Senior Cybersecurity Analyst / ISSO

Cybersecurity Jobs

Kearneysville (WV)

Hybrid

USD 115,000 - 145,000

Full time

8 days ago
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

GovCIO LLC is seeking a Senior Cybersecurity Analyst / IS SO for a USCG mission system in Kearneysville, WV, on a hybrid basis. You will serve as aISSO while embedding cybersecurity across the software delivery lifecycle to maintain secure, compliant operations.

Responsibilities include leading RMF, publishing DHS SELC artifacts, coordinating external inspections, tracking POA&Ms, and developing connection approvals for DoDIN/CGOne networks.

Qualifications

  • DoD 8570 IAT Level II certification (Security+ CE, CySA+, CCNA Security, or equivalent).
  • 9+ years of DoD cybersecurity analysis experience in federal environments (application security, software assurance, or cloud security).
  • Experience analyzing and remediating vulnerabilities from automated scanners.
  • Operational understanding of DISA STIGs, NIST RMF, and federal authorization boundaries.

Responsibilities

  • Lead RMF documentation packages and ensure DoD IS documentation is current.
  • Publish artifacts across DHS SELC phases and support A&A submissions.
  • Coordinate external inspections, audits, and assessments with stakeholders.
  • Track POA&Ms, validate weaknesses, and manage risk acceptance or waivers.
  • Develop connection approval packages (ISA, MOU, SLA) for USCG networks to minimize risk.
  • Support RFM processes, participate in change management boards, and conduct SIAs.

Skills

RMF process
A&A submissions
CI/CD security
Security analytics
Stakeholder collaboration
Security readiness

Education

High School diploma + 9+ years experience

Tools

Jira
Azure DevOps
Tenable Security Center
ServiceNow

Job description

GovCIO LLC is looking for a Senior Cybersecurity Analyst / ISSO to support a U.S. Coast Guard (USCG) Software Yard mission system on a hybrid basis in Kearneysville, WV. In this role, you will serve as the designated alternate Information System Security Officer (aISSO) while embedding cybersecurity practices across the continuous software delivery lifecycle to help maintain secure, maintainable, and compliant operations.

Core responsibilities
  • Lead the RMF process by generating, assessing, and maintaining tailored RMF documentation packages using Government tools, including SSP, CMP, IRP, CP, POA&Ms, Scorecards, SAR, threat models, and boundary diagrams, and ensure DoD IS documentation remains current and accessible to authorized personnel.
  • Review, update, and publish artifacts across all DHS SELC phases for unclassified efforts, and support timely A&A submissions to avoid ATO expiration.
  • Coordinate and support external inspections, audits, and assessments, including direct collaboration with stakeholders.
  • Track system POA&Ms from creation through closure, validate AOR weakness remediations, manage proper channel routing, provide status reports, collect closure artifacts, and identify items requiring waivers or risk acceptance.
  • Interpret system designs to identify data interconnections, interfaces, and protocols, then develop connection approval packages such as ISA, MOU, and SLA for USCG LANs (DoDIN, CGOne) to minimize risk.
  • Support organizational Requests for Modification (RFM) processes and procedures, participate in change management boards, and conduct Security Impact Assessments (SIA).
  • Perform testing and control assessments using automated DISA STIG/SRG tools, conduct Security Readiness Reviews (SRR), and analyze automated scans from DISA SCAP/SCC, ACAS, and Nessus.
  • Initiate protective and corrective measures when issues are discovered, establish user reporting pipelines for threats, and coordinate forensic analysis with CGCyber CSOC.
  • Maintain HBSS compliance by reviewing HBSS reports and monitoring and remediating rogue devices.
  • Review exception and exclusion requests and provide technical recommendations for Government approval.
  • Audit system logs and intrusion detection data weekly, request weekly audit triggers to correlate daily records, analyze threat vectors across disparate systems, and report any log data integrity gaps to the Government.
  • Coordinate annual Contingency Plan (CP) training and testing before policy expiration, and manage annual Disaster Recovery (DR) Failover testing and documentation.
Required qualifications
  • DoD 8570 IAT Level II certification (Security+ CE, CySA+, CCNA Security, or equivalent).
  • 9+ years of DoD cybersecurity analysis experience, specializing in application security, software assurance, or cloud security within a federal environment.
  • Experience analyzing and remediating vulnerabilities found by automated scanning tools within modern CI/CD software delivery models.
  • Operational understanding of DISA STIGs, NIST RMF, and federal authorization boundaries.
  • Experience embedding security requirements into Agile engineering frameworks, product backlogs, and rapid release environments.
  • Ability to track, manage, and report cyber risks using enterprise tools such as Jira, Azure DevOps, Tenable Security Center, or ServiceNow.
  • Foundational understanding of diverse IT domains including enterprise architectures.
  • Clearance Required: Public Trust.
  • Education: High School (plus 9+ years, or commensurate experience).
Technology and tools
  • DISA STIG/SRG tools, DISA SCAP/SCC, ACAS, Nessus
  • HBSS, Jira, Azure DevOps, Tenable Security Center, ServiceNow
  • Agile, CI/CD, Kubernetes, Docker, AWS, Azure, OWASP Top 10
  • RMF, SELC, STIG, SRG, SCAP, SCC, CP, DR
Preferred skills
  • Experience supporting U.S. Coast Guard, Software Yard, or Department of Homeland Security (DHS) programs.
  • Familiarity with USCG PEO C5i enterprise security strategies, software assurance policies, and continuous Authority to Operate (cATO) pathways.
  • Relevant professional cybersecurity certifications (highly preferred), such as CISSP, CEH, CISM, or DevSecOps security credentials.
  • Understanding secure containerization concepts (Kubernetes, Docker) and automated security gating in DevSecOps environments.
  • Familiarity with hybrid-cloud architecture (AWS, Azure) and securing web applications against OWASP Top 10.

Location: Kearneysville, WV (hybrid).
Salary: USD $115,000 to $145,000 per year.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Cybersecurity Analyst / ISSO (SWY-CD)
Senior Cybersecurity Analyst / ISSO (SWY-CD)

GovCIO • Kearneysville (WV)

Hybrid
USD 115,000 - 145,000
Journeyman Cybersecurity Analyst
Journeyman Cybersecurity Analyst

GovCIO • Alexandria (VA)

On-site
USD 100,000 - 130,000
Senior Information Security Analyst
Senior Information Security Analyst

Peregrine Technical Solutions, LLC • Petaluma (CA)

On-site
USD 100,000 - 140,000
Medical insurance
Dental insurance
Vision insurance
+3
Senior Information Security Analyst
Senior Information Security Analyst

Peregrine Technical Solutions • Petaluma (CA)

On-site
USD 100,000 - 140,000
Senior Information Security Analyst
Senior Information Security Analyst

Goldbelt, Inc. • Petaluma (CA)

On-site
USD 100,000 - 140,000
Senior Cybersecurity Analyst & ISSO — Hybrid Role
Senior Cybersecurity Analyst & ISSO — Hybrid Role

Cybersecurity Jobs • Kearneysville (WV)

Hybrid
USD 115,000 - 145,000
Senior Information System Security Engineer (ISSE)
Senior Information System Security Engineer (ISSE)

Central Strategies, LLC • Alexandria (VA), Northern (KY)

On-site
USD 140,000 - 190,000
Senior Cybersecurity Analyst & aISSO (Hybrid) - RMF/A&A
Senior Cybersecurity Analyst & aISSO (Hybrid) - RMF/A&A

GovCIO • Kearneysville (WV)

Hybrid
USD 115,000 - 145,000
Assistant ISSO/RMF Cybersecurity Analyst
Assistant ISSO/RMF Cybersecurity Analyst

Cybersecurity Jobs • Suitland (MD)

On-site
USD 82,000 - 112,000
Paid Time Off
401(k) with employer match
Medical Insurance (3 plan options)
+4
SME Systems Engineer (SWY-PACS)
SME Systems Engineer (SWY-PACS)

GovCIO • Kearneysville (WV)

Hybrid
USD 130,000 - 170,000