GovCIO

Journeyman Cybersecurity Analyst

GovCIO$100K — $130K *
Aerospace & Defense
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • High School diploma with 6-9 years of relevant experience.
  • DoD 8570 IAT Level II certification or higher (e.g., Security+ CE, CySA+).
  • Hands-on experience with NIST SP 800-37 RMF documentation.
  • Proven track record in tracking and managing vulnerability tickets and POA&Ms.
  • Strong communication skills for collaboration with diverse stakeholders.
  • Active Secret clearance required.

Responsibilities

  • Develop, update, and maintain RMF documentation and ISSO artifacts.
  • Track and manage vulnerability tickets to closure on POA&M items.
  • Collaborate with system owners to implement security controls effectively.
  • Monitor compliance using automated vulnerability scanners and tools.
  • Review system vulnerabilities from Nessus/ACAS scans and checklists.
  • Facilitate continuous monitoring to maintain systems' ATO status.
  • Analyze audit logs to pinpoint compliance gaps and unauthorized changes.

Benefits

  • Hybrid work location in Alexandria, VA.
  • Opportunity to support critical cybersecurity activities for the U.S. Coast Guard.
  • Engagement with federal security compliance and risk management processes.
Full Job Description
Overview

GovCIO is currently hiring a Journeyman Cybersecurity Analyst to support Information Assurance (IA) and Information System Security Officer (ISSO) activities for the U.S. Coast Guard (USCG). This technical role focuses on maintaining cybersecurity posture, managing vulnerability remediation, and developing critical compliance artifacts across enterprise architectures. This position will be located in Alexandria, VA, and will be a hybrid position.

Responsibilities

The Journeyman Cybersecurity Analyst will serve as a key technical contributor for system security compliance and risk management. Core responsibilities include:

 

  • Support IA/ISSO artifacts by developing, updating, and maintaining Risk Management Framework (RMF) documentation, System Security Plans (SSP), and Security Assessment Reports (SAR).
  • Coordinate vulnerability tickets through tracking, prioritizing, and managing Plan of Action and Milestones (POA&M) items to closure.
  • Engage stakeholders for implementation of security controls, collaborating with system owners and engineers to resolve outstanding security findings.
  • Monitor compliance metrics across enterprise systems using automated vulnerability scanners and configuration management tools.
  • Assess system vulnerabilities by reviewing Nessus/ACAS scans, STIG checklists, and Security Content Automation Protocol (SCAP) results.
  • Facilitate continuous monitoring activities to ensure systems maintain their Authorization to Operate (ATO) status.
  • Analyze audit logs and security alerts to identify potential compliance gaps or unauthorized system modifications.
  • Draft technical reports and briefings regarding system risk posture for leadership and external authorization authorities.
Qualifications

High School with 6 - 9 years (or commensurate experience)

Required Skills & Experience

  • Certifications: DoD 8570 IAT Level II or higher (e.g., Security+ CE, CySA+, or vendor-specific identity certifications).
  • Hands-on experience drafting, managing, and maintaining federal IA/ISSO artifacts within the NIST SP 800-37 RMF pipeline.
  • Proven track record tracking vulnerability tickets, managing POA&Ms, and driving technical remediation schedules.
  • Strong communication skills required to actively engage technical and non-technical stakeholders for security control implementation.

Clearance Level: Must have an active Secret clearance  

 

Preferred Skills & Experience

  • Prior experience supporting U.S. Coast Guard (USCG) or Department of Homeland Security (DHS) identity management programs.
  • Familiarity with enterprise tools such as Enterprise Mission Assurance Support Service (eMASS) or Archer.
  • Direct experience interpreting ACAS/Nessus vulnerability scans and applying DISA STIGs..
Posted Salary RangeUSD $100,000.00 - USD $130,000.00 /Yr.

About GovCIO

GovCIO is a technology and consulting firm that provides IT solutions to government agencies. The company specializes in cloud computing, cybersecurity, and digital transformation. GovCIO's mission is to help government agencies improve their IT infrastructure and enhance their services to the public. The company was founded in 2015 and is headquartered in Washington, DC.
Learn more about GovCIO
Size
50 employees
Industry
Founded
2015

Similar Jobs

More Jobs at GovCIO

  • GovCIO
    Cybersecurity Engineer SME
    $160K — $200K *
    San Antonio, TX 78228 (Bexar County)
    Aerospace & Defense
    In-Person
  • GovCIO
    Jr Cyber Security Eng
    $105K — $110K *
    San Antonio, TX 78228 (Bexar County)
    Aerospace & Defense
    In-Person
  • GovCIO
    Software Tester
    $90K — $112K *
    Alexandria, VA 22304 (Alexandria City County)
    Information Technology
    In-Person
  • GovCIO
    Senior UX/UI Designer (Remote)
    $120K — $135K *
    Remote
    Education, Government & Non-Profit
    Remote in United States
  • GovCIO
    Service Desk Lead
    $81K — $120K *
    Washington, DC 20005 (District Of Columbia County)
    Information Technology
    In-Person

More Aerospace & Defense Jobs

Find similar Journeyman Cybersecurity Analyst jobs: