RMF Cybersecurity Analyst

4 days ago


Washington, Washington, D.C., United States Koniag Government Services, LLC Full time

Koniag IT Systems, a Koniag Government Services company, is hiring an experienced Senior Cybersecurity Analyst with a TS/SCI clearance to support KITS and our government customer in Alexandria, VA. This is a hybrid position.

We offer competitive compensation and an extraordinary benefits package including health, dental, and vision insurance, 401K with company matching, flexible spending accounts, paid holidays, three weeks paid time off, and more. 

The Senior Cybersecurity Analyst provides expert guidance and hands-on support in implementing, maintaining, and improving cybersecurity posture across the Department of War (DoW) information systems in accordance with the Risk Management Framework (RMF). This position is responsible for ensuring systems achieve and maintain Authorization to Operate (ATO) status through meticulous application of DoW cybersecurity policies, controls, and best practices. The analyst will collaborate with program managers, system owners, and cross-functional technical teams to ensure security requirements are effectively integrated throughout the system lifecycle.

Responsibilities

  • Provide subject matter expertise in the development and deployment of automated RMF security control assessment, informing authorization, and continuous monitoring processes.
  • Develop, integrate, and maintain automated workflows for evidence collection, control validation, and reporting.
  • Leverage scripting, orchestration, and DevSecOps pipelines to embed compliance and security checks.
  • Collaborate with cybersecurity engineers, assessors, system owners, and other stakeholders to align automation solutions with mission needs.
  • Integrate automated testing tools (e.g., vulnerability scanners, configuration management tools) into RMF packages.
  • Provide subject matter expertise on leveraging OSCAL (Open Security Controls Assessment Language) and other machine-readable compliance frameworks.
  • Deliver training, documentation, and guidance to program teams on automated RMF practices.
  • Stay current and provide feedback and recommendations on DoW cybersecurity policies, NIST updates, and emerging compliance automation technologies.

Required Qualifications:

  • Bachelor's degree in Cybersecurity, Information Systems, Computer Science, or related field.
  • 7+ years of experience in DoW cybersecurity compliance, assessment, or risk management.
  • Hands-on expertise with RMF processes, NIST SP Rev. 5 controls, and DoD RMF [DoDI ].
  • Experience developing automation solutions using Python, PowerShell, Ansible, or similar scripting/orchestration tools.
  • Familiarity with continuous monitoring and automated compliance reporting.
  • DoD M certification (e.g., CISSP, CAP, Security+ CE).

Preferred Qualifications:

  • Experience with Governance, Risk, and Compliance (GRC tools) (e.g., eMASS, Archer, Xacta) and their automation/integration.
  • Knowledge of OSCAL and machine-readable RMF artifacts.
  • Experience with DevSecOps pipelines, CI/CD, and Infrastructure as Code (IaC).
  • Background in vulnerability management, STIG compliance, or automated security testing.

Our Equal Employment Opportunity Policy

The company is an equal opportunity employer. The company shall not discriminate against any employee or applicant because of race, color, religion, creed, ethnicity, sex, sexual orientation, gender or gender identity (except where gender is a bona fide occupational qualification), national origin or ancestry, age, disability, citizenship, military/veteran status, marital status, genetic information or any other characteristic protected by applicable federal, state, or local law. We are committed to equal employment opportunity in all decisions related to employment, promotion, wages, benefits, and all other privileges, terms, and conditions of employment.  The company is dedicated to seeking all qualified applicants. If you require an accommodation to navigate or apply for a position on our website, please get in touch with Heaven Wood via e-mail at - or by calling to request accommodations.

Koniag Government Services (KGS) is an Alaska Native Owned corporation supporting the values and traditions of our native communities through an agile employee and corporate culture that delivers Enterprise Solutions, Professional Services and Operational Management to Federal Government Agencies. As a wholly owned subsidiary of Koniag, we apply our proven commercial solutions to a deep knowledge of Defense and Civilian missions to provide forward leaning technical, professional, and operational solutions. KGS enables successful mission outcomes for our customers through solution-oriented business partnerships and a commitment to exceptional service delivery. We ensure long-term success with a continuous improvement approach while balancing the collective interests of our customers, employees, and native communities. For more information, please visit  

Equal Opportunity Employer/Veterans/Disabled. Shareholder Preference in accordance with Public Law 88-352



  • Washington, Washington, D.C., United States Falconwood, Inc. Full time $120,000 - $130,000 per year

    Overview:Falconwood is a woman-owned / veteran-owned company providing consultation and programmatic support to Department of Defense (DoD) Information Technology (IT) initiatives and programs. We provide expert advice and consultation on a diverse range of IT subjects, focusing on acquisition, cybersecurity, engineering, logistics, and process...


  • Washington, Washington, D.C., United States Astrion Full time $90,000 - $120,000 per year

    OverviewMid-Level Cybersecurity AnalystLOCATION: Washington DCJOB STATUS: Full-timeCLEARANCE: SecretCERTIFICATION: DoD 8140 IAT Level IITRAVEL: As NeededAstrion has an exciting opportunity for a Mid-Level Cybersecurity Analyst located at the Washington Navy Yard in Washington, DC. Work for this position is onsite at Washington Navy Yard a minimum of 4 days...


  • Washington, Washington, D.C., United States Sayres Defense Full time $80,000 - $160,000 per year

    Sayres, a renowned leader in defense support services to the DOD in the shipbuilding industry, is currently seeking a skilled Cybersecurity Analyst with Secret Clearance in Washington, DC. Industry Certifications: Possess relevant certifications such as Network+, CISSP, CAP, or CEH.As a key member of our team, the Cybersecurity Analyst will play a vital role...


  • Washington, Washington, D.C., United States MetroStar Full time $138,000 - $205,000 per year

    As Sr. Cybersecurity Analyst I, you'll lead the assessment and authorization (A&A) process to achieve and maintain Authority to Operate (ATO) for critical government systems and cloud environments up to IL6+, ensuring compliance with NIST SP 800-53, RMF, ICD 503, FISMA, and FedRAMP standards. With a focus on safeguarding mission-essential infrastructure...


  • Washington, Washington, D.C., United States TMMG, Inc. Full time $80,000 - $110,000 per year

    Description:Salary: $95,000 - $115,000Travel: 10%Background check, US Citizenship, secret security clearance, and CAC are requirements for this position. Contingent on client approval.TMMG is actively seeking a highly motivated Journeyman Cyber Security Analyst to support the U.S. Coast Guard (USCG) Surface Acquisition Program Management Offices (CG-SEA) in...


  • Washington, Washington, D.C., United States The McHenry Management Group Full time $80,000 - $110,000 per year

    Salary: $95,000 - $115,000Travel: 10%Background check, US Citizenship, secret security clearance, and CAC are requirements for this position. Contingent on client approval.TMMG is actively seeking a highly motivated Journeyman Cyber Security Analyst to support the U.S. Coast Guard (USCG) Surface Acquisition Program Management Offices (CG-SEA) in Washington...


  • Washington, Washington, D.C., United States Imagineeer Full time $120,000 - $180,000 per year

    Benefits: 401(k) matchingCompetitive salaryHealth insurancePaid time offAbout this Role: We are seeking a highly skilled Cybersecurity Technical Writer – Level 4 to support enterprise cybersecurity initiatives for the U.S. Department of Health and Human Services (HHS). This role provides expert-level documentation, communication strategy development, and...


  • Washington, Washington, D.C., United States Sprezzatura Management Consulting Full time $80,000 - $120,000 per year

    Job Title: Cybersecurity ExpertLocation: VirtualOther Consideration: U.S. Citizen, Green Card HolderSUMMARY: The Cybersecurity Analyst is responsible for protecting an organization's digital assets by monitoring systems, identifying vulnerabilities, and responding to security incidents. This role plays a critical part in safeguarding sensitive data,...


  • Washington, Washington, D.C., United States DirectViz Solutions, LLC Full time $120,000 - $180,000 per year

    DirectViz Solutions, (DVS) is a rapidly growing government contractor that provides strategic services that meet mission IT needs for government customers. DVS provides innovative information technology solutions to government clients through the knowledge and expertise of our dedicated employees. DVS is an employee-centric employer that provides competitive...


  • Washington, Washington, D.C., United States Planet Technologies Full time $90,000 - $140,000 per year

    Planet Technologies, the Nation's leading Microsoft services provider to the public sector, is looking for a highly motivated individual to join our growing team as Data Cybersecurity Analyst. In this role, you will be supporting impactful projects that make a difference for our country.ResponsibilitiesPerforms analysis on data for documents, reports, and...