Cyber Security Risk Management Framework Analyst

4 weeks ago


Virginia Beach, Virginia, United States DNI (Delaware Nation Industries) Full time

Delaware Nation Industries (DNI) is a prime contractor providing IT Operations and Maintenance within a Federal Agency. Our team ensures the Agency's staff have secure and reliable access to the enterprise. We are currently seeking an experienced Risk Management Framework (RMF) Analyst to support our Cyber Security team.

Responsibilities:

  • Conduct network intrusion detection events and analysis
  • Provide efficient and effective system Certification and Accreditation (C&A) support for IT systems and applications using the DoD RMF and other DoD guidance and directives
  • Utilize the Enterprise Mission Assurance Support Service (eMASS) to record RMF activities such as control implementation as identified in information system security categorization in accordance with NIST SP 800-53 and CNSSI 1253 in accordance with DoDI 8510.01 (RMF for DoD Information Technology)
  • Select, implement, and document appropriate security controls following the Risk Management Framework (RMF) to obtain and maintain Authorization to Operate (ATO) status for the network and its major applications
  • Support the Cybersecurity organization to identify, analyze, define, develop, coordinate, implement and audit the security policies, procedures, and processes for the Agency's systems and infrastructure
  • Evaluate, document, and report IT systems security posture and configuration for Agency's systems risk analysis
  • Perform vulnerability management and reporting for Agency's systems and compliance with DoD Information Assurance Vulnerability Management (IAVM) policy
  • Conduct wireless assessments of facilities to identify and evaluate IEEE 802.11 Wireless Access Points (WAPs) that exist within Agency's physical office location(s) and work with POC to determine if any rogue access points are in use
  • Perform Web Application Assessments that identify web application specific vulnerabilities and assesses the security posture of selected web applications against NIST 800-53 standards, the Open Web Application Security Project (OWASP) Top Ten common vulnerabilities and DISA's Application Development STIG
  • Perform Operating System Security Assessments to assess the configuration of select host Operating Systems (OS's) against standardized configuration baselines (DoD Secure Host Baseline (SHB) and the United States Government Configuration Baselines (USGCB)
  • Conduct Database Assessments to determine the configuration of selected databases against configuration baselines to identify potential misconfigurations and/or database vulnerabilities
  • Ensure that DoD Security Technical Implementation Guides (STIG) are in all applicable areas within the Agency's infrastructure and applications
  • Support Cybersecurity Operations to develop monitoring, response and handling procedures for intrusion and malicious code incidents

Qualifications:

  • Active Top Secret Clearance
  • Requires a Bachelor's Degree plus 6 of Information Technology experience with at least 3 years in RMF Cyber Security
  • Requires DoD IAM Level 2 certification
  • Strong knowledge of on-premises cybersecurity in a Windows computing and Cisco networking environment
  • Hands on experience with ACAS, SCAP, Webinspect and Appdetective scans
  • Hands on experience preforming STIG reviews
  • Expert knowledge of ACAS scanning, maintaining Cyber servers, (e.g. patching, technical troubleshooting), IAVM management, and Sourcefire Intrusion Detection System


  • Virginia Beach, Virginia, United States Sentara Healthcare Full time

    Cyber Security Architecture ManagerSentara Healthcare is seeking an experienced Cyber Security Architecture Manager to join our Cyber Security Team. This position is 100% remote, but candidates must have a current residence in one of the following states or be willing to relocate: AL, DE, FL, GA, ID, IN, KS, LA, ME, MD, MN, NE, NH, ND, NV, OK, OH, PA, SC,...


  • Virginia Beach, Virginia, United States Delaware Nation Industries Full time

    Job Summary:The Delaware Nation Industries is seeking a highly skilled Cyber Security Risk Management Specialist to support the Naval Surface Warfare Center Dahlgren Division Dam Neck Activity (NSWCDD DNA).The successful candidate will assist in developing RMF accreditation packages and maintaining Authorization to Operate (ATO) certifications for networked...


  • Virginia Beach, Virginia, United States Thor Solutions Full time

    Job Summary:THOR Solutions is seeking a highly skilled Cyber Security Specialist to provide engineering support for Cyber Situational Awareness (SA) and Cyber Command and Control (C2) in Virginia Beach, VA. The ideal candidate will have experience in Agile software engineering, Cloud architectural design, and cyber security support.Key Responsibilities:•...


  • Virginia Beach, Virginia, United States ECS Limited Full time

    Cyber Assurance and Compliance Project SupportECS Limited is seeking a skilled professional to work remotely as a Cyber Assurance and Compliance Project Support. The successful candidate will be responsible for reviewing and updating existing information security policy, standards, and procedures based on federal and departmental regulations.Support program...


  • Virginia Beach, Virginia, United States Sony Full time

    Job Title: Sr. Cyber Security ArchitectJob Summary:Sony Corporation of America is seeking a highly skilled Cyber Security Architect to join the Corporate Information Security Division in Reston, VA. As a key member of the team, you will be responsible for establishing a unified enterprise security architecture, key security controls, and models. You will...


  • Virginia Beach, Virginia, United States Delaware Nation Industries Full time

    Job Summary:The Delaware Nation Industries is seeking a Cyber Security Specialist to support the Naval Surface Warfare Center Dahlgren Division Dam Neck Activity (NSWCDD DNA). The successful candidate will assist in developing RMF accreditation packages and maintaining Authorization to Operate (ATO) certifications for networked systems and applications used...


  • Virginia Beach, Virginia, United States PGTEK Full time

    Job SummaryPGTEK is seeking a highly skilled Cyber Security Engineer to join our team. As a key member of our organization, you will be responsible for implementing and maintaining information security controls associated with development, delivery, and continuous monitoring of complex, high-performance, mission-critical information technology systems.Key...


  • Virginia Beach, Virginia, United States Crossfire Consulting Full time

    Cyber Security Project Manager RoleAt Crossfire Consulting, we are seeking a highly skilled Cyber Security Project Manager to lead our team in delivering top-notch security solutions. The ideal candidate will have 7-10 years of experience in project management and a strong background in cyber security.Key Responsibilities:Develop and maintain project...


  • Virginia Beach, Virginia, United States Solutions3 Full time

    Job Title: Network Based Systems Analyst IIISolutions LLC is seeking a highly skilled Network Based Systems Analyst III to support our prime contractor and their U.S. Government customer on a large mission critical development and sustainment program for on and offsite incident response to Government agencies and critical infrastructure owners who experience...


  • Virginia Beach, Virginia, United States Data Intelligence, LLC Full time

    About the RoleData Intelligence, LLC is seeking a highly skilled Senior Information System Security Specialist to join our team in Virginia Beach, VA. As a key member of our cybersecurity team, you will be responsible for providing engineering support for Cyber Situational Awareness, Cyber Command and Control, Mission Assurance, and Homeland Defense.Key...


  • Virginia Beach, Virginia, United States Insight Global Full time

    Job DescriptionInsight Global is seeking an experienced Information Security Governance Analyst to join one of our largest healthcare clients. This is a fully remote position in an approved state, and will be a 6-month contract-to-hire format. The pay for this role is expected to be $40-$47/hr with a conversion salary range of $85,000 to $90,000.This...


  • Virginia Beach, Virginia, United States Roka Security Full time

    Job Title: Offensive Cyber Network OperationsRoka Security is seeking a highly skilled and experienced Offensive Cyber Network Operations professional to join our team as an Instructor and Curriculum Developer.Job SummaryWe are looking for a talented individual with a strong background in offensive cyber operations, network security, and training development...


  • Virginia Beach, Virginia, United States Virginia Jobs Full time

    Job Title: Cyber Security Adjunct Instructor**Job Summary:**We are seeking a highly qualified Cyber Security Adjunct Instructor to join our team at Virginia Jobs. The successful candidate will be responsible for teaching courses in Cyber Security to students with a wide range of academic backgrounds and experiences.**Responsibilities:*** Create a learning...


  • Virginia Beach, Virginia, United States Ennoble First, Inc. Full time

    Cyber Security SpecialistAt Ennoble First, Inc., we are seeking a highly skilled Cyber Security Specialist to join our team. As a Cyber Security Specialist, you will be responsible for executing the Agile Software Development Lifecycle, performing protocol and input fuzzing, and collaborating with operators and other software engineers to develop and debug...


  • Virginia Beach, Virginia, United States Insight Global Full time

    Job DescriptionCyber Partner Integration Planner RoleOur client is seeking an experienced Cyber Partner Integration Planner to oversee and lead cybersecurity planning partner integration efforts in support of the Department of Homeland Security (DHS), Cybersecurity and Infrastructure Security Agency (CISA).This role requires a strong leader and communicator...


  • Virginia Beach, Virginia, United States Booz Allen Hamilton Full time

    Cyber Intelligence Trainer RoleWe are seeking a highly skilled Cyber Intelligence Trainer to join our team at Booz Allen Hamilton. As a Cyber Intelligence Trainer, you will be responsible for training a diverse audience of military and Department of Defense cyber warriors to think like a cyber attacker and develop the next generation of security...


  • Virginia Beach, Virginia, United States Strategic ASI Full time

    Cyber Support Developer RoleAt Strategic ASI, we are seeking a highly skilled Cyber Support Developer to join our team in Chantilly. This role requires a strong background in data analytics and cybersecurity, with expertise in Linux scripting, automation, and cloud security.Key Responsibilities:Collaborate with the Data Analytics team to gather stakeholder...


  • Virginia Beach, Virginia, United States Risk Strategies Full time

    Risk Strategies, a leading national insurance brokerage and risk management firm, is seeking a skilled Client Service Specialist to support our National Health Care Practice.The ideal candidate will serve as a trusted advisor to our clients, providing strategic guidance on collaborative initiatives, risk assessments, and policy audits. They will also be...


  • Virginia Beach, Virginia, United States PassionHR Inc Full time

    Job SummaryThe Network Based Systems Analyst II plays a critical role in supporting real-time Computer Network Defense (CND) incident investigations. This position involves assisting government leads in coordinating response teams, analyzing anomalous network activity, and identifying security threats. Key responsibilities include forensic analysis,...


  • Virginia Beach, Virginia, United States Applied Information Sciences Full time

    Cybersecurity Engineer Role OverviewAt Applied Information Sciences, we're dedicated to fostering a culture of growth and community. As an employee-owned company, we're passionate about empowering our people to drive innovation and excellence.The Cybersecurity Engineer will play a critical role in safeguarding our information systems and networks. This...