SAIC logo

Cyber Analyst-RMF Specialist

SAIC

Colorado Springs, COContract$120–160K/yrSeen 4w ago

Most applications go out cold — see where you stand first. No sign-up to start.

Watch jobs like this.

At a glance

Compensation
$120–160K/yr
Location
Colorado Springs, CO
Schedule
Contract
Work Authorization
Not specified

Olive lists jobs from US employers, including remote roles you can work from the United States.

Requirements

Credentials this posting asks for.

DoDD 8140.03 Intermediate Level CertificationTS/SCI clearanceBachelor's degree

Job overview

The Cyber Analyst - RMF Specialist will act as a technical compliance specialist supporting the North American Aerospace Defense Command and United States Northern Command IT services. The role involves administrator-level access to perform vulnerability and compliance scans, manage STIG compliance, maintain eMASS records, and execute rapid response to cyber tasking orders.

Skills & qualifications

RequiredNice to have

Skills

Active DirectoryWindowsLinuxACASSCAPEvaluateSTIGSTIG ViewereMASSVulnerability ScanningContinuous MonitoringRisk Management FrameworkPlan of Action and MilestonesCyber Tasking OrdersCompTIA CySA+Security+ CEGSEC

Qualifications

Active TS/SCI Security ClearanceDoDD 8140.03 Intermediate Level CertificationBachelor's Degree in Information Assurance, Cybersecurity, or Systems Administration5+ Years IT and Cybersecurity Experience2+ Years ISSO ExperienceExperience Using STIG Viewer and SCAP ToolsFamiliarity With Enterprise Vulnerability Scanners and Continuous Network Monitoring ToolsPrevious Experience Operating in a Highly Complex, Metrics-Driven DoD Cybersecurity EnvironmentFamiliarity With Use of eMASS as Central Repository for RMF Artifacts

Full job description

Description

Join our team and play a pivotal role in defending North America. We are seeking a highly skilled Cyber Analyst - RMF Specialist in Colorado Springs, CO to support the critical North American Aerospace Defense Command and United States Northern Command (N&NC) Information Technology Enterprise Services (NITES) contract in Colorado Springs, CO.

In this role, you will act as a key technical compliance specialist. You will hold administrator-level access to information systems to perform advanced vulnerability and compliance scanning and manage Security Technical Implementation Guide (STIG) compliance. Crucially, you will bridge the gap between technical operations and cyber governance by directly supporting the Risk Management Framework (RMF) team, maintaining up-to-date system records in Enterprise Mission Assurance Support Service (eMASS), and executing rapid response protocols to downward-directed Cyber Tasking Orders (CTASKORDs).

Responsibilities:

The selected candidate will be responsible for the following technical and compliance activities:

  • Directly support the Risk Management Framework (RMF) team by registering, updating, and maintaining continuous monitoring records within the eMASS.

  • Maintain administrator-level access to enterprise information systems to configure, manage, and perform regular Assured Compliance Assessment Solution (ACAS) and Security Content Automation Protocol (SCAP) compliance scans.

  • Analyze scan results to ensure continuous patching and STIG compliance.

  • Implement, track, and validate system hardening measures across Windows, Linux, and network enclaves.

  • Lead the execution, tracking, and operational response to Cyber Tasking Orders (CTASKORDs) and other downward-directed orders when STIG compliance gaps must be urgently addressed.

  • Translate technical scan findings and non-compliant STIG items into actionable Plan of Action and Milestones (POA&Ms), maintaining accurate tracking of remediation milestones.

  • Maintain continuous cyber security posture and system hygiene to ensure systems remain in a Cyber Operational Readiness Assessment (CORA) ready state.

  • Provide clear vulnerability status updates, technical mitigations, and compliance roadmaps to System Owners, technical administration teams, and leadership.

Qualifications

Required Qualifications:

  • Active TS/SCI security clearance.

  • Certification required per DoDD 8140.03, Intermediate Level (e.g., CompTIA CySA+, Security+ CE, GSEC, or equivalent).

  • BS or equivalent work experience in the Information Assurance, Cybersecurity, or Systems Administration field.

  • 5+ years of overall IT and cybersecurity experience.

  • Demonstrated experience with defending identity services, domain environments, Active Directory, and Windows/Linux server systems.

  • 2+ years of experience as an ISSO for DoD systems.

  • Experience using STIG Viewer and SCAP tools, such as EvaluateSTIG.

Desired Qualifications:

  • Familiarity with enterprise vulnerability scanners and continuous network monitoring tools.

  • Previous experience operating in a highly complex, metrics-driven DoD cybersecurity environment.

  • Familiarity with the use of eMASS as a central repository for RMF artifacts.

Target salary range: $120,001 - $160,000. The estimate displayed represents the typical salary range for this position based on experience and other factors.

REQNUMBER: 2615743

SAIC is a premier technology integrator, solving our nation's most complex modernization and systems engineering challenges across the defense, space, federal civilian, and intelligence markets. Our robust portfolio of offerings includes high-end solutions in systems engineering and integration; enterprise IT, including cloud services; cyber; software; advanced analytics and simulation; and training. We are a team of 23,000 strong driven by mission, united purpose, and inspired by opportunity. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $6.5 billion. For more information, visit saic.com. For information on the benefits SAIC offers, see Working at SAIC. EOE AA M/F/Vet/Disability

Similar jobs, posted recently

Open roles like this one, listed in the last 30 days.

You've read the whole posting — now see how you match it.