JobBobsReal-time global job discoveryLive

Cloud SCA-R, Mid

Agecareers · Ft. Meade, MD · 2026-07-14

executive
Apply on the employer's site

About this role

<div class="content-intro"><h3>About Us</h3> <div> <div>AGE Solutions is a premier technology and professional services company, providing in-depth consulting, advanced technology solutions, and essential services throughout the U.S. government, defense, and intelligence sectors. Prioritizing innovation and client-focused solutions, we assist major agencies in addressing intricate issues and ensuring a more secure future.</div> </div></div><p>AGE Solutions is looking for a <strong>Cloud SCA-R, Mid,</strong> to join our team in support of a cybersecurity risk management and assessment program with our DoD customer. In this role, you will be part of a team responsible for performing analysis, conducting independent validations of assessments, and Continuous Monitoring (ConMon) for authorized CSPs and CSOs.</p> <p>Individuals in this role must be available to work full-time on-site at Ft. Meade, MD.</p> <p><strong>Essential Duties and Responsibilities Include: </strong></p> <ul> <li>Conduct cybersecurity assessments and validations of Cloud Service Offerings (CSOs) in support of the DoD Provisional Authorization (PA) process</li> <li>Prepare 30 Cloud Security Assessment Packages per year, including validated cybersecurity controls, certifier’s recommendations, and residual risk statements</li> <li>Review Cloud Service Provider (CSP) documentation packages, including architectural diagrams, System Security Plans (SSP) with Addendums, Readiness Assessment Reports (RAR), Security Assessment Plans (SAP), and Security Assessment Reports (SAR)</li> <li>Evaluate supporting materials such as POA&Ms, Change Requests, Extension and Deviation Requests, Whitelist Requests, Corrective Action Plans, and applicable templates, checklists, and Continuous Monitoring (ConMon) artifacts</li> <li>Attend technical kickoff meetings to evaluate and document the CSP’s security posture and readiness for assessment</li> <li>Analyze and provide feedback on assessment documentation, including the RAR, SAP, SSP, and system architecture diagrams</li> <li>Identify and document the operational impact of security authorizations, changes, or identified vulnerabilities within the CSP’s environment</li> <li>Develop complete Cloud Security Assessment Packages in accordance with DoD standards, ensuring inclusion of SARs, POA&Ms, and Deviation Requests</li> <li>Create authorization recommendation memorandums summarizing compliance with DoD cybersecurity controls, technical evaluation results, and residual risk considerations</li> <li>Draft DoD PA memorandums outlining CSO boundary definitions, service offerings, authorization duration, terms and conditions, DoD usage considerations, and follow-on actions</li> <li>Validate implementation of CSO controls within eMASS or a government-provided GRC platform, and log assessment completion in the Mission Security Review (MSR)</li> <li>Review the Customer Responsibility Matrix (CRM) and ensure correct inheritance mapping within eMASS or the designated GRC tool</li> <li>Enter all authorization conditions into eMASS as system-level POA&Ms and monitor for timely resolution</li> <li>Upload and associate all CSP documentation with applicable security controls in eMASS or the appropriate system of record</li> <li>Track and manage all CSO-related data using the Team Lead Resource (TLR) Assessment Database</li> <li>Maintain and update the DoD Cloud Process Guide and associated templates, forms, checklists, and documentation</li> <li>Contribute to the development of internal instructions, how-to guides, and reference material to support consistent assessor workflows</li> <li>Ensure assessment activities are conducted in compliance with DoDI 8510.01 and the DoD Cloud Computing Security Requirements Guide (SRG)</li> <li>Document assessment methodologies and validation best practices to continuously improve assessment accuracy, consistency, and process efficiency</li> <li>Support the ongoing development and annual updates of the DoD Cloud Assessment Process Guides in alignment with evolving policy and government directives</li> </ul> <p><strong>Required Qualifications: </strong></p> <ul> <li><strong>Education: </strong> <ul> <li>Bachelor's degree (IT-related field preferred)</li> </ul> </li> <li><strong>Experience: </strong> <ul> <li>Five (5) years of overall experience in cybersecurity or network security position</li> </ul> </li> <li><strong>Security Clearance:</strong> <ul> <li>Must have an active DoD Top Secret clearance with SCI eligibility</li> </ul> </li> <li><strong>Certifications: </strong> <ul> <li>DoD 8570 IAM/IA Technical (IAT) Level II certification</li> </ul> </li> <li><strong>Skills and Knowledge: </strong> <ul> <li>Working knowledge of DoD Risk Management Framework (RMF) and DoDI 8510.01</li> <li>Familiarity with the DoD Cloud Computing Security Requirements Guide (SRG) and associated cloud security policies</li> <li>Familiarity with security controls for Azure, AWS, and assorted cloud platforms</li> <li>Experience conducting security assessments and developing security documentation (e.g., SSP, SAR, POA&M, SAP)</li> <li>Proficiency with eMASS or equivalent Government Risk and Compliance (GRC) tools</li> <li>Demonstrated ability to interpret and apply NIST SP 800-53 security…

Skills asked for

Similar jobs

Apply on the employer's site

Your next role is already in here.

Search live openings from thousands of employers, save the ones worth a second look, and let JobBob keep watch for the rest.