Staff InfoSec Analyst (Cleared)
Rise8About the role
Your Dream. Our Team.
About Rise8
We’re transforming the United States Government and we know that takes a dream team.
We believe customer experience starts with employee experience, so we take care of our employees. We offer competitive pay and benefits, invest in employee growth, and offer a culture you can’t find anywhere else.
At Rise8, we continuously achieve unreached heights through next-level tech, and on-the-level collaboration. Together, we create continuous impact. We turn breakdowns into breakthroughs, make small steps into giant leaps, and deliver game-changing products through culture-changing process.
We pair Risers with their customer counterparts and practice pairing at every moment to elevate people and teams and deliver results fast and forever. We work in small teams and rotate between them frequently so that we are able to meet new challenges and explore new ideas.
Our methodology is about experimenting and learning, and our culture is empowering. We subscribe to an ethos of kindness. We make a point to bring empathy to each and every project and are guided by a promise and a purpose: to deploy critical outcomes to prod in order to drive relentless progress. Not just an idea. But an outcome. A better world. A world where every day, fewer bad things happen because of bad software.
Rise8 is certified as a Great Place to Work with 100% of employees saying they love working here.
About You
Are you a Staff InfoSec Analyst with extensive expertise across multiple domains, including cloud security, containerization, and compliance? Do you thrive in dynamic environments where collaboration, innovation, and secure delivery are top priorities? At Rise8, we’re looking for someone like you to lead the charge in securing complex systems, while ensuring client satisfaction across projects.
As a Staff InfoSec Analyst at Rise8, you will:
- Lead and collaborate with cross-functional teams to enhance security processes and implement best practices.
- Conduct comprehensive cybersecurity assessments across the entire technology stack to identify vulnerabilities and ensure robust security measures.
- Shape and prioritize the organization’s cybersecurity strategy, identifying key risks and remediation actions to protect critical assets.
- Collaborate with external cybersecurity and compliance organizations to drive changes that align with cRMF practices, accelerating the time to value and enhancing overall security outcomes.
- Lead incident response efforts, conducting root cause analyses and driving improvements to security resilience.
- Educate on cybersecurity best practices and provide regular reports on risks, metrics, and issues to leadership, ensuring informed decision-making and proactive risk management.
- Train and mentor security engineers, fostering growth and up-skilling of the cybersecurity practice team members.
Qualifications
- 10+ years of a combination of development, security and operations experience
- BA/BS in Cybersecurity, Computer Science or related field, or equivalent experience
- Strong understanding of the controls inheritance model and controls automation, shared responsibility model, and an understanding of modern RMF methodologies such as Continuous RMF
- Applying cybersecurity concepts, including threats, vulnerabilities, security operations, encryption, boundary defense, auditing, authentication, and risk management
- Expertise in application, platform, and cloud security including implementing CIS benchmarks and security guidelines
- Applying network firewalls, intrusion detection systems (IDS) and intrusion prevention systems (IPS), anti-malware, vulnerability scanning, encryption, monitoring, and Identity, Credential, and Access Management (ICAM)
- Experience working with government clients, especially in a 'Software Factory' environment, and familiarity with DoD security frameworks and Impact Level (IL) requirements
- Strong communication skills and interest in a client pairing environment
- Relevant cybersecurity certifications such as CISSP, CISM, CEH, or equivalent. Additional cloud or vendor certifications (AWS, GCP, etc.) are a plus
- Located within a commutable distance into El Segundo, CA and can be onsite on a hybrid capacity
- Must have an active TS/SCI security clearance.
Preferred Qualifications:
- Possession of recognized Professional Certifications such as AWS Solutions Architect, CISSP, CISM, GSLC
- Familiarity with Continuous RMF practices and cloud security best practices.
- Proven ability to co
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s