About the role

  • Cybersecurity Analyst responsible for supporting Government activities in IT security compliance. Requires active TS/SCI clearance and experience with Risk Management Framework at GDIT.

Responsibilities

  • Acting as an appointed Information System Security Officer (ISSO) for IC cyber systems being developed by the engineering team
  • Reporting, documenting, and briefing the status of systems under development, while assuring their successful and timely progression through the clients’ Risk Management Framework (RMF) to the satisfaction of the appointed Information System Security Manager (ISSM), and/or Senior Government leadership
  • Providing clear justification satisfying all applicable security control implementation as specified by the IC, AO, or NIST-800-53, rev 4 rev 5
  • Authoring System Security Plans (SSP) and System Security Test Plans (SSTP)
  • Conducting self-assessments of all systems under development
  • Analyzing security controls and the impacts the changes would have on the environment
  • Preparing for and assisting with formal risk assessments conducted by the AO’s designated Security Control Assessors (SCA) while acting as a member of the security assessment test team
  • Ensuring the remediation of any findings assigned to engineering as documented in the Security Assessment Report (SAR) and its Plan of Actions and Milestones (PO&AM)
  • Documenting and defending reasoning when waivers are sought, or non-standard remediation solutions are requested for specific security controls
  • Assisting with the transition of systems granted an ATO to the Operations branch and the assignment of an operations ISSO
  • Researching remediation options for vulnerabilities identified for systems under development or already in production under an ATO

Requirements

  • Active TS/SCI clearance and ability to obtain and maintain a CI poly
  • Must meet DoD 8570 IAT Level II requirements including one of the following: Security+ CE, CND, SSCP, GSEC, GICSP, CySA+, or CCNA Security
  • Bachelor’s Degree in a related technical discipline +6 years’ experience or the equivalent combination of education, technical certification or training, or work/military experience
  • Minimum of 3-years IC (SCI) RMF Assessment and Authorization (A&A) experience and the ability to describe the differences between collateral and SCI authorization requirements as they apply to DoD and IC instructions and guidelines
  • Ability to speak to the intent of all NIST 800-53 security controls
  • Minimum 1-year hands on experience with the Xacta application
  • Excellent oral and technical writing skills
  • Ability to work both independently and as a member of a team

Benefits

  • Comprehensive benefits and wellness packages
  • 401K with company match
  • Competitive pay and paid time off
  • Full flex work weeks where possible
  • Variety of paid time off plans including vacation, sick, personal time, holidays, paid parental, military, bereavement and jury duty leave
  • Short and long-term disability benefits
  • Life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance

Job title

Cybersecurity Analyst – Risk Management Framework, TS/SCI

Job type

Experience level

Mid levelSenior

Salary

$125,528 - $169,832 per year

Degree requirement

Bachelor's Degree

Tech skills

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job