Senior Cybersecurity Financial Compliance SME
ASRC Federal California, United States · $135K–$190K/yr
Information Technology & Services · 201-500 employees
About the role
The role involves architecting and sustaining audit compliance for the Vantage system by interpreting complex NIST and financial regulatory requirements. You will lead the development of security policies, TTPs, and audit artifacts while defending the system's compliance posture during formal assessments.
What they look for
Requirements
Candidates must possess a Bachelor's degree, at least 8 years of experience in Cybersecurity/RMF, and an active DoD Secret clearance. Expert proficiency in NIST 800-53 Rev 5, eMASS, and Financial Improvement and Audit Readiness (FIAR) mandates is required.
Full description
Senior Cybersecurity & Financial Compliance SME
Location: Remote, West Coast Hours, Must be US-based
US Security Clearance: Active DoD Secret
Job Description: ASRC Federal is seeking a Senior Cybersecurity & Financial Compliance Subject Matter Expert (SME) specializing in Department of War (DoW) and Army NIST SP 800-53 Rev 5 security controls. The candidate must be a self-starter and have the ability to work autonomously with limited direction. The candidate must possess a high degree of self-reliance; capable of identifying compliance gaps, designing solutions, and driving them to completion with minimal supervision while aligning with the broader mission
The primary mission of this role is to architect, enforce, and sustain audit compliance for the Vantage system, specifically applying the Financial Management overlay. The successful candidates will operate independently to translate complex regulatory requirements into actionable security operations, authoring the critical policy documents and Tactics, Techniques, and Procedures (TTPs) required to ensure continuous compliance and audit readiness.
Responsibilities:
- Serve as a senior cybersecurity and financial compliance SME for the Vantage system, independently interpreting and applying NIST SP 800-53 Rev 5, DoW/Army cybersecurity requirements, Financial Management overlays, and FIAR requirements.
- Assess the Vantage security and compliance posture by reviewing applicable controls, implementation evidence, processes, and system documentation; identify control deficiencies and compliance gaps and develop actionable remediation strategies.
- Develop, maintain, and continuously improve security policies, Standard Operating Procedures (SOPs), Tactics, Techniques, and Procedures (TTPs), control implementation guidance, and other governance documentation required to sustain cybersecurity and financial audit compliance.
- Lead the development, collection, validation, and maintenance of security and financial audit evidence and compliance artifacts, ensuring documentation is complete, traceable, current, and capable of withstanding independent assessment and audit scrutiny.
- Provide expert guidance on the implementation, inheritance, assessment, and continuous monitoring of NIST SP 800-53 Rev. 5 controls, ensuring technical and procedural controls are appropriately tailored to the Vantage environment and Financial Management mission.
- Support and defend the Vantage compliance posture during cybersecurity assessments, control validations, financial audits, FIAR activities, and other formal reviews, including responding to findings, coordinating corrective actions, and tracking remediation through closure.
Required Qualifications:
- Bachelor’s degree and 8+ years of Cybersecurity / Risk Management Framework (RMF) experience.
- Active DoD Secret
- Certified Information Systems Security Professional (CISSP)
- NIST 800-53 Rev5 practical experience with security and privacy controls, specifically within DoW and Army operational environments.
- Expert proficiency with Enterprise Mission Assurance Support Services (eMASS) including System Registration, Control Tracking, Vulnerability Management, and Package Generation.
- Expertise in Financial Management overlays with a detailed understanding of Financial Improvement and Audit Readiness (FIAR) mandates as applicable to enterprise software and data systems.
- Exceptional proficiency in writing security policies, Standard Operating Procedures (SOPs), and TTPs tailored to the Vantage system.
- Robust experience in preparing and managing compliance artifacts and defending system posture during formal security assessments and financial audits.
Similar roles
-
Senior Cyber Security Engineer
Westpac New Zealand
-
Associate - Cybersecurity
PwC Kuala Lumpur, Kuala Lumpur, Malaysia
-
Security Engineer (OAMD)
BeVera Solutions LLC Atlanta, Georgia, United States
-
Director, Application Security
Zeta Global United States · $275K–$315K/yr
-
Senior Security Engineer
Motive Toronto, Ontario, Canada · CA$146K–CA$184K/yr
-
SR Information Security Engineer
Mayo Clinic Rochester, Minnesota, United States · $134K–$195K/yr