Cyber Technical Analyst
6314 Remote/Teleworker US, United States
Full Time Senior-level / Expert Clearance required USD 104K - 189K
Leidos' Military & Veterans Health Solutions Group is currently seeking an experienced Cyber Technical Analyst in support of the Department of Defense (DoD) Healthcare Management System Modernization (DHMSM) Program. Leidos is a Top 10 Health IT provider drawing on decades of success in delivering solutions to meet the healthcare challenges of today. Our unique position as a technology company with deep health and life sciences expertise equips us to transform patient care, as well as provider and payer operations in commercial and government health organizations.
The Cyber Technical Analyst supports the Cybersecurity Leads with all assigned Risk Management Framework (RMF), Interim Authorization to Test (IATT) and Authority to Operate (ATO) functions.
Responsibilities include, but are not limited to, the following:
Provide Technical Metric support and scheduling coordination for RMF activities supporting the Cyber security Lead
Support the Cybersecurity Leads with all Risk Management Framework (RMF), Interim Authorization to Test (IATT), and Authority to Operate (ATO) functions
Assist with the review of architecture and technical artifacts from a cybersecurity perspective, update Cyber Information Assurance policies and procedures, and associated cybersecurity related documentation.
Serve as the alternate Point of Contact (POC) for all RMF activities with responsibility for coordinating the RMF, and ensuring the inputs satisfy the assessment and authorization of the RMF requirements process that will lead to an IATT and a full ATO from the Authorizing Official assigned to the system
Assist with the development of templates and recommendation of other tools to support risk management and ATO activities.
Assist the Cybersecurity Leads with reviewing authorizations, and providing pre-assessments for all Assessment and Authorization (A&A) systems in DHMSM and utilize DHA policy and eMASS as authoritative source for A&A.
Identify the requirements that are security critical and establish corresponding controls for these requirements
Periodically test and evaluate the effectiveness of information security controls and ensure operational security posture is maintained.
Input data and upload artifacts relevant to this project into eMASS
Develop and/or update the Plan of Action and Milestones (POA&M) to document all known vulnerabilities to correct or mitigate risks. Track Plans of Actions and Milestones (POA&Ms) agency-wide to identify areas of risk as a result of unimplemented POA&Ms.
Track the A&A status for all divisions and programs that have information systems to validate they meet the requirements to protect the data and operations.
Support cybersecurity compliance assessment efforts by providing systems engineering and documentation support.
Ensure all DoD cybersecurity-related documentation is current and accessible to properly authorized individuals.
Assist the Cybersecurity Leads in ensuring the project meets identified milestones
Support the development of cyber strategy and associated documentation and ensure all DoD cybersecurity-related documentation is current and accessible to properly authorized individuals.
Provide Subject Matter Expertise for customer inquiries.
Qualifications
BS degree and 8-12 years of prior relevant experience
US Citizen with Active Secret Clearance or higher – required. Contract requirement.
Minimum of 5 years’ hands-on experience on Defense Health Agency projects in a cybersecurity role.
DoD 8570 Certification
Experience conducting network and network security assessments and documenting the results using NIST SP 800-53A, completing security plans and recommending Security Controls for Federal Information Systems
Documenting recommendations to correct security weaknesses resulting from security assessments and tracking implementation of corrective actions
Developing network and network security policies and system security documentation and procedures
Prior experience with DOD Accreditation and tools such as ACAS, eMASS, CMRS and HBSS
Knowledge of networks, cyber defense toolsets and processes. Strong understanding of related technologies and significant knowledge of networking technologies, operating systems, and security tools, tactics, techniques, and procedures.
Excellent written and verbal communication skills and the ability to effectively interact and work with internal team members, vendors and clients.
Experience with DoD Information Assurance Vulnerability Management (IAVM) Program
Proficiency in ACAS/NESSUS, SCAP, HBSS
eMASS and Continuous Monitoring Risk Scoring System (CMRS) experience
Preferred Qualifications
Experience with DoD Military Health preferred
Scripting knowledge: PowerShell, Python, Shell Scripting
Original Posting Date:
2025-02-11While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.
Pay Range:
Pay Range $104,650.00 - $189,175.00The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.
Tags: ACAS Clearance Compliance Cyber defense DoD DoDD 8570 eMASS Monitoring Nessus Network security NIST POA&M PowerShell Python Risk management RMF SCAP Scripting Security assessment Strategy Vulnerabilities Vulnerability management
Perks/benefits: Equity / stock options
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.