Designated Authorizing Official; DAO - TS/SCI w/Poly
Listed on 2026-03-01
-
IT/Tech
Cybersecurity, Information Security, IT Consultant, Systems Engineer
Purpose and Impact
Amentum is seeking a Designated Authorizing Official (DAO) 3 for a prime contract that is based out of our Columbia, MD office. As a DAO3, you will serve on a team that is responsible for the Authorization and Assessment process under the Risk Management Framework (RMF) for new and existing information systems and will be expected to maintain Authority to Operate compliance for all assigned systems.
EssentialResponsibilities
- Assist in identifying the overall security requirements for the protection of data, ensuring implementation of appropriate security controls, and performing and analyzing security risk assessment, risk analysis, risk management process, security control assessments, and awareness activities for systems and networking operations.
- Provide assistance to ensure Cybersecurity functions are included in the configuration management process.
- Interact with customers, Information Technology (IT) staff, and high-level corporate officers in defining and achieving required Cybersecurity objectives for the organization.
- Contribute to building security architecture.
- Assist with the integration of legacy systems and contribute to the acquisition/RDT&E environment and building Cybersecurity into systems deployed in operational environments.
- Prepare security authorization documentation.
- Analyze Cybersecurity built into systems to be deployed to operational environments.
- Prepare risk assessment, plan of actions, authorization recommendations, and related security authorization documentation.
- Identify and support overall security requirements for the protection of data to ensure implementation of information security policies, activities, and controls.
- Ensure Cybersecurity functions are included in the development and risk management process, particularly those focusing on infrastructure protection and defensive IT strategy.
- Facilitate interaction with customers, IT staff, and high-level corporate officers to assist in defining and achieving required risk management objectives for the organization.
- Support integration of legacy systems within the respective IT environment.
- TS/SCI w/Polygraph
- A Bachelor’s degree in Computer Science, Information Technology Engineering, or related field.
- In lieu of a Bachelor’s degree, an additional four (4) years of experience for a total of twelve (12) years.
- Eight (8) years of related work experience as an IT Risk Assessor, System Security Engineer, Information Systems Security Manager or DAO.
- In lieu of a Bachelor’s degree, an additional four (4) years of experience for a total of twelve (12) years.
- Working knowledge of system security design process, defense-in-depth/breadth, engineering life cycle, information domains, cross-domain solutions, controlled interfaces, identification, authentication and authorization, system integration, ICD 503 (formerly NISCAP), risk management, intrusion detection, contingency planning, incident handling, configuration control, change management, auditing, security authorization process, principles of Cybersecurity (confidentiality, integrity, non-repudiation, availability, access control), and security testing.
- DoD 8570.1 compliant IAM Level III certification, such as the GSLC, CISM, CISSP (or associate) certification.
$180,000 - $220,000
Benefits Overview- Health, dental, and vision insurance
- Paid time off and holidays
- Retirement benefits (including 401(k) matching)
- Educational reimbursement
- Parental leave
- Employee stock purchase plan
- Tax-saving options
- Disability and life insurance
- Pet insurance
Note:
Benefits may vary based on employment type, location, and applicable agreements. Positions governed by a Collective Bargaining Agreement (CBA), the McNamara-O'Hara Service Contract Act (SCA), or other employment contracts may include different provisions/benefits.
01/28/2026 - Until Filled
Amentum anticipates this job requisition will remain open for at least three days, with a closing date no earlier than three days after the original posting. This timeline may…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).