Information Security Analyst

CALIBRE Systems Inc

Washington (Washington County)

Hybrid

USD 80,000 - 90,000

Full time

6 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

CALIBRE Systems, Inc. is seeking a highly qualified Journeyman Information Security Analyst to support a DoD client with enterprise cybersecurity for a large program serving military families.

This hybrid role requires some meetings in Alexandria, VA and involves RMF, vulnerability management, and incident response across DoD cloud and information systems. The candidate will maintain compliance with DoD, DISA, NIST RMF, and related frameworks, support ATOs, and coordinate with ISSM/ISSO teams.

Qualifications

  • Master's degree in Information Technology, Cybersecurity, Information Assurance, or related field.
  • DoD 8570/8140-aligned certification such as Security+ CE or CySA+ is required.
  • 5+ years of cybersecurity, RMF support, or information assurance experience.
  • Active Top Secret clearance is required.
  • Experience with DoD RMF, eMASS, and compliance tracking is preferred.

Responsibilities

  • Support RMF documentation and security control implementation for DoD systems using eMASS.
  • Conduct weekly DISA STIG/SRG and ACAS vulnerability assessments and assist with remediation tracking.
  • Maintain Plans of Action and Milestones (POA&Ms) and coordinate validation with ISSM/ISSO teams.
  • Monitor SIEM and GovCloud logs, track compliance, and escalate abnormal findings.
  • Assist with vulnerability assessments and penetration testing for new or modified apps and infrastructure.
  • Support incident reporting and coordination with the Incident Response Team.

Skills

Security+ CE
CySA+
DoD 8570/8140-aligned
Active Top Secret clearance
RMF knowledge

Education

Master's degree in IT/Cybersecurity/IA
Bachelor's degree in IT/Cybersecurity/IA

Tools

eMASS
DISA STIGs/SRGs
ACAS
POA&Ms

Job description

Information Security Analyst

5469

CALIBRE Systems, Inc., an employee-owned mission focused solutions and digital transformation company, is looking for a highly qualified Journeyman Information Security Analyst to support a DoD client with enterprise cybersecurity for a large program serving military families. This position will be hybrid with some required meetings in Alexandria, VA.

The role combines cybersecurity operations, compliance, vulnerability management, incident response, and Risk Management Framework (RMF) activities for Department of Defense cloud and information systems. The analyst will help maintain compliance with DoD, DISA, U.S. Cyber Command, MC&FP, NIST RMF, Zero Trust, STIG/SRG, ACAS, and eMASS requirements while supporting the attainment and sustainment of Government-issued Authorizations to Operate (ATOs).

An active Secret clearance is required for this role.

Salary range for this position is $80k-$90k

Key Responsibilities
  • Support RMF documentation, security control implementation, assessment activities, and ATO sustainment using the DoD enterprise eMASS platform.
  • Conduct weekly DISA STIG/SRG and ACAS vulnerability assessments, assist with remediation tracking, and prepare raw scan outputs, weekly threat reports, and ACAS roll-up reports.
  • Maintain and update Plans of Action and Milestones (POA&Ms), collect evidence of completion, and coordinate validation with ISSM, ISSO, and Security Control Assessment teams.
  • Monitor cybersecurity resources, SIEM-integrated logs, anomaly indicators, account aging, compliance status, WAF/NGFW activity, and GovCloud logs; escalate abnormal findings within required timelines.
  • Support daily review of the DC3 Vulnerability Disclosure Program portal and assist with creation and mitigation of associated POA&Ms.
  • Assist with vulnerability assessments and penetration testing for new or modified applications, servers, databases, and infrastructure components before deployment.
  • Support incident reporting, documentation, and coordination with the Incident Response Team and Tier 2 Cybersecurity Service Provider.
  • Contribute to weekly cybersecurity activity reporting, including compliance status, vulnerability assessments, incident management, and risk metrics.
  • Support contingency planning, disaster recovery exercises, SOP audits, and cybersecurity exercise activities as directed.
  • Access SIPRNet and attend classified briefings at the Government facility in Alexandria, Virginia, as required.
  • Working knowledge of NIST RMF, eMASS, DISA STIGs/SRGs, ACAS, POA&Ms, and DoD cybersecurity policies.
  • Ability to analyze vulnerability data, document findings, support risk mitigation, and communicate technical information to Government stakeholders.
  • Familiarity with cloud security monitoring, SIEM tools, incident response processes, and compliance reporting.
Desired Skills and Qualifications
  • Master's degree in Information Technology, Cybersecurity, Information Assurance, or a related field.
  • DoD 8570/8140-aligned certification such as Security+ CE, CySA+, or equivalent
  • Experience supporting DoD agencies with cybersecurity, information assurance, vulnerability management, or RMF activities.
  • Active Top Secret clearance
  • Experience with eMASS or other compliance tracking platforms.
  • Familiarity with cloud security controls and cloud-based compliance requirements.
  • Understanding of Zero Trust principles and cybersecurity modernization strategies.
  • Bachelor's degree in Information Technology, Cybersecurity, Information Assurance, or a related field.
  • Active Secret security clearance.
  • 5+ years of experience in cybersecurity, RMF support, compliance, or information assurance.
  • Experience supporting Federal agencies with cybersecurity, information assurance, vulnerability management, or RMF activities.

Washington, District of Columbia, United States

Full-Time/Regular

PI286597108

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Analyst
Information Security Analyst

CALIBRE Systems Inc • Washington

Hybrid
USD 80,000 - 90,000
Information Security Analyst
Information Security Analyst

CALIBRE Systems, Inc. • Washington

Hybrid
USD 80,000 - 90,000
Information Security Analyst
Information Security Analyst

Socket.dev • Washington

Hybrid
USD 80,000 - 90,000
Senior Information Security Analyst
Senior Information Security Analyst

CALIBRE Systems Inc • Washington

Hybrid
USD 105,000 - 115,000
Senior Information Security Analyst
Senior Information Security Analyst

CALIBRE Systems Inc • Washington

Hybrid
USD 105,000 - 115,000
Senior Information Security Analyst
Senior Information Security Analyst

CALIBRE Systems, Inc. • Washington

Hybrid
USD 105,000 - 115,000
Hybrid work model
Full benefits package
Equal Opportunity Employer
Senior Information Security Analyst
Senior Information Security Analyst

CALIBRE • Washington

Hybrid
USD 105,000 - 115,000
Senior Information Security Analyst
Senior Information Security Analyst

Socket.dev • Washington

Hybrid
USD 105,000 - 115,000
Sr. Cyber Security Analyst
Sr. Cyber Security Analyst

P3S CORPORATION • Dayton (OH)

On-site
USD 95,000 - 120,000
Hybrid Information Security Analyst DoD RMF & Vulnerability
Hybrid Information Security Analyst DoD RMF & Vulnerability

Socket.dev • Washington

Hybrid
USD 80,000 - 90,000