Jobs Companies LTS Senior Security Risk Management Framework Engineer

Sobre esta vaga de Senior Security Risk Management Framework Engineer na LTS

LTS · Remoto · United States - Remote

 

Location: Remote (U.S.)
Clearance: U.S. Citizen or Permanent Resident Required with the ability to obtain a Public Trust
Salary Range: 110K – 125K

LTS is seeking a Senior Security RMF Engineer to join a cybersecurity transformation surge team supporting the VA.gov Platform. This role will serve as the bridge between VA security/RMF requirements and the engineers responsible for implementing those requirements across VA.gov.

The Senior Security / RMF Engineer must understand how security controls are implemented in modern cloud infrastructure and software delivery environments and be able to translate control deficiencies, authorization requirements, and security risks into actionable engineering work.This is not intended to be a documentation-only compliance role.

This individual will work closely with DevSecOps engineers and the existing VA.gov Platform ATO/security team to assess the current security posture, address gaps in VA.gov's Critical Controls, support ATO/cATO readiness, improve authorization artifacts, and automate evidence and control assessment wherever possible. The PWS specifically describes the desired model as one in which ATO/RMF documentation confirms security rather than defines it, with success measured through risk reduction and security outcomes rather than paperwork completeness.

What You’ll Do:

  • Assess VA.gov Platform compliance with the 18 Critical Controls identified by VA and help establish a baseline of current implementation and remaining gaps.
  • Perform security reviews, gap analyses, and risk assessments across VA.gov Platform infrastructure, pipelines, applications, and component systems.
  • Support ongoing ATO and cATO readiness for the VA.gov Platform authorization boundary.
  • Develop, update, and maintain RMF and authorization artifacts, including System Security Plans (SSPs), control narratives, POA&Ms, Business Impact Analyses (BIAs), Privacy Threshold Analyses (PTAs), and supporting evidence.
  • Evaluate identified control deficiencies and work with DevSecOps engineers to translate them into prioritized technical remediation work.
  • Validate completed engineering remediation against applicable security-control requirements and update supporting authorization documentation and evidence.
  • Support implementation of OSCAL-based, machine-readable security control models and automated evidence collection.
  • Develop and maintain POA&M processes and support automation of the POA&M lifecycle where feasible.
  • Conduct and support threat modeling, secure-design reviews, and security risk assessments.
  • Develop, coordinate, and maintain Memorandums of Understanding (MOUs) and Interconnection Security Agreements (ISAs) as required.
  • Coordinate with VA security stakeholders, AODRs/AOs, OIS, CSOC, auditors, and other authorization stakeholders.
  • Provide security guidance and consultation to VA.gov Platform and product teams.
  • Help develop security guidance, standards, decision trees, and training that allow product teams to better understand and own their security responsibilities.
  • Support security incident response, post-incident analysis, and identification of resulting security/control remediation.
  • Participate in an on-call rotation for critical security events as required.
  • Ensure ATO documentation and supporting evidence remain synchronized with technical changes implemented by the engineering team.
  • The PWS specifically requires the team to determine current compliance with VA's Critical Controls, collaborate with the team managing the existing ATO, and ensure authorization documentation is updated as technical work is completed.

What We're Looking For:

  • Associate’s degree + four years of relevant professional experience OR Bachelor’s degree + two years of relevant professional experience OR five years of relevant Cyber Security Engineer experience in lieu of a degree - Meeting the government-defined Cyber Security Engineer LCAT requirement
  • Strong experience with NIST Risk Management Framework (RMF) and NIST 800-53 security controls.
  • Experience supporting ATOs for complex information systems.
  • Experience performing security control assessments, gap analyses, risk assessments, and remediation planning.
  • Experience developing and maintaining SSPs, control narratives, POA&Ms, and security authorization evidence.
  • Ability to understand cloud infrastructure, CI/CD pipelines, application architectures, and modern software-development practices well enough to evaluate how security controls are actually implemented.
  • Ability to translate compliance/control requirements into specific technical requirements and engineering backlog items.
  • Experience working directly with technical engineering teams on vulnerability and control remediation.
  • Strong written communication and documentation skills.
  • Ability to work with technical teams, security stakeholders, auditors, and government leadership.

Nice to Have:

  • Experience supporting VA cybersecurity, RMF, or ATO processes.
  • Experience with FISMA High systems.
  • Experience with cATO or continuous authorization approaches.
  • Experience with OSCAL and automated security evidence collection.
  • Experience with VA security artifacts and processes, including PTA, PIA, BIA, MOU/ISA, SERA, or comparable federal processes.
  • Experience with cloud-native AWS environments, Kubernetes/EKS, GitHub Actions, and Infrastructure-as-Code.
  • Experience performing threat modeling or secure architecture reviews.
  • Familiarity with vulnerability-management programs, WASA/DAST scanning, and continuous security monitoring.
  • Experience working on large federal digital platforms or authorization boundaries containing multiple applications, services, and development teams

 

What’s in it for you?

The opportunity to support high visibility federal missions in IT and healthcare
A culture that values innovation, growth, collaboration, and quality
Access to cutting-edge tools and technologies
Comprehensive benefits for you and your family
A career path that rewards ambition and performance

If you’re ready to push boundaries, sharpen your skills, and join a team that is passionate about building what’s next, we’d love to meet you. Apply today and let’s build a future together!

 

Pay Range
$110,000$125,000 USD

LTS shares salary ranges to promote transparency. Compensation ranges are provided for informational purposes, and final compensation may vary based on experience, skills, location, and role requirements.

LTS is committed to offering eligible employees comprehensive benefits that will provide them with options intended to meet their needs and the needs of their family.

Pronto para se candidatar à LTS?
Candidatar-se à LTS

Sobre a LTS

What we offer

At LTS, we believe that our success is fueled by the hard work, dedication, and satisfaction of our team. We offer a competitive benefits package, including comprehensive healthcare, retirement plans, and a supportive work environment where every team member can thrive.

Who we are

LTS is an award-winning enterprise consulting, IT modernization, and healthcare innovations firm. As a leading provider of healthcare IT solutions for both federal agencies and public organizations, LTS has more than 20 years of experience fusing technology, ingenuity, and human-centered experiences to tackle an array of highly complex public health issues.

 

LTS is a leading information technology (IT) provider for mission critical systems leveraging the latest technologies to deliver cutting edge solutions from small mobile applications to large, complex enterprise applications. Our professionals specialize in multiple disciplines including program management, system integration, system design, system development, cybersecurity, infrastructure and data analytics.

Commitment to Veterans

LTS is proud to be a strong advocate for veterans and their invaluable skills. We recognize the dedication, leadership, and resilience that veterans bring to the workforce, and we are committed to providing meaningful career opportunities to those who have served our country. We actively seek to hire veterans and support their transition into civilian careers by fostering an empowering environment where they can thrive and continue to make an impact to our customers. Join us in building a stronger workforce that values service, integrity, and innovation. If you’re a veteran looking for your next mission, we welcome you to explore opportunities at LTS.

Join Our Talent Community

Don’t see a job that’s a perfect fit right now? No problem. Join our Talent Community to stay connected!

 

Follow Us

Stay updated on the latest news, updates, and opportunities from LTS. Follow us on LinkedIn.

 

Privacy Policy

LTS is committed to protecting the privacy and personal information of all job applicants and prospective candidates. This Careers Privacy Policy explains how we collect, use, store, and protect the information you provide during the recruitment and hiring process. We handle applicant data with care, transparency, and in accordance with applicable data protection laws.

We encourage you to review our full Careers Privacy Policy to better understand how your information is managed throughout the recruitment process. You can read the complete policy here: Careers Privacy Policy

 

Ver todas as vagas na LTS →

Vagas semelhantes

LT
Program Manager
LTS
⚡ Candidate-se cedo United States - Remote · local restrito $110,000–$120,000
● Nova 👁 Vista ✓ Candidatada há 16h
LT
Microsoft Endpoint Configuration Manager (MECM/SCCM)
LTS
⚡ Candidate-se cedo United States - Remote · local restrito $132,600–$148,700
● Nova 👁 Vista ✓ Candidatada há 16h
LT
System Administrator - Endpoint Engineering
LTS
⚡ Candidate-se cedo Albany, New York, United State... Presencial $116,475–$126,962
● Nova 👁 Vista ✓ Candidatada há 16h
LT
Salesforce Platform Architect
LTS
⚡ Candidate-se cedo United States - Remote · local restrito $121,100–$137,900
● Nova 👁 Vista ✓ Candidatada há 16h
LT
ServiceNow System Administrator
LTS
⚡ Candidate-se cedo United States - Remote · local restrito
● Nova 👁 Vista ✓ Candidatada há 16h
LT
ServiceNow QA Analyst
LTS
⚡ Candidate-se cedo United States - Remote · local restrito
● Nova 👁 Vista ✓ Candidatada há 16h
LT
AI Platform and Harness Engineer
LTS
⚡ Candidate-se cedo United States - Remote · local restrito
● Nova 👁 Vista ✓ Candidatada há 16h
LT
Lead Functional Business Analyst
LTS
⚡ Candidate-se cedo United States - Remote · local restrito $117,400–$132,200
● Nova 👁 Vista ✓ Candidatada há 16h
LT
Functional Business Analyst
LTS
⚡ Candidate-se cedo United States - Remote · local restrito $100,300–$112,300
● Nova 👁 Vista ✓ Candidatada há 16h

Cadastre-se para receber sugestões sob medida com base nas vagas que você abre e nas buscas que você salva.

Mais vagas na LTS

Ver todas as vagas na LTS →

Candidatar-se agora
🤖

Opa — calma aí

A JobsRadar foi feita para pessoas de verdade passando por um momento difícil na busca por emprego — não para requisições automatizadas. Você está clicando rápido demais e agora está temporariamente bloqueado.

Volte mais tarde. Se você está mesmo procurando emprego, estamos com você — apenas aja como um ser humano.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Ganhe vantagem na sua busca por emprego.

Entre no nosso canal do Telegram para o que ajuda você a conseguir a vaga — referências salariais, o pulso semanal do mercado e avisos de novos recursos. Sem spam, só sinal.

Entre no canal — é grátis