RMF Cyber Security Analyst Senior

Science Applications International Corporation
Quantico, VA, United States
8 days ago
Apply on www.careerarc.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
1 year minimum
Compensation
$120,001.0 - $160,000.0
Working hours
Regular working hours

Tech stack

Configuration Management Communications Protocols Cyber Security Information Systems Firmware Information Security Management Microsoft Office Software Security SC Clearance Information Technology Nessus Plan of Action and Milestones
+1 more
Vulnerability Analysis

Job description

Description

Make a difference for national security by joining a team of dedicated IT professionals who will sustain, modernize and transform the enterprise IT capabilities for the Defense Counterintelligence and Security Agency (DCSA). The Air Force, Space & Intel Business Group (AFSI) of SAIC is seeking a RMF Cyber Security Analyst Senior to support a transformational infrastructure program for DCSA.

SAIC is proud to be supporting DCSA in safeguarding our nation’s information. DCSA is the designated oversight authority on the accreditation of classified facilities, information systems, and the insider threat program. This involves security oversight of more than 10,000 companies and approximately 13,000 facilities involved in classified work throughout the DoD and 31 Federal agencies.

Specifically, on the DCSA One IT program, SAIC will provide an enterprise IT solution that delivers highly secure and adaptable IT infrastructure, provide customer support, and cutting-edge technologies that support operations and advance the DCSA mission under a single IT environment (i.e., One IT).

Job Description

The RMF Cyber Security Analyst Senior will provide support for a program, an organization, system, or an enclave; provides support for proposing, coordinating, implementing, and enforcing information systems or enclave cybersecurity policies, standards, and methodologies; maintains operational security posture for an information system, program, or enclave to ensure cybersecurity standards, and procedures are established and followed; performs day-to-day security operations of the system or enclave; perform IT security control assessments; provide configuration management (CM) for information system security software, hardware, and firmware; manage changes to system and assess the security impact of those changes; prepare and review documentation to include Systems Security Plans (SSPs) and Security Assessment & Authorization (SA&A) packages in accordance with DoD Risk Management Framework (RMF) procedures.

Duties:

  • Interface with Project/Program Managers, Subject Matter Experts (SME) and Information System Security Managers (ISSM) on Major Application / General Enclave issues and updates.

  • Drive the 7 steps of the RMF lifecycle (Prepare, Categorize, Select, Implement, Assess, Authorize, and Monitor).

  • Create and maintain security packages in eMASS.

  • Review vulnerability scan results (using tools like ACAS or Nessus) and coordinate remediation.

  • Act as a bridge between technical engineers, Information System Security Officers (ISSOs), and executive leadership.

  • Track and report on Plan of Action and Milestone (POA&M) items; RMF Status, Annual Assessments, Authority to Operate (ATO) and Continuous Monitoring actions.

  • Responsible for documentation compliance and review to ensure programs receive ATOs for multiple systems.

  • Prepare briefs and A&A documents for approval in support of RMF reporting and policy development.

  • Perform ISSO Type duties as defined in DoD 8510 & 8500.

  • Provide risk mitigation strategies.

  • Perform quality checks on POA&Ms, risk assessments, and documentation.

  • Conduct security control and risk assessments to support authorizations.

  • Review existing documentation bi-annually for accuracy and relevance to current DoD and DCSA mandates.

  • Assist with research on cybersecurity items of interest.

  • Perform other duties as related to risk management, communication, and assessments.

Qualifications

It is required that the RMF Cyber Security Analyst Senior have the following qualifications:

  • Secret clearance.

  • Bachelor’s degree in information technology, Information Systems Management, Cyber Security, or some other related field.

  • Five (5) or more years of hands-on technical Cyber Security Experience. Additional years of experience may be considered in lieu of a degree.

  • Knowledge with DISA Security Technical Information Guides, DoD A&A Process, NIST SP 800-53, IA Technical Framework, and applicable DoD Cyber Security / Risk Management policies (must have DoD or eMASS experience).

  • At least one (1) year of the knowledge of current security tools, hardware/software security implementation, communication protocols, and Microsoft Office suite.

  • Must meet DoD 8570-M/8140-M IAT Level II. Target salary range: $120,001 - $160,000. The estimate displayed represents the typical salary range for this position based on experience and other factors.

Requirements

It is required that the RMF Cyber Security Analyst Senior have the following qualifications:

  • Secret clearance.

  • Bachelor’s degree in information technology, Information Systems Management, Cyber Security, or some other related field.

  • Five (5) or more years of hands-on technical Cyber Security Experience. Additional years of experience may be considered in lieu of a degree.

  • Knowledge with DISA Security Technical Information Guides, DoD A&A Process, NIST SP 800-53, IA Technical Framework, and applicable DoD Cyber Security / Risk Management policies (must have DoD or eMASS experience).

  • At least one (1) year of the knowledge of current security tools, hardware/software security implementation, communication protocols, and Microsoft Office suite.

  • Must meet DoD 8570-M/8140-M IAT Level II. Target salary range: $120,001 - $160,000. The estimate displayed represents the typical salary range for this position based on experience and other factors.

About the company

Make a difference for national security by joining a team of dedicated IT professionals who will sustain, modernize and transform the enterprise IT capabilities for the Defense Counterintelligence and Security Agency (DCSA). The Air Force, Space & Intel Business Group (AFSI) of SAIC is seeking a RMF Cyber Security Analyst Senior to support a transformational infrastructure program for DCSA.

SAIC is proud to be supporting DCSA in safeguarding our nation’s information. DCSA is the designated oversight authority on the accreditation of classified facilities, information systems, and the insider threat program. This involves security oversight of more than 10,000 companies and approximately 13,000 facilities involved in classified work throughout the DoD and 31 Federal agencies.

Specifically, on the DCSA One IT program, SAIC will provide an enterprise IT solution that delivers highly secure and adaptable IT infrastructure, provide customer support, and cutting-edge technologies that support operations and advance the DCSA mission under a single IT environment (i.e., One IT).

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerarc.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:19 min

Orchestrating over-the-air firmware updates for vehicle modules

Denis Grahovac · World Congress 2021

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

2:20 min

Utilizing custom firmware for variable torque manipulation

Daniel Meilak Daniel Meilak +1 · World Congress 2026 Europe

2:59 min

Why existing security and device management tools fail

Marcus Wermuth Marcus Wermuth · World Congress 2026 Europe

2:07 min

Summarizing critical actions for organizational cybersecurity compliance readiness

Matthew Brady Matthew Brady · World Congress 2026 Europe

2:13 min

Evaluating Rust for modernizing embedded C firmware

Michael Friedrich Michael Friedrich · World Congress 2026 Europe

Videos

See all

Related articles

See all