Cyber Remediation & POA&M Coordinator

True Zero Technologies

Completely RemoteFull TimeInformation Technology
Posted Today

Job description

Responsibilities

  • Coordinate enterprise remediation activities for vulnerabilities identified through continuous monitoring, scanning, and audits
  • Develop, maintain, and manage POA&Ms in accordance with Federal, HHS, and NIH requirements
  • Partner with ISSOs, system owners, and security engineers to establish remediation plans and timelines
  • Monitor remediation progress, validate evidence, and ensure accurate documentation
  • Coordinate risk acceptance requests, compensating controls, and waivers through governance processes
  • Track remediation performance against service level objectives and communicate high priority items to leadership
  • Support RMF authorization activities by ensuring vulnerabilities are accurately reflected in documentation
  • Collaborate with threat intelligence to reprioritize activities based on exploitability and emerging threats
  • Develop recurring remediation status reports and operational metrics for Government leadership
  • Support internal and external cybersecurity assessments by tracking corrective actions through closure
  • Recommend process improvements to enhance remediation efficiency and risk reduction

Requirements

  • Bachelor's degree in Cybersecurity, Information Systems, IT, or related discipline
  • 3+ years of experience in vulnerability management, RMF, or cybersecurity compliance
  • Experience developing and managing Plans of Action and Milestones (POA&Ms)
  • Working knowledge of NIST RMF, FISMA, and NIST SP 800-53
  • Experience coordinating remediation across multiple technical teams and stakeholders
  • Strong organizational and communication skills for technical and executive reporting

Preferred Qualifications

  • Experience supporting NIH, HHS, or other Federal civilian agencies
  • Experience with GRC platforms such as JCAM, eMASS, ServiceNow, or Archer
  • Experience with Continuous Diagnostics and Mitigation (CDM) initiatives
  • Familiarity with CISA KEV guidance and Binding Operational Directives
  • Certifications such as CGRC, CISSP, Security+, CAP, CISM, or PMP

About the Company

True Zero Technologies is a veteran-owned small business dedicated to the purposeful enablement of people and technology. Recognized as a Best Place to Work and an Inc. 5000 fastest-growing company, True Zero focuses on delivering top-tier services through a people-first approach.

Skills & tools

CybersecurityNIST RMFVulnerability Management

What the team is looking for

Use this list as a quick fit check before you apply.

  1. 01Bachelor's degree in Cybersecurity or related field
  2. 023+ years experience in vulnerability management or RMF
  3. 03Experience managing POA&Ms
  4. 04Knowledge of NIST RMF, FISMA, and NIST SP 800-53
NeverApplyAd

Wake up to a shortlist, not a search results page.

NeverApply scores every new listing against your CV, salary floor and visa. A handful of real matches by morning.

Get your daily matches