Haystack
← Back to Jobs
Other
OF

Senior Security Risk Management SME

One Federal SolutionWashington, District of Columbia🇺🇸United StatesPosted 16 Jun 2026

Why This Role Stands Out

As a Senior Security Risk Management SME at One Federal Solution, you will leverage your extensive expertise in cybersecurity compliance and risk management to directly impact federal mission security and contribute to innovative solutions. This role offers a fantastic opportunity to apply your deep knowledge of NIST and RMF principles while advancing your career in a reputable organization. If you possess a strong background in A&A, FISMA, and secure cloud environments, this position is an excellent next step for your professional journey.

Quick Overview

Seniority
Mid Senior
Work mode
On Site
Location
Washington, District of Columbia, United States
Posted
2 months ago
AWSAzureComplianceMicrosoft OfficeProcurementRisk Management

Job Description

One Federal Solution provides senior-level cybersecurity risk management expertise supporting A&A, FISMA compliance, IC security standards, continuous monitoring, CDS, and secure cloud/hybrid environments. We apply NIST, CNSSI 1253, and RMF principles to strengthen security posture, automate compliance activities, and deliver risk-based solutions for federal mission needs.

Senior Security Risk Management SME Task and Duties:

  • Provide senior-level security risk management subject matter expertise.
  • Support Authorization and Assessment (A&A), FISMA compliance, IC cybersecurity policy and standards, continuous monitoring, CDS, and secure cloud/hybrid engineering.
  • Apply emerging and evolving security risk management practices, including automation of A&A and continuous monitoring activities.
  • Apply NIST 800-series and CNSSI 1253 security controls, risk management framework principles, and related guidance.
  • Advise on secure cloud and hybrid engineering risk posture, compliance, and remediation approaches.

Senior Security Risk Management SME Qualifications:

  • Minimum 10 years of total related experience.
  • Minimum 2 years of recent experience in each of the following: A&A, FISMA compliance, IC cybersecurity policy and standards, continuous monitoring, CDS, and secure cloud/hybrid engineering.
  • Experience automating A&A and continuous monitoring activities.
  • Experience applying NIST 800-series and CNSSI 1253 security controls and risk management framework guidance.
  • Mandatory certification in CISM, CAP, or GRC Certification in good standing at award and throughout the period of performance, or comparable demonstrable experience.
  • Desired: certifications in AWS, Microsoft Azure, and Microsoft Office 365 cloud platforms.

About One Federal Solution

One Federal Solution (OFS) is an innovative Professional Services provider with over 20 years of experience supporting Defense and Civilian agencies. OFS specializes in Business Intelligence, Acquisition and Procurement, and other Professional Services. We are pioneers, builders, thought leaders, and pride ourselves on thinking outside the box to co-create with our customers, helping them achieve exceptional enterprise-wide outcomes. As a certified Service-Disabled Veteran-Owned Small Business (SDVOSB), OFS is committed to providing high-performance professionals who deliver excellence to our government partners.

Similar jobs