Information Security Analyst I - RMF & Cybersecurity Compliance

empower ai • United State
Relocation
Apply
AI Summary

Seeking an Information Security Analyst I to support RMF activities, including Security Control Assessments and RMF compliance transitions for federal agencies. Responsibilities involve processing RMF packages, assessing DoD Information Systems against security controls, and evaluating IT device compliance. Requires an active Secret clearance and 3 years of cybersecurity experience.

Key Highlights
Assist with Risk Management Framework (RMF) related activities including Security Control Assessments (SCA).
Assess DoD Information Systems against RMF security controls IAW DoDI 8500, DoDI 8510 and NIST SP 800-53.
Evaluate IT devices for Security Technical Implementation Guide (STIG) compliance using ACAS/Nessus, SCAP Compliance Checker, and manual checklist reviews.
Key Responsibilities
Assist the Program Manager and Cybersecurity Engineers with Risk Management Framework (RMF) related activities including Security Control Assessments (SCA) and assisting system owners in the transition to RMF compliance.
Assist the Project Manager and Cybersecurity Engineer to edit and process cybersecurity deliverables, including RMF packages and associated artifacts.
Assess DoD Information Systems against the RMF security controls IAW DoDI 8500, DoDI 8510 and NIST SP 800-53.
Develop and review RMF documentation and artifacts such as Configuration Management Plans, Network Infrastructure Plans, Business Continuity and Disaster Recovery Plans, Plan of Action and Milestones (POA&Ms), topology diagrams and all supporting policies in support of RMF A&A activities.
Interview technical Subject Matter Experts (SMEs) as well as non-technical management personnel to ascertain the security posture of an IT system.
Evaluate a wide array of IT devices for Security Technical Implementation Guide (STIG) compliance using ACAS/ Nessus, SCAP Compliance Checker, and manual checklist reviews.
Apply STIGs to a variety of devices to ensure compliance.
Experience with eMASS and a strong understanding of the CNSS 1253 CCIs.
Technical Skills Required
Risk Management Framework (RMF) Security Control Assessments (SCA) DoDI 8500 DoDI 8510 NIST SP 800-53 Configuration Management Plans Network Infrastructure Plans Business Continuity and Disaster Recovery Plans Plan of Action and Milestones (POA&Ms) Topology diagrams Security Technical Implementation Guide (STIG) ACAS Nessus SCAP Compliance Checker eMASS
Benefits & Perks
Relocation assistance may be available

Job Description


Overview

Empower AI is AI for government. Empower AI gives federal agency leaders the tools to elevate the potential of their workforce with a direct path for meaningful transformation. Headquartered in Reston, Va., Empower AI leverages three decades of experience solving complex challenges in Health, Defense, and Civilian missions. Our proven Empower AI Platform® provides a practical, sustainable path for clients to achieve transformation that is true to who they are, what they do, how they work, with the resources they have. The result is a government workforce that is exponentially more creative and productive. For more information, visit www.Empower.ai .

Empower AI is proud to be recognized as a 2024 Military Friendly Employer by Viqtory, the publisher of G.I. Jobs. This designation reflects the company’s commitment to hiring and supporting active-duty and veteran employees.

Responsibilities

As an Information Security Analyst I, you will assist the Program Manager and Cybersecurity Engineers with Risk Management Framework (RMF) related activities including Security Control Assessments (SCA) and assisting system owners in the transition to RMF compliance. In assuming this position, you will be a critical contributor to meeting Empower AI’s mission: To deliver innovative, cost-effective solutions and services that enable our customers to rapidly adapt to dynamic environments. This position is located in Fort Huachuca, Arizona; relocation assistance, while not guaranteed, may be available. Must have active Secret clearance.

Highlights of Responsibilities:

  • Assist the Project Manager and Cybersecurity Engineer to edit and process cybersecurity deliverables, including RMF packages and associated artifacts.
  • Assess DoD Information Systems against the RMF security controls IAW DoDI 8500, DoDI 8510 and NIST SP 800-53
  • Develop and review RMF documentation and artifacts such as Configuration Management Plans, Network Infrastructure Plans, Business Continuity and Disaster Recovery Plans, Plan of Action and Milestones (POA&Ms), topology diagrams and all supporting policies in support of RMF A&A activities
  • Interview technical Subject Matter Experts (SMEs) as well as non-technical management personnel to ascertain the security posture of an IT system
  • Evaluate a wide array of IT devices for Security Technical Implementation Guide (STIG) compliance using ACAS/ Nessus, SCAP Compliance Checker, and manual checklist reviews.
  • Apply STIGs to a variety of devices to ensure compliance
  • Experience with eMASS and a strong understanding of the CNSS 1253 CCIs

Qualifications

Requirements:

Current/active Secret clearance or ability to obtain. Highly prefer those with an active Secret.

Bachelors degree or equivalent combination of edcucation and experience

3 years cybersecurity experience (degree can be substituted for experience)

Security+ certification required

PHYSICAL REQUIREMENTS:

  • Sitting for long periods
  • Standing for long periods
  • Ambulate throughout an office
  • Ambulate between several buildings

About Empower AI

All hiring and promotion decisions at Empower AI are based on merit to bring the best talent available to contribute to our firm’s overall success. It is the policy of Empower AI not to discriminate against any applicant for employment, or employee because of age, color, sex, disability, national origin, race, religion, or veteran status. Empower AI is a VEVRAA Federal Contractor.

Similar Jobs

Explore other opportunities that match your interests

RMF Cybersecurity Engineer

Cyber Security
•
4h ago
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Not Applicable

Jobot

United State

Cybersecurity Specialist (Senior)

Cyber Security
•
4h ago
Visa Sponsorship Relocation Remote
Job Type Part-time
Experience Level Not Applicable

Defense Information Systems Ag...

United State

Information Systems Security Manager

Cyber Security
•
7h ago
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Not Applicable

spear ai

United State

Subscribe our newsletter

New Things Will Always Update Regularly