Data Systems Analysts, Inc
Information Systems Security Officer (ISSO), Network Security, TS/SCI
Charlottesville, VA
No sponsorship$37k-$800kDetected 29 days ago
TypeScriptPythonPowerShellElasticsearchTerraformAnsibleCybersecurityNetwork SecurityIncident ResponseDNSFirewallVPNCiscoWiresharkZero TrustNetwork EngineeringCommunication
About the role
- This position is onsite in Charlottesville, VA.
- Security clearances may only be granted to U.S. citizens.
Responsibilities
- Support cybersecurity compliance, risk management, and continuous monitoring for enterprise network systems.
- Review and validate security configurations for Cisco routers, switches, firewalls, and related network infrastructure.
- Support DISA STIG validation, SCAP benchmarks, security baselines, and device hardening requirements.
- Conduct, review, and validate vulnerability scans using ACAS, Tenable Nessus, STIG Viewer, and other approved DoD tools.
- Analyze vulnerability findings, identify false positives, document risk, and coordinate remediation with network engineering teams.
- Develop and maintain RMF documentation including SSPs, POA&Ms, Continuous Monitoring artifacts, hardware and software inventories, network diagrams, and control implementation details.
- Support ATO package development, renewal, extension, audit readiness, and authorization sustainment activities.
- Support change control reviews by assessing network changes for cybersecurity, RMF, documentation, and compliance impacts.
- Support incident response activities by reviewing network related alerts, logs, firewall events, syslog data, authentication events, and corrective actions.
- Experience developing or maintaining SSPs, POA&Ms, Continuous Monitoring documentation, control implementation details, and authorization artifacts.
Requirements
- Minimum 4 years of experience supporting cybersecurity, information assurance, network security, RMF, vulnerability management, or secure infrastructure operations.
- Experience supporting cybersecurity activities within the DoD, Intelligence Community, or other secure enterprise environment.
- Familiarity with eMASS for control tracking, package updates, risk documentation, and authorization maintenance.
- Hands on experience with ACAS, Tenable Nessus, STIG Viewer, SCAP, or vulnerability management processes.
- Experience reviewing, validating, or remediating vulnerability findings for network devices or supporting infrastructure.
- Experience applying or validating DISA STIGs, secure configuration baselines, and hardening guidance.
- Working knowledge of Cisco routers, switches, firewalls, Cisco ASA, Cisco Firepower, Cisco Secure Firewall, Cisco ISE, Catalyst, Nexus, ISR, or ASR platforms.
- Working knowledge of routing, switching, VLANs, ACLs, firewall policies, ports, protocols, VPNs, IPsec, NAT, DNS, DHCP, subnetting, logging, and boundary protection.
- Ability to review network diagrams, firewall rule sets, data flows, ports and protocols, and system interconnections for security and compliance impacts.
- Knowledge of NIST SP 800-37, NIST SP 800-53, CNSSI 1253, DISA STIGs, DoD cybersecurity policy, and Intelligence Community cybersecurity requirements.
Compensation
- $37k-$800k
Benefits
- Required Education, Certifications and Security Clearance
Visa & Work Authorization
- Required Education, Certifications and Security Clearance
Apply directly at Data Systems Analysts, Inc →Create a free account for alerts like thisView Data Systems Analysts, Inc immigration profile
This listing is sourced directly from Data Systems Analysts, Inc's careers page and normalized into a canonical job model.