Internal Audit Compliance Lead
BoltFull Time
Senior (5 to 8 years), Expert & Leadership (9+ years)
Candidates must possess an active Secret clearance, with preference for TS/SCI eligibility, and a minimum of 3-5 years of cybersecurity or PKI audit experience within a DoD or federal environment. They should have strong working knowledge of DoD PKI architecture, including issuance, revocation, recovery, and certificate lifecycle processes, along with familiarity with DoD and DISA policies such as DoDI 8520.02, CNSSI 4005/4006, NIST 800-53, and RMF. Furthermore, candidates are required to hold a DoD 8570 IAM Level I or IAT Level II certification, such as Security+ CE, CAP, CISM, or CISSP.
The PKI Auditor will conduct technical and compliance audits of DoD PKI implementations, ensuring alignment with DoDI 8520.02, CNSS, DISA, and JFHQ-DODIN requirements. They will evaluate issuance practices, certificate management procedures, and registration authority operations, review and assess documentation, audit logs, and system configurations, validate compliance with NIST 800-53 controls, CNSSI 1300 series, CNSSI 4005/4006, and applicable DoD cybersecurity frameworks, collect artifacts and evidence, collaborate with ISSOs, COMSEC personnel, and network defenders, and provide remediation recommendations and risk mitigation strategies. The auditor will also assist in preparing reports for JFHQ-DODIN, DoD CIO, and Component Cybersecurity Service Providers (CSSPs).
Design and data support for government healthcare
A1M Solutions specializes in providing design, data, and policy-informed support for government healthcare programs, with a focus on serving disadvantaged populations. The company leverages expertise in government healthcare programs, data analysis, and policy/legislation to design effective business strategies and enhance digital service delivery, utilizing agile research and insights to untangle complex problems and generate thoughtful solutions.