Cyber Security Analyst I

Scientific Research Corporation

North Charleston (SC)

On-site

USD 90,000 - 120,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Scientific Research Corporation is seeking a cybersecurity professional to support RMF, ACAS/Nessus scans, STIG checks, and A&A processes in a DoD environment in North Charleston, SC.

You will coordinate with ISSM, maintain RMF artifacts, and contribute to continuous monitoring and security reporting. Requires a DoD 8570 IAT II cert or ability to obtain, plus hands-on RMF and vulnerability management experience.

Qualifications

  • Must currently hold a DoD 8570-compliant IAT II certification (SSCP or Security+CE with appropriate CE/OS certificate) or be able to obtain within six months.
  • Experience with eMASS, SSPs, POAMs, ACAS/Nessus, SCAP, Security Checklists, and STIG Viewer.
  • Experience with risk management framework processes.
  • Have developed communication skills and the ability to express thoughts and ideas clearly and concisely.
  • Must be capable of multitasking and working several complex and diverse tasks with simultaneous or near simultaneous deadlines.
  • Be a self-starter who is accountable and requires minimal direction and supervision.
  • Be open to new and innovative ideas.
  • Be a team player willing to interface with client(s) and relay information back to team.

Responsibilities

  • Verifying configuration management and tracking security update implementation to the systems using existing automated tools.
  • Adhering to pre-defined configuration management and change management policies and procedures for authorizing software prior to its implementation on systems.
  • Ensuring systems are operated, used, maintained, and disposed of in accordance with all applicable security policies and practices.
  • Performing cybersecurity testing, analysis, and reporting by conducting ACAS scans, STIG checks, port scanning, code review, RMF control review, and POAM.
  • Providing in depth analysis on cybersecurity test results, remediation steps, and potential mitigating factors.
  • Supporting the ISSM and Cybersecurity Lead in meeting RMF documentation, process, policy, risk assessment, testing, and continuous monitoring requirements per NIST SP-800 series.
  • Providing RMF support for future A&A activities.
  • Maintaining security reporting compliance outlined in the System SLCM Strategy.

Skills

IAT II certification (SSCP or Security

Education

DoD 8570 IAT II certification or ability to obtain within six months

Tools

eMASS
POAMs
ACAS/Nessus
SCAP
STIG Viewer

Job description

Description
  • Verifying configuration management and tracking security update implementation to the systems using existing automated tools
  • Adhering to pre-defined configuration management and change management policies and procedures for authorizing software prior to its implementation on systems
  • Ensuring systems are operated, used, maintained, and disposed of in accordance with all applicable security policies and practices
  • Performing cybersecurity testing, analysis, and reporting by conducting the following: Assured Compliance Assessment Solution (ACAS) scans, Security Technical Implementation Guide (STIG) checks, port scanning, application code review, Risk Management Framework (RMF) control review, and Plan of Action and Milestone (POAM)
  • Providing in depth analysis on cybersecurity test results, remediation steps, and potential mitigating factor(s)
  • Supporting the Information System Security Manager (ISSM) and Cybersecurity Lead in meeting all RMF documentation, process, policy, risk assessment, testing, and continuous monitoring requirements per the NIST SP-800 series
  • Providing RMF support for all future and/or new Assessment and Authorization (A-A)
  • Maintaining security reporting compliance requirements outlined in the System SLCM Strategy

FILLING THIS POSITION IS CONTINGENT UPON FUNDING

Requirements
  • Must currently hold a DoD 8570-compliant IAT II certification (SSCP or Security+CE with appropriate CE/OS certificate) or be able to obtain within six months
    • CE/OS certificate may include Windows or Linux
  • Experience with eMASS, SSPs, POAMs, ACAS/Nessus, SCAP, Security Checklists, and STIG Viewer
  • Experience with risk management framework processes
  • Have developed communication skills and the ability to express thoughts and ideas clearly and concisely
  • Must be capable of multitasking and working several complex and diverse tasks with simultaneous or near simultaneous deadlines
  • Be a self-starter who is accountable and requires minimal direction and supervision
  • Be open to new and innovative ideas
  • Be a team player willing to interface with client(s) and relay information back to team
Desired Skills
  • Experience in a RHEL environment
  • Experience with Networking Devices
  • Experience with DevSecOps
  • Experience with EvaluateSTIG and/or STIGManager
  • Experience with Virtual Machines (VMware, Vsphere)
  • Experience with Cisco products (Switches & Routers)
Clearance Information

SRC IS A CONTRACTOR FOR THE U.S. GOVERNMENT, THIS POSITION WILL REQUIRE U.S. CITIZENSHIP AS WELL AS, A U.S. GOVERNMENT SECURITY CLEARANCE AT THE SECRET LEVEL

Travel Requirements
  • None
About Us

Scientific Research Corporation is an advanced information technology and engineering company that provides innovative products and services to government and private industry, as well as independent institutions. At the core of our capabilities is a seasoned team of highly skilled engineers and scientists with multidisciplinary backgrounds. This team is challenged daily to provide cutting edge technology solutions to our clients.

SRC offers a generous benefit package, including medical, dental, and vision plans, 401(k) with a company match, life insurance, vacation and sick paid time off accruals with amounts increasing based on role and years of service, 11 paid holidays, tuition reimbursement, and a work environment that encourages excellence and more. For positions requiring a security clearance, selected applicants will be subject to a government security investigation and must meet eligibility requirements for access to classified information.

EEO

Scientific Research Corporation is an equal opportunity employer that does not discriminate in employment.

All qualified applicants will receive consideration for employment without regard to their race, color, religion, sex, age, sexual orientation, gender identity, national origin, disability, protected veteran status, or any other protected characteristic under federal, state or local law.

Scientific Research Corporation endeavors to make www.scires.com accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact jobs@scires.com for assistance. This contact information is for accommodation requests only and cannot be used to inquire about the status of applications.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Analyst
Cyber Security Analyst

Scires • Philadelphia

On-site
USD 85,000 - 105,000
Medical, dental, and vision plans
401(k) with company match
Tuition reimbursement
Senior Security Engineer
Senior Security Engineer

Xtalks • Orlando (FL)

On-site
USD 120,000 - 180,000
Cyber Range Event Systems Engineer
Cyber Range Event Systems Engineer

Scientific Research Corporation • United States

On-site
USD 80,000 - 120,000
Medical, dental, and vision plans
401(k) with company match
Tuition reimbursement
+1
Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

Scires • North Charleston (SC)

On-site
USD 100,000 - 160,000
Medical, dental, and vision plans
401(k) with company match
Tuition reimbursement
Cyber Security Analyst
Cyber Security Analyst

Scientific Research Corporation • Colorado Springs (CO)

On-site
USD 87,000 - 145,000
Medical benefits
401(k) matching
Paid time off
+1
Information Systems Security Engineer
Information Systems Security Engineer

Scientific Research Corporation • Augusta (GA)

On-site
USD 90,000 - 120,000
Medical, dental, and vision plans
401(k) with company match
Life insurance
+2
Cyber Security Analyst I
Cyber Security Analyst I

Scientific Research Corporation • San Antonio (TX)

On-site
USD 95,000 - 130,000
Medical, dental, and vision plans
401(k) with company match
Life insurance
+1
Systems Administrator IV
Systems Administrator IV

Scientific Research Corporation • Norfolk (VA)

On-site
USD 100,000 - 167,000
Medical plans
401(k) with company match
Vacation and sick paid time off accrua
+2
Special Security Rep
Special Security Rep

Scires • Huntsville (AL)

On-site
USD 95,000 - 150,000
Special Security Rep
Special Security Rep

Scientific Research Corporation • Huntsville (AL)

On-site
USD 95,000 - 130,000