Assistant ISSO/RMF Cybersecurity Analyst
Job in
Suitland, Prince George's County, Maryland, 20746, USA
Listed on 2026-10-05
Listing for:
Cybersecurity Jobs
Full Time
position Listed on 2026-10-05
Job specializations:
-
IT/Tech
Cybersecurity, Information Security & Data Protection
Job Description & How to Apply Below
The Assistant ISSO/RMF Cybersecurity Analyst will support a USCG information technology support services program in Suitland, MD. In this role, you will serve as an Assistant Information System Security Officer (A-ISSO), assisting assigned systems and enclaves through the Risk Management Framework (RMF) and cybersecurity assessment and authorization (A&A) activities.
Role OverviewThis position supports RMF execution for assigned programs, organizations, systems, or enclaves. The role includes maintaining RMF documentation packages, supporting security assessments and testing, and assisting with control implementation activities required for accreditation.
Responsibilities- Serve as an Assistant Information System Security Officer (A-ISSO) and participate in the RMF process for assigned programs, organizations, systems, or enclaves.
- Gather or generate, assess, and maintain RMF documentation packages tailored to specific systems, including Security Categorization Determinations, Implementation Plans, System Security Plans (SSP), Configuration Management Plans (CMP), Incident Response Plans (IRP), Contingency Plans (CP), authorization documentation, POA&M, Scorecards, Security Assessment Reports (SAR), Continuous Monitoring Strategies, vulnerability scans, hardware/software lists, threat models, cybersecurity strategies, and net (as applicable per assigned package scope).
- Ensure system cybersecurity documentation is current and accessible to properly authorized individuals.
- Interpret system designs and diagrams to identify data interconnections, interfaces, protocols, and data types, then select appropriate controls to remediate or minimize cybersecurity risk exposure.
- Develop plans and perform testing and control assessments to evaluate compliance with applicable security requirements, standards, and best practices.
- Conduct STIG/SRG assessments and Security Readiness Reviews (SRR) for operating systems and applications, leveraging automation to improve efficiency.
- Conduct and review system scans using automated compliance assessment tools and provide documented results to appropriate stakeholders.
- Develop and conduct detailed security assessment briefs and provide cybersecurity risk recommendations to authorizing officials.
- Assist ISSOs and Information System Owners with security control implementation, policy development, and Standard Operating Procedures required for accreditation.
- Bachelor's degree in data science, information systems, computer science, or a related discipline.
- At least five (5) years of Information Assurance and A&A experience, including assessment of information system vulnerabilities and participation in the RMF process.
- Experience developing and maintaining RMF/authorization documentation packages, conducting security control assessments, and supporting continuous monitoring.
- Active/current certifications to qualify as both DoD 8570/8140 IAT Level 2 and IAM Level 2.
- DoD 8570/8140 IAT Level 2 certification, fulfilled by one of the following options:
CompTIA Cybersecurity Analyst (CySA+), CompTIA Security+ CE (Sec+ CE), EC-Council Certified Network Defense (CND) v3, Red Hat Certified System Administrator (RHCSA), CCNA Security, Global Industrial Cyber Security Professional (GICSP), GIAC Security Essentials (GSEC), Systems Security Certified Practitioner (SSCP), CompTIA Advanced Security Practitioner (CASP), Cisco Certified Network Prof. Security (CCNP Security), Certified Information Systems Auditor (CISA), Certified Information Systems Security Professional (CISSP), Certified Cloud Security Professional (CCSP), GIAC Certified Enterprise Defender (GCED), or GIAC Certified Incident Handler (GCIH). - DoD 8570/8140 IAM Level 2 certification, fulfilled by one of the following options:
CompTIA Advanced Security Practitioner (CASP), Certified Information Security Manager (CISM), Certified Information Systems Security Professional (CISSP), Certified Chief Information Security Officer (C-CISO), Health Care Info. Security and Privacy Practitioner (HCISPP), Red Hat Certified System Administrator (RHCSA), Certified Authorization Professional (CAP), or GIAC Security Leadership (GSLC). - Proficiency in Microsoft Office suite and SharePoint.
- Knowledge of data governance and data framework compliance.
- Strong organizational and communication skills.
- Microsoft Office suite, Share Point
- STIG/SRG, RMF
- DHS, DoD 8570/8140
- IAT Level 2, IAM Level 2
- CompTIA Cybersecurity Analyst (CySA+), CompTIA…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×