Security Documentation, Audit, and Quality Analyst

chameleonintegratedservices

Washington (District of Columbia)

On-site

USD 110,000 - 160,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Health insurance
Vision plan
401K plan with generous company match
Life insurance
Disability insurance
Training allowance
PTO

Job summary

Chameleon Integrated Services is seeking a Security Documentation, Audit, and Quality Analyst to control the quality, traceability, currency, and acceptance readiness of cybersecurity deliverables for federal initiatives.

You will maintain the evidence repository and deliverable register, perform independent reviews of SSPs, POA&Ms, and assessment artifacts, and support FISMA, IG, GAO, OMB, CISA, and FedRAMP-related requests.

Qualifications

  • At least 5 years of cybersecurity compliance, RMF documentation, audit support, quality control, or federal technical writing.
  • At least 3 years supporting federal cybersecurity documentation.
  • Demonstrated ability to independently review SSPs, SARs, POA&Ms, control evidence, risk assessments, and continuous-monitoring reports.

Responsibilities

  • Control the quality, traceability, currency, and acceptance readiness of cybersecurity deliverables.
  • Maintain the evidence repository and deliverable register; conduct independent reviews of SSPs, POA&Ms, assessment packages, dashboards, situation reports, RCAs, audit responses, and recurring program reports; identify inconsistent or unsupported statements; and track corrections through closure.
  • Support FISMA, IG, GAO, OMB, CISA, independent assessor, penetration-test, and FedRAMP-related evidence requests; ensure audit-ready artifacts.

Skills

Microsoft Word
Microsoft Excel
PowerPoint
SharePoint

Tools

Splunk
Tenable
Qualys
Microsoft Defender
Azure
ServiceNow

Job description

We are a growing information technology company that offers its employees a culture of success, the chance to work on revolutionary federal IT infrastructure, and the opportunity to grow alongside cutting-edge technology that is reshaping the industry. We are seeking forward-thinking candidates that have strong experience in operational support and can help take to the next level in a proactive stance.
Chameleon Integrated Services has expertise in operations management, quality systems, data operations and cybersecurity.We secure some of the most sensitive data for the Department of Defense and for other U.S. federal government agencies.We are known for the great care we take with clients and employees, and we believe in promoting from within.

We offer a Full Benefits package including:
  • Competitive Employee Health Insurance options including dental
  • 100% company paid vision plan
  • 401K plan with generous company match and no vesting period
  • 100% company paid life insurance
  • 100% company paid long and short-term disability insurance
  • Training allowance
  • PTO and more
Security Documentation, Audit, and Quality Analyst
  • Must be a United States citizen.
  • Must be eligible for a Tier 4 High-Risk Public Trust investigation.
  • Strong preference for a current or recently favorably adjudicated Tier 4 or Tier 5 investigation.
Role:

Control the quality, traceability, currency, and acceptance readiness of cybersecurity deliverables. Maintain the evidence repository and deliverable register; conduct independent reviews of SSPs, POA&Ms, assessment packages, dashboards, situation reports, RCAs, audit responses, and recurring program reports; identify inconsistent or unsupported statements; and track corrections through closure. The position will also support FISMA, IG, GAO, OMB, CISA, independent assessor, penetration-test, and FedRAMP-related evidence requests. DFC requires audit-ready SSPs, SARs, POA&M records, control evidence, assessment artifacts, and Splunk-derived logging records that can be produced without a special evidence-collection surge.

The position will also support FISMA, IG, GAO, OMB, CISA, independent assessor, penetration-test, and FedRAMP-related evidence requests. DFC requires audit-ready SSPs, SARs, POA&M records, control evidence, assessment artifacts, and Splunk-derived logging records that can be produced without a special evidence-collection surge.

Minimum Requirements:
  • At least 5 years of cybersecurity compliance, RMF documentation, audit support, quality control, or federal technical writing
  • At least 3 years supporting federal cybersecurity documentation
  • Demonstrated ability to independently review:
    • SSPs
    • SARs
    • POA&Ms
    • Control evidence
    • Risk assessments
    • Continuous-monitoring reports
    • Audit responses
    • Incident reports and RCAs
  • Experience maintaining version control, comment resolution, document traceability, and evidence indexes
  • Experience supporting at least one federal audit, FISMA review, IG review, independent assessment, or comparable inspection
  • Strong Microsoft Word, Excel, PowerPoint, and SharePoint skills
  • Familiarity with a GRC platform and ServiceNow
  • Security+ or CGRC preferred
Competitive Differentiators:
  • CSAM reporting or data-quality experience
  • Experience building deliverable acceptance registers or quality dashboards
  • FISMA, IG, GAO, OMB CyberStat, CISA data-call, or FedRAMP experience
  • Ability to review technical evidence from Splunk, Tenable, Qualys, Microsoft Defender, Azure, and identity platforms
  • Experience measuring first-time acceptance, defect rates, finding closure, and SLA/KPI performance
  • Federal cybersecurity technical-writing background
  • Current Tier 4 or Tier 5 suitability
The resume must clearly identify:
  • Types and volume of deliverables reviewed
  • Audits and assessments supported
  • Evidence repositories or document-control systems maintained
  • Quality-control responsibilities
  • Defects, rework, acceptance, timeliness, or audit-response metrics
  • GRC, SharePoint, ServiceNow, and reporting tools used
  • Examples of correcting inconsistent or unsupported cybersecurity documentation

“We are an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status”

Texting Privacy Policy

  • Message type: Informational; you will receive text messages regarding your application and potentially regarding interview scheduling.
  • No mobile information will be shared with third parties/affiliates for marketing/promotional purposes.
  • Message frequency will vary depending on the application process. Msg & data rates may apply.
  • OPT out at any time by texting "Stop".
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

ISSO / Security Compliance Analyst
ISSO / Security Compliance Analyst

chameleonintegratedservices • Washington

On-site
USD 90,000 - 130,000
Health insurance
Vision plan
401K plan
+4
Senior Cybersecurity Analyst - DAFFM
Senior Cybersecurity Analyst - DAFFM

chameleonintegratedservices • South Dakota

On-site
USD 110,000 - 140,000
Health insurance (dental)
Vision plan
401K plan with company match
+4
Cybersecurity Compliance Analyst
Cybersecurity Compliance Analyst

Socket.dev • Suitland (MD)

Hybrid
USD 115,000 - 125,000
Health, vision and dental insurance
Paid time off
401k
+1
Lead ISSO / Technical Program Lead
Lead ISSO / Technical Program Lead

chameleonintegratedservices • Washington

On-site
USD 180,000 - 260,000
Health insurance
Vision plan (100% company paid)
401K match
+4
Senior Cyber Security Analyst
Senior Cyber Security Analyst

PiTech Solutions Inc • United States

On-site
USD 100,000 - 130,000
Senior Cybersecurity Analyst / RMF Lead
Senior Cybersecurity Analyst / RMF Lead

chameleonintegratedservices • South Dakota

On-site
USD 120,000 - 160,000
Health insurance
Vision plan
401K with match
+4
Information Assurance Engineer III
Information Assurance Engineer III

IPSECURE, INC. • San Antonio (TX)

On-site
USD 120,000 - 160,000
Cyber Security Analyst
Cyber Security Analyst

Pitech Solutions, Inc. • Washington, Northern (KY)

Hybrid
USD 110,000 - 165,000
Information Assurance Engineer III
Information Assurance Engineer III

IPSecure • Chicago (IL)

On-site
USD 120,000 - 160,000
Senior ISSO
Senior ISSO

chameleonintegratedservices • Washington

On-site
USD 120,000 - 150,000
Health insurance
Vision plan
401K match
+4