- Produce all required DOD compliance documentation for RMF, Audit Response and Remediation, Cyber Task Orders, Required Scorecards, Privacy documentation, and other compliance requirements as detailed in the DSCA CYBR Service Catalog.
- Draft and coordinate cybersecurity-related documentation to meet required standards, controls, and metrics.
- Support all steps of the RMF process (Steps 0-6) required to gain and maintain DOD Information Network (DODIN) and agency commercial network authority to operate.
- Assist in categorization, control selection, implementation, and tailoring support, as well as support of assessments from the ISSO role.
- Prepare and validate controls in eMASS packages for assessment and review.
- Ensure that control requirements are well-defined and that necessary documentation and evidence are gathered for validation and assessment.
- Work in the DOD GRC tool Enterprise Mission Assurance Support Service (eMASS) to support control validation.
- Conduct continuous monitoring of information systems to detect vulnerabilities, threats, and security incidents.
- Utilize security tools and technologies to perform regular scans, assessments, and analysis of system vulnerabilities.
- Assist in the detection, analysis, and response to cybersecurity incidents.
- Provide weekly vulnerability compliance reporting to ISSMs.