Information Security Analyst

CALIBRE Systems Inc.
Washington, DC, United States
13 days ago
Apply on jobs.silkroad.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Compensation
$105,000.0 - $115,000.0
Working hours
Regular working hours

Tech stack

Software System Penetration Testing Cloud Computing Cloud Computing Security Cyber Security Information Systems Databases Disaster Recovery Intrusion Detection and Prevention Zero Trust Network Access DataOps Runbook Security Information and Event Management
+7 more
Software Vulnerability Management SC Clearance Information Technology Cybercrime Network Server Plan of Action and Milestones Vulnerability Analysis

Job description

This candidate will lead and oversee cybersecurity compliance, security architecture, threat detection, vulnerability management, incident response, RMF/eMASS support, and ATO sustainment for DoD cloud infrastructure and information systems. The senior analyst will provide technical leadership for Zero Trust Architecture implementation, advanced security monitoring, vulnerability remediation, cyber reporting, and coordination with Government cybersecurity stakeholders., · Lead RMF, ATO, continuous monitoring, and eMASS activities, including development and execution of ATO action plans and sustainment documentation.

· Develop and maintain Zero Trust Architecture across IL2, IL4, and IL5 cloud infrastructure and prepare quarterly Zero Trust compliance briefings.

· Design and implement advanced security architectures for predictive threat detection, incident response, real-time security insights, and cloud infrastructure resilience.

· Oversee weekly DISA STIG/SRG and ACAS assessments, vulnerability prioritization, remediation planning, and integration of results into eMASS.

· Lead POA&M governance, evidence collection, mitigation planning, and validation coordination with ISSM, ISSO, SCA Team, CIO/AO, and other Government stakeholders.

· Direct monitoring and analysis of cyber resources, SIEM-integrated logs, WAF/NGFW activity, anomaly detection, account aging, compliance monitoring, insider threat indicators, and GovCloud logs.

· Provide rapid escalation and advisory support for abnormal findings, vulnerabilities, cyber threats, OPORDs, CTOs, WARNORDs, and secure incident communications.

· Lead vulnerability assessments and penetration testing for new or modified applications, servers, databases, and infrastructure components before deployment.

· Coordinate with the Tier 2 Cybersecurity Service Provider to support incident lifecycle management, response coordination, and reporting timelines.

· Develop, recommend, and implement automated incident response workflows, cybersecurity playbooks, threat simulation labs, and cross-agency exercise scenarios.

· Oversee recurring audits of cybersecurity SOPs, contingency planning, disaster recovery exercises, and reporting through the IT, Cybersecurity, and Data Operations Dashboard.

· Access SIPRNet and attend classified briefings at the Government facility in Alexandria, Virginia, as required.

Requirements

· Advanced knowledge of NIST RMF, eMASS, DISA STIGs/SRGs, ACAS, POA&Ms, DoD Zero Trust requirements, DoD 8140/DCWF mandates, and cybersecurity reporting requirements.

· Ability to analyze threat, vulnerability, compliance, and security monitoring data and translate findings into actionable remediation plans and executive-level reporting.

· Coordination with ISSMs, ISSOs, SCA teams, CIO/AO stakeholders, CSSPs, and technical operations teams.

· Ability to develop cybersecurity policies, SOPs, automated workflows, incident response playbooks, or security architecture recommendations.

Desired Skills and Qualifications:

· Master’s degree in Information Technology, Cybersecurity, Information Assurance, or a related field.

· DoD 8570/8140-aligned certification such as Security+ CE, CySA+, CISSP, CASP+, or equivalent

· Active Top Secret clearance

· Experience with eMASS or other compliance tracking platforms.

· Proficiency with cloud security controls and cloud-based compliance requirements.

· Demonstrable knowledge of Zero Trust principles and cybersecurity modernization strategies.

Required Experience

· Bachelor’s degree in Information Technology, Cybersecurity, Information Assurance, or a related field.

· Active Secret security clearance.

· 7+ years of experience in cybersecurity, RMF support, compliance, or information assurance.

· Senior-level experience (e.g. leading, mentoring, or supervising others) with DoD cybersecurity, information assurance, RMF, ATO, vulnerability management, compliance, or incident response activities.

Benefits & conditions

CALIBRE and its subsidiaries are an Equal Opportunity Employer and supports transitioning service members, veterans and individuals with disabilities. We offer a competitive salary and full benefits package. To be considered, please apply via our website at www.calibresys.com. Come join our dynamic team. #CALIBRECareers

About the company

CALIBRE Systems, Inc., an employee-owned mission focused solutions and digital transformation company, is looking for a highly qualified Senior Information Security Analyst to support a DoD client with enterprise cybersecurity for a large program serving military families. This position will be hybrid with some required meetings in Alexandria, VA.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jobs.silkroad.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:07 min

Summarizing critical actions for organizational cybersecurity compliance readiness

Matthew Brady Matthew Brady · World Congress 2026 Europe

2:50 min

Introduction and the value of runbooks

Hila Fish · World Congress 2023

2:00 min

Separating dataset creation from low-level software implementation steps

Jan Zawadzki · World Congress 2022

3:04 min

Database evolution and the funding behind vector databases

Erik Bamberg · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

1:32 min

Structuring automated incident workflows between runbooks and raw models

Aram Hakobyan Aram Hakobyan +1 · World Congress 2026 Europe

Videos

See all

Related articles

See all