Cybersecurity Analyst V (Senior)
Title: Cybersecurity Analyst V (Senior)
Clearance Type: Secret with the ability to obtain a Top Secret
Responsibilities include (but are not limited to):
- Lead RMF lifecycle execution: Develop, manage, and maintain RMF artifacts (system categorization, control selection/implementation, assessment, authorization, and continuous monitoring) to meet DoD/DON requirements and NAVSEA directives.
- Security Authorization Package coordination: Compile, review, and submit complete, accurate packages (e.g., SSP, SAR, POA&M, eMASS entries) to enable timely ATO decisions; plan ATO execution milestones and remedial actions.
- Control assessment & validation: Conduct and validate security control assessments aligned to DoD/DON guidelines, ensuring systems meet confidentiality, integrity, and availability objectives; document objective evidence and assessment results.
- Vulnerability management: Oversee vulnerability scanning (e.g., ACAS/Tenable), checklist completion (e.g., STIGs, SRGs), and risk analysis; track findings through POA&M closure with stakeholders.
- Artifact quality & compliance: Review security documentation for completeness, accuracy, and compliance prior to submission; standardize templates and improve process quality across the portfolio.
- Continuous monitoring: Implement dashboards and cadence for ongoing assessments, patch management status, control monitoring, and risk reporting; recommend risk mitigations and compensating controls.
- Stakeholder engagement: Coordinate with system owners, ISSOs/ISSMs, PMs, engineers, and validators; brief leadership on risk posture, authorization status, and mitigation strategies.
- Governance & best practices: Advise on cybersecurity policies, DON/DoD directives, and emerging requirements; contribute to process improvements, playbooks, and training.