- Company Name
- FEDITC
- Job Title
- Cybersecurity Systems Analyst, Intermediate
- Job Description
-
**Job Title:** Cybersecurity Systems Analyst, Intermediate
**Role Summary:**
The analyst evaluates, authorizes, and monitors DoD‑controlled networks, cloud environments, and information systems to ensure compliance with the Risk Management Framework (RMF) and related DoD security directives. Acting as a liaison between system owners, administrators, and federal agencies, the analyst creates and maintains Authorization to Operate (ATO), Interim Authority to Test (IATT), and Authority to Connect (ATC) documents, develops remediation plans, and maintains an Information Security Continuous Monitoring (ISCM) program.
**Expectations:**
* Maintain an active TS/SCI clearance and U.S. citizenship.
* Demonstrate proficiency in RMF processes, NIST SP 800‑53 controls, and DISA STIGs.
* Coordinate with DoD, DIA, USCYBERCOM, and DISA to resolve authorization and security‑related issues.
* Deliver timely risk assessments, vulnerability reports, and status updates to senior stakeholders and accrediting authorities.
**Key Responsibilities:**
1. Conduct comprehensive security assessments of networks, cloud services, mobile devices, hardware, and software, producing A&A packages and security plans (ATO, IATT, ATC).
2. Apply ACAS, Nessus, and Security Content Automation Protocol tools to scan and identify vulnerabilities; interpret results against applicable STIGs.
3. Develop and maintain A&A databases, web sites, and automated tools to track documentation and compliance status.
4. Draft and issue certification letters and remediation plans, collaborating with system and network administrators to address identified deficiencies.
5. Prepare risk assessment reports for submission to the Senior Component Authority (SCA), Authorizing Official (AO), Designated Authorizing Official (DAO), and Designated Accrediting Authority (DAA).
6. Monitor ongoing compliance; issue early‑warning notifications (30, 60, 90‑day) to prevent gaps in accreditation.
7. Support continuous monitoring initiatives, including oversight of SIEM, endpoint, and other cyber defense tools.
8. Engage with DoD, DIA, and NSA stakeholders to resolve authorization, connection approvals, and waiver requests.
**Required Skills:**
* In‑depth knowledge of RMF methodology and DoD security directives (DODI 8510.01, ICD 503).
* Proficiency with ACAS, Nessus, and Security Content Automation Protocol.
* Strong understanding of NIST SP 800‑53 controls, DISA STIGs, and IT security best practices.
* Ability to produce clear, concise A&A documentation and risk assessment reports.
* Experience coordinating with multi‑agency stakeholders (USCYBERCOM, DIA, DISA).
* Familiarity with network, cloud, and endpoint security tools; SIEM operations.
**Required Education & Certifications:**
* Bachelor’s degree in Cybersecurity, Computer Science, Information Assurance, or related field.
* Active TS/SCI security clearance; U.S. citizenship.
* Relevant certifications preferred: CISSP, CISA, CompTIA Security+, or equivalent cybersecurity credentials.
Fort walton beach, United states
On site
06-11-2025