Avint logo
Avint

Your Vision Achieved

Senior Cybersecurity Controls Assessor, RMF / ATO Expert

Security EngineerSecurity EngineerOtherRemoteSeniorTeam 11-50H1B No SponsorCompany SiteLinkedIn

Location

United States

Posted

71 days ago

Salary

0

Seniority

Senior

Bachelor Degree6 yrs expExperience acceptedEnglish

Job Description

Senior Cybersecurity Controls Assessor, RMF / ATO Expert

Avint

Avint is hiring a **Senior Cybersecurity Controls Assessor (RMF / ATO Expert)** to support and protect critical federal systems within the HACS program. In this role, you’ll be part of a high-performing team responsible for assessing, validating, and authoring security controls in accordance with federal compliance frameworks. You’ll work at the intersection of cybersecurity, risk management, and compliance, helping ensure systems meet stringent security requirements and authorization standards.

Job Requirements

  • Minimum 6 years of experience in cybersecurity, risk management, or security control assessment
  • Experience conducting security control assessments and authorization activities (e.g., NIST RMF)
  • Strong understanding of federal compliance standards and documentation
  • Ability to develop and review security assessment reports and artifacts
  • Bachelor’s degree or equivalent work experience
  • Preferred:** IRS or Department of Treasury experience

Benefits

  • Joining Avint is a win-win proposition! You will feel the personal touch of a small business and receive BIG business benefits. From competitive salaries, full health, a unique 401K plan, and generous PTO and Federal Holidays.
  • Additionally, we encourage every Avint employee to further their professional development. To assist you in achieving your goals, we offer reimbursement for courses, exams, and tuition. Interested in a class, conference, program, or degree? Avint will invest in YOU and your professional development!
  • Avint is committed to hiring and retaining a diverse workforce. We are proud to be an Equal Opportunity and Affirmative Action Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class.*
  • Salary $ based on experience*

Related Categories

Related Job Pages

More Security Engineer Jobs

Cantina logo

Security Researcher

Cantina

Our security platform combines AI and domain expertise, enabling teams to ship code faster with higher confidence.

Full TimeRemoteTeam 11-50Since 2023H1B Sponsor

• Perform deep-dive security reviews of smart contracts, protocols, and blockchain infrastructure • Analyze protocol designs and identify attack surfaces across DeFi primitives, tokenomics, governance, MEV, bridges, and ZK systems • Work within a pod or as part of a curated team with other senior researchers • Provide actionable recommendations with clear technical and business impact assessments • Reproduce exploits, write POCs, and occasionally contribute patches • Publish post-mortems, technical articles, and internal reports as part of the knowledge-sharing culture

Worldwide
$120K - $200K / year
Job Closed
Prisma Health logo

Senior Epic Analyst, Security

Prisma Health

Our Purpose: Inspire health. Serve with compassion. Be the difference.

OtherRemoteTeam 10,001+H1B Sponsor

• Lead position in analyzing clinical, business and/or technical processes and problems • Provides advanced technical expertise in identifying, evaluating and developing systems and procedures • Gathers and works with departments to prioritize development initiatives and activities • Manages system upgrades and large projects • Responsible for oversight of assigned Epic modules, workflows and system configuration

South Carolina
Job Closed
ASM Research logo

Senior Incident Response Engineer

ASM Research

It is the policy of ASM that an individual's race, color, religion, sex, disability, age, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies. All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, disability, or age. All decisions on employment are made to abide by the principle of equal employment.

Role Description The Incident Response Engineer, Senior provides senior-level technical leadership for resolving complex IT incidents that affect mission-critical services in a federal enterprise environment. The role leads deep end-to-end investigations through advanced observability, telemetry analysis, and cross-layer dependency mapping to isolate root causes and validate durable fixes. This position partners closely with incident managers and senior coordinators, engineering, and problem/change management teams to coordinate major events, shape incident response strategy, and elevate diagnostic practices across the operations organization. The senior engineer also drives continuous improvement by refining runbooks, tuning detection and alerting, and mentoring other responders to improve resilience and reduce time to restore. Key Responsibilities - Technical Lead: Lead complex investigations from scoping through closure; drive hypothesis-based troubleshooting; validate permanent fixes across distributed systems. - Observability & Diagnostics: Use modern monitoring/SIEM/observability to correlate metrics, traces, logs; distinguish symptoms from root causes; map impacts across infra/app/network/identity. - Runbooks & Automation: Design/refine technical runbooks; implement scripts/orchestration to standardize responses and reduce manual effort; codify remediation/verification checks. - SRE & Architecture Integration: Translate incident insights into capacity planning, reliability metrics, and service design changes; partner with platform/reliability engineering teams. - Technical PIRs & Coaching: Produce high-quality technical PIRs for engineers/executives; mentor responders in tools, diagnostics, documentation discipline, and IM practice adherence. - Cyber IR Interface: Coordinate with SOC/cyber responders when security indicators emerge; align IT ops IR and cyber IR workflows without compromising restoration velocity/safety. - Technical Mentoring: Coach incident responders and operations staff, raising the bar on diagnostic techniques, tool usage, documentation discipline, and adherence to incident management practices. Qualifications - Bachelor’s degree in Information Technology, Computer Science, Business Administration, or related field, or equivalent relevant work experience. - Minimum of 8 years of experience in incident management, IT operations, reliability engineering, or related IT roles, including frequent responsibility for leading complex, multi-system incident resolution. - Strong mastery of ITIL-aligned incident management principles and best practices, with demonstrated experience coordinating major incidents in a large enterprise or federal IT environment. - Advanced proficiency with incident management tools and modern monitoring/observability platforms used for log analysis, performance monitoring, and alerting. - Proven ability to manage multiple complex incidents concurrently, synthesize technical information quickly, and communicate clearly and confidently with both technical teams and leadership. - Active or obtainable SECRET clearance and U.S. citizenship, with the ability to satisfy all applicable federal suitability and security requirements. Preferred Qualifications - Background leading incident response in large-scale, cloud-centric, or hybrid environments, including ownership of cross-team technical coordination and complex investigations. - Advanced incident response, cybersecurity, or IT service management certifications (such as higher-level ITIL, incident-response-oriented, or security certifications). - Experience embedding incident insights into site reliability engineering practices, including error budgeting, reliability metrics, and capacity planning. - Demonstrated success building and refining automation for common remediation actions and verification checks. Compensation Ranges Compensation ranges for ASM Research positions vary depending on multiple factors; including but not limited to, location, skill set, level of education, certifications, client requirements, contract-specific affordability, government clearance and investigation level, and years of experience. The compensation displayed for this role is a general guideline based on these factors and is unique to each role. Monetary compensation is one component of ASM's overall compensation and benefits package for employees. EEO Requirements It is the policy of ASM that an individual's race, color, religion, sex, disability, age, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies. All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, disability, or age. All decisions on employment are made to abide by the principle of equal employment. Physical Requirements The physical requirements described in "Knowledge, Skills and Abilities" above are representative of those which must be met by an employee to successfully perform the primary functions of this job. Reasonable accommodations may be made to enable individuals with qualifying disabilities, who are otherwise qualified, to perform the primary functions. Disclaimer The preceding job description has been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities and qualifications required of employees assigned to this job.

United States
Job Closed
OtherRemoteTeam 201-500H1B Sponsor

• Perform hands-on security work across the stack: code reviews, threat modeling, vulnerability hunting, and remediation in production services • Own end-to-end remediation for complex findings: from exploit proof-of-concept to code-level fixes and automated CI checks • Build and maintain developer-first security tools, automation, and self-service capabilities (SAST rules, IaC scanning, dependency/OSS policies, CI/CD gates) • Lead threat modeling sessions and secure design reviews for new product initiatives and platform changes • Collaborate with SRE and Platform teams to harden runtimes, secrets management, identity, and authentication flows • Mentor and coach engineers on secure coding, secure-by-default patterns, and incident learnings • Contribute to security metrics and visibility (vulnerability backlog, mean time to remediate, coverage of automated tests)

United States
$140K - $200K / year