Risk and Compliance Analyst
Experis
Full-time | Contract
Oceanside, CA
Job description
Position Title: Information Systems Security Analyst
Location: Dahlgren, VA 22448 – Surface Combat Systems Training Command (SCSTC) / NSWCDD
Clearance: Active SECRET required
Position Type/Status: Full-Time, On-Site | Contingent upon contract award
OVERVIEW -
We are seeking a highly skilled Information Systems Security Analyst (ISSA) to provide direct cybersecurity support across the SCSTC enterprise. This is a Key Personnel role responsible for safeguarding Navy training networks, ensuring cybersecurity compliance, assessing vulnerabilities, supporting incident response, and strengthening system and network security across SCSTC Headquarters and global detachments.
The ISSA will support RMF/Cybersecurity operations, network defense activities, vulnerability assessments, and protection of training systems critical to fleet readiness.
KEY RESPONSIBILITIES -
Information Assurance & RMF Support:
- Support IA activities across the full lifecycle of Risk Management Framework (RMF), including categorization, control selection, implementation, assessment, authorization, and continuous monitoring.
- Assist in developing, reviewing, and maintaining RMF/ATO artifacts, traceability documents, and compliance evidence.
- Apply knowledge of DIACAP as historical context for legacy systems and compliance requirements.
- Prepare security documentation including SAPs, SARs, POA&Ms, Security Plans, and Residual Risk Statements.
- Ensure compliance with DoD cybersecurity policies, STIGs, SRGs, and Navy security requirements.
Cybersecurity Operations & Threat Analysis:
- Conduct vulnerability analysis, network traffic reviews, incident response support, risk assessments, and ongoing monitoring of system security posture.
- Apply security methodologies and evaluate systems for threats such as buffer overflows, SQL injection, XSS, and configuration weaknesses.
- Support incident detection, triage, escalation, containment, and remediation under Navy cybersecurity procedures.
System Security Engineering & Operational Support:
- Assist in developing and enforcing system security policies, configuration management requirements, and change control compliance.
- Evaluate security solutions to ensure they meet requirements for processing up to classified information.
- Help supervise and maintain the operational security posture of SCSTC systems, networks, and training environments.
- Support the integration of cybersecurity requirements within system engineering processes, design changes, and technology upgrades.
Cloud & Data Security:
- Apply cloud security architecture and best practices across SaaS, IaaS, and PaaS environments.
- Implement data security standards for PII, PCI, PHI, and sensitive Navy training data.
REQUIRED QUALIFICATIONS -
- Bachelor's degree inCybersecurity, Computer Engineering, Electrical Engineering, Electronics Engineering, or Mathematics with a concentration in Computer Science, or an equivalent technical discipline. (HS +5-7 years additional relevant experience accepted).
- Active SECRET security clearance (must be active at time of hire).
- 4+ years of DoD/Navy cybersecurity experience.
- Strong understanding of cybersecurity principles, threat vectors, and vulnerability management.
- Experience with incident response, intrusion detection, and network traffic analysis.
- Knowledge of system/server administration, OS hardening, and network security architecture.
- Familiarity with risk management, continuity of operations, disaster recovery, and security compliance.
- Understanding of cloud service models (SaaS, IaaS, PaaS) and cloud security considerations.
- Knowledge of DoD cybersecurity policies, laws, ethics, and regulatory frameworks.
- IAT Level II certification required (CCNA-Security, GICSP, GSEC, Security+ CE, SSCP, CySA+, CNS, CASP CE, CCNP-Security, or GCIH).
PREFERRED QUALIFICATIONS -
- Prior experience supporting Navy cybersecurity programs, A&A/RMF, VRAM, STIG compliance, or training networks.
- Familiarity with SCSTC operations, Navy schoolhouse environments, or DoD enterprise networks.
- Experience supporting large multi-site or global IT/cybersecurity infrastructures.
Job Types: Full-time, Contract
Pay: $93,000.00 - $120,000.00 per year
Benefits:
- 401(k)
- 401(k) matching
- Dental insurance
- Health insurance
- Life insurance
- Paid time off
- Vision insurance
Education:
- Bachelor's (Required)
Experience:
- DoD/Navy Cybersecurity: 4 years (Required)
License/Certification:
- IAT Level II (Required)
Security clearance:
- Secret (Required)
Ability to Commute:
- Dahlgren, VA (Required)
Work Location: In person