Senior Cybersecurity Analyst (ISSM) - Hybrid

Optimized Technical Solutions
San Antonio, TX, United States
3 months ago
Apply on indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours
Job source

Tech stack

JIRA Cloud Computing Cyber Security Desktop Computing Identity and Access Management Information Security Management Information Systems Security Architecture Professional Open Source Technology SonarQube Information Technology Free and Open-Source Software Checkmarx
+1 more
Vulnerability Analysis

Job description

OTS is seeking a Senior Cybersecurity Analyst (Information System Security Manager - ISSM) to oversee Risk Management Framework (RMF) accreditation, Federal Information Security Modernization Act (FISMA) compliance, and security control implementation. This role requires hands-on experience with cybersecurity automation tools and compliance enforcement across Cloud One programs. The hybrid role allows flexibility to work remotely but requires on-site presence at any approved SIPR facility as needed., * Security Documentation: Responsible for the creation, maintenance, and management of all cybersecurity documentation, ensuring accuracy, completeness, and compliance with Department of Defense (DoD) and federal standards.

  • Code Scans: Accountable for the completion and accuracy of static and dynamic code scans using tools such as Checkmarx and SonarQube, ensuring all findings are addressed and documented.

  • Open-Source Library Scans: Accountable for conducting and reporting on open-source software library scans using tools like Dependency-Track, ensuring all vulnerabilities are tracked and mitigated.

  • Cybersecurity and Authorization to Operate (ATO): Responsible and accountable for all aspects of cybersecurity posture and the successful completion of the ATO process, ensuring systems meet all compliance requirements for operation.

  • Assured Compliance Assessment Solution (ACAS) Scans: Responsible and accountable for scheduling, conducting, and reporting on ACAS vulnerability scans, and for the timely remediation of findings.

  • C5ISR Interrogator Reporter: Responsible and accountable for managing and reporting through the Command, Control, Communications, Computers, Combat Systems, Intelligence, Surveillance, and Reconnaissance (C5ISR) Interrogator system, ensuring accurate and timely submission of required cybersecurity data.

  • Enterprise Mission Assurance Support Service (eMASS) and Plan of Action and Milestones (POA&M): Responsible and accountable for maintaining all eMASS records, including the creation and management of POA&M items to track and resolve security weaknesses.

  • STIG Checks: Perform Security Technical Implementation Guide (STIG) checks and collaborate on security control mitigations.

  • JIRA Workflow Support: Provide JIRA workflow support, reviewing tickets and ensuring Information Assurance (IA) requirements are met.

  • Continuous Monitoring: Support continuous cybersecurity monitoring and vulnerability tracking for mission applications.

Requirements

Do you have experience in Vuls?, Do you have a Bachelor’s degree?, * Bachelor’s degree in Cybersecurity, Information Technology (IT), or a related field OR equivalent experience.

  • Information Assurance Manager (IAM) Level III Certification (Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), GIAC Security Leadership Certification (GSLC), or equivalent).
  • 15+ years of experience in DoD cybersecurity operations.
  • Proficiency with SonarQube, Dependency-Track, ACAS, and STIG compliance.
  • Experience with eMASS, RMF, and cybersecurity compliance in DoD or federal agencies.

Work Environment

Office environment. Requires ability to provide clear, concise, accurate and timely communication, both verbally and in writing (100%). Requires ability to interact professionally with co-workers, management, and client (100%). Occasional business travel may be required. Only requested and approved expenses will be covered by OTS.

Benefits & conditions

Pulled from the full job description

  • Health insurance
  • Paid time off
  • Vision insurance
  • Dental insurance
  • Life insurance

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:23 min

Building and installing the compiled custom rule extension

Daniel Strmečki +1 Ā· World Congress 2022

3:05 min

Integrating an assistant application with Jira software

Felix Augenstein Ā· LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:46 min

Adding metadata and documentation to new custom rules

Daniel Strmečki +1 Ā· World Congress 2022

5:47 min

Integrating user stories and test automation via Jira tools

Christoph Ruggenthaler Ā· LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin Ā· World Congress 2022

Videos

See all

Related articles

See all