Falconwood, Incorporated

Afloat Cyber Security Analyst

Falconwood, Incorporated$100K — $110K *
Aerospace & Defense
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Active SECRET Clearance required
  • 3+ years' experience in Department of the Navy Cybersecurity, Risk Management Framework (RMF), or Information Assurance
  • 2+ years' experience with US Navy Shipboard Systems and Applications
  • Experience using Navy RMF tools such as DADMS/DITPR-DON, VRAM, and eMASS
  • Knowledge of NIST RMF Special Publications
  • Ability to assess compliance with DoD and Navy RMF standards
  • Proficient in Microsoft Office (Word, Excel, PowerPoint)

Responsibilities

  • Review A&A package submissions for security compliance
  • Conduct compliance assessments for Naval networks and legacy applications
  • Assist in the development and updates of A&A and CS documentation
  • Coordinate corrections for errors in A&A documentation packages
  • Communicate feedback and validation within five business days
  • Assist in developing procedures for A&A workflow and accreditation milestones
  • Compile and analyze data for Cyber Security readiness assessments

Benefits

  • Potential travel 5-10% CONUS
  • Opportunity to directly impact Naval network security
  • Engagement with various commands under USN
  • Development of critical documentation and processes
  • Collaboration with a diverse team in the Navy's cybersecurity efforts
Full Job Description
Overview

The Cyber Security Analyst will support the USFF N6 Directorate Fleet Enterprise Support Team, Package Submitting Office (PSO) in the end-to-end Risk Management Framework (RMF) Assessment & Authorization (A&A) process for Ashore and Afloat, providing overarching expertise for the A&A process. This effort will highlight and track significant physical, policy and or network security issues, improving network security and awareness on Naval networks world-wide. 

Responsibilities
  • Review A&A package submissions to ensure system/network architectures and technical / non-technical operating features adequately protect and defend against unauthorized access, ensure systems availability, and meet DoD/Navy Cybersecurity (CS) implementation policy requirements and data protection safeguards. 
  • Conduct CS compliance and A&A documentation validation assessments for Naval networks, legacy applications, and systems. 
  • Assist in the development or updates to existing, A&A and CS documentation to ensure complete documentation in accordance with DoD A&A and CS policy. 
  • Coordinate corrections for errors, information omissions, and shortfalls in A&A documentation packages. 
  • Communicate feedback and coordinate corrections with subordinate commands within five business days and validate prior to processing. 
  • Assist in the development procedures to support A&A workflow processes, criteria needed to facilitate processes and Navy Authorizing Official (NAO) accreditation decision milestones. 
  • Provide representation in meetings to include providing meeting minutes and supporting follow-up tasks. 
  • Assist in the development of point papers, naval messages, presentations, briefings, and other forms of written documentation on an as needed basis to support A&A and CS functions. 
  • Assist in the development of Standard Operating Procedures (SOPs), checklists, workflow process charts, forms, POC lists, and other documentation needed to support NAO processes and related A&A and CS functions and keep it up to date. 
  • Compile and analyze data for USFF leadership review for CS readiness and compliance. 
  • Identify areas where commands should focus CS efforts as result of or in support of inspections. 
  • Provide support for all stages involved during inspections, assessments, and certification events issues to include inspection finding adjudication in Vulnerability Management System (VMS), VRAM, and eMASS, assessing statistical data/metrics of post inspection adjudication status, and Security Technical Implementation Guide (STIG) review and interpretation. 
  • Track and report compliance for all stages involved during Cyber Security Inspections (CSI), Command Cyber Readiness Inspections (CCRI) and Command Cyber Operational Readiness Inspections (CCORI); develop follow on reports by assessing inspection statistical data/metrics of post inspections adjudications status. 
  • Conduct analysis of trends in inspection findings/results. 
  • Support USFF subordinate commands with inspection related tasks such as tracking inspection findings; documenting vulnerability status; providing guidance and training relating to various ashore and afloat commands, relating to, but not limited to, Public Key Infrastructure (PKI), installed Information Systems/Program of Records (IS/PORs) (i.e., ACAS, NESSUS, HBSS, DNS, Continuous Monitoring and Risk Scoring (CMRS) site, and similar technologies) configuration, implementation, operation, and policy compliance; all relative STIGs, Tasking Orders (TASKORD), Operational Orders (OPORDS), scanning/patching/remediation process; with trends and analysis provided. 
  • Potential Travel - CONUS 5-10% 
Qualifications

Required: 

  • Active SECRET Clearance 
  • Minimum 3 years of experience in DoW/DoN Cybersecurity, RMF, or Information Assurance 
  • Minimum 2 years of experience working with US Navy Shipboard Systems and Applications 
  • Experience using Navy RMF tools, including DADMS/DITPR-DON, VRAM, and eMASS to process and update A&A packages 
  • Knowledge of the National Institute of Standards and Technology (NIST) RMF Special Publications 
  • Ability to Provide technical support and apply expertise in assessing information system compliance with DoD and Navy RMF standards and review, verify, and validate required DoD RMF documentation and artifacts in accordance with DoD Instruction 8510.01, RMF for DoD IT, and the Navy RMF Process Guide (RPG) 
  • Ability to perform quality assurance reviews for required content in all packages in the A&A process in accordance with a client checklist 
  • Ability to conduct RMF checkpoint and collaboration activities 
  • Ability to perform RMF and FISMA data collection, analysis, reporting, and metrics generation 
  • Ability to use vulnerability assessment scanning tools and provide related reporting 
  • Proficient with Microsoft Office (Word, Excel, and PowerPoint) 
  • Good Communication Skills 
  • DoDM 8140 Systems Intermediate Security Analyst 

 

Preferred: 

  • BS Degree in Computer Science, Cyber Security, or related technical field 
  • CCSP, Cloud+, CySA+, or GICSP 
  • Familiarity with Afloat and Ashore Naval Networks 
Pay Range

$100,000-$110,000

About Falconwood, Incorporated

Falconwood, Incorporated is a management consulting firm that provides services to government agencies and commercial clients. The company was founded in 2006 and is headquartered in McLean, Virginia. They offer services such as program management, financial management, and information technology services. Falconwood serves clients in various industries, including defense, healthcare, and finance.
Learn more about Falconwood, Incorporated
Size
100 employees
Industry
Net Income
$1 million
Founded
2006
5 Year Trend
+20%
Revenue
$10 million

Similar Jobs

More Jobs at Falconwood, Incorporated

More Aerospace & Defense Jobs

Find similar Afloat Cyber Security Analyst jobs: