HVA Assessment Technical Lead (15.27) at OCT Consulting LLC
Washington, DC 20590, USA -
Full Time


Start Date

Immediate

Expiry Date

16 Oct, 25

Salary

70000.0

Posted On

17 Jul, 25

Experience

5 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Rmf, Business Analysis, Risk Management Framework, Csf, Business Intelligence, Government, Cisa, Communication Skills, Technology, Credentials, Information Assurance, Homeland Security, Csam, Onboarding, Security Controls, Training, Resumes, Root, Systems Analysis

Industry

Information Technology/IT

Description

POSITION SUMMARY

The HVA Technical Lead serves as the primary technical expert for Non-Tier 1 High Value Asset (NT1 HVA) Assessments within the Department of Transportation. This role is responsible for driving technical analysis, leading Technical Exchange Meetings, and drafting comprehensive assessment reports to ensure compliance with DHS CISA requirements and federal cybersecurity mandates.

EXPERIENCE REQUIREMENTS

  • Minimum 5+ years of experience working with National Institute of Standards and Technology (NIST) security controls and information assurance
  • Minimum 2+ years of direct experience supporting Department of Homeland Security (DHS), Cybersecurity and Infrastructure Security Agency (CISA), and HVA PMO operations
  • 4+ years of experience working and supporting HVAs as part of the NIST Risk Management Framework (RMF) process
  • Demonstrated experience in Federal and Agency level HVA Program documentation development, including guidance and outreach communications

TECHNICAL KNOWLEDGE AND SKILLS

  • Comprehensive understanding of NIST Risk Management Framework (RMF)
  • Deep knowledge of NIST Cybersecurity Framework (CSF)
  • Expert understanding of High Value Assets and their Assessment Evaluation and Standardization requirements
  • Proficiency in Federal Information Security Modernization Act 2014 (FISMA) requirements
  • Understanding of information assurance, cybersecurity, and privacy policies disciplines and methodologies
  • Knowledge of CSAM reporting and controls management (Common, Hybrid, and System specific)
  • Expertise in current principles, practices, and techniques of Systems Analysis, Business Analysis, and Business Intelligence

ADDITIONAL QUALIFICATIONS

  • Excellent oral and written communication skills
  • Ability to present analytic findings and conduct root cause analysis
  • Capability to extract data from multiple sources, manipulate and validate data
  • Strong problem-solving and analytical thinking abilities
  • Ability to work with customers to assess needs, provide assistance, resolve problems, and satisfy expectations

PRE-EMPLOYMENT REQUIREMENTS

  • All personnel must have existing prerequisite experience and credentials prior to onboarding
  • Government will not bear expense of training to gain required certifications or experience
  • Key personnel cannot begin work until Contracting Officer/COR provides written approval of resumes
  • Must provide 30-day advance written notification before removing key personnel from the task
Responsibilities
  • Technical Assessment Leadership: Lead and conduct NT1 HVA Assessments according to DHS Assessment Evaluation and Standardization (AES) program requirements
  • Documentation Review: Identify gaps in knowledge during pre-assessment documentation review and drive additional documentation requests
  • Subject Matter Expert Coordination: Gather and coordinate with appropriate Subject Matter Experts for assessment interviews
  • Technical Exchange Meeting Leadership: Lead Technical Exchange Meetings (TEM) and demonstrate broad knowledge of technical topics for systems under assessment
  • Report Development: Draft comprehensive assessment reports including System Description, Executive Summary, Key Insights, Impact Statements, and Risk Statements
  • Knowledge Transfer: Share technical information gained during TEM with the entire assessment team
  • Stakeholder Communication: Interface with Agency HVA POC and Assessment POC on technical matters
  • Compliance Assurance: Ensure all assessment activities follow established Rules of Engagement and NIST/CISA documentation requirements
Loading...