Logo
Gunnison Consulting Group Inc

PPSM Continuous Monitoring Lead

Gunnison Consulting Group Inc, Washington, District of Columbia, us, 20022


We are seeking a highly skilled Ports, Protocols, and Services Management (PPSM) Continuous Monitoring Lead that can bring demonstrated experience to support a Department of Defense customer. The team will support the client in identifying, assessing, and prioritizing computing risks while developing strategies to secure the Agency's systems, networks, and data. It will ensure the accreditation of systems through robust cybersecurity strategies and continuous monitoring to protect against internal and external threats. The program's goal is to enhance cybersecurity, ensuring that information infrastructure remains secure, accessible, and trusted by authorized users.Duties and responsibilities include:Oversee and monitor all authorized IT systems (re-authorization and new systems) throughout their life cycle for changes that may impact the security posture of the system.Analyze proposed or actual changes to IT systems to determine the security impact, and periodically assess security controls and their effectiveness.Using the following technologies: Qmulos, Splunk, ACAS, Axonius, CheckMark, BURP and HBSS to assess/validate/monitor the security controls and security posture of the enterprise and system level to support ongoing authorization.Develop and maintain the DISA RE5 ConMon Strategy in support of RE5 A&A mission.Develop and maintain a DISA RE5 ConMon SOP that outlines required SOP activities and artifacts that include the oversight and monitoring of IT systems throughout their lifecycle.Perform continuous assessments of all security controls for all ISs under the purview of the organization. The contractor shall perform automated/manual security control monitoring of the IS and provide IS and Security Control Status Reports.Submit weekly IS and Security Control Status Reports.Validate that controls applicable to ConMon are properly implemented as part of the corresponding RMF package in eMASS (e.g. Common Control Package).Conduct the continuous assessments to IAW industry auditor standards.Report risk status of all systems on the DISA approved reporting tool.Provide IS status report through ConMon Dashboard on security control compliance tool visibility, POA&M status, CMRS visibility, asset visibility, FISMA/Scorecard Review, annual validation status, and other identified data points in the ConMon SOP.Maintain the status for automated and manual security controls and identify any past due for assessment and validation.Coordinate and facilitate coordination with system administrators, ACAS administrators, HBSS administrators, etc. on issues receiving the acceptable credentialing percentages on scans, HBSS data, etc.Provide IS Security Status in an online format that displays metrics from ConMon Strategy and SOP.Required Qualifications:6 or more years leading ConMon/PPSM Programs.5 or more years IT program management experience leading audits and inspections in DoD or Federal Government environment.Demonstrates successful track record for delivering large/complex projects on time and within budget within DoD Organizations.Demonstrates experience with the planning, coordinating, scheduling, resourcing, tracking, documenting, executing and analyzing audits and inspections within an organization.Demonstrates experience with applying compliance standards to large and complex IT environments.Demonstrates ability to evaluate the design and effectiveness of controls and standards to ensure compliance IAW the applicable audits and inspections for an organization.Demonstrates expert level understanding of vulnerabilities/weaknesses across complex IT environments and ability to understand applicability of security standards across technologies.Demonstrates experience with communicating and coordinating at a functional and senior Government level.Demonstrates experience with data analysis and developing work products to enable government risk-based decisions.Demonstrated experience with the development and execution of knowledge management best practices and the automation of knowledge management frameworks to enhance processes and procedures related to the management of a project.Demonstrates experience with the development and coordination of guidance and work products related to issues tracking management, plan of actions and milestones, and ensuring transparency of vulnerabilities within an organization.DoD 8570 IAM/IAT Level III certification. This will change to a DoD 8140 equivalent once a DISA 8140 policy is released.Desired Qualifications:Experience with Qmulos, Splunk, ACAS, Axonius, CheckMark, BURP, and HBSS.Education Requirement:

Bachelor's degree. Bachelors or Masters degree in Computer Science or IT or Engineering or related disciplines preferred.Clearance Requirement:

Top Secret with SCI eligibility required.Who is Gunnison Consulting Group?Gunnison Consulting Group is a forward-thinking and trusted partner serving the Federal Government by taking on its most ambitious technology projects in Cybersecurity, Digital Services, and Intelligence & Automation. Our 30+ years of success are attributed to a culture dedicated to innovating for tomorrow, today. We collaboratively work with our customers to understand their requirements and goals, and then bring to bear our domain expertise, industry knowledge, and exceptional employees to achieve those objectives.3 weeks of Personal Leave your first year (160 hours can roll over every year)11 paid Holidays each year5 days of Flexible Time Off each year401(k) company matchMedical, Dental and Vision InsuranceLife and Disability InsurancePublic Transportation SubsidiesCertifications and Training Allowance - $2,500/yearWe cordially invite you to join us. Please reach out, we would love to meet you!Equal Opportunity/Affirmative Action Employer. Must be eligible for employment in the United States. We are unable to sponsor candidates at this time.Apply Now

with our quick 3 minute Application!

* Fields Are RequiredWhat is your full name?First NameHow can we contact you?EmailPhone NumberNumber TypeWhat is your preferred method of communication?

#J-18808-Ljbffr