Information Security Analyst (Navy Qualified Validator)

DecisionPoint Corporation
Portsmouth, NH, United States
26 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Compensation
$95,000.0 - $100,000.0
Working hours
Regular working hours
Job source

Tech stack

Cyber Security Information Systems Vulnerability Analysis

Job description

  • Support Navy and DoD information systems through Cybersecurity (CS), Certification & Accreditation (C&A), and Risk Management Framework (RMF) activities.
  • Perform security assessments and analysis, including IA controls validation, risk assessments, and risk mitigation planning.
  • Serve as a Navy Qualified Validator (NQV), supporting system Accreditation & Authorization (A&A) efforts.
  • Conduct system and network vulnerability analysis and support remediation and mitigation activities.
  • Execute STIG assessments and manage RMF artifacts using automated STIG tools and eMASS.
  • Support Security Test and Evaluation (ST&E) activities and document results.
  • Develop and maintain RMF documentation, including SOPs, CONOPs, security plans, and POA&Ms.
  • Support contingency planning, training, and testing related to system security.
  • Provide expert guidance to system owners and stakeholders on cybersecurity compliance and vulnerability mitigation.

Requirements

  • Active Top Secret clearance required.
  • Bachelor’s degree in an IT-related discipline or a Level II Certification (Security+ or better).
  • Minimum of seven (7) years of experience in CS/A&A analysis support, including IA controls analysis, risk assessments, risk mitigation analysis, or plan development.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:07 min

Summarizing critical actions for organizational cybersecurity compliance readiness

Matthew Brady Matthew Brady · WWC Europe 2026

59 sec

Proving regulatory compliance to auditors and chief officers

Mike Bursell Mike Bursell · WWC Europe 2026

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

3:17 min

Embedding automated vulnerability analysis within CircleCI workflows

Milecia Mcgregor · LIVE

1:43 min

Reviewing deterministic security controls and compliance frameworks

Carey Liu Carey Liu · WWC Europe 2026

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all