> Markdown version of [/jobs/ext/532158-senior-cybersecurity-engineer-rmf-ato-focus](https://www.wearedevelopers.com/jobs/ext/532158-senior-cybersecurity-engineer-rmf-ato-focus). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Cybersecurity Engineer (RMF/ATO Focus) - **Company:** Zaden Technologies, Inc. - **Location:** Huntsville, AL, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Cyber Security, Information Security Management, Security Content Automation Protocol, SARS Software Products, Tenable Nessus - **Published:** June 14, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=e918feccfcc8c814 ## About the Role Do you have experience in Records management?, * U.S. Citizenship and ability to obtain a security clearance * 5+ years of hands-on experience working ATO packages within a DoD Army environment * Demonstrated, documented proficiency with the eMASS system (experience will be evaluated during interviews) * Strong working knowledge of the Risk Management Framework (RMF) as defined by NIST and DoD Instruction 8510.01 * Familiarity with NIST SP 800-53 security controls and their implementation * Experience developing and maintaining SSPs, POA&Ms, SARs, and other RMF artifacts * Ability to work independently and manage multiple compliance workstreams simultaneously, * Active security clearance * ATO experience with branches of service other than the Army, particularly where eMASS was used * DoD 8570/8140 compliant certification (e.g., CISSP, CAP, Security+, CISM) * Experience as an Information System Security Officer (ISSO) or Information System Security Manager (ISSM) * Familiarity with STIG implementation and SCAP scanning tools * Experience supporting cybersecurity compliance in cloud or hybrid environments * Prior experience in a government contracting environment supporting DoD programs ## Description Zaden Technologies is seeking a Senior Cybersecurity Engineer with deep, hands-on experience navigating the Risk Management Framework (RMF) Authorization to Operate (ATO) process. This is primarily a compliance and documentation-focused role - often referred to as "DocOps" - where you'll own and maintain the full lifecycle of ATO packages, manage system accreditations, and ensure continuous compliance across assigned programs. You'll work closely with both internal teams and government stakeholders, and should expect to be evaluated on the depth of your practical eMASS experience during the selection process. Role Responsibilities: * Develop, maintain, and submit RMF ATO packages in accordance with applicable DoD and Army cybersecurity policies * Serve as the primary point of contact for cybersecurity compliance documentation across assigned programs * Manage and update system records within the Enterprise Mission Assurance Support Service (eMASS) * Conduct and support Security Control Assessments (SCAs) and coordinate with Authorizing Officials (AOs) * Maintain and track Plan of Action & Milestones (POA&Ms) to closure * Coordinate with system owners, ISSOs, and program teams to ensure continuous ATO compliance * Prepare and review System Security Plans (SSPs), Risk Assessment Reports (RARs), and supporting artifacts * Support audits, inspections, and government reviews related to cybersecurity compliance * Identify compliance gaps and recommend corrective actions aligned with NIST SP 800-53 controls ## Related Videos - [Maturity assessment for technicians or how I learned to love OWASP SAMM](https://www.wearedevelopers.com/videos/351-maturity-assessment-for-technicians-or-how-i-learned-to-love-owasp-samm) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Organizational Change Through The Power Of Why - DevSecOps Enablement](https://www.wearedevelopers.com/videos/478-organizational-change-through-the-power-of-why-devsecops-enablement) - [Less Is More: How Lagom and Agile Can Create Harmonious Workflows](https://www.wearedevelopers.com/videos/1993-less-is-more-how-lagom-and-agile-can-create-harmonious-workflows) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)