RMF Cyber Security Analyst - 306210
Core
Develop RMF accreditation packages and maintain Authorization to Operate (ATO) certifications for networked systems and applications.
Role type
Cyber Security Analyst (RMF)
Builds
Authorization packages including system security plans, privacy plans, and security control assessments.
Domain
Defense / Cybersecurity
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
RMF process, NIST 800-37, NIST 800-53, security control assessment, privacy control assessment, vulnerability testing, risk analysis, security audits, STIG review, forensics analysis, security architecture assessment, password and access monitoring, firewall management, eMASS record maintenance, ACAS scan evaluation, FMATS tool usage.
Preferred skills
Navy Qualified Validator (NQV) Level II, ACAS, RedSeal, Carbon Black, VRAM, CMRS, Microsoft Visio, Microsoft Project.
Technologies
eMASS, ACAS, STIG, FMATS, Microsoft Visio, Microsoft Project, NGEN, NNE.
Responsibilities
Monitor and assess existing Information Security Management and Security Technical Architecture; Assess proposed Information Security Management and Security Technical Architecture; Maintain records in the Enterprise Mission Assurance Support Service (eMASS); Evaluating technical testing from Assured Compliance Assessment Solution (ACAS) scans; Monitor security access, passwords, badges, log-ins; Perform security assessments, vulnerability testing and risk analysis; Conduct security audits internal and external; Identify the cause of security breaches.
Seniority
Mid-Senior, hands-on IC