Please scroll down, To apply

RMF Cybersecurity Analyst with Security Clearance

hiring now
New job

PlanIT Group LLC

2024-09-25 11:39:32

Job location Annapolis Junction, Maryland, United States

Job type: fulltime

Job industry: I.T. & Communications

Job description

Due to the nature of this work, it is a fully onsite position. Can sit in either Annapolis Junction, MD or Sterling, VA. An IAT Level II certification is required Our work depends on a Risk Management Framework Cybersecurity Analyst joining our team to support Government activities Annapolis Junction, MD, or Sterling, VA. As a RMF Cybersecurity Analyst supporting the Federal Government and the Intelligence Community (IC), you will be entrusted with ensuring our IT engineering solutions meet the highest security standards, that they adhere to all applicable standards, guidelines, and mandates; and that all appropriate documentation necessary to make up a Body of Evidence (BoE) is provided to the Chief Information Security Officer (CISO), and Authorizing Official (AO) to successfully justify the issuing an Authority to Operate (ATO). In this role, a typical day may include:
Acting as an appointed Information System Security Officer (ISSO) for IC cyber systems being developed by the engineering team.
Reporting, documenting, and briefing the status of systems under development, while assuring their successful and timely progression through the client Risk
Management Framework (RMF) to the satisfaction of the appointed Information System Security Manager (ISSM), and/or senior govt leadership.
Providing clear justification describing the satisfaction all applicable security control implementation as specified by the IC, AO, or NIST-800-53, rev 4 rev 5.
Authoring System Security Plans (SSP).
Authoring System Security Test Plans (SSTP).
Conducting self-assessments of all systems under development
Analyzing security controls and the impact changes would introduce to the environment.
Preparing for and assisting with formal risk assessments conducted by the AO's designated Security Control Assessors (SCA) while acting as a member of the security
assessment test team.
Ensuring the remediation of any findings assigned to engineering as documented in the Security Assessment Report (SAR) and its Plan of Actions and Milestones
(PO&AM).
Documenting and defending reasoning when waivers are sought, or non-standard remediation solutions are requested for specific security controls.
Assisting with the transition of systems granted an ATO to the Operations branch and the assignment of an operations ISSO.
Researching remediation options for vulnerabilities identified for systems under development or already in production under an ATO. What you'll need:
Minimum of 3-years IC (SCI) RMF Assessment and Authorization (A&A) experience and the ability to describe the differences between collateral and SCI authorization
requirements as they apply to DoD and IC instructions and guidelines.
Ability to speak to the intent of all NIST 800-53 security controls.
Minimum 1-year hands on experience with the Xacta application.
Excellent oral and technical writing skills.
Ability to work both independently and as a member of a team

Inform a friend!

<!– job description page –>
Top