Information Security Analyst

CALIBRE
  • Washington, DC
  • $80,000–$90,000
  • Full-time
2 days ago

Job Description

CALIBRE Systems, Inc., an employee-owned mission focused solutions and digital transformation company, is looking for a highly qualified Journeyman Information Security Analyst to support a DoD client with enterprise cybersecurity for a large program serving military families. This position will be hybrid with some required meetings in Alexandria, VA.

The role combines cybersecurity operations, compliance, vulnerability management, incident response, and Risk Management Framework (RMF) activities for Department of Defense cloud and information systems. The analyst will help maintain compliance with DoD, DISA, U.S. Cyber Command, MC&FP, NIST RMF, Zero Trust, STIG/SRG, ACAS, and eMASS requirements while supporting the attainment and sustainment of Government-issued Authorizations to Operate (ATOs).

An active Secret clearance is required for this role.

Salary range for this position is $80k-$90k

Key Responsibilities:

·       Support RMF documentation, security control implementation, assessment activities, and ATO sustainment using the DoD enterprise eMASS platform.

·       Conduct weekly DISA STIG/SRG and ACAS vulnerability assessments, assist with remediation tracking, and prepare raw scan outputs, weekly threat reports, and ACAS roll-up reports.

·       Maintain and update Plans of Action and Milestones (POA&Ms), collect evidence of completion, and coordinate validation with ISSM, ISSO, and Security Control Assessment teams.

·       Monitor cybersecurity resources, SIEM-integrated logs, anomaly indicators, account aging, compliance status, WAF/NGFW activity, and GovCloud logs; escalate abnormal findings within required timelines.

·       Support daily review of the DC3 Vulnerability Disclosure Program portal and assist with creation and mitigation of associated POA&Ms.

·       Assist with vulnerability assessments and penetration testing for new or modified applications, servers, databases, and infrastructure components before deployment.

·       Support incident reporting, documentation, and coordination with the Incident Response Team and Tier 2 Cybersecurity Service Provider.

·       Contribute to weekly cybersecurity activity reporting, including compliance status, vulnerability assessments, incident management, and risk metrics.

·       Support contingency planning, disaster recovery exercises, SOP audits, and cybersecurity exercise activities as directed.

·       Access SIPRNet and attend classified briefings at the Government facility in Alexandria, Virginia, as required.



Required Skills

·       Working knowledge of NIST RMF, eMASS, DISA STIGs/SRGs, ACAS, POA&Ms, and DoD cybersecurity policies.

·       Ability to analyze vulnerability data, document findings, support risk mitigation, and communicate technical information to Government stakeholders.

·       Familiarity with cloud security monitoring, SIEM tools, incident response processes, and compliance reporting.

Desired Skills and Qualifications:

·       Master’s degree in Information Technology, Cybersecurity, Information Assurance, or a related field.

·       DoD 8570/8140-aligned certification such as Security+ CE, CySA+, or equivalent

·       Experience supporting DoD agencies with cybersecurity, information assurance, vulnerability management, or RMF activities.

·       Active Top Secret clearance

·       Experience with eMASS or other compliance tracking platforms.

·       Familiarity with cloud security controls and cloud-based compliance requirements.

·       Understanding of Zero Trust principles and cybersecurity modernization strategies.

 



Required Experience

·       Bachelor’s degree in Information Technology, Cybersecurity, Information Assurance, or a related field.

·       Active Secret security clearance.

·       5+ years of experience in cybersecurity, RMF support, compliance, or information assurance.

·       Experience supporting Federal agencies with cybersecurity, information assurance, vulnerability management, or RMF activities.

Numbers & Facts

LocationWashington, DC
Job TypeFull-time
Salary$80,000–$90,000

Skills

  • Cloud Computingunmatched
  • Computer Securityunmatched
  • Contingency Plansunmatched
  • Data Analysisunmatched
  • Defense Information Systems Agency (DISA)unmatched
  • Disaster Recoveryunmatched
  • Documentationunmatched
  • Federal Governmentunmatched
  • Governmentunmatched
  • Incident Managementunmatched
  • Incident Responseunmatched
  • Information Technology & Information Systemsunmatched
  • Information/Data Security (InfoSec)unmatched
  • Internet Securityunmatched
  • Maintain Complianceunmatched
  • Metricsunmatched
  • Militaryunmatched
  • Penetration Testingunmatched
  • Regulatory Complianceunmatched
  • Riskunmatched
  • Risk Managementunmatched
  • Risk Management Framework (RMF)unmatched
  • Secret Clearanceunmatched
  • Security Analysisunmatched
  • Security Clearanceunmatched
  • Security Information and Event Management (SIEM)unmatched
  • Security Monitoringunmatched
  • Standard Operating Procedures (SOP)unmatched
  • Support Documentationunmatched
  • Systems Analysisunmatched
  • U.S. National Institute of Standards and Technology (NIST)unmatched
  • United States Department of Defense (DoD)unmatched
  • Web Programmingunmatched

Be found by employers

5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

Level up your application

Professional resume templates

Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

Free resume templates

Free resume builder

Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

Free resume builder