Delaware Nation Industries is supporting the Naval Surface Warfare Center Dahlgren Division Dam Neck Activity (NSWCDD DNA). We are providing enterprise management and technical support of the Naval Surface Warfare Center Dahlgren Division Dam Neck Activity (NSWC DD DNA) by providing assistance in policy, procedures, seat refresh, engineering/technical solutions, ordering to Next Generation Enterprise Network (NGEN) and the Naval Networking Environment (NNE) strategy.
Job Summary: The RMF Analyst will assist in developing RMF accreditation packages and assist in maintaining Authorization to Operate (ATO) certifications for networked systems and applications used by the organization. The RMF Analyst will assist in the development of information system documentation and the provision of a designated set of common controls for the authorization package, including the executive summary, system security plan, privacy plan, security control assessment, privacy control assessment, and any relevant plans of action and milestones. This system certification documentation must comply with DoD and Civilian Agency policy focused on NIST 800-37, NIST 800-53 rev 4.
Responsibilities:
Monitor and assess existing Information Security Management and Security Technical Architecture, regulations, and controls (FIPS, NIST, DISN Connection Process Guide(CPG), Navy RMF Process Guide (RPG), Navy Testing Guidance)
Assess proposed Information Security Management and Security Technical Architecture, regulations, and controls (FIPS, NIST, DISN CPG, Navy RPG, Navy Testing Guidance)
Maintain regular meetings/notes and informal dialog with RDT&E CORE/LAB managers and ISSOs to keep them abreast of upcoming Information System Security Manager (ISSM) requirements and to gather specifics on their capability and core support requirements and trends
Maintain records in the Enterprise Mission Assurance Support Service (eMASS)
Evaluating technical testing from Assured Compliance Assessment Solution (ACAS) scans, Evaluate STIG, eMASSter), and Security Technical Implementation Guide Viewer tool using FMATS or other NAVSEA or DoD-approved toolset.
Monitor security access, passwords, badges, log-ins, to keep a site or system safe
Use firewalls and information security standards to keep their organization secure
Perform security assessments, vulnerability testing and risk analysis
Conduct security audits internal and external
Identify the cause of security breaches
Requirements
DoD Top Secret Security Clearance
5+ Years of Experience in Cyber Security
Cyber Security Workforce level IAM II/III CASP,CISM, or CISSP required
Bachelor Degree or Equivalent Work Experience
Familiarity with NIST IT Security Special Publication (SP) 800 Series with emphasis on NIST SP 800-37 and NIST SP 800-53 rev 4/5
Forensics analysis familiarity
Experienced STIG reviewer
Microsoft Visio and Microsoft Project user
Desired:
Navy Qualified Validator (NQV) Level II
Familiarity with ACAS, RedSeal, and Carbon Black
Familiarity with the Vulnerability Remediation Asset Manager (VRAM) web tool
Familiarity with the Continuous Monitoring and Risk Scoring (CMRS) web tool
Numbers & Facts
Location
Virginia Beach, Virginia
Skills
Analysis Skillsunmatched
Asset Managementunmatched
Auditingunmatched
CISM - Certified Information Security Managerunmatched
CISSP - Certified Information Systems Security Professionalunmatched
Computer Securityunmatched
Consumer Packaged Goodsunmatched
Customer Support/Serviceunmatched
DNAunmatched
Documentationunmatched
External Auditunmatched
Federal Information Processing Standards (FIPS)unmatched
Firewallsunmatched
Forensic Scienceunmatched
Information Technology & Information Systemsunmatched
Information/Data Security (InfoSec)unmatched
Internal Auditunmatched
Internet Securityunmatched
Laboratoryunmatched
Laboratory Managementunmatched
Meeting Minutesunmatched
Microsoft Projectunmatched
Microsoft Visiounmatched
Naval Sea Systems Command (NAVSEA)unmatched
Network Systemsunmatched
Privacy Controlsunmatched
Problem Solving Skillsunmatched
Publicationsunmatched
RPG Programming Languageunmatched
Record Keepingunmatched
Regulationsunmatched
Requirements Managementunmatched
Risk Analysisunmatched
Risk Managementunmatched
Security Analysisunmatched
Security Architectureunmatched
Security Attacksunmatched
Security Auditingunmatched
Security Monitoringunmatched
Systems Administration/Managementunmatched
Technical Analysisunmatched
Technical Supportunmatched
Testingunmatched
U.S. National Institute of Standards and Technology (NIST)unmatched
United States Department of Defense (DoD)unmatched
VRAMunmatched
🎯
Be found by employers
5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.
Level up your application
Professional resume templates
Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.