CACI International

Information Security Analyst-Senior (RMF)

CACI International • $71K — $150K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • DOD Top Secret Security Clearance with DCID 6/4 eligibility
  • Current DOD 8570 IAT Level II certification
  • 4-6 years of experience in Cybersecurity compliance and vulnerability testing
  • Experience with COTS/GOTS/DOD CS Tools for security analysis
  • Proficient with MS Office products
  • Exceptional organizational and communication skills
  • Familiar with handling classified information

Responsibilities

  • Identify systemic security issues through vulnerability analysis
  • Reconcile customer requirements with DOD policies and make improvement recommendations
  • Conduct vulnerability scans and recognize security system vulnerabilities
  • Respond to inquiries from organization members regarding security matters
  • Prepare audit reports with findings and remediation strategies
  • Administer and maintain vulnerability management servers and RMF tools
  • Conduct continuous analysis to identify network and system vulnerabilities

Benefits

  • Comprehensive healthcare and wellness programs
  • Financial and retirement support
  • Family support services
  • Continuing education opportunities
  • Generous time off benefits
Full Job Description
Job Title: Information Security Analyst-Senior (RMF)

Job Category: Information Technology

Time Type: Full time

Minimum Clearance Required to Start: TS/SCI

Employee Type: Regular

Percentage of Travel Required: Up to 10%

Type of Travel: Continental US

* * *

The Opportunity:

Manages, maintains and reviews Certifications and Accreditation documents for supported Automated Information Systems to ensure compliance with DoD and Intelligence Community Risk Management Framework (RMF) standards.  Maintains comprehensive knowledge of DoD and other associated directives that govern DoD RMF and Intelligence Directive 503.  Conducts security reviews, scans, evaluations and risk assessments to identify security risks and impact of potential Cyber vulnerabilities.  Evaluates security procedures to implement and ensures potential users are aware of and comply with command Cyber Security policies and procedures to generate and maintain required documentation for supported information systems to include the System Security Plan, the Risk Assessment, the Plan of Action and Milestones and the Authority to Operation (Operate) or to Connect.

Responsibilities:

  • Ability to identify systemic security issues based on the analysis of vulnerability and configuration data
  • Reconcile customer requirements within acceptable risks determined by DOD policies, command policies and generally accepted practices. Make recommendations for tools and processes to improve CS initiatives.
  • Knowledge of Risk Management Framework (RMF) requirements
  • Respond to daily inquiries via email, phone, or in-person from organization members
  • Demonstrate appropriate discretion when handling classified/sensitive information
  • Skill in conducting vulnerability scans and recognizing vulnerabilities in security systems
  • Knowledge of new and emerging information technology (IT) and information security technologies
  • Knowledge of system lifecycle management principles, including software security and usability
  • Conduct continuous analysis to identify network and system vulnerabilities
  • Knowledge of system and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, Procedural Language/Structured Query Language [PL/SQL] and injections, race conditions, covert channel, replay, return-oriented attacks, malicious code)
  • Prepare audit reports that identify technical and procedural findings, and provide recommended remediation strategies/solutions
  • Knowledge of server administration and systems engineering theories, concepts, and methods
  • Administer, operate, and maintain multiple vulnerability management servers/applications and RMF web database tool

Qualifications:

  • A DOD Top Secret Security Clearance with DCID 6/4 eligibility
  • Current DOD 8570 IAT Level II certification
  • 4-6 years’ experience in Cybersecurity (Information Assurance) compliance and vulnerability testing
  • Experience with COTS/GOTS/DOD CS Tools for security analysis and network scanning
  • Vulnerability tool administration and execution
  • Proficient with MS Office products
  • Exceptional organizational, presentation and communication skills (verbal and written)
  • Excellent listening and comprehension skills. Ability to extract and clearly articulate key concepts and requirements from verbal discussions, documentation and transcripts
  • Familiar with handling and marking of classified information
  • Familiarity with Security policies governing the storage of, access to, and transmittal, of classified information
  • Must be self-starter, self-managed, responsive and dedicated, with a proven track record of exceptional performance, high productivity and meeting deadlines
  • Must have customer service and team player skills
  • Must maintain high levels of initiative and think outside the box
  • Able to develop innovative methods to solve challenging problems with available manpower and tools
  • Flexible, able to maintain a positive attitude in a fast-paced constantly changing environment
  • Ability to work cooperatively and proactively with personnel at various levels within the organization

Desired:

  • Military background and experience with SOF
  • Application security
  • Software programming experience
  • Current DOD 8570 IAT III certification
  • B.S. or M.S. in Computer Science, Information Security, Mathematics, or IT related field


Pay Range:

There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits.

The proposed salary range for this position is:

$71,500 - $150,200

About CACI International

CACI International Inc is a multinational professional services and information technology company. It provides services to many branches of the federal government including defense, homeland security, intelligence, and healthcare. CACI has approximately 23,000 employees worldwide. The company's mission is to provide enterprise and mission technology services and solutions that best fit the needs of its customers. CACI has been named a Fortune World's Most Admired Company, a Washington Post Top Workplace, and a Forbes Best Employer for Diversity.
Learn more about CACI International
Size
22,000 employees
Market Cap
$7.1 billion
Industry
Net Income
$374.4 million
Founded
1962
5 Year Trend
+7.3%
Revenue
$5.8 billion
NASDAQ

Similar Jobs

More Jobs at CACI International

More Information Technology Jobs

Find similar Information Security Analyst-Senior (RMF) jobs: