Designated Authorizing Official (DAO) 3 – TS/SCI w/Poly
Location: Columbia, MD office
About the Role
Amentum is seeking a Designated Authorizing Official (DAO) 3 for a prime contract. As a DAO3, you will serve on a team responsible for the Authorization and Assessment process under the Risk Management Framework (RMF) for new and existing information systems and maintain Authority to Operate compliance for all assigned systems.
Responsibilities
- Assist in identifying overall security requirements for data protection, ensuring implementation of appropriate security controls.
- Perform and analyze security risk assessments, risk analysis, risk management processes, security control assessments, and awareness activities for systems and networking operations.
- Ensure Cybersecurity functions are included in the configuration management process.
- Interact with customers, IT staff, and high-level corporate officers to define and achieve required Cybersecurity objectives.
- Contribute to building security architecture and assist with the integration of legacy systems.
- Support the acquisition/RDT&E environment and build Cybersecurity into systems deployed in operational environments.
- Prepare security authorization documentation, including risk assessments, plans of action, authorization recommendations, and related security authorization documents.
- Identify and support security requirements to ensure implementation of information security policies, activities, and controls.
- Ensure Cybersecurity functions are included in the development and risk management process, focusing on infrastructure protection and defensive IT strategy.
- Facilitate interaction with stakeholders to achieve required risk management objectives.
- Support integration of legacy systems within the IT environment.
- Adhere to Amentum’s safety and quality policies, including completing training and participating in safety initiatives.
Requirements
- Eight (8) years of related work experience as an IT Risk Assessor, System Security Engineer, Information Systems Security Manager, or DAO.
- Bachelor’s degree in Computer Science, Information Technology Engineering, or a related field. In lieu of a degree, an additional four (4) years of experience (total of twelve (12) years) is required.
- Working knowledge of the following:
- System security design process, defense-in-depth/breadth, engineering life cycle.
- Information domains, cross-domain solutions, controlled interfaces.
- Identification, authentication, and authorization, system integration.
- ICD 503 (formerly NISCAP), risk management, intrusion detection.
- Contingency planning, incident handling, configuration control, change management, auditing.
- Security authorization process, principles of Cybersecurity (confidentiality, integrity, non-repudiation, availability, access control).
- Security testing.
- DoD 8570.1 compliant IAM Level III certification, such as GSLC, CISM, or CISSP (or associate).
- Active TS/SCI security clearance with Polygraph.
Pay
$175,000 – $220,000 per year. Actual compensation may vary based on factors such as job responsibilities, education, experience, skills, internal equity, market data, and applicable laws.
Benefits
- Health, dental, and vision insurance.
- Paid time off and holidays.
- Retirement benefits (including 401(k) matching).
- Educational reimbursement.
- Parental leave.
- Employee stock purchase plan.
- Tax-saving options.
- Disability and life insurance.
- Pet insurance.
Note: Benefits may vary based on employment type, location, and applicable agreements. Positions governed by a Collective Bargaining Agreement (CBA), the McNamara-O'Hara Service Contract Act (SCA), or other employment contracts may include different provisions.
Schedule
Full-time, 8 hours per day, 5 days a week (Monday – Friday).