Hybrid Continuous Monitoring Analyst, ConMon

Posted 2 months ago

Apply now

About the role

  • Leidos continuous monitoring analyst performing security assessments, ConMon strategy, RMF/eMASS implementation, and reporting system risk to government leadership.

Responsibilities

  • Oversee and monitor authorized IT systems throughout their lifecycle for security posture impact
  • Analyze proposed or actual system changes to determine security impact and assess security controls
  • Utilize Qmulos, Splunk, ACAS, Axonius, CheckMark, BURP, and ESS to assess, validate, and monitor enterprise and system-level security controls
  • Develop and maintain the DISA RE5 ConMon Strategy to support the A&A mission
  • Create and update the DISA RE5 ConMon SOP outlining required activities and artifacts for oversight and monitoring
  • Conduct continuous assessments of security controls and perform automated/manual security control monitoring
  • Provide IS/Security Control Status Reports based on live data from security monitoring tools
  • Ensure assessments comply with industry auditor standards to monitor security, vulnerabilities, and threats
  • Ensure ConMon-related controls are properly implemented in RMF packages within eMASS and report system risk status using the DISA-approved reporting tool
  • Maintain the ConMon Dashboard tracking compliance, POA&M status, CMRS visibility, asset management, FISMA reviews, and annual validations
  • Track automated and manual security controls, identify overdue assessments and validations, and coordinate with administrators to resolve credentialing and data issues
  • Provide real-time security status metrics and alert Leidos and government leadership of negative security posture changes

Requirements

  • Active DoD Top Secret clearance with SCI eligibility required
  • Current DoD 8570 IAM II or IAT II certification
  • Proficiency in one or more of the following tools: Qmulos, Splunk, ACAS, Axonius, CheckMark, BURP, and HBSS/ESS
  • Understanding of the RMF process, NIST SP 800-37, NIST SP 800-53, CNSSI 1253
  • VMP experience
  • Strong communication, presentation, and customer service skills
  • Level I: Bachelor's degree (IT-related field preferred) and three (3) years of overall experience in cybersecurity or network security; additional relevant experience may be considered in lieu of degree
  • Level II: Bachelor's degree (IT-related field preferred) and five (5) years of overall experience in cybersecurity or network security; experience developing and implementing continuous monitoring programs

Benefits

  • Competitive compensation
  • Health and Wellness programs
  • Income Protection
  • Paid Leave
  • Retirement

Job title

Continuous Monitoring Analyst, ConMon

Job type

Experience level

Mid levelSenior

Salary

$67,600 - $122,200 per year

Degree requirement

Bachelor's Degree

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job