RMF Cyber Security Analyst - 306210

Posted One Month Ago
Be an Early Applicant
Virginia Beach, VA, USA
In-Office
110K-115K Annually
Senior level
Information Technology • Software
The Role
Assist with Risk Management Framework accreditation packages and maintain Authorization to Operate certifications for networked systems and applications. Develop security and privacy documentation, manage records in eMASS, assess security controls and technical architectures, review STIGs and vulnerability scans, perform security assessments, audits, vulnerability testing, risk analysis, and breach investigations, and coordinate requirements with ISSOs and system managers.
Summary Generated by Built In

Delaware Nation Industries is supporting the Naval Surface Warfare Center Dahlgren Division Dam Neck Activity (NSWCDD DNA). We are providing enterprise management and technical support of the Naval Surface Warfare Center Dahlgren Division Dam Neck Activity (NSWC DD DNA) by providing assistance in policy, procedures, seat refresh, engineering/technical solutions, ordering to Next Generation Enterprise Network (NGEN) and the Naval Networking Environment (NNE) strategy.

Job Summary:   The RMF Analyst will assist in developing RMF accreditation packages and assist in maintaining Authorization to Operate (ATO) certifications for networked systems and applications used by the organization. The RMF Analyst will assist in the development of information system documentation and the provision of a designated set of common controls for the authorization package, including the executive summary, system security plan, privacy plan, security control assessment, privacy control assessment, and any relevant plans of action and milestones. This system certification documentation must comply with DoD and Civilian Agency policy focused on NIST 800-37, NIST 800-53 rev 4.


Responsibilities:

  • Monitor and assess existing Information Security Management and Security Technical Architecture, regulations, and controls (FIPS, NIST, DISN Connection Process Guide(CPG), Navy RMF Process Guide (RPG), Navy Testing Guidance)
  • Assess proposed Information Security Management and Security Technical Architecture, regulations, and controls (FIPS, NIST, DISN CPG, Navy RPG, Navy Testing Guidance)
  • Maintain regular meetings/notes and informal dialog with RDT&E CORE/LAB managers and ISSOs to keep them abreast of upcoming Information System Security Manager (ISSM) requirements and to gather specifics on their capability and core support requirements and trends
  • Maintain records in the Enterprise Mission Assurance Support Service (eMASS)
  • Evaluating technical testing from Assured Compliance Assessment Solution (ACAS) scans, Evaluate STIG, eMASSter), and Security Technical Implementation Guide Viewer tool using FMATS or other NAVSEA or DoD-approved toolset.
  • Monitor security access, passwords, badges, log-ins, to keep a site or system safe
  • Use firewalls and information security standards to keep their organization secure
  • Perform security assessments, vulnerability testing and risk analysis
  • Conduct security audits internal and external
  • Identify the cause of security breaches

Requirements
  • DoD Top Secret Security Clearance
  • 5+ Years of Experience in Cyber Security
  • Cyber Security Workforce level IAM II/III CASP,CISM, or CISSP required
  • Bachelor Degree or Equivalent Work Experience
  • Familiarity with NIST IT Security Special Publication (SP) 800 Series with emphasis on NIST SP 800-37 and NIST SP 800-53 rev 4/5
  • Forensics analysis familiarity
  • Experienced STIG reviewer
  • Microsoft Visio and Microsoft Project user

Desired:

  • Navy Qualified Validator (NQV) Level II
  • Familiarity with ACAS, RedSeal, and Carbon Black
  • Familiarity with the Vulnerability Remediation Asset Manager (VRAM) web tool
  • Familiarity with the Continuous Monitoring and Risk Scoring (CMRS) web tool

Benefits

Benefits Include:

  • Covers 100% of employee benefit premiums, including Medical (PPO or HDHP Option), Vision, Dental
  • Matching 401K
  • Short- and Long-Term Disability
  • Pet Insurance
  • Professional Development/Education Reimbursement
  • Parking and Transit Benefits for NY, NJ, ATL, and DC Metro areas

Other Duties:

Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice.

Salary Compensation: $110,000-$115,000

Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans

Skills Required

  • DoD Top Secret security clearance
  • 5 or more years of cybersecurity experience
  • Cybersecurity Workforce IAM II/III certification such as CASP, CISM, or CISSP
  • Bachelor's degree or equivalent work experience
  • Familiarity with NIST SP 800 series, especially NIST SP 800-37 and NIST SP 800-53 revisions 4 and 5
  • Familiarity with forensic analysis
  • Experience as a STIG reviewer
  • Experience using Microsoft Visio and Microsoft Project
  • Navy Qualified Validator Level II
  • Familiarity with ACAS, RedSeal, and Carbon Black
  • Familiarity with the VRAM web tool
  • Familiarity with the CMRS web tool
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Oklahoma City, OK
300 Employees
Year Founded: 2015

What We Do

DNI (Delaware Nation Industries) is the parent organization for all Information Technology focused businesses owned by the Delaware Nation. Founded in 2014 DNI was created to support the rapid growth of the tribe’s first 8(a) technology firm, Indigenous Technologies, LLC. In 2011 Indigenous Technologies began several teaming partnerships with CSI, LLC. and was awarded 4 prime contracts with federal customers as a result of this arrangement. This partnership continued through the Fall of 2014 when DNI purchased CSI adding its capabilities and past performance to the growing Tribal IT Services division. As a result of this strategic acquisition by the Delaware Nation, CSI became the second Tribally owned technology focused LLC in the Delaware Nation portfolio. The third company under DNI operations is CreativeIT, LLC. CreativeIT is being built with an eye to the future and is focused on developing core competencies which supplement the strong capabilities of its sister organizations. DNI continues to build a strong team of companies, providing an all-inclusive suite of Information Technology services and capabilities to our clients.

Similar Jobs

Cloudera Logo Cloudera

Manager, Applied AI Strategy and Operations

Artificial Intelligence • Cloud • Software • Big Data Analytics
In-Office or Remote
5 Locations
3092 Employees
144K-162K Annually

PNC Bank Logo PNC Bank

Software Engineer

Machine Learning • Payments • Security • Software • Financial Services
Remote or Hybrid
USA
55000 Employees
86K-173K Annually

Vercel Logo Vercel

Software Engineer

Artificial Intelligence • Cloud • Software
Easy Apply
Remote or Hybrid
United States
208K-312K Annually

Boeing Logo Boeing

Support Integration Specialist (Logistics Integration)

Aerospace • Information Technology • Software • Cybersecurity • Design • Defense • Manufacturing
In-Office
Newport News, VA, USA
170000 Employees
94K-128K Annually

Similar Companies Hiring

Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Revel Thumbnail
Aerospace • Hardware • Robotics • Software
Marina Del Rey, California
60 Employees
Blee Thumbnail
Artificial Intelligence • Marketing Tech • Software
New York, New York
30 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account