Jobs and Careers
SY

Sr. Security RMF Audit Analyst

Synergy
United States, United Statesfull_timeVerifiedPosted 7 Apr 2026
💰 $120,000/yr($85,000/yr$120,000/yr)

About the role

Synergy Business Innovation & Solutions is a premier implementer of cutting-edge software solutions. Synergy brings the experience and expertise necessary to deliver capability that provides tangible ROI to our customers. Synergy’s core areas of expertise are in the fields of Digital Transformation, Cloud Solutions, SaaS and Low-Code/No-Code solutions, Emerging Technologies, Data analytics and Visualization, Information Assurance, and Business Process Re-Engineering.

Synergy offers its employees a generous portfolio of core and voluntary benefits including: group medical, dental, and vision insurance, company paid life, short-term, and long-term disability insurance; HSA, FSA; 401(k) with immediately vested company match; PTO/Sick Leave, 11 paid federal holidays, parental leave; tuition and training reimbursement; a referral bonus program; and life management programs.

At Synergy, you’ll be challenged and given the opportunity to grow in your career path. In fact, growth is such a big deal to us that you will have dedicated career coaches available for every employee, company-funded certification opportunities, education reimbursement, and a general open-door policy so that you have support when you need it. Our team is eager to learn, fast-paced, and quality-driven—if that sounds like you, Synergy has a position for you!

Position Summary: Synergy is seeking a Sr. Security RMF Audit Analystto support the United States Coast Guard (USCG) at the Aviation Logistics Center (ALC)—Information Systems Division (ISD). The Sr. Security RMF Audit Analyst will lead audit preparation and execution, support continuous RMF lifecycle activities, and oversee compliance with federal cybersecurity requirements across on-premises, virtual, and cloud-hosted systems. This position will serve as a senior technical advisor in security compliance efforts, guiding cross-functional teams through POA&M development, control remediation, ATO documentation, and continuous monitoring in accordance with NIST 800-53, DHS 4300A, and FISMA standards.   Primary Responsibilities: 
  • Oversee the Risk Management Framework (RMF) lifecycle, including assessment, authorization, and continuous monitoring across all ALC-ISD systems. 
  • Lead and coordinate internal and external cybersecurity audits, including pre-audit readiness assessments and post-audit remediation tracking. 
  • Validate the implementation of security controls (NIST SP 800-53 Rev. 5) and ensure they are effectively documented within System Security Plans (SSPs), Security Assessment Reports (SARs), and related artifacts. 
  • Design and implement vulnerability management strategies, assess threat vectors, and develop comprehensive Plans of Action and Milestones (POA&Ms). 
  • Analyze cyber risks and provide guidance on remediation strategies aligned with DHS policy and evolving cybersecurity threats. 
  • Perform and document risk assessments, penetration testing coordination, and impact analyses to evaluate the security posture of information systems. 
  • Collaborate with Security Control Assessors (SCAs), engineers, ISSOs, and DevSecOps teams to ensure audit alignment with enterprise system modernization efforts. 
  • Manage and maintain audit packages, compliance dashboards, and evidence repositories using platforms like Jira, Confluence, and SharePoint. 
  • Assess and validate configurations of infrastructure (e.g., Windows, Linux, databases, Active Directory) for compliance with security benchmarks (e.g., DISA STIGs, CIS). 
  • Draft and update security-related documentation including SOPs, incident response plans, and security test procedures. 
  • Serve as a subject matter expert to stakeholders on RMF best practices, ATO sustainment, and security documentation management. 
  • All other duties as assigned by management. 
Skills/Qualifications: 
  • Advanced knowledge of NIST RMF, NIST SP 800-37, 800-53, DHS 4300A, and FISMA compliance.

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Synergy

View company profile →