This job was posted by : For moreinformation, please see:Description:Apex Systems is seeking a Cybersecurity Risk & Compliance SME to supporta Chicago-based Cybersecurity assessment. This role will executesecurity control assessments (SCAs) and provide risk analysis acrosshighly sensitive environments, ensuring compliance with CNSS, NIST,FISMA, and TSA standards. The Cybersecurity Assessor will deliver expertguidance to government stakeholders and contribute to the continuousimprovement of cybersecurity posture for mission-critical systems.Primary Responsibilities:- Conduct security control assessments (SCAs) in accordance with the NIST Risk Management Framework (RMF) and Committee on National Security Systems (CNSS) policies, standards, and guidelines.- Provide validation, analysis, and documentation of assessments for systems, applications, and appliances.- Develop, maintain, and improve formal NSS assessment and compliance CONOPS and SOPs.- Evaluate and update cybersecurity risk indicators, including risks from emerging threats and vulnerabilities.- Deliver risk recommendations and track remediation through POA&Ms and continuous monitoring processes.- Author white papers and reports to identify trends, adversary activity, and systemic risks impacting the facility- Support NSCD compliance engagements, engineering review boards, configuration control boards, and C-SCRM efforts.- Document lessons learned and provide training and guidance to stakeholders.Required Qualifications:- Bachelors degree and 15+ years of related experience or Masters degree with 13+ years of related experience.- Strong knowledge of IA policies, CNSS guidance, NIST RMF, FISMA, and related standards.- Demonstrated experience with audits, compliance, and IT security review processes.- Excellent written and verbal communication skills with proven ability to brief senior leadership.- U.S. citizenship required.Preferred Qualifications:- Prior IT security or audit experience.- Experience supporting high-security national mission environments.- Familiarity with FIPS-140-2, and other federal compliance frameworks.EEO EmployerApex Systems is an equal opportunity employer. We do not discriminate orallow discrimination on the basis of race, color, religion, creed, sex(including pregnancy, childbirth, breastfeeding, or related medicalconditions), age, sexual orientation, gender identity, national origin,ancestry, citizenship, genetic information, registered domestic partnerstatus, marital status, disability, status as a crime victim, protectedveteran status, political affiliation, union membership, or any othercharacteristic protected by law. Apex will consider qualified applicantswith criminal histories in a manner consistent with the requirements ofapplicable law. If you have visited our website in search of informationon employment opportunities or to apply for a position, and you requirean accommodation in using our website for a search or application,please contact our Employee Services Departmentat[[emailprotected]](mailto:){target=
Job Title
Cybersecurity Risk & Compliance SME