CSRMC Team Lead; TS/SCI
Listed on 2026-03-07
-
IT/Tech
Cybersecurity, Systems Engineer, IT Consultant, IT Project Manager
Koniag IT Systems, LLC, a Koniag Government Services company, is seeking a CSRMC Team Lead with a TS/SCI Security clearance to support KITS and our government customer at the Pentagon, Arlington, VA.
We offer competitive compensation and an extraordinary benefits package including health, dental, and vision insurance, 401K with company matching, flexible spending accounts, paid holidays, three weeks paid time off, and more.
The CSRMC Team Lead provides technical leadership and subject matter expertise supporting the automation of the Department of War’s Risk Management Framework (RMF) Revamp processes. This role leads the design, development, and implementation of automated compliance and security control validation capabilities that enhance the efficiency, accuracy, and scalability of RMF authorization and continuous monitoring activities.
The Team Lead will oversee a small team of cybersecurity engineers and automation specialists while working closely with Authorizing Officials, cybersecurity engineers, system owners, and Dev Sec Ops teams to integrate automated compliance capabilities into enterprise cybersecurity workflows.
This position plays a critical role in advancing the Department of War’s transition toward machine-readable compliance frameworks, automated evidence collection, and continuous authorization approaches aligned with Zero Trust and Dev Sec Ops architectures.
Key Responsibilities Technical Leadership- Provides guidance on development and implementation of automated RMF security control assessment capabilities supporting authorization and continuous monitoring processes.
- Serve as the technical team lead for RMF automation initiatives, establishing architecture, standards, and implementation approaches.
- Provide expert guidance on integrating automated security validation capabilities across enterprise cybersecurity platforms.
- Oversee the design, development, and maintenance of automation tools used for control validation, evidence collection, and compliance reporting.
- Develop, integrate, and maintain automated workflows for evidence collection, control validation, and reporting.
- Leverage scripting, orchestration, and Dev Sec Ops pipelines to embed compliance and security validation into development and operational environments.
- Integrate automated testing tools (e.g., vulnerability scanners, configuration management tools) into RMF packages and authorization workflows.
- Support development and implementation of automated compliance capabilities using machine-readable formats such as OSCAL (Open Security Controls Assessment Language).
- Provide task prioritization, technical direction, and quality oversight across team deliverables.
- Coordinate activities across cybersecurity engineering, Dev Sec Ops , and assessment teams to ensure alignment with mission priorities.
- Assist program leadership with planning, staffing coordination, and technical roadmap development for RMF automation capabilities.
- Support briefings and technical engagements with government stakeholders regarding automation capabilities, compliance posture, and operational improvements.
- Collaborate with cybersecurity engineers, assessors, system owners, and program managers to align automation solutions with operational mission needs.
- Provide subject matter expertise on leveraging OSCAL and other machine-readable compliance frameworks.
- Support enterprise cybersecurity initiatives including Zero Trust, continuous monitoring, and Dev Sec Ops integration.
- Stay current and provide feedback and recommendations on Department of War cybersecurity policies, NIST updates, and emerging compliance automation technologies.
- Contribute recommendations to improve cybersecurity policy implementation through automation.
- Master’s degree in Cybersecurity, Information Systems, Computer Science, or a related technical field.
- 15+ years of experience supporting Department of War cybersecurity compliance, assessment, or risk management activities.
- Demonstrated expertise implementing the Department of War Risk…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).