Delegated Authorizing Official Representative 3 shall possess the following capabilities:
Perform security planning, security assessment, risk analysis, risk assessment, and risk management support activities
Perform risk assessment and management to support integration of legacy systems into existing IT environment
Review and analyze Cybersecurity built into systems to be deployed to operational environments
Prepare risk assessment, plan of actions, authorization recommendations, and related security authorization documentation
Identify and support overall security requirements for the protection of data to ensure the implementation of information security policies, activities, and controls
Ensure Cybersecurity functions are included in the development and risk management process, particularly those focusing on infrastructure protection and defensive IT strategy
Facilitate interaction with customers, IT staff, and high-level corporate officers to assist in defining and achieving required risk management objectives for the organization
Support integration of legacy systems within respective IT environment
Required Skills
Eight (8) years of experience as an IT Risk Assessor, System Security Engineer, Information Systems Security Manager or DAO in programs and contracts of similar scope, type and complexity is required. A Bachelor’s Degree in Computer Science or IT Engineering or a related technical degree from an accredited college or university. In lieu of a Bachelor’s degree, an additional four (4) years of experience for a total of twelve (12) years.
Working knowledge of the following is required: system security design process, defense-in- depth/breadth, engineering life cycle, information domains, cross-domain solutions, controlled interfaces, identification, authentication and authorization, system integration, ICD 503 (formerly