Security Assessment & Authorization (SA&A) Analyst (Job 1453)

DHL Holdings Corp

Austin (TX)

On-site

USD 102,000 - 115,000

Full time

7 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

401(k) Retirement Plan
PTO

Job summary

DLH Corp is seeking a Security Assessment & Authorization Analyst to develop Authority to Operate (ATO) security packages and documentation across the RMF lifecycle. You will work with customers to understand technologies, assess vulnerabilities, document security controls, and manage POA&Ms to move solutions through authorization.

The ideal candidate has 3+ years in ATO/RMF, cloud security experience (AWS/Azure/GCP), and relevant certifications. A Public Trust clearance is required.

Qualifications

  • Bachelor’s degree in information technology, cybersecurity, or a related field.
  • Minimum of three (3) years of experience in developing and maintaining ATO security packages and helping customers with the RMF and ATO lifecycle.
  • Experience developing clear, concise documentation describing system configuration, operations, and security controls.
  • Prior experience with Cloud Security (AWS, Azure, GCP) within a large government environment (FedRAMP certified) preferred.
  • Prior experience with the RMF lifecycle and supporting customers to obtain Authority to Operate security packages.
  • Prior experience working with security tools such as Tenable, Splunk, and GRC JCAM.
  • Working knowledge of Federal security guidelines, standards, and control frameworks (such as NIST SP 800-53).
  • Relevant certifications (e.g., CGRC (CAP), CISA, CompTIA Security+, CISSP) required.
  • Must be able to obtain a Public Trust clearance.

Responsibilities

  • Support the development and maintenance of ATO security packages and authorization documentation.
  • Assess security controls to ensure compliance with NIST 800-53 requirements.
  • Develop, manage, and update Plans of Action & Milestones (POA&Ms).
  • Analyze STIG and SCAP requirements to ensure document compliance.
  • Track vulnerabilities through remediation, mitigation, and/or risk acceptance.
  • Evaluate environmental and configuration changes to determine impacts to the security posture of assigned systems.
  • Recommend mitigating controls and countermeasures.
  • Strong knowledge of security standards and best practices.
  • Excellent problem-solving and analytical skills.
  • Strong cross-team collaboration and coordination across diverse audiences and stakeholders

Skills

Analytical skills
Cross-team collaboration
Security standards
Problem solving
Communication

Education

Bachelor’s degree in IT/Cybersecurity
Certifications: CGRC (CAP), CISA, CompTIA Security+, CISSP

Tools

Tenable
Splunk
GRC JCAM
NIST SP 800-53

Job description

About Us

DLH delivers improved health and national security readiness solutions for federal programs through science, research and development, systems engineering and integration, and digital transformation. Our experts in public health, performance evaluation, and health operations solve the complex problems faced by civilian and military customers alike by leveraging advanced tools – including digital transformation, artificial intelligence, data analytics, cloud enablement, modeling, and simulation, and more. DLH is dedicated to the idea that “Your Mission is Our Passion” and brings a unique combination of government sector experience, proven methodology, and unwavering commitment to innovation to improve the lives of millions.

Overview

DLH is seeking a Security Assessment & Authorization Analyst to join our team. The Security Assessment & Authorization Analyst is responsible for developing and maintaining Authority to Operate (ATO) security packages and authorization documentation and working across the Risk Management Framework (RMF) lifecycle for assigned systems. You will have worked with customers to understand technologies, develop security documentation, assess vulnerabilities, document and implement security controls, manage POA&Ms, and help move solutions successfully through authorization. The ideal candidate will have experience developing ATO packages, be knowledgeable about RMF, and enjoy working across diverse teams to solve cybersecurity and compliance challenges.

Responsibilites
  • Support the development and maintenance of ATO security packages and authorization documentation
  • Assess security controls to ensure compliance with NIST 800-53 requirements
  • Develop, manage, and update Plans of Action & Milestones (POA&Ms)
  • Analyze STIG and SCAP requirements to ensure document compliance
  • Track vulnerabilities through remediation, mitigation, and/or risk acceptance
  • Evaluate environmental and configuration changes to determine impacts to the security posture of assigned systems
  • Recommend mitigating controls and countermeasures
  • Strong knowledge of security standards and best practices.
  • Excellent problem-solving and analytical skills.
  • Strong cross-team collaboration and coordination across diverse audiences and stakeholders
Qualifications
  • Bachelor’s degree in information technology, Cybersecurity, or a related field
  • Minimum of three (3) years of experience in developing and maintaining ATO security packages and helping customers with the RMF and ATO lifecycle
  • Experience developing clear, concise documentation describing system configuration, operations, and security controls
  • Prior experience with Cloud Security (AWS, Azure, GCP) within a large government environment (FedRAMP certified) preferred
  • Prior experience with the RMF lifecycle and supporting customers to obtain Authority to Operate security packages
  • Prior experience working with security tools such as Tenable, Splunk, and GRC JCAM
  • Working knowledge of Federal security guidelines, standards, and control frameworks (such as NIST SP 800-53)
  • Relevant certifications (e.g., CGRC (CAP), CISA, CompTIA Security+, CISSP) required.
  • Must be able to obtain a Public Trust clearance
Basic Compensation: $102,000 - $115,000 yearly salary

The salary range listed reflects what we reasonably expect to pay for this role at the time of posting. The final offer may vary based on skills, experience, geographic location, market conditions, and internal equity. Additional compensation may include performance incentives and program-specific awards. We do not use salary history to determine compensation, in line with applicable law.

Benefits

DLH Corp offers our employees an excellent benefits package, including Personal Time Off (PTO), medical, dental, vision, supplemental life with AD&D, disability coverage, flexible spending accounts, and more. We want our employees to save for their future; therefore, we offer a 401(k) Retirement Plan, which includes a matching component. DLH is dedicated to your career development, providing training to help drive success, with access to our best-in-class e-learning suite for formal and informal learning, professional and technical certification preparation, and education assistance at accredited institutions.

EEO

DLH Corporation is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment. DLH will provide reasonable accommodation to individuals with disabilities and disabled Veterans who need assistance to apply.

DLH is committed to maintaining a fair and authentic interview process

Equal employment opportunity, including veterans and individuals with disabilities.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Assessment & Authorization (SA&A) Analyst (Job 1453)
Security Assessment & Authorization (SA&A) Analyst (Job 1453)

Socket.dev • Bethesda (MD)

On-site
USD 102,000 - 115,000
Security Assessment & Authorization (SA&A) Analyst, Sr (Job 1457)
Security Assessment & Authorization (SA&A) Analyst, Sr (Job 1457)

DHL Holdings Corp • Austin (TX)

On-site
USD 135,000 - 150,000
401(k) Retirement Plan
Paid time off (PTO)
Healthcare benefits
Security Assessment & Authorization (SA&A) Analyst, Sr (Job 1457)
Security Assessment & Authorization (SA&A) Analyst, Sr (Job 1457)

Socket.dev • Bethesda (MD)

On-site
USD 135,000 - 150,000
401(k) Matching
Medical Insurance
Dental & Vision
Security Assessment & Authorization (SA&A) Analyst (Job 1453)
Security Assessment & Authorization (SA&A) Analyst (Job 1453)

DLH • Bethesda (MD)

On-site
USD 102,000 - 115,000
PTO
Medical insurance
Dental insurance
+4
Security Assessment & Authorization (SA&A) Analyst (Job 1453)
Security Assessment & Authorization (SA&A) Analyst (Job 1453)

DLH Corp • Bethesda (MD)

On-site
USD 102,000 - 115,000
PTO
Medical Insurance
Dental Insurance
+5
Security Assessment & Authorization (SA&A) Analyst (Job 1458)
Security Assessment & Authorization (SA&A) Analyst (Job 1458)

Socket.dev • Bethesda (MD)

On-site
USD 115,000 - 126,000
PTO
401(k) Plan
Healthcare coverage
Security Assessment & Authorization (SA&A) Analyst, Sr (Job 1457)
Security Assessment & Authorization (SA&A) Analyst, Sr (Job 1457)

DLH Corp • Bethesda (MD)

On-site
USD 135,000 - 150,000
401(k) matching
Paid time off (PTO)
Security Assessment & Authorization (SA&A) Analyst, Sr (Job 1457)
Security Assessment & Authorization (SA&A) Analyst, Sr (Job 1457)

DLH • Bethesda (MD)

On-site
USD 135,000 - 150,000
PTO
Medical insurance
Dental Insurance
+4
Security Assessment & Authorization (SA&A) Analyst (Job 1458)
Security Assessment & Authorization (SA&A) Analyst (Job 1458)

DHL Holdings Corp • Austin (TX)

On-site
USD 115,000 - 126,000
Personal Time Off (PTO)
401(k) Retirement Plan
E-learning & certification support
Acquisition Security & Privacy Analyst (Job 1456)
Acquisition Security & Privacy Analyst (Job 1456)

Socket.dev • Bethesda (MD)

On-site
USD 115,000 - 125,000