Cybersecurity Analyst/Engineer
5 days ago
Cybersecurity Analyst/Engineer
Location: Arlington VA
Job Status: Full time
Clearance Required: Active DoD TS/SCI
Astrion is seeking a Cybersecurity Analyst/Engineer to join our prime contract supporting Headquarters Space Force S6 (SF/S6) in Arlington VA. This position supports the Authorizing Official (AO) as a Security Control Assessor Representative (SCAR) with independent assessments and technical analysis across the Enterprise. The work spans early prototype efforts through programs of record preparing for milestone decisions and operational fielding ensuring the secure operations of enterprise networks, mission-critical systems, and sensitive data across the Authorizing Official's multiple enclaves.
You will play a hands-on role in Cybersecurity Analysis, Engineering, and Risk Management Framework (RMF) compliance, driving mission assurance for some of the nation's most important space systems.
REQUIRED QUALIFICATIONS / SKILLS
- 7–12+ years of cybersecurity experience in DoD, USSF, or IC environments.
- Active DoD TS/SCI clearance (with current investigation).
- CompTIA Security+ or equivalent DoD 8570/8140 IAT/IAM/IASAE certification.
- Demonstrated proficiency with RMF assessments and technical cybersecurity evaluation.
- Hands-on experience with eMASS and/or XACTA
PREFERRED QUALIFICATIONS / SKILLS
- Experience supporting Authorizing Officials, SCAs, or executing enterprise-level cyber governance and Risk Management Framework (RMF) protocols.
- Senior-level cybersecurity certifications or equivalents (e.g. CISSP, CAP, CCSP, GSLC, GIAC).
- Knowledge of FedRAMP, FISMA, Clinger-Cohen Act, ITAR, PPP, SCRM, and other related requirements.
- Strong organizational, interpersonal, and communication skills with attention to detail.
- Advanced skills in Microsoft Word, Excel, PowerPoint, and Outlook.
RESPONSIBILITIES
- Perform detailed evaluations of system control implementations across traditional, hybrid, and cloud environments, verifying evidence accuracy and alignment with RMF requirements.
- Review security configuration settings, logs, identity integrations, and network boundaries to validate technical control effectiveness.
- Independently manage and maintain RMF documentation within eMASS or XACTA, ensuring consistency across SSP, SAP, SAR, POA&M, and supporting artifacts.
- Analyze STIG/SCAP results, vulnerability findings, and ACAS/Nessus outputs to determine relevance, categorize risk, and recommend remediation paths.
- Participate in technical assessment sessions with system teams to review evidence, clarify control expectations, and document findings.
- Coordinate directly with ISSMs, ISSOs, engineers, program managers, and development teams to resolve evidence gaps and ensure control implementations are properly documented.
- Assess the cybersecurity implications of system changes, configuration updates, enhancements, and engineering modifications.
- Support readiness evaluations for systems entering key systems engineering milestones, such as PDR, CDR, TRR, and developmental or operational testing.
- Contribute to ongoing continuous monitoring, including tracking vulnerability deltas, cloud security indicators, IAM changes, and compliance drift concerns.
- Participate in working groups, inheritance discussions, and cyber technical exchanges to ensure assessment activities remain aligned with enterprise patterns and expectations.
- Prepare routine assessment updates, summarizing evidence maturity, outstanding risks, and documentation status for SCA or AO staff.
- Conduct recurring quality checks of RMF documentation for completeness, accuracy, and alignment across system artifacts and lifecycle stages.
- Support audit readiness efforts by validating documentation completeness, reconciling findings, and preparing systems for internal or external assessments.
- Identify recurring cybersecurity trends, recurring weaknesses, or risk patterns across systems within the portfolio and communicate observations to senior assessors.
- Assist systems preparing for ATO renewals or approaching acquisition or engineering milestones by reviewing documentation maturity, control implementation evidence, and cybersecurity integration.
- Collaborate with senior assessors on complex assessments, major ST&E events, and risk analysis activities, providing detailed technical inputs as needed.
- Participate in cloud and architectural discussions to verify consistency between system implementation and enterprise-level identity and Zero Trust patterns.
- Support boundary updates, inheritance reviews, and RMF Step 6 continuous monitoring activities by validating control reassessments and documenting posture changes.
-
Cybersecurity Analyst/Engineer
1 week ago
Arlington, Virginia, United States Astrion Full timeOverviewCybersecurity Analyst/EngineerLocation: Arlington VAJob Status: Full timeClearance Required: Active DoD TS/SCIAstrion is seeking a Cybersecurity Analyst/Engineer to join our prime contract STS-3 supporting Headquarters Space Force S6 (SF/S6) in Arlington VA. This position supports the Authorizing Official (AO) as a Security Control Assessor...
-
Cybersecurity Acquisition Analyst
2 weeks ago
Arlington, Virginia, United States Vista Technology Services Full timeVISTA Technology Services, Inc. (VISTA) is currently seeking Cybersecurity Acquisition Analyst to support a NAVSEA Ship Acquisition Program in the DMV Area.This position is contingent upon contract award.The Cybersecurity Acquisition Analyst will support NAVSEA shipboard systems for a Major Defense Acquisition Program (MDAP) Program.Responsibilities: ...
-
Cybersecurity Engineer
2 weeks ago
Arlington, Virginia, United States Booz Allen Hamilton Full timeCybersecurity EngineerThe Opportunity:Everyone knows security needs to be "baked in" to a system architecture, but you know how to bake it in. You can identify and implement ways to harden systems and reduce their attack surface. What if you could use your cyber engineering skills to design and develop secure systems for client? We're looking for an engineer...
-
Cybersecurity Forum Secretariat
2 days ago
Arlington, Virginia, United States Booz Allen Hamilton Full time $62,000 - $141,000Cybersecurity Forum SecretariatThe Opportunity:To transition effectively, organizations need help looking at their operation from the outside. Whether standing up a new organization, transforming an existing one, or transitioning an organization, our clients need a professional who will take the time to learn the complexities of their mission and provide...
-
Incident Response Analyst
2 weeks ago
Arlington, Virginia, United States Latitude Inc Full time $160,000 - $200,000Incident Response Analyst - Eligibility for TS/SCI ClearanceLocation: Arlington, VAAbout the OpportunityA leading provider of advanced cybersecurity research, software solutions, and engineering services is seeking an experienced Incident Response Analyst. This role supports high-impact cybersecurity operations across critical infrastructure environments,...
-
Senior Cybersecurity Specialist
1 week ago
Arlington, Virginia, United States SAIC Full timeSAIC is seeking a Senior Cybersecurity Specialist to join our team in Arlington, VA. ResponsibilitiesDevelop and optimize Splunk Security Information and Event Management (SIEM) data collection solutions to detect, track, and audit various system logging data for timely response to adverse actions on the networkEmploy Tenable Nessus and DISA STIG/SCAP tools...
-
Forensics-Malware Analyst/ Reverse Engineering
2 weeks ago
Arlington, Virginia, United States GrammaTech Full timeGrammaTech is a provider of software solutions and software research, development, and engineering services solving some of the world's most complex security problems.GrammaTech is looking for a Forensics-Malware Analyst and Reverse Engineering Engineer to work onsite at customer locations.LocationArlington, VA. Hybrid Role, available to be on-site as...
-
Cybersecurity Manager
4 days ago
Arlington, Virginia, United States Booz Allen Hamilton Full timeCybersecurity ManagerThe Opportunity:Cyber threats are everywhere, and the constantly evolving nature of these threats can make understanding them seem overwhelming. In all of this "cyber noise," how can these organizations understand their risks and how to mitigate them? The answer is you—a Cybersecurity Manager who will lead a team monitoring enterprise...
-
Cybersecurity Advisor I
5 days ago
Arlington, Virginia, United States Rapid7 Full timeAs a Cybersecurity Advisor I, you will work hand-in-hand with the Cybersecurity Advisor team to deliver service to our customers, while gaining valuable experience in the field of Information Security and Managed Detection and Response (MDR). You will have a front-row seat to observe and learn about the ever-evolving Cyber Threat Landscape and gain...
-
Cybersecurity Planning Strategist
2 days ago
Arlington, Virginia, United States ICF Full time $118,730 - $201,840ICF is a mission-driven company filled with people who care deeply about improving the lives of others and making the world a better place. Our cybersecurity analysts and experts work to protect the functions and missions that are vital to our people, government, and military through proactive planning and strong public-private partnerships. ICF is seeking...