Information Security Analyst, Journeyman (PMA-271)
Davis Defense Group, Inc.About the role
Description
Position Title: Information Security Analyst, Journeyman (PMA-271)
Position Type: Exempt
Requisition #: 130
Location: Pax River, MD (on-site 90%)
Clearance Level Required: A minimum of SECRET, with the ability to obtain Top-Secret Security Clearance
Davis Defense Group, Inc. has secured a stellar reputation as one of the premier Women-Owned Small Business (WOSB) in the aerospace and defense industry, steadfastly supporting the Department of Defense since 2002. A critical combination of vision and dedication to excellence has helped our customers achieve numerous significant milestones on schedule and within budget. Today we employ over 700 personnel around the globe in a mix of analytical, advisory, technical, and support positions. The common thread across our organization is our commitment to our customers and an unwavering dedication to our principle motto: “Services you need. Integrity you can count on.”
Functional Description:
As an Information Security Analyst, ensure the compliance with DoD cybersecurity policy and technical cybersecurity solutions. Work within USSTRATCOM or Nuclear, Command, Control, and Communications (NC3) cybersecurity methodologies. Lead or participate on teams to achieve and maintain system ATO and other applicable cybersecurity policy. Regularly interact with senior leadership, information technology professionals, IPT Leads, and other stakeholders. The Information Security Analyst works in a fast-paced office environment that demands attention to detail, professionalism, and leadership.
- Support the certification process and testing in accordance with the Risk Management Framework (RMF) and National Institute of Standards and Technology (NIST) policy.
- Provide the analysis and evaluation to design, implement, test and field secure systems, networks, and architectures.
- Enforce information systems security policies ensuring system security requirements are addressed during all phases of the Information System (IS) life cycle.
- Evaluate and recommend actions in the prioritization and deconfliction of system security engineering requirements.
- Identify vulnerabilities and deficiencies and provide recommended actions and risk mitigation steps.
- Implement and ensure information systems security policies and security requirements are addressed during all phases of the acquisition and Information System (IS) lifecycle.
- Plan, implement, upgrade, or monitor security measures for the protection of computer networks and information.
- Assess system vulnerabilities for security risks and propose and implement risk mitigation strategies.
- Assist the government in preparing documentation supporting Authority to Operate (ATO) requirements for developmental hardware, software, and facilities. Support system security engineering, integration management solutions, mitigation strategies to reduce cyber-attacks risk.
- Track and monitor Plan of Action and Milestones (POA&Ms) for IT system accreditations.
Responsibilities:
- Responsible for computer network, systems, and information security.
- Assess new technologies for integration into multiple enterprise systems.
- Prepare RMF documentation for HW, SW, and facilities.
- Assess system vulnerabilities and develop strategies to mitigate risk.
- May respond to computer security breaches and viruses.
Required Experience:
At least 3 years of combined experience described in the functional description.
Desired Experience:
- Experienced in the design, analysis and fielding of secure system architectures, software and networks.
- Advanced knowledge of DOD Risk Management Framework (RMF).
- Advanced knowledge of DOD cybersecurity policy or technical cybersecurity solutions.
- Experience with CISCO routers and switches. Experience with Windows and Linux operating systems.
- Demonstrated work Experience with usage of Assurance Compliance Assessment Solution (ACAS).
- Demonstrate work experience with mitigating STIG findings and/or assistance with mitigation statements.
- Experience with Enterprise Mission Assurance Support System (eMASS).
- Experience with Vulnerability Remediation Asset Manager (VRMAM).
- Experience with Microsoft Office Tools including Word, Excel, PowerPoint and Visio.
Education Requirements:
- Minimum of 3 years of combined experience performing duties described in the functional description.
- BA/BS degree.
- Four (4) years addi
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s