Cybersecurity Systems Analyst, Associate jobs in United States
cer-icon
Apply on Employer Site
company-logo

FEDITC · 1 day ago

Cybersecurity Systems Analyst, Associate

FEDITC, LLC is a fast-growing business supporting DoD and other intelligence agencies worldwide. They are seeking a Cybersecurity Systems Analyst, Associate to perform assessment and authorization coordination, advising on Risk Management Framework and ensuring compliance with cybersecurity standards.

ConsultingCyber SecurityGovernmentInformation Technology
check
Work & Life Balance
badNo H1BnoteSecurity Clearance RequirednoteU.S. Citizen Onlynote

Responsibilities

Tracks A&A status of SIE governed ISs. Ensures these artifacts and documentation are available in the USSOCOM-chosen automated tool
Advises stakeholders on the adequacy of implementation of cybersecurity requirements
Provide DoD & IC RMF subject matter expertise, and assist with the development and execution of the RMF program
Maintain, track, and validate DISN, cloud and DIA connection approval packages
Develop and maintain supporting documentation for new and existing networks, cloud environments, information systems and technologies as they are introduced into the SIE
Develop and review the A&A of SIE networks, cloud environments, systems, services, telecommunication circuits, mobile devices, portable electronic devices, hardware, and software using the DoD & IC RMF to obtain an Authority to Operate (ATO), Interim Authority to Test (IATT), or Authority to Connect (ATC)
Perform risk and vulnerability assessments of IT and IS for authorization; prepare risk assessment reports for submission to the SCA and Authorizing Official/Designated Authorizing Official/Designated Accrediting Authority (AO/DAO/DAA) in accordance with policies, procedures, and regulations
Assist with the enforcement of A&A, as well as DoD, DIA, USSOCOM, Component Command, TSOC, and deployed forces’ connection standards for networks and systems
Track and maintain A&A databases, web sites and tools to ensure that networks, systems and devices are properly documented and managed from a cybersecurity perspective
Track and report to higher headquarters organizations (e.g. USCYBERCOM, DIA) compliance with applicable Cybersecurity regulations and directives
Ensure timely notifications are made to responsible individuals and organizations in order to prevent lapses in accreditations (e.g., 30, 60, and 90 day notices)
Develop and maintain an Information Security Continuous Monitoring (ISCM) Plan. This plan shall address ongoing awareness of information security, vulnerabilities, security controls, and threats to support organizational risk management decisions
Identify, assess, and advise on cybersecurity control compliance and associated risks
Coordinate with USCYBERCOM, DoD, DIA, NSA, DISA, and subordinate organizations to support the resolution of issues with security, A&A, connection approvals, and waiver requests
Perform network, cloud, information systems, hardware, software and device security authorization and assessments, as well as the application and execution of policy, including project management support services
Validate the patching of systems, perform validation scanning, develop Plans of Action & Milestone (POA&Ms), and report as directed by applicable policies, procedures, and regulations
Provide subject matter expertise for COA development and the implementation of Cybersecurity mitigation strategies
Develop and implement required processes, procedures, and capabilities to mitigate vulnerabilities and weaknesses for software and hardware deployment
Identify, implement and validate continued effectiveness of key performance parameters and applied security measures
Perform analytics on cybersecurity posture and provide reports to the AO/DAO and applicable stakeholders as required per ISCM and AO/DAO direction

Qualification

Risk Management FrameworkNIST 800-53 complianceCybersecurity assessmentsDoD IA processesTelos XactaMicrosoft operating systemsLinux operating systemsSystem administrationDatabase managementMobility managementVulnerability assessmentsProject management supportCybersecurity policiesCommunication skillsInterpersonal skills

Required

3+ years of progressive, relevant experience or equivalent combination of education and experience
Technical background in networking, identity management, Microsoft and Linux operating systems, database, and mobility
Working knowledge of the RMF
Must have excellent communications skill (written and oral) and interpersonal skills
Knowledge and experience with DoD IA processes and policies (e.g., DODI 8510.01, NIST, CNSS and other cybersecurity policies, Chairman of the Joint Chiefs of Staff Manual (CJCSM) 65101.01, Incident Response and other IA policies)
BA/BS Degree
IAT Level II
Active TS/SCI clearance is required
Must be a US Citizen and pass a background check
Maintain applicable security clearance(s) at the level required by the client and/or applicable certification(s) as requested by FEDITC and/or required by FEDITC'S Client(s)/Customer(s)/Prime contractor(s)

Preferred

Experience with the US Combatant Commands (USCENTCOM/USSOCOM) is desired
Technical background with system administration experience, architecture and engineering preferred
Knowledge of the Telos Xacta or Enterprise Mission Assurance Support Services (eMASS) system is desired

Company

FEDITC

twittertwittertwitter
company-logo
Founded in 2003, FEDITC, LLC is an ISO 9001/20000-1/27001, and CMMI level 3 certified cyber security, IT, and engineering services firm.

Funding

Current Stage
Growth Stage

Leadership Team

leader-logo
Hong Deng
CEO
linkedin
Company data provided by crunchbase