Directviz Solutions - Sierra Vista, AZ

posted 12 days ago

Full-time - Mid Level
Sierra Vista, AZ
Professional, Scientific, and Technical Services

About the position

The Cybersecurity Analyst position at DirectViz Solutions, LLC involves supporting the RCC-CONUS by conducting routine Information Assurance (IA) audits and ensuring compliance with security controls in an enterprise-level environment. The role requires an active Secret clearance and focuses on maintaining security standards, conducting risk assessments, and collaborating with technical teams to mitigate vulnerabilities.

Responsibilities

  • Conduct routine IA audits on all Information Systems to ensure appropriate IA security controls are applied and maintained.
  • Evaluate Information Systems for compliance with Risk Management Framework (RMF) 800-53 Controls and Special Directives.
  • Assist with continuous monitoring of RMF packages within eMASS, including POA&Ms, Test Results, and Risk Assessments.
  • Record and prepare artifacts associated with audits to maintain a current repository of RMF documentation.
  • Provide Certification and Accreditation (C&A) support by conducting risk and vulnerability assessments and developing security and contingency plans.
  • Utilize NIST Special Publications for C&A, system security plans, and risk assessments.
  • Create, edit, and review documentation for clarity and accuracy, and assist in developing security-related TTPs, SOPs, and processes.
  • Use automated security scanning tools to identify potential vulnerabilities.
  • Analyze and report findings to technical teams and leadership for tracking and mitigation.
  • Research RFIs from technical teams regarding DISA STIG checklists and regulations.
  • Explain security requirements to systems administrators for clarity.
  • Review proposed actions from technical teams and recommend secure options while balancing operational needs.
  • Assist in identifying, tracking, and remediating security risks on information systems.
  • Prepare and deliver detailed reports and presentations to senior leaders within the RCC-C.
  • Coordinate with internal and external entities to improve processes and ensure efficient execution of analysis and reporting requirements.
  • Coordinate with cross-functional teams to resolve compliance issues.
  • Support or lead special projects as required.

Requirements

  • Active Secret clearance or ability to obtain one.
  • Experience conducting IA audits and risk assessments.
  • Familiarity with Risk Management Framework (RMF) and NIST 800-53 Controls.
  • Proficiency in using automated security scanning tools (e.g., SCAP, ACAS, BNA).
  • Strong analytical skills to evaluate compliance and report findings.
  • Excellent communication skills for preparing reports and presentations.

Nice-to-haves

  • Experience with eMASS and RMF package management.
  • Knowledge of DISA STIG checklists and security regulations.
  • Ability to work collaboratively with cross-functional teams.

Benefits

  • Health insurance
  • 401k plan
  • Paid holidays
  • Professional development opportunities
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service