Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cybersecurity Compliance Analyst

$115k - $125k

RCG

Cybersecurity Compliance Analyst

ISSO Support | Continuous Monitoring | Security Control Assessments

Location: Suitland, MD (Hybrid)
Work Schedule: Full-Time | Hybrid (3 Days On-Site / 2 Days Telework)
Clearance Requirement: U.S. Citizenship Required | Must be Eligible to Obtain a Secret Clearance
Salary Range: $115,000 – $125,000

Who We Are

At RCG, Inc. , we're more than just a federal contracting company—we're a team of innovators, problem-solvers, and collaborators dedicated to delivering exceptional technology solutions that support critical government missions.

We're proud to have been Certified™ as a Great Place to Work® for four consecutive years , a recognition that reflects our commitment to fostering a culture of trust, collaboration, inclusion, and professional growth. We believe our people are our greatest strength, and we're committed to creating an environment where employees can build rewarding careers while making a meaningful impact.

The Opportunity

RCG is seeking a Cybersecurity Compliance Analyst to support Information System Security Officers (ISSOs) in maintaining cybersecurity compliance for assigned federal FISMA systems.

This role is focused on the day-to-day coordination and execution of cybersecurity compliance activities, including Continuous Monitoring, Security Control Assessments (SCAs), RMF and A&A/ATO support, POA&M tracking, vulnerability remediation, and security documentation .

The successful candidate will work under the direction of the ISSO and collaborate closely with System Owners, engineers, system administrators, and other technical stakeholders to ensure cybersecurity documentation, evidence, and supporting artifacts are complete, current, accurate, and ready for Government or assessor review.

What You'll Do
Cybersecurity Compliance & Continuous Monitoring
  • Provide day-to-day cybersecurity compliance and systems-analysis support to assigned ISSOs and FISMA systems.
  • Prepare, maintain, and update Continuous Monitoring schedules, trackers, packages, and supporting documentation.
  • Collect, organize, review, and track security-control evidence and supporting artifacts for recurring compliance activities.
  • Maintain compliance calendars, action-item logs, deliverable trackers, and status reports for ISSO review.
  • Identify missing, overdue, or incomplete compliance requirements and escalate risks, deficiencies, or schedule concerns to the ISSO.
  • Support recurring compliance meetings, cybersecurity data calls, assessment activities, and status reporting.
Security Control Assessments & Audit Readiness
  • Prepare Security Control Assessment documentation and evidence packages.
  • Coordinate security-control evidence and artifact requests with system and technical stakeholders.
  • Maintain assessment trackers and document outstanding evidence requests.
  • Track SCA findings through remediation and closure.
  • Review cybersecurity documentation and supporting artifacts for completeness, consistency, currency, and readiness for Government or assessor review.
  • Support audit and assessment readiness by maintaining complete, current, and traceable documentation and evidence for internal and external reviews, assessments, inspections, and authorization activities.
RMF, A&A & Security Documentation
  • Support NIST Risk Management Framework (RMF) and Assessment & Authorization (A&A)/Authority to Operate (ATO) activities.
  • Develop, update, and perform quality reviews of cybersecurity documentation, including:
    • System Security Plans (SSPs)
    • FIPS 199/200 documentation
    • Risk assessments
    • Security-control implementation statements
    • Authorization artifacts
  • Review system Change Requests and support the preparation and tracking of Security Threshold Analysis (STA) and Security Impact Analysis (SIA) documentation.
  • Coordinate updates to cybersecurity documentation resulting from system or configuration changes.
  • Maintain accurate cybersecurity records and compliance information in JSAM and other Government-designated repositories and tracking tools.
POA&M & Vulnerability Remediation
  • Support the creation, maintenance, and status tracking of Plans of Action and Milestones (POA&Ms).
  • Track remediation activities, supporting evidence, milestones, and closure documentation.
  • Review vulnerability findings and track patching, configuration hardening, and remediation activities.
  • Coordinate with technical teams to obtain supporting evidence demonstrating remediation.
  • Ensure applicable POA&M records and supporting documentation remain accurate and current for ISSO review.
Stakeholder Coordination
  • Coordinate with ISSOs, System Owners, engineers, system administrators, and other technical stakeholders to obtain required compliance documentation and evidence.
  • Track outstanding actions and follow up with responsible stakeholders to ensure compliance deadlines are met.
  • Communicate compliance status, outstanding requirements, and potential schedule concerns clearly and accurately.
  • Provide organized and timely information to support ISSO decision-making and Government reporting requirements.

Requirements

What We're Looking For
  • Bachelor's degree in Cybersecurity, Information Technology, Information Systems, Computer Science, Engineering, or a related field. An equivalent combination of education and relevant experience may be considered based on applicable labor-category requirements.
  • Experience supporting cybersecurity compliance, federal FISMA systems, security documentation, Continuous Monitoring, Security Control Assessments, or related RMF activities.
  • Working knowledge of:
    • NIST Risk Management Framework (RMF)
    • NIST SP 800-53
    • FISMA
    • FIPS 199/200
    • Assessment & Authorization (A&A) / Authority to Operate (ATO)
    • Continuous Monitoring
    • POA&M management
    • Security Control Assessment processes
  • Experience developing, reviewing, maintaining, and tracking cybersecurity documentation and supporting evidence.
  • Experience supporting vulnerability remediation and compliance tracking.
  • Strong documentation, organization, quality-review, and stakeholder-coordination skills.
  • Ability to manage multiple compliance activities, deliverables, and deadlines while maintaining accurate records and supporting evidence.
  • Strong written and verbal communication skills.
  • Ability to work effectively with both cybersecurity and technical infrastructure teams.
  • U.S. Citizenship required.
  • Must be eligible to obtain and maintain a Secret clearance.
Preferred Qualifications
  • Experience supporting federal government cybersecurity or information assurance programs.
  • Experience using JSAM or similar Government cybersecurity compliance and tracking systems.
  • Experience supporting Security Control Assessments, audits, inspections, and authorization activities.
  • Experience supporting vulnerability management and POA&M remediation activities.
  • CompTIA Security+ or an equivalent certification meeting applicable labor-category requirements.
  • Additional certifications such as CGRC, CISA, CISM, CISSP , or relevant cloud-security certifications are desirable based on assignment.
Role Alignment

The Cybersecurity Compliance Analyst supports the ISSO by preparing, reviewing, coordinating, and tracking cybersecurity documentation, evidence, assessment materials, remediation activities, and compliance status information.

This position supports—but does not replace—the ISSO function . Cybersecurity risk determinations, formal security advisory responsibilities, and approval or risk-acceptance decisions remain with the ISSO or designated Government authority.

Work Environment
  • Hybrid position based in Suitland, Maryland.
  • Three (3) days per week on-site and two (2) days telework , subject to contract and customer requirements.
  • Full-time position supporting mission-critical federal cybersecurity programs.
  • Collaborative environment requiring regular coordination with ISSOs, System Owners, engineers, system administrators, cybersecurity personnel, and Government stakeholders.

Benefits

  • Health, vision and dental Insurance
  • Paid Time Off
  • 401k
  • Education, Training & Development
  • Collaborative, supportive, and inclusive work environment.
Equal Opportunity Employer

RCG, Inc. is an Equal Opportunity Employer. We are committed to creating an inclusive workplace and providing equal employment opportunities to all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, protected veteran status, or any other characteristic protected by applicable law. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions of the position.

Vacancy posted 5 hours ago
Similar jobs that could be interesting for youBased on the Cybersecurity Compliance Analyst in Suitland, MD vacancy
  • $77.6k - $176k

    Cybersecurity Compliance AnalystThe Opportunity:Designs, implements, and manages policies and procedures to ensure database and software security. Applies advanced advisory skills or extensive technical expertise with full industry knowledge. Develops innovative solutions... 
    Suggested
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Arlington, VA
    1 day ago
  •  ...Cybersecurity Compliance Analyst We are currently looking for a Cybersecurity Compliance Analyst for a great opportunity in Washington, DC. This position is primarily on-site but may allow for hybrid or remote flexibility if the candidate meets all background and compliance... 
    Suggested
    Remote work

    NextStep

    Washington DC
    23 hours ago
  •  ...Cybersecurity Compliance Analyst Seeking a skilled Cybersecurity Compliance Analyst to support our client in Washington, DC. The ideal candidate will possess a robust understanding of cybersecurity frameworks and controls, with a specific focus on NIST standards and... 
    Suggested

    Samprasoft

    Washington DC
    1 day ago
  • $94.67k - $137.27k

     ...Date: August 22, 2026 Please Note: All job announcements close at 11:59 p.m. of the day before the posted closing date. Cybersecurity Compliance Analyst As a Cybersecurity Compliance Analyst, you will support the Airports Authority's cybersecurity compliance with... 
    Suggested
    Work at office
    Flexible hours

    Metropolitan Washington Airports Authority

    Arlington, VA
    3 days ago
  • Description SAIC is seeking a Cybersecurity Compliance analyst in Arlington, VA. The roles and responsibilities include providing administrative, technical, and analytical expertise of the Risk Management Framework with knowledge of network operations and vulnerability... 
    Suggested

    SAIC

    Arlington, VA
    4 days ago
  • $77.6k - $176k

    Cybersecurity Compliance Analyst Designs, implements, and manages policies and procedures to ensure database and software security. Applies advanced advisory skills or extensive technical expertise with full industry knowledge. Develops innovative solutions to complex... 
    Full time
    Part time
    Work at office
    Local area
    Remote work

    Phase2 Technology

    Arlington, VA
    3 days ago
  • SAIC is seeking a Cybersecurity Compliance analyst in Arlington, VA to provide administrative, technical, and analytical support for the Risk Management Framework. The role focuses on tracking compliance, consolidating risk metrics, and reporting to completion for JS and... 

    SAIC

    Arlington, VA
    3 days ago
  • Metropolitan Washington Airports Authority is seeking a Cybersecurity Compliance Analyst to support our cybersecurity program. You will perform compliance assessments, advise on controls, and help ensure regulatory alignment across our operations at MWAA. The role requires... 

    Metropolitan Washington Airports Authority

    Arlington, VA
    3 days ago
  • $77.6k - $176k

    Phase2 Technology is seeking a Cybersecurity Compliance Analyst to design and manage policies ensuring software and database security. The role requires extensive experience in compliance analysis and the ability to communicate cybersecurity posture effectively. Responsibilities... 

    Phase2 Technology

    Arlington, VA
    2 days ago
  •  ...leading technology company seeks a Cyber Security Analyst in Suitland, MD to support government...  ...strategies, conducting assessments, and ensuring compliance with federal standards. Candidates should have a BS in Cybersecurity and at least four years of relevant... 

    Tactibit

    Suitland, MD
    5 days ago
  • Overview Apogee has an exciting new opportunity fora Cybersecurity Operations Analyst to provide support for the Executive Airlift Communications Network (EACN) support task order, which provides Command, Control, Communications (C3) services for multiple critical U.S.... 
    Full time
    Contract work

    Apogee Engineering

    Morningside, MD
    3 days ago
  • $100k - $145k

    Dark Wolf is seeking Cybersecurity Analysts to join a collaborative team to develop, manage, and maintain the security posture of information...  ...Assessment and Authorization (A&A), continuous monitoring and compliance with NIST & RMF. The successful candidate will support your... 
    Full time
    For contractors
    Work at office
    Local area

    Dark Wolf Solutions

    Washington DC
    1 day ago
  • $135k - $143k

     ...in Washington, DC, at least once per month. The Senior Cybersecurity Analyst leads in the proactive defense of the organization's...  ...practices and regulatory requirements. Risk Management & Compliance: Conduct comprehensive risk assessments, identifying vulnerabilities... 
    Full time
    Contract work
    Casual work
    Remote work
    Flexible hours

    Gunnison Consulting Group Inc

    Washington DC
    1 day ago
  •  ...immediate opportunity for a Cyber Security Analyst requiring a Public Trust clearance...  ...effectiveness of the controls. Ensure compliance of security configurations for IT systems...  ...requirements: Firewall Policy, Ports & Protocols, Cybersecurity, CybersafeFamiliarity with Tenable and... 
    Immediate start
    2 days per week
    1 day per week

    ActioNet

    Washington DC
    2 days ago
  • $86k - $138k

    Responsibilities Peraton is currently seeking to hire a Cybersecurity Analyst - Security Standards & Baselines to become part of our Federal...  ...across multiple cybersecurity domains, including FISMA compliance, NIST SP 800‑53 Revision 5 security controls, enterprise application... 
    Contract work
    Currently hiring
    Work at office
    Shift work

    Peraton Corporation

    Arlington, VA
    4 days ago
  • $110k - $120k

    As Sr. Cybersecurity Analyst II, you’ll Provides a wide array of Information Technology (IT) oriented services to its 4,000 customers. These...  ...maintaining vigilance with regard to information assurance including compliance with the Federal Information Security Modernization Act (... 
    Full time
    Local area

    MetroStar Systems

    Washington DC
    2 days ago
  • $69.4k - $158k

    Cybersecurity Mission AnalystThe Opportunity:When our country’s cyber security is on the line, simply reacting is not enough, we need a plan and that plan needs to support our defense industrial base. We need strategic support of policy development. That’s why we need you... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Alexandria, VA
    1 day ago
  • $72.7k - $149.2k

    Job Title: Cybersecurity Analyst/Information Systems Security ManagerJob Category: Information TechnologyTime Type: Full timeMinimum Clearance...  ...Cybersecurity Strategies) and statutory/regulatory/policy compliance.Coordinate integration of Cybersecurity, COMSEC, and... 
    Contract work
    Work experience placement
    Local area
    Flexible hours

    CACI International

    Alexandria, VA
    2 days ago
  •  ...Job Description Job Description Apogee is seeking an experienced Senior Cybersecurity & Compliance Advisor to provide cybersecurity governance, risk management, and compliance guidance supporting a federal simulation and analytics solution. This role will focus... 
    For contractors

    Apogee Global RMS

    Washington DC
    8 days ago
  •  ...Clearance Node is supporting a U.S. Government customer to provide cybersecurity vulnerability analysis support to reduce the prevalence and...  ...Key Resources (CIKR). The Cybersecurity Vulnerability Analyst utilizes cybersecurity best practices, risk management techniques... 

    Node.Digital

    Arlington, VA
    2 days ago
  •  ...Job Description Job Description cFocus Software seeks a Cybersecurity Triage Analyst (Tier 1) to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybrid with the onsite location being in Washington, DC. This... 
    Work at office

    cFocus Software Incorporated

    Washington DC
    a month ago
  •  ...provider of mission-focused technology, cybersecurity, and program management solutions...  ...Looking For (Position Overview) The Project Analyst provides project management, program coordination...  ...supporting authorization, compliance, and program management efforts. Provide... 
    Full time
    Contract work
    Work at office
    2 days per week

    Spry Methods

    Washington DC
    14 days ago
  • $130k - $155k

     ...We are seeking qualified applicants for the position: Cybersecurity Analyst Located: Arlington Summary The Cybersecurity Engineer...  ...identity, network segmentation, encryption, monitoring, and compliance capabilities. Support secure deployment practices across... 
    Full time

    Venture Global LNG

    Arlington, VA
    2 days ago
  •  ...Cybersecurity Analyst The contractor shall support the Pharmacy Operations Division (POD) Informatics System Security Manager (ISSM) in...  ...lists, boundary diagrams), and work with the vendors to ensure compliance requirements are met with the focus of achieving... 
    Contract work
    For contractors

    InstantServe LLC

    Washington DC
    2 days ago
  •  ...Senior Cybersecurity Analyst Trident Technologies and Consulting - Global, LLC (d.b.a. T2C-Global) is currently seeking motivated and talented...  ...policies, procedures, and directives to ensure compliance with DoN, DoD, and federal regulations. Advise program leadership... 
    Contract work
    For contractors
    Work at office
    Flexible hours

    T2C-Global

    Alexandria, VA
    2 days ago
  • $130k

     ...Job Description Job Description Overview Senior Cybersecurity Analyst LOCATION: Washington DC – Navy Yard JOB STATUS: Full-time...  ...using the Security Content Automation Protocol (SCAP) Compliance Checker (SCC), and the Assured Content Assessment Solution... 
    Full time
    Flexible hours

    Astrion

    Washington DC
    more than 2 months ago
  •  ...Job Description Job Description Position Summary Seeking an experienced Cybersecurity Analyst with 4 years of experience years of experience in cyber security analysis in support of Cyber metrics analysis, incident response and mitigation; risk mitigation analysis... 
    Work at office

    Leader Communications Inc

    Alexandria, VA
    a month ago
  •  ...Description SkyePoint Decisions is a leading Cybersecurity Architecture and Engineering, Critical...  ...Decisions is seeking a Cybersecurity Analyst to support the Diplomatic Security...  ...cybersecurity domains, including FISMA compliance, NIST SP 800‑53 Revision 5 security... 
    Contract work
    Work at office
    Remote work

    SkyePoint Decisions

    Arlington, VA
    13 days ago
  • Cybersecurity Vulnerability Analyst (Incident Manager III) Description Supporting our prime contractor and their U.S. Government customer to provide cybersecurity vulnerability analysis support to reduce the prevalence and impact of vulnerabilities and exploitable conditions... 
    For contractors

    kozmetickesluzby.vecnakraska.sk - Jobboard

    Arlington, VA
    2 days ago
  • $105k - $200k

     ...composed of a mix of junior and mid-level analysts who will look to you for technical...  ...Role & Responsibilities Provide cybersecurity expertise to surface combat system program...  ...Security Content Automation Protocol (SCAP) Compliance Checker (SCC), and the Assured Content... 
    Work at office

    Technomics

    Arlington, VA
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cybersecurity Compliance Analyst. Be the first to apply!