Sr Scrum Master - Cybersecurity Support
Current• Facilitated Scrum ceremonies (Daily Standups, Sprint Planning, Backlog Refinement, Sprint Reviews, and Retrospectives) to drive cybersecurity projects, ensuring timely delivery of secure, compliant systems while aligning the team’s efforts with the 7 steps of the Risk Management Framework (RMF).• Led the coordination of POA&M for the team, securing a 2-year Authorization to Operate (ATO) extension by applying agile methodologies and guiding the team through RMF steps such as security categorization and control selection.• Supported the team in implementing key cybersecurity elements, including the Risk Management Framework (RMF), focusing on Authorization & Assessment (A&A), Continuous Monitoring, and ISSO responsibilities, while managing Scrum processes to maintain project momentum and compliance with all 7 RMF steps.• Collaborated with the ISSM to conduct regular security reviews, utilizing Scrum methodologies to manage workflows while ensuring the team followed RMF steps such as security control assessment and risk response for compliance with NIST SP 800-53.• Facilitated documentation review and updates, ensuring critical plans like the System Security Plan (SSP), Incident Response Plan (IRP), and Contingency Plan (CP) were compliant with RMF’s risk categorization and control documentation steps, and establishing an effective cadence for team collaboration and continuous improvement.• Proactively identified and removed impediments in both development and cybersecurity processes, ensuring timely resolution of security vulnerabilities and successful alignment with RMF's risk assessment and risk monitoring steps within sprint goals.• Provided stakeholders and management with regular updates on project status, RMF compliance, cybersecurity risks, and system authorization status, ensuring transparency and alignment across agile and security teams.