MANTECH is seeking a motivated, customer-oriented Cyber SecurityAnalyst to support our Marine Corps Systems Command (MCSC) contract in Quantico, VA. The Cyber Security Analyst will perform analysis of cybersecurity packages using the Risk Management Framework (RMF) process to achieve an Authority to Operate (ATO).
Responsibilities include, but are not limited to:
Ensure system documentation reflects current system security configurations to include hardware and software components, data flow, interconnections, and ports, protocols, and services, etc.
Perform Compliance reviews and analyses to verify compliance with federal requirements (e.g., EO, OMB Memos, A-130, NIST SP 800-37, 800-53, FIPS199, and FIPS-200, etc.)
Perform analyses of security implementations for assigned systems pertaining to people, processes, and technologies, identify gaps and recommend solutions.
Perform analyses of security implementations for assigned systems pertaining to people, processes, and technologies, identify gaps and recommend solutions
Assist in the preparation and review of documentation to include System Security Plans (SSPs), Plans of Action and Milestones (POA&Ms), Authorization Recommendations (ARs), Cybersecurity Strategies (CSSs), and other A&A artifacts.
Research major obstacles related to the ever-changing FISMA requirements, which customers will need to overcome and provide recommendations.
Provide updates and input to the GRC SharePoint sites to include document uploads, page updates, access requests, permissions, etc. on an ongoing basis.
Minimum Requirements:
Bachelor’s degree and at least 3 years of related cybersecurity experience (additional 2 years of experience can be substituted in lieu of degree):
Must be compliant with DoD 8140 at an intermediate or advanced level. Thus, will need a CASP CE, Security , CISSP, or CISM certification.
Experience and expert knowledge on NIST guidelines, FISMA, Cybersecurity principles and methodologies, Executive Orders (EO's), Office of Management and Budget (OMB) Memorandums, Federal, DoD and CISA Technical Reference Architectures, Maturity Models, Risk Management Framework (RMF), Cybersecurity Framework (CSF), technical knowledge of IT systems
Preferred Qualifications:
USMC or Navy Validator certified
OSCP / OSEP / CPTS Certifications
Experience with cloud-based environments and technologies.
An analytical mind with excellent problem-solving ability.
Good communication skills and have good interpersonal, organizational, and analytical skills.
Clearance Requirements:
- Must have a current/active Secret clearance with the ability to obtain Top Secret/SCI
Physical Requirements:
- Sedentary work