Cyber Security Analyst
Mantech International Corporation
Virginia Beach, VA, United States
14 days ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Working hours
Regular working hours
Job source
Tech stack
Cyber Security
Information Systems
Information Systems Security Architecture Professional
SAP (Applications)
Information Security Management System
Information Technology
Nessus
Job description
- Define authorization boundaries, analyze mission criticality, apply overlays (Privacy, Space, CDS), and establish the initial NIST SP 800-53 Rev 5 control baseline.
- Lead stakeholder workshops to select, tailor, and document security controls in eMASS; author and maintain the System Security Plan (SSP), Contingency Plan, and Incident Response Plan.
- Execute full-scope control testing using DISA STIGs/SRGs, ACAS/Nessus scans, and NIST SP 800-53A APs; document compliance status and upload supporting evidence in eMASS.
- Evaluate AP compliance across the boundary, identify deficiency root causes, and trace all non-compliant controls to POA&Ms with detailed risk analyses.
- Maintain complete eMASS accreditation packages (SSP, SAP, topology, POA&Ms) and coordinate formal workflow actions to support Security Control Assessor (SCA) and Authorizing Official (AO) risk decisions.
- Execute System-Level Continuous Monitoring (SLCM) strategies via monthly ACAS scans, STIG updates, and Annual Security Reviews (ASRs) to maintain ongoing authorization.
- Provide expert RMF guidance to leadership, refine organizational cybersecurity policies, and ensure compliance with DoD, Navy, and NIST standards across the system lifecycle.
Requirements
seeks a motivated, career and customer-oriented to join our team in This is an position., * Bachelor’s degree in Computer Science, Cybersecurity, Information systems, or related fields
- 2+ years of Risk Management Framework (RMF) experience
-
Security+ CE certification with documented ACAS and eMASS training
-
ISC2 Certified in Governance, Risk and Compliance (CGRC), ISACA Certified Information Security Manager (CISM), ISC2 Certified Information Systems Security Professional (CISSP) (or Associate).
-
U.S. Citizenship required and an active or current Secret Clearance
- The person in this position must be able to remain in a stationary position 70% of the time.
- Occasionally move about inside the office to access file cabinets, office machinery, or to communicate with co-workers, management, and customers, via email, phone, and or virtual communication, which may involve delivering presentations.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.clearancejobs.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
LM
Luis Minvielle
about 2 years ago
DC
Daniel Cranney
Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents
10 months ago
DC
Daniel Cranney
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
6 months ago
BB
Benedikt Bischof
Walking Into The Era of Supply Chain Risks
about 4 years ago
DC
Daniel Cranney
Understanding and Mitigating Common Web Vulnerabilities
over 1 year ago
CH
Chris Heilmann
Dev Digest 134 - Where pixels sing?
almost 2 years ago