In this role, you will perform continuous monitoring and authorization reassessment activities for an IaaS or PaaS CSO at the client’s Contractor Network Operations Center. You will perform tasks that include reviewing key artifacts or data such as boundary diagrams, data flow diagrams, configurations, code, container, or application vulnerability scan results, to assist the client with determining the security impact of Cloud Service Provider (CSP) changes, reviewing continuous monitoring monthly executive summaries or reports, helping provide the client evidence of ongoing control effectiveness and flag areas where the CSO’s security posture may be degrading, reviewing CSP-submitted Acceptance of Risk (AOR) and Deviation Requests (DR) such as reviewing CSP or CSO mission impact assessments and mitigation efforts and ensuring the risk is properly documented, and making approval or disapproval recommendations to the client. You’ll provide additional support, including working with a U.S.-based Third-Party Assessment Organization (3PAO) team to conduct quarterly risk review board reviews and conduct annual authorization reassessments of the IaaS or PaaS CSO, underlying cloud infrastructure and services, and supporting infrastructure.