Remote Cybersecurity and AI Authorization Lead (VA ESOM)
Kentro · United States · 1 wk ago
RemoteRemoteEngineering$130k–$150k/yrFull-time
Responsibilities
- Provide senior cybersecurity subject matter expertise to the Support Cell, ATO Managers, ISOs, EndPoint Engineering, and the AODR.
- Validate and advise on the inheritance of common controls and the flow of inherited controls into area segments within the CAM Module.
- Review and approve security-relevant SOPs, transition plan content, training materials, AI pilot designs, and reporting to ensure technical accuracy and policy alignment.
- Support complex or escalated ATO matters and act as a trusted advisor to ATO Managers on risk acceptance and POA&M decisioning.
- Liaise with the AODR and security leadership on policy interpretation, control implementation strategy, and emerging cybersecurity requirements.
- Lead the AI Opportunity Assessment to identify high-value AI and automation use cases.
- Design and execute AI pilots, including evaluation criteria, success metrics, and risk controls.
- Identify standardization opportunities where AI and automation can reduce variability and labor across all VA Areas.
- Lead labor reduction initiatives, partnering with the Reporting & Metrics Lead to quantify and report benefits.
- Ensure AI use cases comply with applicable federal AI policy, NIST AI RMF guidance, security controls, and privacy requirements.
- Partner with the ServiceNow Integration Lead to operationalize AI and automation within the ServiceNow ecosystem (CAM, HAM, SAM, CMDB).
- Provide senior technical expertise on automation architecture, AI tooling, and integration with CAM workflows.
- Mentor junior team members and analysts on technical RMF, CAM, and AI/automation topics.
- Coordinate with the ServiceNow Integration Lead and Reporting & Metrics Lead to ensure dashboards and reports accurately represent control posture, authorization status, and AI/automation benefits.
- Participate in Support Cell governance forums and represent the team in cross-stakeholder cybersecurity discussions.
Qualifications
- Master's degree in Cybersecurity, Information Systems, Computer Science, or related technical field. An additional 10 years of experience may be substituted for the degree requirement for a total of 20+ years of experience.
- 10+ years of cybersecurity experience, including at least 5 years in RMF / ATO roles and at least 3 years in automation, AI/ML, or RPA.
- Deep, hands-on knowledge of NIST SP 800-37, NIST SP 800-53, FISMA, and the control inheritance model.
- Working knowledge of federal AI policy, including the NIST AI Risk Management Framework (AI RMF).
- Demonstrated experience advising senior leaders on authorization decisions and risk posture.
- Hands-on experience implementing AI or automation in regulated environments.
- Working knowledge of ServiceNow GRC, IRM, or CAM modules.
- Strong design and architecture skills.
- CISSP, CISM, or CGRC (formerly CAP) certification.
Preferred Qualifications
- AI/ML credentials (e.g., Microsoft AI certifications, Google Cloud Professional ML Engineer, AWS ML Specialty).
- ServiceNow automation / AIOps experience.
- Prior VA or federal civilian agency RMF experience.
- Experience designing or operating common control provider programs.
- Familiarity with VA-specific RMF artifacts and processes.
Benefits
Salary Range: The salary for this position is between $130,000 - $150,000 annually. Factors affecting pay within this range may include geography/market, skills, education, experience, and other qualifications of the successful candidate.