FedRAMP Cloud Cybersecurity Analyst

3 weeks ago


Hanover, United States ASRC Federal Holding Company Full time

This is primarily a Telework position with a requirement to be onsite at least one (1) day a week in Hanover MD. As a FedRAMP Cloud Security Analyst you will play a crucial role in ensuring the security and compliance of the programs under the DCSA Program Executive Office (PEO). You will be responsible for managing the Federal Risk and Authorization Management Program (FedRAMP) support for Amazon Web Services (AWS) based cloud systems. BASIC QUALIFICATIONS Candidates should demonstrate a detailed knowledge the following: Prior support of FedRAMP activities for cloud hosted systems such as eMASS Package (ex: Readiness Assessment Report (RAR), System Security Plan (SSP), Plan of actions & Milestones (POA&M), etc.) Review, Audit, and validate compliance of DCSA systems Secure Cloud Computing Architecture (SCCA) to ensure cloud systems connections to the Boundary CAP (BCAP) and Virtual Datacenter Security Stack (VDSS) are implemented in accordance with the cloud Security Requirements Guide (SRG) including support for the internal implementation of the Visual Data Management System (VDMS) solutions internally. Perform periodic cyber security control assessments of IT cloud systems, identify potential risks and gaps, and make recommendations and implement cloud security improvements based on industry standards and best practices. Perform Cyber Security Impact Assessments and Risk Assessments for new and existing cloud systems, determine security posture and viability for organizational use, and make recommendations for cloud security architectures and controls. Provide support for the internal Information Security Continuous Monitoring Program for authorization to operate and ongoing authorization approvals for cloud-based IT systems. Experience working with Third Party Assessment Organizations (3PAO) Participation with the DISA Cloud Joint Verification Team (JVT) Team Assist the Product Managers (PMs) and/or Program Management Office (PMO) with cyber security audits and assessments of cloud systems including programmatic reviews and management of corrective action plans. Participated in reviews of Information System Agreement (ISA) / Memorandum of Agreement (MOA), Whitelisting, etc. Worked with the solution engineers to identify best practices and methods required by the FedRAMP PMO to configure and operate within the NIST SP 800 series of controls. Assist with non-cloud systems authorization efforts utilizing the Risk Management Framework (RMF). Understanding and familiarity with cloud architectures (e.g. SaaS, PaaS, IaaS), common commercial cloud systems (e.g. AWS, Microsoft 365, etc.) as well as specific DOD cloud architecture BCAP, ICAP, SCCA, cloud security solutions (e.g. Cloud Access Security Broker, Multi-factor Authentication, Zero Trust Architecture). #Broadleaf Requirements: YEARS EXPERIENCE: At least two (2) years relevant Cloud Security experience. EDUCATION REQUIREMENTS: Bachelor’s Degree, or equivalent experience in Cybersecurity, and/or Information Systems Management, Information Technology. CERTIFICAITON(S): DoDM 8140/DoDM 8570.01-M IAM Level I requirements prior to onboarding e.g., CAP, CND, Cloud+, GSLC, Security+ CE, HCISPP or higher-level certification Multiple cloud certifications preferred. CLEARANCE LEVEL: Active Secret Required and eligibility for TS WORK ENVIRONMENT AND PHYSICAL DEMANDS: This is primarily a Telework position with a requirement to be onsite at least one (1) day a week. If alternate worksite is other than DCSA facilities or corporate office space, must have the reliable ability to communicate over voice (cell phone preferred) and stable, capable internet connection. Must speak English well enough to communicate complex technical ideas to a diverse customer both verbally and in written form. ASRC Federal and its Subsidiaries are Equal Opportunity / Affirmative Action employers. All qualified applicants will receive consideration for employment without regard to race, gender, color, age, sexual orientation, gender identification, national origin, religion, marital status, ancestry, citizenship, disability, protected veteran status, or any other factor prohibited by applicable law.



  • Hanover, United States ASRC Federal Full time

    ASRC Federal is hiring for multiple positions supporting DCSA in Hanover, MD! These positions have been approved for a hybrid work schedule(1 day per week on-site) Openings: * Information Systems Security Engineer II * Cybersecurity Engineer(SIEM) * Cybersecurity Engineer(ELASTIC) * Cybersecurity Engineer(SWIMLANE) * FedRAMP Cloud Security Analyst If you...


  • Hanover, United States ASRC Federal Holding Company Full time

    ASRC Federal is hiring for multiple positions supporting DCSA in Hanover, MD! Openings: Information Systems Security Engineer II Cybersecurity Engineer(SIEM) Cybersecurity Engineer(ELASTIC) Cybersecurity Engineer(SWIMLANE) FedRAMP Cloud Security Analyst If you would be interested in learning more about any of the opportunities listed above please...


  • Hanover, United States ICS Nett, Inc. Full time

    ICS Nett, Inc. is hiring a Cloud Security Analyst to support the Fort Meade DCSA - NEW AWARD CLEARANCE LEVEL: Active Secret Required and eligibility for TS required WORK ENVIRONMENT: Hybrid (1 Days Onsite and 3 Days Offsite) 7121 Standard Drive in Hanover, MD ICS Nett, Inc. is hiring for a Cloud Security Analyst to support the DCSA in Hanover, MD (Fort Meade...


  • Hanover, United States ASRC Federal Full time

    ASRC Federal Broadleaf Division is hiring for a Cybersecurity Engineer (SIEM) to support the DCSA in Hanover, MD. These positions have been approved for a hybrid work schedule(1 day per week on-site) JOB DESCRIPTION: * This is a technical, hands-on role responsible for the successful operation of a variety of cybersecurity tools, logging framework, and...


  • Hanover, United States ASRC Federal Full time

    ASRC Federal Broadleaf Division is hiring for a Cybersecurity Engineer (SOAR/SWIMLANE) to support the DCSA in Hanover, MD. These positions have been approved for a hybrid work schedule(1 day per week on-site) JOB DESCRIPTION /DUTIES : * Manage and implement integration between components, and security tools ( e.g. send/receive data from component Swimlane,...


  • Hanover, United States Independent Software Full time

    What you will be doing! Independent Software is seeking a Mid-Level Cybersecurity Network Analyst experienced with computer network exploitation, construction, and diagnostics of computer networks, network analysis, network threats and risks, incident response, and database research. Key Requirements: Skills to include technical and narrative reporting....


  • Hanover, United States Independent Software Full time

    Job DescriptionJob DescriptionWhat you will be doing!Independent Software is seeking a Mid-Level Cybersecurity Network Analyst experienced with computer network exploitation, construction, and diagnostics of computer networks, network analysis, network threats and risks, incident response, and database research.Key Requirements:Skills to include technical...

  • Cloud Administrator

    1 week ago


    Hanover, United States Dragos, Inc. Full time

    OverviewOur mission at Dragos is to protect the world's most critical infrastructure from adversaries who wish to do it harm. We help defend industrial organizations that provide us with the necessities of modern civilization: running water, functioning electricity, and safe industrial working environments. Dragos is seeking a talented Cloud Administrator...


  • Hanover, United States ECS Corporate Services Full time

    ECS is seeking an Elastic SIEM Security Analyst to work in our Hanover, MD office.Job Description: As a leading managed cybersecurity services provider, ECS delivers a highly tailored and customized offering to each customer. The Professional Services Team is responsible for working with our customers to understand their needs and delivering a complete...


  • Hanover, United States ECS Limited Full time

    ECS is seeking an Elastic SIEM Security Analyst to work in our Hanover, MD office. Job Description: As a leading managed cybersecurity services provider, ECS delivers a highly tailored and customized offering to each customer. The Professional Services Team is responsible for working with our customers to understand their needs and delivering a complete...


  • Hanover, United States Elevance Health Full time

    Cloud Security Advisor Location: This position will work a hybrid model (remote and office). An ideal candidate must live within 50 miles of one of our Elevance Health PulsePoint locations listed here: Atlanta, GA; Indianapolis, IN; Norfolk, VA; Richmond, VA; Houston, TX; Dallas, TX; Washington, DC; Tampa, FL or Hanover, MD. Come join a team where your...


  • Hanover, United States Allegis Group Full time

    Overview: Job Summary: The Risk Analyst will support the Third-Party Risk Management (TPRM) team as well as other groups within the ECRM department. The Risk Analyst will partner with the business to understand third party (including technology, professional services, strategic partners, etc. third parties) use cases and conduct relevant and risk-based due...

  • SIEM Engineer III

    1 week ago


    Hanover, United States ECS Limited Full time

    ECS is seeking a SIEM Engineer III to work in our Hanover, MD office. Job Description: Are you passionate about the ever-evolving field of cybersecurity and ready to embark on a career with a positive and lasting impact? Join our dynamic team at ECS, a leading provider of solutions in science, engineering, and advanced technologies, including cloud,...

  • SIEM Engineer III

    5 days ago


    Hanover, United States ECS Full time

    ECS is seeking a SIEM Engineer III to work in our Hanover, MD office.Job Description:Are you passionate about the ever-evolving field of cybersecurity and ready to embark on a career with a positive and lasting impact? Join our dynamic team at ECS, a leading provider of solutions in science, engineering, and advanced technologies, including cloud,...

  • SIEM Engineer III

    10 hours ago


    Hanover, United States ECS Full time

    ECS is seeking a SIEM Engineer III to work in our Hanover, MD office.Job Description:Are you passionate about the ever-evolving field of cybersecurity and ready to embark on a career with a positive and lasting impact? Join our dynamic team at ECS, a leading provider of solutions in science, engineering, and advanced technologies, including cloud,...


  • Hanover, United States ASRC Federal Full time

    ASRC Federal Broadleaf Division is hiring for an Information Systems Security Engineer II to support the DCSA in Hanover, MD. This position is approved for a hybrid work schedule(1 day per week on-site) JOB DESCRIPTION: * As a Information Systems Security Engineer II you will lead efforts to manage the Security Technical Implementation Guide (STIG) progress...


  • Hanover, United States Allegis Group Full time

    Overview: Job Summary: The Information Security Analyst, for Threat & Vulnerability, will provide service and operational support to all ACS Information Security Office service offerings and capabilities. The InfoSec Analyst will support project work upon request. The Threat & Vulnerability Analyst will be responsible for consuming threat intelligence...

  • CNO Developer

    1 week ago


    Hanover, United States Eqlipse Technologies Full time

    At BlueHalo, we don’t just witness the future of national security – we create it. In our relentless pursuit of innovation, we are expanding our team and actively seeking Cloud Engineers across various levels of experience to join a groundbreaking Cyber program based in Annapolis Junction, MD. Here, your expertise in cloud computing will directly shape a...

  • Application Developer

    1 month ago


    Hanover, United States Maverc Technologies Full time

    Become part of a team solving the most significant Cybersecurity & IT Challenges and helping keep the world’s largest and most elite brands safer from cyber threats. At Maverc we have a powerful mindset based on our core values of being accountable, helpful, adaptable, and focused. Maverc Technologies is a proven and effective small business partner and...


  • Hanover, United States By Light Professional IT Services Full time

    Overview The Proposal Solution Architect will serve as the technical lead and SME with responsibilities including services, solution architecture and design engineering functions as well as lead RFP (Request For Proposal) technical responses. Candidate will serve as a Solution Architect to be responsible for shaping the client's vision/strategy and the...