NCIS Cyber Security Analyst | Active TS/SCI clearance

General Dynamics - IT

Quantico (VA)

On-site

USD 100,000 - 150,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

General Dynamics IT is seeking a Cyber Security Analyst to support RMF A&A activities for NCIS at Quantico. The role emphasizes Navy security practices, ACAS vulnerability management, eMASS-based package maintenance, and STIG compliance.

The position requires active TS/SCI clearance, 5+ years in cyber security, and a BS degree or equivalent experience. Onsite work at Quantico, VA with US citizenship is required.

Qualifications

  • Active TS/SCI clearance; Top Secret with SCI Eligibility acceptable.
  • 5+ years in systems security with Navy cybersecurity practices.
  • Experience developing RMF A&A Security Plans, SLCM, PPSM, HBSS, ACAS, and STIGs.
  • Experience with eMASS and XACTA tools.
  • Experience with public key–based technologies.
  • CompTIA Security+ CE certification.
  • BS Degree or 4 years of experience in lieu of degree.
  • Location onsite at Quantico, VA; US citizenship required.

Responsibilities

  • Support RMF A&A artifacts and RMF package submission per Navy guidance.
  • Review STIGs and ensure DoD RMF compliance.
  • Test and document RMF security controls and provide evidence for A&A packages.
  • Perform 90 Day Baseline Scans; produce DVL and ACAS reports.
  • Conduct weekly/as-needed ACAS scans for RMF steps; report vulnerability status.
  • Perform risk analyses during SDLC using ACAS.
  • Initiate and maintain RMF A&A packages in eMASS and eMASS/XACTA.

Skills

RMF A&A
ACAS
eMASS
STIGs
HBSS
PPSM
Public key crypto

Education

BS Degree or equivalent

Tools

XACTA
eMASS
ACAS

Job description

Transform technology into opportunity as a Cyber Security Analyst with GDIT. A career in enterprise IT means connecting and enhancing the systems that matter most. At GDIT you’ll be at the forefront of innovation and play a meaningful part in improving how agencies operate.

TheNaval Criminal Investigative Service (NCIS)is an organization of over 2,200 personnel of which 700 serve at HQ and the remaining staff serve at offices worldwide. NCIS is the Department of Navy (DON) component with primary responsibility for criminal investigation, law enforcement (LE), counter-terrorism (CT), counterintelligence (CI), and cyber matters. NCIS not only has primary responsibility for all criminal investigative, CI, CT, and cyber matters within the DON, but it also has exclusive investigative jurisdiction in non-combat matters involving actual, potential, or suspected criminal, terrorism, sabotage, espionage, and subversive activities.

**This position is pending contract award in September 2026 timeframe. **

MEANINGFUL WORK AND PERSONAL IMPACT

As a Cyber Security Analyst, the work you’ll do at GDIT will be impactful to the mission of the NCIS ITD organization in Quantico, VA

  • Supports all authorization package ACAS related tasks assigned to Issues and NQVs. The goal is to provide the required artifacts IAW the Navy Testing Guidance and Risk Management Framework (RMF) Process Guide required for the submission of an RMF Authorization package.

  • Manages and validates system security compliance by reviewing Security Technical Implementation Guides (STIGs); utilizes scanning tools to assess and report on STIG compliance, ensuring all security configurations meet DoW requirements and support the RMF A&A process.

  • Executes and documents the testing of RMF security controls to validate their effectiveness and compliance with NCIS policies, providing evidence of control implementation for Assessment & Authorization (A&A) packages.

  • Applies a comprehensive understanding of NIST SP 800-53 Revision 5 to select, tailor, and document security and privacy controls, ensuring alignment with federal requirements and the specific operational needs of the authorization package

  • Performs 90 Day Baseline Scans for each Authorization package in accordance with Navy requirements; provide Detailed Vulnerability List (DVL) Reports for use in the eMASS record; provide ACAS Summary Reports in accordance with the Navy Testing Guidance.

  • Conducts weekly and “As Needed” ACAS scans in support of RMF STEP 3/STEP 4 processes, vulnerability assessments and queries specifically targeting authorization package assets; support continuous monitoring for authorized packages and report vulnerability status of all active Enterprise Security packages; create asset lists using provided hardware lists.

  • Performs risk analyses of computer systems and applications during all phases of the system development life cycle using the Assured Compliance Assessment Solution (ACAS) tool.

  • Initiates Enterprise Mission Assurance Support Service (eMASS) registrations, prepares, processes, updates and monitors RMF Assessment and Authorization (A&A) packages; ensures A&A packages are evaluated and maintained in a compliant status; implements and validates A&A packages to ensure security controls and vulnerabilities meet DON RMF authorization compliance requirements.

WHAT YOU’LL NEED TO SUCCEED:

Bring your cybersecurity expertise along with a drive for innovation to GDIT. Our Cyber Security Analyst must have:

  • Security Clearance Level: Active TS/SCI required. A Top Secret clearance with SCI Eligibility is also acceptable.

  • Required Experience:

  • 5+ years of experience in the systems security discipline with specific emphasis on Navy Cybersecurity practices.

  • Experience in the development of RMF Assessment and Authorization (A&A) Security Plans (SP), System Level Continuous Monitoring (SLCM), Ports, Protocols and Services Management (PPSM), Host Based Security Systems (HBSS), Assured Compliance Assessment Solution (ACAS) vulnerability scanning and Security Technical Implementation Guides (STIGs).

  • Experience with Enterprise Mission Assurance Support Service (eMASS) tools.

  • Experience preparing, processing, assessing, validating, and maintaining RMF A&A packages using eMASS and XACTA tools.

  • Experience with using public key-based technologies for applications.

  • Required Certifications: CompTIA Security+ CE

  • Education: BS Degree or 4 years additional experience in lieu of degree.

  • Location: Onsite at Quantico, VA

  • Position Availability: This position is pending contract award in September 2026 timeframe.

  • US Citizenship required

WHAT WE'D LOVE FOR YOU TO HAVE:
  • Completed Navy RMF training

  • Formal ACAS training

  • Formal eMASS training

GDIT IS YOUR PLACE

At GDIT, the mission is our purpose, and our people are at the center of everything we do.

  • Growth: AI-powered career tool that identifies career steps and learning opportunities

  • Support: An internal mobility team focused on helping you achieve your career goals

  • Rewards: Comprehensive benefits and wellness packages, 401K with company match, and competitive pay and paid time off

  • Community: Award-winning culture of innovation and a military-friendly workplace

OWN YOUR OPPORTUNITY

Explore a career in cyber at GDIT and you’ll find endless opportunities to grow alongside colleagues who share your focus on defending and protecting what matters.

#NCIScareers

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

NCIS Network Administrator (NetOps/ITSC) | Active TS/SCI clearance
NCIS Network Administrator (NetOps/ITSC) | Active TS/SCI clearance

General Dynamics Information Technology • Quantico (VA)

On-site
USD 48,000 - 65,000
NCIS Network Engineer | Shift Work | Active TS/SCI clearance
NCIS Network Engineer | Shift Work | Active TS/SCI clearance

General Dynamics Information Technology • Quantico (VA)

On-site
USD 111,000 - 150,000
Medical plan options
Dental plan options
Vision plan
+4
NCIS Systems Administrator | Shift Work | Active Top Secret clearance
NCIS Systems Administrator | Shift Work | Active Top Secret clearance

General Dynamics Information Technology • Quantico (VA)

On-site
USD 111,000 - 150,000
NCIS Program Analyst | Active TS/SCI clearance
NCIS Program Analyst | Active TS/SCI clearance

General Dynamics Corporation • Virginia (IL), Northern (KY)

Hybrid
USD 73,000 - 99,000
401K with company match
Flexible work options
Comprehensive benefits and paid time‑0
+1
NSIPS Cybersecurity Manager | Secret Clearance
NSIPS Cybersecurity Manager | Secret Clearance

General Dynamics Information Technology • New Orleans (LA)

On-site
USD 148,000 - 200,000
Deputy Program Manager | TS/SCI clearance
Deputy Program Manager | TS/SCI clearance

General Dynamics - IT • Quantico (VA)

On-site
USD 120,000 - 180,000
NCIS Program Analyst | Active TS/SCI clearance
NCIS Program Analyst | Active TS/SCI clearance

Socket.dev • Quantico (VA)

On-site
USD 73,000 - 99,000
NCIS Software Developer | Active Secret clearance
NCIS Software Developer | Active Secret clearance

General Dynamics - IT • Kansas

Hybrid
USD 110,000 - 150,000
Cybersecurity Analyst (Risk Management Framework) – TS/SCI w/ Polygraph
Cybersecurity Analyst (Risk Management Framework) – TS/SCI w/ Polygraph

General Dynamics - IT • Corridor North (MD)

On-site
USD 90,000 - 140,000
401K with company match
Competitive pay and paid time off
Internal mobility team
+1
NCIS Systems Administrator | Shift Work | Active Top Secret clearance
NCIS Systems Administrator | Shift Work | Active Top Secret clearance

General Dynamics - IT • Quantico (VA)

On-site
USD 90,000 - 130,000