Navy Qualified Validator
Position Overview:
We are seeking an experienced Navy Qualified Validator (NQV) to support cybersecurity and Risk Management Framework (RMF) activities for U.S. Navy systems and networks. The ideal candidate will ensure compliance with DoD and Navy cybersecurity policies, assess system security postures, and validate accreditation documentation to maintain the confidentiality, integrity, and availability of critical assets.
Key Responsibilities:
Serve as a Navy Qualified Validator in accordance with the Navy Certification Authority (CA) requirements.
Conduct independent validation and verification of RMF lifecycle documentation, including system categorization, security control selection, implementation, and assessment.
Evaluate systems and networks to identify vulnerabilities, risks, and compliance gaps.
Develop and review Security Authorization Packages and related documentation to support system accreditation.
Provide expert recommendations on risk mitigation strategies and corrective actions for identified deficiencies.
Ensure all assessment and authorization activities align with DoD, DON, and NIST cybersecurity policies and standards.
Support audits, inspections, and continuous monitoring efforts to maintain ongoing authorization (ATO/ATO-C).
Collaborate with system owners, ISSOs, and security engineers to ensure effective implementation of security controls.
Required Qualifications:
Certification:
Must possess an active Navy Qualified Validator (NQV) certification from the Navy Certification Authority (CA).
Meet DoD 8570.01-M IAT Level II certification requirements.
One or more of the following certifications:
CCNA-Security
CySA+
GICSP
GSEC
Security+ CE
CND
SSCP
Education:
Bachelor’s degree in Computer Science, Information Technology, Communications Systems Management, or an equivalent STEM discipline from an accredited college or university.
Experience:
Minimum of 10 years of practical experience in a cybersecurity or Assessment & Authorization (A&A) related field.
Demonstrated experience in:
Implementing or reviewing RMF lifecycle documentation.
Validating system confidentiality, integrity, and availability (CIA).
Conducting risk and vulnerability assessments and documenting non-compliance findings.
Preferred Qualifications:
Experience supporting Navy or DoD cybersecurity programs.
Familiarity with eMASS and Navy RMF workflows.
Strong communication and technical writing skills.
Ability to work both independently and collaboratively in a fast-paced environment.