Назад
Company hidden
4 дня назад

RMF / CSAM Analyst (Cybersecurity)

75 000 - 104 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
junior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
RMF / CSAM Analyst (Cybersecurity): Maintaining continuous security authorization and compliance for a cloud-based federal IAM solution with an accent on RMF, CSAM, FedRAMP, FISMA, and NIST requirements. Focus on managing security controls and inheritance statements, tracking POA&M remediation, analyzing CDM and CVE findings, and sustaining the Authority to Operate.

Location: Remote

Salary: $75,000–$104,000 per year

Company

hirify.global delivers cybersecurity, development, IT infrastructure, supply chain management, system design, and continuous improvement services to the federal government.

What you will do

  • Maintain continuous security authorization and compliance for a cloud-based federal IAM solution through the Risk Management Framework and CSAM.
  • Ensure compliance with FedRAMP, FISMA, NIST SP 800-63, OMB M-24-15, and OMB M-21-31 requirements.
  • Manage security controls, inheritance statements, POA&M items, corrective action plans, CDM findings, and CVE responses.
  • Oversee event logging, encryption of data at rest and in transit, incident management, and protection of key user data.
  • Maintain the Cybersecurity Framework scorecard and documentation supporting the Authority to Operate.
  • Support supply chain risk management, federal records, CUI handling, Section 508 accessibility, technology business management reporting, and project risk and schedule documentation.

Requirements

  • Bachelor’s degree and at least two years of relevant experience.
  • Strong knowledge of NIST RMF and the CSAM tool.
  • Experience with FedRAMP, FISMA, POA&M management, and security control inheritance.
  • Familiarity with NIST SP 800-63, OMB M-21-31, cloud security, encryption, logging, and compliance reporting.
  • Ability to analyze scan results, develop corrective action plans, track remediation, and manage detailed documentation.
  • Public Trust clearance required.

Culture & Benefits

  • Remote work environment supporting federal cybersecurity programs.
  • Eleven federal holidays and paid time off accrued each pay period.
  • Medical, dental, vision, life, disability, flexible spending, and legal insurance options.
  • 401(k) plan with company matching and a vesting schedule.
  • Parental leave, continuing education assistance, wellness benefits, and employee assistance resources.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →