ENS Solutions logo

RMF Cybersecurity Analyst - TS/SCI with CI Poly

ENS Solutions

Annapolis Junction, MDJobSeen 1mo agoSeen in employer's feed 2 days ago

Most applications go out cold — see where you stand first. No sign-up to start.

Watch jobs like this.

At a glance

Compensation
No compensation found
Location
Annapolis Junction, MD
Work Authorization
Not specified

Olive lists jobs from US employers, including remote roles you can work from the United States.

Requirements

Credentials this posting asks for.

TS/SCI clearance

Job overview

The Risk Management Framework Cybersecurity Analyst will support Federal Government and Intelligence Community projects, ensuring IT solutions meet security standards, authoring required documentation, and guiding systems through RMF to achieve Authority to Operate.

Skills & qualifications

RequiredNice to have

Skills

RMFNIST 800-53XactaOral CommunicationTechnical WritingTeamwork

Qualifications

High School and 10+ Years Experience or Associate's Degree and 8+ Years Experience or Bachelors Degree and 6+ Years Experience or Master's Degree and 4+ Years Experience or PhD and 2+ Years Experience3+ Years IC (SCI) RMF Assessment and Authorization Experience1+ Year Hands on Experience With Xacta ApplicationActive Top Secret/SCI Clearance With Ability to Obtain Counter‑Intelligence Polygraph

Benefits

Medical Insurance
Dental Insurance
Vision Insurance
401(k) Match
Paid Time Off
Tuition Assistance
Relocation Assistance

Full job description

Our work depends on a Risk Management Framework Cybersecurity Analyst joining our team to support Government activities. As a RMF Cybersecurity Analyst supporting the Federal Government and the Intelligence Community (IC), you will be entrusted with ensuring our IT engineering solutions meet the highest security standards, that they adhere to all applicable standards, guidelines, and mandates; and that all appropriate documentation necessary to make up a Body of Evidence (BoE) is provided to the Chief Information Security Officer (CISO), and Authorizing Official (AO) to successfully justify the issuing an Authority to Operate (ATO).

  • Acting as an appointed Information System Security Officer (ISSO) for IC cyber systems being developed by the engineering team.

  • Reporting, documenting, and briefing the status of systems under development while assuring their successful and timely progression through the DIA Risk Management Framework (RMF) to the satisfaction of the appointed Information System Security Manager (ISSM), and/or senior govt leadership.

  • Providing clear justification describing the satisfaction of all applicable security control implementation as specified by the IC, AO, or NIST-800-53, rev 4 rev 5.

  • Authoring System Security Plans (SSP).

  • Authoring System Security Test Plans (SSTP).

  • Conducting self-assessments of all systems under development

  • Analyzing security controls and the impact changes would introduce to the environment.

  • Preparing for and assisting with formal risk assessments conducted by the AO’s designated Security Control Assessors (SCA) while acting as a member of the security assessment test team.

  • Ensuring the remediation of any findings assigned to engineering as documented in the Security Assessment Report (SAR) and its Plan of Actions and Milestones (PO&AM).

  • Documenting and defending reasoning when waivers are sought, or non-standard remediation solutions are requested for specific security controls.

  • Assisting with the transition of systems granted an ATO to the Operations branch and the assignment of an operations ISSO.

  • Researching remediation options for vulnerabilities identified for systems under development or already in production under an ATO.

Requirements

  • High School and 10+ years of experience / Associate's Degree and 8+ years of experience/ Bachelors Degree and 6+ years of experience / Master's degree and 4+ years of experience / PHD and 2+ years of experience.

  • Minimum of 3-years IC (SCI) RMF Assessment and Authorization (A&A) experience and the ability to describe the differences between collateral and SCI authorization requirements as they apply to DoD and IC instructions and guidelines.

  • Ability to speak to the intent of all NIST 800-53 security controls.

  • Minimum 1-year hands on experience with the Xacta application.

  • Excellent oral and technical writing skills.

  • Ability to work both independently and as a member of a team

  • Must possess an Active Top Secret/SCI Clearance with the ability to obtain a counter-intelligence polygraph.

Benefits

Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients.

Why ENS?

  • Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS

  • 401k Contribution from Day 1

  • PTO + 11 Paid Federal Holidays

  • Long & Short Term Disability Insurance

  • Group Term Life Insurance

  • Tuition, Certification & Professional Development Assistance

  • Workers’ Compensation

  • Relocation Assistance

Similar jobs, posted recently

Open roles like this one, listed in the last 30 days.

You've read the whole posting — now see how you match it.