Logo of Huzzle

Cybersecurity Analyst

  • Job
    Full-time
    Senior Level
  • Data
    IT & Cybersecurity
  • Washington

AI generated summary

  • You need CompTIA Security+, 5+ years with RMF packages, an active TOP SECRET clearance, NIST knowledge, a relevant degree, and experience with DoD regulations. CISSP is a plus.
  • You will track ATO, conduct risk assessments, implement NIST controls, collaborate on security steps, maintain policies, and stay updated on cybersecurity threats and technologies.

Requirements

  • CompTIA Security+ Certification
  • 5+ years of experience developing Risk Management Framework (RMF) packages
  • An active TOP SECRET Security Clearance
  • Proven track record of implementing effective cybersecurity programs using NIST guidelines
  • Experience with security control implementation, assessment, and authorization
  • Strong understanding of cybersecurity principles, including confidentiality, integrity, and availability
  • Ability to convey complex information clearly, concisely, and accurately in both technical and non-technical contexts
  • Bachelor's degree in computer science, Cybersecurity, or related field
  • A CISSP certification or other relevant certifications
  • Experience working in a fast-paced, dynamic environment
  • Knowledge of DoD, Navy, or federal regulations and guidelines related to RMF and cybersecurity

Responsibilities

  • Track the ATO through its lifecycle and update the package for continued ATO as the system is updated or modified.
  • Develop and implement comprehensive risk management strategies aligned with NIST's RMF guidelines.
  • Conduct thorough risk assessments to identify and prioritize security threats.
  • Select and implement applicable security controls from NIST's Special Publication 800-53.
  • Collaborate with cross-functional teams to ensure effective implementation of the 6 steps (Categorize, Select, Implement, Assess and Authorize, Monitor and Evaluate, Provide Continuous Monitoring).
  • Develop and maintain policies and procedures for cybersecurity program management.
  • Stay current with emerging cybersecurity threats and technologies, and apply knowledge to improve existing programs.

FAQs

What is the primary responsibility of a Cybersecurity Analyst at JRC?

The primary responsibility is to ensure the confidentiality, integrity, and availability of mission-critical systems and data while collaborating with engineering teams to identify and mitigate cybersecurity threats.

What certifications are required for this position?

A CompTIA Security+ Certification is required for this position.

How many years of experience is needed for the Cybersecurity Analyst role?

A minimum of 5 years of experience developing Risk Management Framework (RMF) packages is required.

Is an active security clearance necessary for this position?

Yes, an active TOP SECRET Security Clearance is required for the Cybersecurity Analyst role.

What cybersecurity frameworks and guidelines will I be working with?

You will be working primarily with NIST's Risk Management Framework (RMF) guidelines and implementing security controls from NIST's Special Publication 800-53.

Are there opportunities for professional development and additional certifications?

Yes, there are opportunities for further professional development, and additional certifications such as CISSP or other relevant credentials are viewed favorably.

Will I be collaborating with other teams in the organization?

Yes, you will collaborate with cross-functional teams to ensure effective cybersecurity program implementation and management.

Do I need knowledge of specific regulations to apply?

Yes, knowledge of DoD, Navy, or federal regulations and guidelines related to RMF and cybersecurity is a bonus but not mandatory.

What skills are essential for this position?

Essential skills include a strong understanding of cybersecurity principles, effective communication of complex information, and proven experience in implementing cybersecurity programs using NIST guidelines.

Is there a preferred educational background for this role?

A Bachelor's degree in computer science, Cybersecurity, or a related field is preferred but not mandatory.

JRC is a company of leaders, tackling our nation’s most complex security challenges.

Government
Industry
51-200
Employees
2003
Founded Year

Mission & Purpose

JRC Integrated Systems, Inc. is a systems engineering consulting firm that provides scientific, engineering, and technical expertise to solve complex problems for the Department of Defense and other government agencies. JRC provides leadership and a wealth of experience for mission critical systems.