Why This Role Stands Out
This hybrid role offers a unique opportunity to significantly impact national security by assessing critical cloud services for the DoD, with excellent potential for career growth within a newly formed, full cyber team. You'll thrive here if you possess a strong background in RMF and A&A, enjoy tackling complex compliance challenges, and are eager to develop your expertise in cutting-edge cloud security. Apply now to join this exciting and vital mission!
Quick Overview
Job Description
Cybersecurity Analyst — RMF / A&A (TS/SCI) Join the team that authorizes the DoD's commercial cloud. You will assess Cloud Service Provider offerings against the DoD Cloud Computing SRG at Impact Levels 4, 5, and 6, supporting the Government's assessment and authorization (A&A) mission under the Risk Management Framework. Five openings — a rare chance to join a full cyber team at stand-up.
How You'll Make an Impact • Evaluate CSP deliverables and Provisional Authorization documentation for compliance with DoD CSP SRG IL4/IL5/IL6. • Analyze A&A packages against contract security requirements and draft compliance assessment methodologies. • Coordinate verification of CSP requirements in Government tracking tools (eMASS, ACAS, CMRS, and related systems). • Facilitate authorization process syncs, user community round tables, and CSP engagement on compliance status. • Research cloud security trends, validate system configurations and logs, and support CSSP and network defense troubleshooting.
What You'll Need to Join the Team • Bachelor's degree + 4 years of experience, OR 8 years total in cybersecurity assessment and authorization (RMF, NIST SP 800-53, DoD compliance). • Active TS/SCI clearance • Meets DoD 8140 requirements for Work Role 612, Security Control Assessor (Intermediate); alternate Work Role 722, ISSM. What Sets You Apart • Hands-on eMASS package development and workflow management experience. • Experience assessing CSPs or cloud systems under the DoD Cloud Computing SRG or FedRAMP. • Working knowledge of STIGs, ACAS/Nessus scanning, and POA&M management.
Certifications (examples of approved options)
DoD 8140 WRC 612 (Intermediate) examples: ISC2 CGRC (formerly CAP), ISACA CISA, CompTIA SecurityX
(formerly CASP+), CISSP.
Similar jobs
- VA
Cloud Security Specialist (IAM & Cloud Controls)
NewVanguard
Malvern, Pennsylvania🇺🇸Hybrid5 minutes agoGCPSQLAWS+6Technology - JM
Product Security Architect
NewJ.P. Morgan
Plano, Texas🇺🇸On-site5 minutes agoTechnology - VA
Lead Sr. Network Operations Engineer (Network Security - Palo Alto/Zscaler) Engineer
NewVanguard
Charlotte, North Carolina🇺🇸Hybrid5 minutes agoAWSZero TrustTechnology - VA
College to Corporate IT Internship - Risk & Security - Analyst (PA)
NewVanguard
Malvern, Pennsylvania🇺🇸Hybrid5 minutes agoAgileAdministrative - MA
Cyber Systems Engineer
NewMANTECH
United States🇺🇸Hybrid5 minutes agoTechnology - TE
Endpoint Security Engineer
NewTekDallas
New York, NY🇺🇸Hybrid16 hours agoEncryptionMFAAzure+1Technology