594,528open jobs
27,125companies
84,688added this week
Browse all
Location
Remote (United States)
Employment
Full-Time
Overview
Company
Impact
Profile match

About Lucayan Technology Solutions LLC

At Lucayan Technology Solutions LLC, we deliver secure, innovative solutions in support of national defense and intelligence missions. As a trusted government contracting partner, we provide top-tier intelligence and technology services that safeguard our nation. Our team is mission-driven, and we are committed to building careers that matter.

Location: This is a US-based remote position.

Employment Type: Full-Time

Security Clearance: No security clearance required. Minimum active Tier 1 (or higher) federal background investigation required prior to start; ability to obtain a CAC if required by duties.

Join Our Pipeline for Future Opportunities!

This posting is intended to establish a pool of qualified candidates for future openings supporting ongoing operations. Positions may become available based on staffing needs, operational requirements, or workforce changes. Qualified applicants may be contacted as opportunities arise.

Job Summary

Lucayan Technology Solutions LLC is seeking an RMF / Cybersecurity Compliance Specialist to support the U.S. Army Corps of Engineers (USACE) Walla Walla Business Intelligence (WWBI) program. This role owns cybersecurity compliance, Risk Management Framework (RMF) documentation, continuous monitoring, vulnerability management, and authorization artifacts, working closely with software developers, DevSecOps personnel, technical leadership, and Government stakeholders to ensure WWBI continuously complies with applicable Department of Defense (DoD), U.S. Army, USACE, and Civil Works Business Intelligence (CWBI) cybersecurity requirements. This position also supports maintenance of the WWBI authorization package and the program's planned migration into the CWBI Cloud and eventual integration into the CWBI security boundary.

Key Responsibilities

  • Develop, update, and maintain WWBI Risk Management Framework authorization documentation, including the System Security Plan (SSP), Continuity of Operations Plan (COOP), Incident Response Plan (IRP), System Design Documents, and related authorization artifacts.
  • Manage and document program-specific security controls applicable to the WWBI system, and support security requirements associated with Personally Identifiable Information (PII).
  • Maintain documentation defining the WWBI authorization boundary, including applicable hardware, software, ports, protocols, interfaces, and data flows.
  • Coordinate cybersecurity documentation and compliance activities associated with WWBI's migration into the CWBI Cloud and eventual incorporation into the CWBI authorization boundary.
  • Maintain WWBI compliance records within the Enterprise Mission Assurance Support Service (eMASS), including uploading, mapping, organizing, and maintaining required RMF documentation, security-control evidence, implementation statements, and supporting artifacts.
  • Support execution of the WWBI continuous-monitoring program, including coordinating and/or performing required ACAS and SCAP security scans, and maintaining a compliance score of at least 90% for applicable SCAP scans.
  • Import and maintain security-scan results within DISA STIG Viewer and eMASS; analyze identified vulnerabilities and coordinate remediation activities with software developers and Government technical personnel.
  • Track Critical and High findings for immediate remediation, Moderate findings for remediation within 60 days, and Low findings for remediation within 120 days; document approved exceptions and outstanding findings within the Plan of Actions and Milestones (POA&M).
  • Develop, maintain, and submit the quarterly POA&M report detailing open, remediated, and outstanding security findings, and support quarterly updates to the RMF documentation package.
  • Provide ACAS/SCAP scan results and associated STIG Viewer files following required scans, and maintain current system security, network topology, logical, and data-flow documentation in coordination with the development team.
  • Complete and maintain security-control checklists required by the USACE CWBI Cloud environment, and monitor changes to CWBI cybersecurity requirements to coordinate implementation of new or modified requirements.
  • Support annual Federal Information Security Management Act (FISMA) reporting requirements and associated forms, checklists, and documentation.
  • Support compliance with applicable DoD Security Technical Implementation Guides (STIGs), Army cybersecurity requirements, and USACE policies, coordinating with developers and DevSecOps personnel to ensure applications and infrastructure remain compliant through modernization and cloud-migration activities.

Required Qualifications

  • U.S. Citizenship required.
  • Demonstrated experience supporting the DoD Risk Management Framework (RMF), including developing and maintaining RMF authorization packages and cybersecurity documentation.
  • Experience using Enterprise Mission Assurance Support Service (eMASS).
  • Knowledge of DoD, U.S. Army, and/or USACE cybersecurity requirements and processes.
  • Experience with vulnerability management, security controls, POA&Ms, and continuous monitoring.
  • Experience with ACAS, SCAP, DISA STIGs, and STIG Viewer.
  • Ability to interpret technical vulnerability findings and coordinate remediation with software-development and infrastructure teams.
  • Strong technical writing and documentation skills, with strong organizational skills and the ability to manage multiple recurring compliance requirements and deadlines.
  • Ability to communicate effectively with technical personnel, program leadership, and Government stakeholders.
  • Active federal background investigation at the Tier 1 level or higher prior to beginning contract performance.
  • Ability to obtain and maintain CompTIA Security+ or a DoD-approved equivalent within six months of the contract start date, as applicable to the assigned DoD 8140 work role.

Preferred Qualifications

  • Previous experience supporting USACE systems or applications.
  • Experience supporting DoD systems through ATO authorization and continuous monitoring.
  • Experience with AWS GovCloud or other DoD-authorized cloud environments.
  • Familiarity with DevSecOps, GitHub, secure software-development pipelines, and application modernization.
  • Experience supporting cloud migration of systems operating under an existing RMF authorization.
  • Experience with FISMA reporting.

Certifications

  • Active Tier 1 (or higher) background investigation prior to start.
  • CompTIA Security+ or a DoD 8140-approved equivalent required within six (6) months of contract start.
  • CISSP or another advanced DoD-recognized cybersecurity certification desired.
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
594,528 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
$25k – $57k per year (Estimated) • In office • Full-Time • 5+ years exp • Taguig
Databases
MySQL
PostgreSQL
Redis
Oracle
MS SQL
MariaDB
DevOps
Terraform
Ansible
GCP
Azure DevOps
CloudFormation
Azure
CI/CD
AWS
FinOps
Apply
$23k – $57k per year (Estimated) • Remote/Hybrid • Full-Time • 15+ years exp • Pune
Python
Java
SQL
Java
Spring Framework
Maven
DevOps
OpenShift
Git
AWS
Management
Agile
Apply
$28k – $69k per year (Estimated) • Remote/Hybrid • Full-Time • Mumbai • Bengaluru • Chennai • New Delhi • Hyderabad
Python
Java
C#
C#
.NET
DevOps
Splunk
GCP
Azure
AWS
Cybersecurity
NIST CSF
PCI DSS
HIPAA
Apply
$55k – $137k per year (Estimated) • Remote/Hybrid • Full-Time • 5+ years exp • Bachelor's Degree • Budapest
Python
Go
JavaScript
TypeScript
C++
AI/ML
LangGraph
LangChain
Model Context Protocol
Embeddings
Function Calling
AI Agents
Semantic Kernel
LLM
RAG
LLM Guardrails
Agentic Workflows
DevOps
Rest API
AWS
Kubernetes
Apply
AI Engineer 1 day ago
In office • Full-Time • 1+ year exp • Bachelor's Degree • Ho Chi Minh City
Python
Java
C++
C++
TensorFlow C++
PyTorch C++
AI/ML
Reinforcement Learning
TensorFlow
Pandas
NumPy
PyTorch
DevOps
GCP
Azure
Git
AWS
Apply
$126k – $235k per year (Estimated) • In office • Full-Time • Tampa
JavaScript
SQL
C#
Databases
Oracle
DevOps
CI/CD
AWS
GitHub
Management
Agile
Scrum
Apply
$97k – $214k per year (Estimated) • Remote • Full-Time • 5+ years exp • Bachelor's Degree
JavaScript
C#
C#
ASP.NET Core
DevOps
AWS
GitHub
Cybersecurity
Keycloak
Management
Agile
Apply
$91k – $196k per year (Estimated) • Remote • Full-Time • 5+ years exp • Bachelor's Degree
SQL
Databases
Oracle
DevOps
AWS
Management
Agile
Apply
$36k – $89k per year (Estimated) • In office • Full-Time • Master's Degree • Huntsville
Analytics
Power BI
Management
Microsoft Teams
SharePoint
Apply
$124k – $205k per year (Estimated) • Remote/Hybrid • TS/SCI • Full-Time • 5+ years exp • Bachelor's Degree • Tampa
PHP
Cybersecurity
Burp Suite
Fortify
Sonatype Nexus IQ
Management
Agile
Apply
See all jobs
This is one of many
594,528 more open roles from verified company boards, updated every day.