RMF Cybersecurity Analyst - TS/SCI with CI Poly

Sterling, Virginia, United States

ENS Solutions

View company page

Our work depends on a Risk Management Framework Cybersecurity Analyst joining our team to support Government activities in Annapolis Junction, MD, or Sterling, VA. As a RMF Cybersecurity Analyst supporting the Federal Government and the Intelligence Community (IC), you will be entrusted with ensuring our IT engineering solutions meet the highest security standards, that they adhere to all applicable standards, guidelines, and mandates; and that all appropriate documentation necessary to make up a Body of Evidence (BoE) is provided to the Chief Information Security Officer (CISO), and Authorizing Official (AO) to successfully justify the issuing an Authority to Operate (ATO).

  • Acting as an appointed Information System Security Officer (ISSO) for IC cyber systems being developed by the engineering team.
  • Reporting, documenting, and briefing the status of systems under development while assuring their successful and timely progression through the DIA Risk Management Framework (RMF) to the satisfaction of the appointed Information System Security Manager (ISSM), and/or senior govt leadership.
  • Providing clear justification describing the satisfaction of all applicable security control implementation as specified by the IC, AO, or NIST-800-53, rev 4 rev 5.
  • Authoring System Security Plans (SSP).
  • Authoring System Security Test Plans (SSTP).
  • Conducting self-assessments of all systems under development
  • Analyzing security controls and the impact changes would introduce to the environment.
  • Preparing for and assisting with formal risk assessments conducted by the AO’s designated Security Control Assessors (SCA) while acting as a member of the security assessment test team.
  • Ensuring the remediation of any findings assigned to engineering as documented in the Security Assessment Report (SAR) and its Plan of Actions and Milestones (PO&AM).
  • Documenting and defending reasoning when waivers are sought, or non-standard remediation solutions are requested for specific security controls.
  • Assisting with the transition of systems granted an ATO to the Operations branch and the assignment of an operations ISSO.
  • Researching remediation options for vulnerabilities identified for systems under development or already in production under an ATO.

Requirements

  • High School and 10+ years of experience / Associate's Degree and 8+ years of experience/ Bachelors Degree and 6+ years of experience / Master's degree and 4+ years of experience / PHD and 2+ years of experience.
  • Minimum of 3-years IC (SCI) RMF Assessment and Authorization (A&A) experience and the ability to describe the differences between collateral and SCI authorization requirements as they apply to DoD and IC instructions and guidelines.
  • Ability to speak to the intent of all NIST 800-53 security controls.
  • Minimum 1-year hands on experience with the Xacta application.
  • Excellent oral and technical writing skills.
  • Ability to work both independently and as a member of a team
  • Must possess an Active Top Secret/SCI Clearance with the ability to obtain a counter-intelligence polygraph.

Benefits

Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients.

Why ENS?

  • Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS
  • 3% 401k Contribution from Day 1
  • 3 Weeks Base PTO + 11 Paid Federal Holidays
  • Long & Short Term Disability Insurance
  • Group Term Life Insurance
  • Tuition, Certification & Professional Development Assistance
  • Workers’ Compensation
  • Relocation Assistance
Apply now Apply later
  • Share this job via
  • or

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Tags: CISO Clearance DoD Network security NIST NIST 800-53 PhD Polygraph Risk assessment Risk management RMF Security assessment Security Assessment Report System Security Plan Top Secret TS/SCI Vulnerabilities

Perks/benefits: 401(k) matching Health care Insurance Relocation support

Region: North America
Country: United States
Job stats:  5  0  0
Category: Analyst Jobs

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.