FISMA Support Analyst

Edgewater Federal Solutions, Inc.

$133K — $136K *
Education, Government & Non-Profit
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • U.S. Citizenship required
  • Bachelor’s in Computer Science, Information Security, or related field
  • 3-5 years' experience in information security/cybersecurity compliance
  • Experience with federal government systems and FISMA compliance
  • Strong knowledge of NIST frameworks (SP 800-53, SP 800-37, SP 800-171)
  • Familiarity with security assessment tools (Nessus, ACAS, SCAP)

Responsibilities

  • Manage security authorization lifecycle for information systems under NIST RMF
  • Prepare and maintain security authorization packages and reports
  • Conduct continuous monitoring activities to maintain Authority to Operate status
  • Perform security control assessments and vulnerability analyses
  • Develop and maintain POA&Ms and conduct risk assessments
  • Generate security metrics and reports for management
  • Serve as primary liaison among system owners and security teams

Benefits

  • Paid Time Off & Holiday Pay
  • Medical, Dental, and Vision Insurance
  • Disability, Life Insurance, and AD&D coverage
  • Flexible Spending Accounts
  • 401K with employer matching contribution
  • Tuition and Technical Training Reimbursement
  • Exercise and Computer Reimbursement
  • Employee Assistance Program
Full Job Description
Overview

We are seeking FISMA Support Analyst(s) to support the Governance, Risk and Compliance (GRC) team within the IT division at the Board of Governors of the Federal Reserve. This team is responsible for defining, implementing, and managing processes that support compliance, policy, outreach, and privacy-related work across the organization. Only candidates that currently reside within a 50 mile radius of DC will be considered.

 

Period of Performance 9/14/26 – 12/31/26 with the possibility of an additional 12-month extension.    

Work Location: On-site in Washington, DC without remote or hybrid work options.

Responsibilities Security Authorization & Compliance
  • Manage the security authorization lifecycle for information systems under NIST RMF (SP 800-37)
  • Prepare and maintain security authorization packages, including System Security Plans, Security Assessment Reports, and Plans of Action and Milestones
  • Conduct continuous monitoring activities and maintain Authority to Operate status
  • Ensure compliance with FISMA, NIST SP 800-53 security controls, and agency-specific policies
Risk Management
  • Perform security control assessments and vulnerability analyses
  • Identify, document, and track security weaknesses and deficiencies
  • Develop and maintain Plans of Action and Milestones (POA&Ms)
  • Conduct risk assessments and recommend risk-mitigation strategies
  • Support annual security reviews and security authorization updates
Documentation & Reporting
  • Develop and maintain System Security Plans (SSPs)
  • Create and update security-related documentation, including standard operating procedures, diagrams, and inventories
  • Generate security metrics and reports for management and auditors
  • Maintain system security authorization documentation in compliance repositories
Security Operations Support
  • Coordinate security scans and penetration-testing activities
  • Review and analyze vulnerability scan results
  • Assist with incident response and security event investigations
  • Support security tool implementation and configuration
Stakeholder Coordination
  • Serve as the primary liaison among system owners, authorizing officials, and security teams
  • Coordinate with vendors, contractors, and technical teams on security requirements
  • Provide security guidance to development and operations teams
Qualifications
  • U.S. Citizenship
  • Bachelor’s degree in Computer Science, Information Security, or a related field
  • Three to five years of experience in information security or cybersecurity compliance
  • Experience with federal government systems and FISMA compliance
Technical Skills
  • Strong knowledge of NIST frameworks, including SP 800-53, SP 800-37, and SP 800-171
  • Familiarity with security assessment tools such as Nessus, ACAS, and SCAP
  • Understanding of cloud security; FedRAMP experience is preferred
  • Experience with compliance management tools such as Xacta or similar platforms
  • Knowledge of security control implementation across various platforms
  • Hands-on experience with Risk Management Framework (RMF) and Authority to Operate (ATO) processes

Place or Work: This is a full-time onsite position located in Washington, D.C., New York Avenue facility. The selected candidate will work a set first-shift schedule, Monday through Friday, and may be required to participate in an on-call rotation for emergency hardware issues, travel occasionally, and work weekends or overtime as needed.

 

Salary: $133,099 - $136,0527

 

Additional benefits include: 

  • Paid Time Off & Holiday Pay
  • Medical Insurance
  • Dental Insurance
  • Vision Insurance
  • Disability, Life Insurance, and AD&D
  • Flexible Spending Accounts
  • Pre-Tax 401K and/or After-Tax Roth IRA (with employer matching contribution)
  • Tuition and Technical Training Reimbursement
  • Exercise Reimbursement
  • Computer Reimbursement
  • Employee Assistance Program

Similar Jobs

More Jobs at Edgewater Federal Solutions, Inc.

More Education, Government & Non-Profit Jobs

Find similar FISMA Support Analyst jobs: