Cybersecurity Controls & Compliance Analyst jobs in United States
cer-icon
Apply on Employer Site
company-logo

Edgewater Federal Solutions, Inc. · 2 hours ago

Cybersecurity Controls & Compliance Analyst

Edgewater Federal Solutions, Inc. supports the U.S. Department of Energy Office of Scientific and Technical Information in preserving and making accessible scientific and technical information. The Cybersecurity Controls & Compliance Analyst will assess cybersecurity controls, support audit readiness, and ensure compliance with federal cybersecurity frameworks and internal policies, focusing primarily on compliance and documentation.

Information ServicesInformation TechnologyProfessional Services
check
Growth Opportunities
badNo H1BnoteSecurity Clearance RequirednoteU.S. Citizen Onlynote

Responsibilities

Evaluate and document the effectiveness of cybersecurity controls across OSTI’s network and systems
Support internal and external audits, including evidence collection, control mapping, and remediation tracking
Support and partner with stakeholders in conducting risk assessments and gap analyses to ensure alignment with NIST, FISMA, and DOE cybersecurity requirements
Collaborate with system owners and technical teams to ensure security controls are implemented and maintained
Monitor compliance with OSTI’s cybersecurity policies, procedures, and standards
Maintain and update system security plans (SSPs), risk registers, and control documentation
Assist in the development and refinement of cybersecurity governance processes
Analyze security event data to identify control weaknesses and recommend improvements
Support the implementation of continuous monitoring strategies and reporting mechanisms
Coordinate with third-party cybersecurity teams and federal oversight bodies as needed
Prepare technical documentation and compliance reports for internal and external stakeholders
Stay current on cybersecurity regulations, audit trends, and best practices
Assist with installation, configuration, and maintenance of security tools used for compliance monitoring
Perform other duties as assigned

Qualification

Cybersecurity frameworksRisk assessmentsAudit complianceSIEM toolsVulnerability managementAnalytical skillsCustomer serviceDocumentation skillsCommunication skillsProject management

Required

High school diploma required
Minimum of 3 years' experience in cybersecurity, audit, or compliance roles
Possesses strong understanding of cybersecurity frameworks (e.g., NIST SP 800-53, FISMA, RMF), implementing and adapting them to specific organizational needs
Performs risk assessments, identifies control gaps, and recommends strategic remediation efforts based on organizational risk appetite
Supports audits, leads audit responses and compliance assessments, coordinates evidence collection, and develops corrective action plans in a federal or regulated environment
Works independently and collaboratively across technical and non-technical teams
Exhibits excellent analytical, documentation, and communication skills
Detail-oriented with a commitment to quality assurance and continuous improvement
Manages multiple projects and deadlines in a fast-paced environment
Maintains a high level of initiative, customer service, and professional growth mindset
Ability to provide proof of US Citizenship on your first day of employment to obtain a DOE HSPD-12 Badge in accordance with the terms of the contract

Preferred

Prefer degree or coursework in cybersecurity, information assurance, audit, or related field

Company

Edgewater Federal Solutions, Inc.

twittertwitter
company-logo
Edgewater Federal Solutions was founded in 2002 with the mission of being the best IT consulting company possible for our government clients, our contracting partners and our employees.

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Tom Ferrando
CEO
linkedin
Company data provided by crunchbase