Quick Overview
Seniority
Mid Senior
Work mode
Hybrid
Location
Mclean, DC, United States
Posted
Yesterday
SplunkPrisma
Job Description
OVERVIEW: We are seeking a Cybersecurity Analyst who will support the security and maintenance of information systems throughout the RMF lifecycle; from preparation through decommission in alignment with DoD/DoW cybersecurity policies. This role focuses on executing RMF tasks while actively engaging with ISSMs/SCAs, and client PMs/ISSOs teams to ensure security activities lead to meaningful outcomes.
GENERAL DUTIES
- Ensure ISSOs remain focused on risk reduction priorities, not just administrative tasks.
- Help stakeholders understand why certain vulnerabilities matter and how remediation improves the system's overall security posture.
- Provide technical input and continuous monitoring support that contributes to measurable improvements in compliance and audit readiness.
- Evaluates cybersecurity impacts of system changes, supports contr ol implementation, and helps maintain accurate, actionable security documentation.
- Document vulnerabilities, misconfigurations, and issues clearly and thoroughly to support remediation planning and stakeholder understanding.
- Use XACTA to manage risk assessments, security contr ol evidence, POA&&M tracking, and compliance status.
- Monitor and track POA&&M items, ensuring vulnerabilities identified in scans or audits are documented, mitigated, and closed appropriately with a focus on reducing repeat findings.
- Collaborate with ISSMs, ISSOs, SCAs, PMs, and other partners by providing guidance, clarifications, and context that help them make informed decisions.
- Represent cybersecurity standards and expectations in all engagements, reinforcing mission alignment and transparency.
- Sound knowledge of RMF, NIST 800series, FIPS, SA&&A processes, continuous monitoring, POA&&M policies, and vulnerability/patch management.
- Experience using Cyber Risk Management Platforms (e.g., XACTA) for workflow automation, compliance tracking, and RMF execution.
- Strong interpersonal and communication skills to engage stakeholders and explain technical issues in a clear, mission-focused way.
- Hands-on experience interpreting vulnerability and compliance reports from XACTA, STIGs, ACAS, Prisma, Splunk, Trellix (HBSS), or similar tools.
- Solid analytical and problem solving skills to identify root causes and recommend practical remediation steps.
- Some experience leading or contributing to security initiatives that require coordination across multiple teams.
- Ability to collaborate effectively in mixed technical environments and contribute to improving the overall security maturity of supported programs.
REQUIRED QUALIFICATIONS
- Obtain an IAT-III or Maintain IAT Level II Certification in compliance with DoD 8570.01-M and DoD Directive 8140 Cyberspace Workforce Management.
- CompTIA Cybersecurity Analyst (SySA+)
- CompTIA Security
- EC-Council Certified Network Defense CND v3
- CCNA Security
- Global Industrial Cyber Security Professional (GICSP)
- GIAC Security Essentials (GSEC)
- Systems Security Certified Practitioner (SSCP)
- Possess a Bachelor's degree
- 12 years' experience in addition to education.
CLEARANCE
- Active Top Secret clearance minimum required
Similar jobs
- CE
Digital Web Analytics Specialist (Remote)
NewCella
Rahway, New Jersey🇺🇸$48 - $53/hrRemote13 minutes agoLookerPower BITechnology - CG
Senior Data Engineer
NewCredit Genie
Plymouth Meeting, PA🇺🇸$1k/moRemote12 hours agoSQLSwiftAWS+6Technology - GE
Data Analyst - Hybrid
NewGenesis10
Jersey City, NJ🇺🇸$62/hrHybrid12 hours agoSQLEncryptionTableau+2Technology - SK
Detection and Automation Engineer
NewSkechers
Manhattan Beach, CA🇺🇸$125k - $165k/yrHybrid12 hours agoAWSAgileAzure+3Technology - AS
SDET (Automation & AI)
NewApex Systems
Sunnyvale, CA🇺🇸Hybrid12 hours agoDockerNode.jsTDD+5Technology - EB
Jira Service Management & Confluence Data Center Administrator (Part Time) ---- 100% Remote
NewEnternet Business Systems, Inc.
United States🇺🇸Remote12 hours agoSSOActive DirectoryConfluence+4Technology