Position Summary
The Security & Compliance Analyst supports mission-critical objectives under the referenced work order by assessing, implementing, and monitoring security compliance frameworks across cloud and hybrid environments. This role ensures adherence to FedRAMP, NIST 800-53 Rev. 5, DoD RMF, and Zero Trust security principles while ensuring DoD identity governance policy compliance.
This future opportunity is contingent upon award.
Job Description
Required Qualifications and Experience
The contractor shall provide personnel who meet one of the following requirements:
Candidates must have demonstrated experience in the following areas:
Required Skills and Competencies
Education
Clearance Requirement
An active TS/SCI security clearance is required for on-site duty location
The Security & Compliance Analyst supports mission-critical objectives under the referenced work order by assessing, implementing, and monitoring security compliance frameworks across cloud and hybrid environments. This role ensures adherence to FedRAMP, NIST 800-53 Rev. 5, DoD RMF, and Zero Trust security principles while ensuring DoD identity governance policy compliance.
This future opportunity is contingent upon award.
Job Description
- The Security & Compliance Analyst is responsible for performing security risk assessment, compliance reporting, and vulnerability remediation strategies.
- The position requires conducting security assessments and preparing compliance documentation (SSPs, POA&Ms).
- Analysts will ensure regulatory adherence for cloud and hybrid infrastructures.
- The role includes monitoring and validating deployments for compliance with RMF, NIST 800-53, and DoD IL4/IL5 requirements.
Required Qualifications and Experience
The contractor shall provide personnel who meet one of the following requirements:
- Bachelor's degree in Cybersecurity, Information Assurance, or a related field; or
- A minimum of five (5) years of professional experience in security compliance analysis.
Candidates must have demonstrated experience in the following areas:
- Conducting security assessments.
- Preparing compliance documentation (SSPs, POA&Ms).
- Ensuring regulatory adherence for cloud and hybrid infrastructures.
- Working with compliance tools such as Microsoft Purview, AWS Security Hub, Nessus, or Splunk Enterprise Security.
- Implementing vulnerability remediation strategies.
Required Skills and Competencies
- Expertise in security risk assessment and compliance reporting.
- Working knowledge of FedRAMP, NIST 800-53 Rev. 5, DoD RMF, and Zero Trust security principles.
- Proficiency with Microsoft Purview, AWS Security Hub, Nessus, and Splunk Enterprise Security.
- Strong analytical and documentation skills.
- Ability to conduct vulnerability assessments and develop remediation strategies.
Education
- Bachelor's degree in a relevant field, or an equivalent combination of education and experience.
- Certified Information Systems Auditor (CISA) (Preferred, Not Required)
- Certified Information Systems Security Professional (CISSP) (Preferred, Not Required)
- CompTIA Security+ (Preferred, Not Required)
Clearance Requirement
An active TS/SCI security clearance is required for on-site duty location