SME Information Security Analyst (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
SME Information Security Analyst (Cybersecurity): Supporting critical cybersecurity compliance and risk management for the U.S. Coast Guard with an accent on RMF execution and security authorization. Focus on achieving Authority to Operate (ATO), conducting technical vulnerability reviews, and orchestrating data governance workflows for complex enterprise systems.
Location: Hybrid; Must be based in Alexandria, VA
Salary: $175,000 - $225,000 Annually
Company
is a government IT transformation company focused on delivering innovative IT services and solutions to improve the operation of government agencies.
What you will do
- Lead the execution of the Risk Management Framework (RMF) to achieve and maintain Authority to Operate (ATO).
- Author and update security authorization packages in compliance with DHS 4300A policies.
- Manage security control assessments, continuous monitoring strategies, and Plan of Action and Milestones (POA&M).
- Perform technical vulnerability reviews, risk assessments, and compliance audits on enterprise architectures.
- Oversee data governance workflows, asset cataloging, and metadata management.
- Coordinate with Authorizing Officials (AO) and technical engineers to resolve high-priority security vulnerabilities.
Requirements
- 10+ years of commensurate experience in information security.
- DoD 8570 IAM Level II or III certification (e.g., CISSP, CISM, CAP).
- Hands-on experience with DHS 4300A Sensitive Systems Policy directives.
- Mastery of NIST Risk Management Framework (SP 800-37) and NIST SP 800-53 security controls.
- Experience leading IT systems through the complete assessment and authorization (A&A) lifecycle.
- Must have an active Secret clearance.
Nice to have
- Prior experience supporting U.S. Coast Guard (USCG) or Department of Homeland Security (DHS) programs.
- Experience using Collibra for data governance and compliance tracking.
- Familiarity with Xacta, Archer, or DHS-specific risk management repositories.
- Knowledge of FedRAMP cloud security architectures and modern network protocols.
Culture & Benefits
- Learning and Development platform with certification preparation content.
- Training, Education, and Certification Assistance for full-time employees.
- Internal Mobility Program and Referral Bonus Program.
- Employee Assistance Program (EAP) and corporate discounts.
- Flexible work environment and pet insurance.
Hiring process
- Virtual video interview with the hiring manager/team (camera and photo ID required).
- Enhanced Biometrics ID verification screening.
- Comprehensive background check covering criminal history, education, and employment for the past 7 years.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →