Junior ISSO/ RMF Analyst - Defense

Posted Yesterday
Be an Early Applicant
Arlington, VA, USA
In-Office
125K-140K Annually
Junior
Computer Vision • Cybersecurity
The Role
Support RMF execution for a DoD cloud system: maintain RMF artifacts (SSPs, SARs, POA&Ms), collect and organize evidence, support continuous monitoring, track remediation, review vulnerability/STIG findings, and coordinate with engineering and DevSecOps to ensure control implementation and audit readiness.
Summary Generated by Built In
Tetrad Digital Integrity (TDI) is a cybersecurity firm built for high-consequence environments where mission, complexity, and trust intersect. Our single focus has been delivering cyber solutions to effectively manage risk & the business of cyber for 25 years!
TDI is seeking a Junior Cloud RMF Analyst to support RMF and security execution for a mission-critical cloud-hosted defense system. This is a growth role for an early-career cybersecurity professional who is organized, coachable, mission-focused, and ready to build real-world experience in DoW (USMC) cloud security and RMF operations. The role is designed for candidates with a solid foundation in cybersecurity, an active clearance, and the discipline to operate in a high-visibility environment where accuracy, follow-through, and customer trust matter.
You will work alongside experienced ISSOs, ISSMs, and engineering teams to support the RMF engine room: maintaining artifact quality, tracking POA&Ms, collecting and organizing evidence, supporting Continuous Monitoring, and helping ensure that documentation stays aligned to system reality as the environment evolves. If you are the kind of person who learns quickly, writes clearly, stays organized under pressure, and wants to grow into a cloud-savvy ISSO role supporting consequential national security systems, we want to meet you.

This position will require an active SECRET clearance and a hybrid commute around the DC area.

RESPONSIBILITIES:
  • Support day-to-day RMF execution across the system lifecycle under the guidance of senior cybersecurity staff.
  • Assist with development and maintenance of RMF artifacts including SSPs, SAR support materials, POA&Ms, control implementation details, evidence mappings, and supporting documentation.
  • Collect, organize, and maintain evidence needed to support assessments, audits, Continuous Monitoring, and authorization activities.
  • Support POA&M management with discipline: track remediation items, owners, due dates, status updates, and closure evidence.
  • Help ensure documentation, evidence, and system reality remain aligned as approved changes occur through normal governance and configuration management processes.
  • Support Continuous Monitoring activities by maintaining artifact freshness, tracking recurring deliverables, and helping prepare metrics and status updates.
  • Review vulnerability scan outputs, STIG findings, and remediation documentation to support compliance tracking and risk reduction efforts.
  • Coordinate with engineering, platform, and DevSecOps teams to gather evidence and confirm implementation details for security controls.
  • Support security documentation and control traceability for cloud-hosted environments, including systems using modern platforms and managed cloud services.
  • Contribute to process improvement efforts that reduce manual compliance work and improve quality, consistency, and audit readiness.
  • Build practical knowledge of DoD RMF, NIST SP 800-53, cloud security concepts, and real-world control implementation in operational environments.
QUALIFICATIONS:
  • Active Secret clearance.
  • Bachelor’s degree in cybersecurity, information systems, computer science, engineering, or a related field, or equivalent relevant experience.
  • 2+ years of experience in cybersecurity, cloud security, compliance, risk management, IT operations, or related technical work.
  • Security+ certification.
  • Foundational knowledge of RMF, NIST SP 800-53, FedRAMP, or related cybersecurity/compliance frameworks.
  • Basic familiarity with one or more cloud platforms such as AWS, Azure, or GCP, active path to obtain professional-level Google certification within a defined period after hire, is preferred.
  • Familiarity with core security concepts such as access control, logging and monitoring, vulnerability management, configuration management, encryption, and incident response.
  • Strong writing and communication skills with the ability to produce clear, professional, customer-ready documentation with guidance.
  • Strong organizational skills, attention to detail, and follow-through across multiple tasks in a fast-moving environment.
  • Ability to learn quickly, accept coaching, and work effectively with both technical and non-technical stakeholders.
PAY RANGE:
The anticipated salary range for this position is $125,000 - $140,000 . This range is a good-faith estimate and not a guarantee of compensation. Final compensation will be based on factors including experience, education, skills, geographic location, internal equity, market data and applicable contract requirements, and may fall outside the posted range.

Skills Required

  • Active Secret clearance
  • Bachelor's degree in cybersecurity, information systems, computer science, engineering, or equivalent experience
  • 2+ years experience in cybersecurity, cloud security, compliance, risk management, or IT operations
  • Security+ certification
  • Foundational knowledge of RMF, NIST SP 800-53, and FedRAMP
  • Familiarity with access control, logging/monitoring, vulnerability management, configuration management, encryption, and incident response
  • Basic familiarity with one or more cloud platforms (AWS, Azure, GCP)
  • Active path to obtain professional-level Google certification within a defined period after hire
  • Strong writing, communication, organizational skills, attention to detail, and ability to learn and accept coaching
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Washington, DC
50 Employees
Year Founded: 2001

What We Do

For over 20 years, TDI’s one and only passion has been delivering cybersecurity solutions to effectively manage the business of cyber. At the global vanguard of innovation, we created Cybersecurity Performance Management (CPM) and the industry-leading CPM platform, CnSight®. Combining CnSight® with our remarkable historical experience and our exceptional capabilities of cyber operations and compliance, we offer Managed Cybersecurity Performance, a first of its kind managed CPM offering. TDI’s CPM solutions mitigate risk, reduce ransomware, provide continuous compliance, improve cyber-ROI, and provide comprehensive instantaneous visibility into how an organization is performing against its cyber strategy, particularly for Boards of Directors. CnSight® is the industry-leading Cybersecurity Performance Management (CPM) platform which mitigates risk, reduces ransomware, provides continuous compliance, improves cyber-ROI, and provides comprehensive instantaneous visibility into how an organization is performing against its cyber strategy, so executives and Boards may effectively manage the business of cybersecurity– the result: reduced stress, better performance, less cost, and a true understanding of cyber investment. With CnSight® at its core, TDI’s Managed Cybersecurity Performance offering ensures strategic cyber goals are met to protect an organization’s investments, assets and reputation by reducing the risk of ransomware, lowering cyber insurance premiums, improving ROI, reducing legal and fiduciary liability, delivering actionable reporting to the Board and C-Suite, providing on-call advice, ensuring continuous compliance and providing subject matter expertise on the organization’s behalf in meeting with the C-Suite and the Board, dealing with auditors, and supporting budget decisions – the result: reduced stress, better performance, less cost, and a true understanding of cyber investment.

Similar Jobs

IMC Trading Logo IMC Trading

ISCA 2026

Fintech • Machine Learning • Software • Financial Services
Remote or Hybrid
United States
1954 Employees

Imprivata Logo Imprivata

Customer Success Manager

Healthtech • Information Technology • Security • Software • Cybersecurity
Remote or Hybrid
United States
1372 Employees
135K-154K Annually

Imprivata Logo Imprivata

Vice President, Mid-Enterprise Healthcare Sales

Healthtech • Information Technology • Security • Software • Cybersecurity
Remote or Hybrid
United States
1372 Employees
420K-480K Annually

BAE Systems, Inc. Logo BAE Systems, Inc.

Network Engineer

Aerospace • Hardware • Information Technology • Security • Software • Cybersecurity • Defense
Hybrid
Herndon, VA, USA
40000 Employees
141K-239K Annually

Similar Companies Hiring

SEON Thumbnail
Artificial Intelligence • Cybersecurity
Budapest, Budapest
415 Employees
HERE Technologies Thumbnail
Artificial Intelligence • Automotive • Computer Vision • Information Technology • Internet of Things • Logistics • Software
Amsterdam, NL
6000 Employees
Blissway Thumbnail
Computer Vision • Fintech • Hardware • Internet of Things • Machine Learning • Software • Transportation
Denver, CO
24 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account