About the job
About Us
AGE Solutions is seeking a Senior Cyber Cloud Assessment Engineer to enhance our team in support of a forthcoming cybersecurity risk management and assessment initiative with our Department of Defense (DoD) client. As a Team Lead, you will play a crucial role in conducting analyses, performing independent validations of assessments, and ensuring Continuous Monitoring (ConMon) for authorized Cloud Service Providers (CSPs) and Cloud Service Offerings (CSOs).
This position requires full-time, on-site work at Ft. Meade, MD.
Key Responsibilities:
- Execute comprehensive cybersecurity assessments and validations of Cloud Service Offerings (CSOs) to facilitate the DoD Provisional Authorization (PA) process.
- Review and assess Cloud Service Provider (CSP) documentation packages in alignment with government guidelines, including critical artifacts such as Cloud Architecture Diagrams, System Security Plans (SSPs), Readiness Assessment Reports (RARs), Security Assessment Plans (SAPs), and Security Assessment Reports (SARs).
- Analyze and process supplementary documents like Change Requests, Extension Requests, Corrective Action Plans, and continuous monitoring artifacts for existing Provisional Authorizations.
- Prepare and deliver up to 30 Cloud Security Assessment Packages annually, each featuring validated cybersecurity controls, certifier recommendations, and a statement of residual risk.
- Engage in technical kickoff meetings and evaluate preliminary documentation to determine CSP readiness.
- Critically evaluate CSP submissions including RARs, SAPs, SSPs, and architectural diagrams, providing detailed feedback.
- Document the operational impact of authorizations, changes, and vulnerabilities within the CSP environment.
- Develop Cloud Security Assessment Packages in accordance with established guidelines, including SARs and Plans of Action & Milestones (POA&Ms).
- Draft Authorization Recommendation Memoranda detailing CSO compliance with DoD cybersecurity controls, residual risks, and technical findings.
- Prepare formal DoD Provisional Authorization packages and reports for stakeholder review.
