Cyber Security Analyst III - Remote Washington, DC Posted today

NANA Regional Corporation

Washington (District of Columbia)

Hybrid

USD 130,000 - 150,000

Full time

2 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Medical Insurance
401(k) Plan
Paid Time Off

Job summary

Akima Mission Optimization (AMO) seeks a Cyber Security Analyst III to support RMF assessments, A&A packages, and continuous monitoring across DOE systems. This role combines hands-on cyber operations with authorization responsibilities to help keep federal environments secure and compliant.

We value clear reporting, document findings, work with cloud and on‑prem environments, and communicate risk to leaders.

Qualifications

  • Bachelor’s degree or 4 years of equivalent experience.
  • 5–7 years of experience in cybersecurity operations, security control assessments, or related technical security functions.
  • Experience in assessing and determining control applicability (inheritance, hybrid, independent).
  • Experience performing detailed reviews of controls and technical security testing.
  • Experience with RMF process and NIST SP 800-53, NIST CSF, and related laws/regulations.
  • Ability to analyze system configurations against NIST SP 800-53 and overlays.
  • Experience with federal cybersecurity frameworks (NIST RMF, NIST SP 800‑53).
  • Ability to document risks, incidents, and vulnerabilities clearly with actionable recommendations.
  • Strong written communication and security documentation skills.
  • Ability to complete DOE background investigation and obtain federal clearance (DOE Q).

Responsibilities

  • Conduct assessments of security and privacy controls for effectiveness against DOE requirements.
  • Review control implementations for accuracy and effectiveness.
  • Document findings and remediation actions in formal reports.
  • Perform initial remediation actions and reassess controls.
  • Assess system and inherited controls under DOE monitoring strategy.
  • Contribute to cybersecurity performance metrics and reporting.
  • Prepare A&A artifacts: ARW, SAP, SARs, and risk assessments.
  • Analyze findings packages and present to reviews.
  • Review significant change requests and potential security impacts.
  • Review vulnerability scans, POA&M, data flows, and system changes for control effectiveness.
  • Document concise, actionable findings and recommendations.
  • Respond to data calls for audits (FISMA, DOE).

Skills

Security assessments
RMF process
NIST SP 800-53
A&A packages
Vulnerability scanning
Cloud environments
Documentation
Federal cybersecurity frameworks
Analytical thinking
Written communication

Education

Bachelor’s Degree

Job description

The Office of the Chief Information Officer (OCIO) advances the Department of Energy’s (DOE) mission by establishing enterprise-wide policy, standards, and services that ensure secure, reliable, and innovative information technology (IT) delivery across the Department. The OCIO is committed to strengthening DOE’s cybersecurity posture, improving IT service performance, and ensuring the protection of the Department’s systems, networks, and data while maintaining responsible stewardship of taxpayer resources. To join our team of outstanding professionals,

The Cyber Security Analyst III supports this mission by supporting cybersecurity measures, assessing security controls, evaluating system risks, and responding to cybersecurity data calls, research, and analysis as required. This role combines hands‑on operational cybersecurity functions with mid‑level Assessment & Authorization (A&A) responsibilities to ensure DOE systems remain compliant, secure, and resilient.

Responsibilities
  • Conduct assessments of implemented security and privacy controls to determine effectiveness and alignment with DOE requirements.
  • Review control implementations for accuracy, operating effectiveness, and alignment with security and privacy outcomes.
  • Document findings, deficiencies, and recommended corrective actions in formal assessment reports and deliver results to Team Leaders.
  • Conduct initial remediation actions and reassess remediated controls to verify successful implementation.
  • Assess system‑specific and inherited controls in accordance with DOE’s continuous monitoring strategy.
  • Contribute to cybersecurity performance metrics, deliverables, and reporting requirements.
Cybersecurity Analyst Duties:
  • Perform assessments of existing and new NIST and FISMA systems, including subsystems within respective system boundaries, communicate results, articulate potential implications of identified control weaknesses, and work to document through artifacts and documentation.
  • Support assessments within Cloud environments such as SaaS, PaaS, and IaaS, and systems and platforms within an on-prem environment.
  • Review, analyze, and create Assessment & Authorization (A&A) packages to include Assessment Readiness Workbooks (ARW), Security Assessment Plans (SAP), Security Assessment Reports (SARs), and Risk Assessments for completeness, accuracy, and effectiveness of controls.
  • Review, analyze, and create findings packages outlining identified findings, weaknesses, remediation, and provide an overview during findings meeting reviews.
  • Participate in the review of significant system change requests, deviation requests, and provide input and feedback on potential system or system security impacts.
  • Review and analyze vulnerability scan reports, test reports, and Plan of Action & Milestones (POA&Ms), Hardware/Software lists, Network Diagrams, Data Flows, System Change Requests/Proposal, for completeness, accuracy, effectiveness of controls, and plans and procedures implementation.
  • Document and provide findings and recommendations that are concise, grammatically correct, system- and platform-specific, and actionable and executable.
  • Respond to security-and system-related data calls for internal and external audits such as FISMA and data calls as requested.
Qualifications
  • Bachelor’s Degree or four (4) years of equivalent work experience.
  • 5–7 years of experience in cybersecurity operations, security control assessments, or related technical security functions.
  • Experience in assessing and determining control applicability, such as inheritance, hybrid, independent (standalone).
  • Experience performing detailed reviews of controls, technical security control testing for each of the component types, including development of security and privacy assessment plans.
  • Experience with the RMF process and understanding each phase of the RMF process and possess a strong understanding of the NIST Special Publication 800-53 security and privacy controls, the NIST Cybersecurity Framework, and other information security and privacy laws and regulations.
  • Ability to analyze information system configurations and technical specifications against NIST SP 800-53 and other overlays.
  • Experience conducting security assessments within federal cybersecurity frameworks (such as NIST RMF, NIST SP 800‑53).
  • Ability to analyze and document risks, incidents, and vulnerabilities clearly and accurately, and provide results of analysis and recommendations as required.
  • Ability to work independently with minimal supervision, manage complex issues, and elevate issues as necessary to leads and managers.
  • Strong written communication skills, including preparation of security documentation and assessment reports.
  • Ability to complete a DOE background investigation and obtain federal government clearance for access to federal systems.
  • Ability to obtain DOE Q clearance.
Job ID

2026-25983

Work Type

Remote

Pay Range

$130,000 - $150,000

Benefits

Regular - The company offers a comprehensive benefits program, including medical, dental, vision, life insurance, 401(k) and a range of other voluntary benefits. Paid Time Off (PTO) is offered to regular full-time and part-time employees.

Company Description
Work Where it Matters

Akima Mission Optimization (AMO), an Akima company, is not just another federal logistics contractor. As an Alaska Native Corporation (ANC), our mission and purpose extend beyond our exciting federal projects as we support our shareholder communities in Alaska.

At AMO, the work you do every day makes a difference in the lives of our 15,000 Iñupiat shareholders, a group of Alaska natives from one of the most remote and harshest environments in the United States.

For our shareholders , AMO provides support and employment opportunities and contributes to the survival of a culture that has thrived above the Arctic Circle for more than 10,000 years.

For our government customers , AMO delivers innovative administrative support services that streamline operations, and enhance productivity.

As an AMO employee , you will be surrounded by a challenging, yet supportive work environment that is committed to innovation and diversity, two of our most important values. You will also have access to our comprehensive benefits and competitive pay in addition to growth opportunities and excellent retirement options.

We are an equal opportunity employer and comply with all applicable federal, state, and local fair employment practices laws. All applicants will receive consideration for employment, without regard to race, color, religion, creed, national origin, gender or gender-identity, age, marital status, sexual orientation, veteran status, disability, pregnancy or parental status, or any other basis prohibited by law. If you are an individual with a disability, or have known limitations related to pregnancy, childbirth, or related medical conditions, and would like to request a reasonable accommodation for any part of the employment process, please contact us at job-assist@akima.com or 571-353-7053 (information about job applications status is not available at this contact information).

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Assessment and Authorization Specialist III - Remote Washington, DC Posted today
Assessment and Authorization Specialist III - Remote Washington, DC Posted today

NANA Regional Corporation • Washington

Hybrid
USD 150,000 - 160,000
Medical, dental, vision
PTO (paid time off)
Cyber Security Analyst III - Remote
Cyber Security Analyst III - Remote

Akima • Washington

Hybrid
USD 130,000 - 150,000
Medical insurance
Dental insurance
Vision insurance
+2
Cybersecurity SME Rockville, MD Posted today
Cybersecurity SME Rockville, MD Posted today

NANA Regional Corporation • Rockville (MD), Northern (KY)

On-site
USD 140,000 - 185,000
Medical, dental, vision
Paid Time Off (PTO)
Assessment and Authorization Specialist III - Remote
Assessment and Authorization Specialist III - Remote

Akima • Washington

Hybrid
USD 150,000 - 160,000
Medical, dental, vision coverage
401(k) retirement plan
Paid Time Off (PTO)
Cybersecurity SME
Cybersecurity SME

Akima • Rockville (MD), Northern (KY)

On-site
USD 140,000 - 185,000
Medical insurance
Dental insurance
Vision insurance
+3
Cyber Risk and Vulnerability Lead (Remote)
Cyber Risk and Vulnerability Lead (Remote)

Akima • Washington

Hybrid
USD 155,000 - 165,000
Medical insurance
Dental insurance
Vision insurance
+3
Cybersecurity Subject Matter Expert (SME)
Cybersecurity Subject Matter Expert (SME)

Akima • Washington

Hybrid
USD 160,000 - 170,000
Comprehensive benefits
Paid Time Off (PTO)
Senior Cloud Security Architect Alexandria, VA Posted today
Senior Cloud Security Architect Alexandria, VA Posted today

NANA Regional Corporation • Alexandria (VA)

On-site
USD 220,000 - 235,000
Medical insurance
401(k)
PTO
DevSecOps Engineer I Huntsville, AL Posted today
DevSecOps Engineer I Huntsville, AL Posted today

NANA Regional Corporation • Huntsville (AL)

On-site
USD 110,000 - 150,000
Administrative Assistant (Hybrid)
Administrative Assistant (Hybrid)

Akima • Dahlgren (VA)

Hybrid
USD 33,000 - 44,000
Medical benefits
Dental benefits
Vision benefits
+3