum of 3years of experience in cybersecurity, with a focus on policy development, RMF implementation, and compliance.
Proficient in:
DoD and Army cybersecurity regulations and policies.
The Risk Management Framework (RMF) process.
Strong analytical and problem-solving skills.
Proficiencyin using cybersecurity tools and technologies.
Strong written and verbal communication skills, including the ability to prepare and deliver briefings to senior leadership.
CLEARANCE LEVEL
SECRET Clearance
EDUCATION REQUIRMENTS
Bachelor’s degree in information technology, Cybersecurity, Data Science, Information Systems, or Computer Science from an ABET-accredited or CAE-designated institution. 4+ additional years of relevant experience will be considered in lieu of a degree.
CERTIFICATION
One of the following required: CGRC/CAP, CASP+, CCSP, Cloud+, SSCP, Security+, or GSEC
WORK ENVIRONMENT AND PHYSICAL DEMANDS:
This role is 100% on-site at Redstone Arsenal, AL.
We invest in the lives of our employees, both in and out of the workplace, by providing competitive pay and benefits packages. Benefits offered may include health care, dental, vision, life insurance; 401(k); education assistance; paid time off including PTO, holidays, and any other paid leave required by law.
EEO Statement
ASRC Federal and its Subsidiaries are Equal Opportunity employers. All qualified applicants will receive consideration for employment without regard to race, gender, color, age, sexual orientation, gender identification, national origin, religion, marital status, ancestry, citizenship, disability, protected veteran status, or any other factor prohibited by applicable law.
IA Policy and Compliance Certified Professional – Intermediate
Office
Huntsville, AL, US
Full Time
August 8, 2025