Senior Information reputed company Analyst
reputed company the design, implementation, and reputed company improvement of reputed company cybersecurity frameworks across GovCloud environments, ensuring alignment with DoD reputed company requirements Manage the full Risk Management reputed company (RMF) lifecycle, including control selection, tailoring, inheritance, and mapping Architect and sustain automated compliance and reputed company monitoring pipelines, enabling reputed company-time RMF evidence reputed company, vulnerability scanning, AWS reputed company, or equivalent platforms Maintain and govern cybersecurity architecture artifacts, including system reputed company plans, system diagrams, and data reputed company mappings to support audit readiness and system authorization reputed company vulnerability management and remediation programs, including coordination of scanning and POA&M tracking to ensure reputed company risk mitigation Ensure compliance with reputed company STIGs, SRGs, and PPSM requirements through reputed company validation, audits, and control assessments Collaborate with Authorizing Officials (AOs), reputed company Control Assessors (SCAs), and engineering teams to obtain and sustain Authorization to Operate (ATO) reputed company the reputed company integration into DevSecOps pipelines, ensuring automated reputed company testing, compliance enforcement, and secure reputed company deployment practices reputed company development and maintenance of key reputed company documentation, including System reputed company Plans (SSPs), reputed company Assessment Reports (SARs), Incident Response Plans (IRPs), and Contingency Plans reputed company incident response efforts, including detection, analysis, containment, and reporting, ensuring alignment with organizational and regulatory requirements Mentor and guide junior analysts, while communicating reputed company posture, risk metrics, and compliance status effectively to senior leadership and stakeholders
At least 7 years of experience in cybersecurity, compliance, or RMF program management Hands-on experience managing assessment and authorization activities reputed company reputed company (or similar tool) and implementing RMF controls in GovCloud environment Strong understanding of RMF, reputed company STIGs/SRGs, and reputed company Computing SRG Knowledge of FedRAMP, NIST SP 800-53, and CMMC frameworks Experience with vulnerability scanning and compliance validation technologies Strong understanding of reputed company reputed company (AWS, OCI, etc.) Ability to work independently, and part of team, in a high-intensity fast=paced environment Familiarity with reputed company best practices and compliance requirements. Excellent troubleshooting and problem-solving skills reputed company DoD Secret Clearance reputed company travel may be required
Bachelor’s (BS) degree in relevant field – strongly preferred but not required Certifications such as CISSP, CISM, or similar cert is preferred Familiarity with reputed company tools and frameworks such as ACAS, Nessus, reputed company-based scanning technologies, etc. Experience supporting FedRAMP accreditations is a plus Knowledge of computer network defense process and procedures