Cyber ISSM Analyst

Cintel Inc.

$80K — $95K *
Aerospace & Defense
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • U.S. Citizenship required.
  • Must hold a US Secret security clearance; Top Secret or SCI eligibility is advantageous.
  • Meet DoDD 8140 ISSM-Basic certification and experience requirements.
  • Associates degree in Engineering, IT, or related Cyber field.
  • Proficient in DoD STIG requirements and NIST RMF.

Responsibilities

  • Evaluate hardware and software security, documenting vulnerabilities against NIST controls.
  • Select and assess security controls while completing accreditation packages and mitigating risks.
  • Utilize eMASS for RMF package initiation, updates, and maintenance.
  • Identify and document security risks throughout system lifecycles, and maintain system accreditation activities.
  • Collaborate with system developers to update and manage RMF and POA&M documentation.
  • Document residual security risks and approve Authorization Packages.
  • Monitor system compliance with DoD security and resilience requirements.

Benefits

  • Opportunity to work on tactical cybersecurity systems.
  • Engagement with innovative technical challenges requiring problem-solving.
  • Supportive and self-organizing team environment.
  • Culture that encourages learning and skill development.
Full Job Description
Position Title: Cyber ISSM Analyst

Location: Redstone Arsenal

Position Type: Full-Time

Position Description:

The candidate will be supporting a Cyber Compliance Team providing ISSM-Basic support for tactical systems. The person will be a key member of a team performing Hardware and Software Cybersecurity analysis along with key functions supporting the Risk Management Framework (RMF) Assessment and Authorization (A&A) process for data processing, test, and tactical systems. Candidate must be able to prioritize competing requirements for time and resources and be able to adjudicate resource requirements based on understanding of Government customer and mission needs.

Principal Duties and Responsibilities:
• Provide accurate technical evaluations of the equipment, software applications, full systems, or network and documenting the security posture, capabilities, and vulnerabilities against applicable NIST controls.
• Selecting and assessing security controls, timely completion of accreditation packages, formulating and implementing mitigations and maintaining the security posture of systems.
• Must have experience with eMASS and initiating, updating, and maintaining RMF packages.
• Identify, assess, make risk mitigation recommendations, and document system security threats/risks throughout a system's lifecycle; validate system security requirements; formulate and maintain documentation and system certification and accreditation activities (planning, testing, assessing and coordinating).
• Ability to work with system developer to update, maintain, and track RMF and POA&M documentation.
• Documenting preliminary or residual security risks for system operation and manage and approve Authorization Packages.
• Monitoring and evaluating a system's compliance with Department of Defense (DoD) security, resilience, and dependability requirements including performing validation steps, comparing actual results with expected results, and analyzing the differences to identify impacts and risks at the software application, system, and network levels.
• Work with teams to provide solutions and to ensure continued functionality of systems within DoD RMF Framework.

Qualifications:
• U.S. Citizen
• Must possess and maintain a US Secret security clearance. Top Secret, SCI eligible, security clearance is a plus.

Required Skills / Experience:
• Meet DoDD 8140 ISSM-Basic certification, education, and experience compliance.
• Associates degree (Engineering, IT or Cyber-related field)
• Experience with implementing and evaluating DoD STIG requirements, NIST RMF, IAVMs and Cybersecurity assessment tools (ACAS, Nessus, SCC, STIG Viewer)
• Knowledge of the Risk Management Framework (RMF) process and NIST security controls
• Knowledge of information system architecture and standards as they apply to cyber security
• Knowledge of NIST SP 800-160, Systems Security Engineering

Preferred Skills / Experience:
• Bachelor's Degree (Engineering, IT or Cyber-related field)
• Strong desire to contribute to overall team success
• Excellent written and oral communication skills
• High degree of proficiency in MS Office Suite

CULTURE REQUIREMENTS:
  • Engineers, Analysts, and Developers atCintel, Inc. are highly motivated, technical, and self-organized. We place a lot of trust in our team members to develop technical solutions for ill-defined problems (i.e.thrive in an environment where the problem is vague, requirements are lacking, and a solution is not obvious). We need problem solvers.
  • We want our team members to be self-motivated and eager to learn new skills. If you consider yourself a jack-of-all-trades, and are eager to keep up with the latest trends in technology,you'llfit right in.


Similar Jobs

More Jobs at Cintel Inc.

More Aerospace & Defense Jobs

Find similar Cyber ISSM Analyst jobs: