SAIC

Cybersecurity Ops Analyst

SAIC Panama City Beach, Florida, United States

Defense and Space Manufacturing · 10,001+ employees

3 h ago
security Mid (2-5 yrs) Full-time United States
Log in to apply, save this posting, or score it against your profile with AI.

About the role

The Cybersecurity Ops Analyst will maintain the security posture of authorized systems by managing the RMF lifecycle and ensuring compliance with DoD policies. Responsibilities include managing POA&Ms, performing vulnerability remediation, and validating system documentation against federal standards.

What they look for

Cybersecurity Risk Management Framework RMF eMASS Vulnerability Remediation Asset Manager VRAM DoD Cybersecurity Policies DISA STIGs FISMA Information Assurance ACAS Nessus Security Assessment Reports Vulnerability Scanning Compliance

Requirements

Candidates must hold a bachelor's degree in a relevant field or possess 4 years of equivalent experience, along with at least 2 years of cybersecurity experience. A DoD 8570 IAT Level II certification and an active Secret clearance are required.

Full description

SAIC is searching for a Cybersecurity Ops Analyst to join our team supporting the JEXC2 Program, based in Panama City, FL.

In this critical role, you will be responsible for maintaining the security posture of authorized systems, ensuring compliance with DoD cybersecurity policies and regulations, and actively participating in the Risk Management Framework (RMF) lifecycle. This position requires a strong understanding of cybersecurity principles, excellent technical skills, and the ability to work both independently and collaboratively within a dynamic environment, supporting Echelon III cybersecurity activities and contributing to the overall security of our organization.

Responsibilities:

1. Maintain authorized systems’ Plan of Action and Milestones (POA&M) throughout the life cycle (eMASS POA&M Updates, Accreditation Follow-on (ACF), Request submissions, etc.).

2. Ensure eMASS/DITPR-DON records are maintained and up-to-date. Validate all system software against Department of Navy Application and Database Management System (DADMS).

3. Serve as the Vulnerability Remediation Asset Manager (VRAM) Subject Matter Expert (SME), managing VRAM uploads, validating vulnerability remediation data, and coordinating required actions to maintain system cybersecurity compliance.

3. Prepare/review Memorandum for The Record (MFR) and Security Assessment Reports (SAR) for systems requiring baseline change modifications (RMF Use Cases).

4. Prepare, validate, and route Federal Information Security Management Act (FISMA) documentation (Annual Security Review (ASR), Security Control Tests (SCT), and Contingency Plan control testing).

6. Participate in engineering peer-reviews. Review Engineering Change Request (ECR) documents for cybersecurity compliance requirements (DISA STIGs, National Security Agency (NSA), National Institute of Standards and Technology (NIST) and/or Commercial best practice configuration guidance).

6. Maintain situational awareness of all proposed system changes and ensure that all proposed system minor, major or tech refresh updates are vetted against cybersecurity compliance requirements.

7. Track/monitor Vulnerability Remediation Asset Manager (VRAM) for Information Assurance Vulnerability Management (IAVM) bulletins and respond as needed.

8. Maintain approved Cybersecurity Workforce (CSWF) Baseline industry certifications in accordance with cyber directives

Qualifications

Bachelor's degree in Cybersecurity, Information Systems, Computer Science, or related field. 4 additional years of exerpeince in lieu of degree.

2+ years of experience in cybersecurity or information assurance roles with direct experience implementing and maintaining systems under the Risk Management Framework (RMF).

DoD 8570 IAT Level II certification (e.g., Security+, GSEC, SSCP, CCNA Security).

Experience with eMASS and vulnerability scanning tools (e.g., ACAS/Nessus).

Strong understanding of DoD cybersecurity policies and procedures and DISA STIGs.

Active Secret Clearance

SAIC® is a premier mission integrator focused on advancing the power of technology and innovation to serve and protect our world. Our robust portfolio of offerings across the defense, space, intelligence, and civilian markets includes secure high-end solutions in mission IT, enterprise IT, engineering services, and professional services. We integrate emerging technology, rapidly and securely, into mission critical operations that modernize and enable critical national imperatives.

We are approximately 23,000 strong; driven by mission, united by purpose, and inspired by opportunities. SAIC is an Equal Opportunity Employer. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $7.3 billion. For more information, visit saic.com. For ongoing news, please visit our newsroom.

Similar roles