Logo of Huzzle

Cybersecurity Analyst

  • Job
    Full-time
    Senior Level
  • IT & Cybersecurity
  • Washington

AI generated summary

  • You need CompTIA Security+, 5+ years RMF experience, a TOP SECRET clearance, strong NIST knowledge, a degree in a related field, and preferably CISSP; experience with DoD regulations is a plus.
  • You will track ATO lifecycles, implement risk management strategies, conduct risk assessments, apply NIST controls, collaborate with teams, and maintain cybersecurity policies while monitoring threats.

Requirements

  • CompTIA Security+ Certification
  • 5+ years of experience developing Risk Management Framework (RMF) packages
  • An active TOP SECRET Security Clearance
  • Proven track record of implementing effective cybersecurity programs using NIST guidelines
  • Experience with security control implementation, assessment, and authorization
  • Strong understanding of cybersecurity principles, including confidentiality, integrity, and availability
  • Ability to convey complex information clearly, concisely, and accurately in both technical and non-technical contexts
  • Bachelor's degree in computer science, Cybersecurity, or related field
  • A CISSP certification or other relevant certifications
  • Experience working in a fast-paced, dynamic environment
  • Knowledge of DoD, Navy, or federal regulations and guidelines related to RMF and cybersecurity

Responsibilities

  • Track the ATO through its lifecycle and update the package for continued ATO as the system is updated or modified.
  • Develop and implement comprehensive risk management strategies aligned with NIST's RMF guidelines.
  • Conduct thorough risk assessments to identify and prioritize security threats.
  • Select and implement applicable security controls from NIST's Special Publication 800-53.
  • Collaborate with cross-functional teams to ensure effective implementation of the 6 steps (Categorize, Select, Implement, Assess and Authorize, Monitor and Evaluate, Provide Continuous Monitoring).
  • Develop and maintain policies and procedures for cybersecurity program management.
  • Stay current with emerging cybersecurity threats and technologies, and apply knowledge to improve existing programs.

FAQs

What are the main responsibilities of a Cybersecurity Analyst at JRC?

The main responsibilities include tracking the Authorization to Operate (ATO) lifecycle, developing and implementing risk management strategies aligned with NIST's RMF guidelines, conducting risk assessments, implementing security controls from NIST's Special Publication 800-53, collaborating with cross-functional teams, and maintaining cybersecurity program policies and procedures.

What qualifications are necessary for the Cybersecurity Analyst position?

A CompTIA Security+ certification, 5+ years of experience developing Risk Management Framework (RMF) packages, an active TOP SECRET Security Clearance, and strong understanding of cybersecurity principles are required.

Is there any specific experience required for this position?

Yes, candidates should have a proven track record of implementing effective cybersecurity programs using NIST guidelines and experience with security control implementation, assessment, and authorization.

What additional certifications or education can enhance my application?

Bonus points will be given for a Bachelor's degree in computer science, Cybersecurity, or a related field, a CISSP certification, and experience with DoD, Navy, or federal regulations related to RMF and cybersecurity.

How does JRC ensure the continuous monitoring of cybersecurity threats?

JRC emphasizes the importance of continuous monitoring as part of the cybersecurity program management, which involves regular assessment and evaluation in line with the RMF process.

Are there opportunities for professional development and growth in this role?

Yes, JRC supports professional development and staying current with emerging cybersecurity threats and technologies, which contributes to the personal and career growth of the Cybersecurity Analyst.

What kind of environment will I be working in as a Cybersecurity Analyst?

You will be working in a fast-paced, dynamic environment where collaboration with engineering teams and cross-functional teams is essential to address cybersecurity threats effectively.

Is prior experience with NIST guidelines mandatory for this role?

Yes, candidates must have concrete experience applying NIST guidelines, particularly those related to risk management and the implementation of security controls.

JRC is a company of leaders, tackling our nation’s most complex security challenges.

Government
Industry
51-200
Employees
2003
Founded Year

Mission & Purpose

JRC Integrated Systems, Inc. is a systems engineering consulting firm that provides scientific, engineering, and technical expertise to solve complex problems for the Department of Defense and other government agencies. JRC provides leadership and a wealth of experience for mission critical systems.