Cybersecurity Analyst, RMF & ATO
JBS International
The Cybersecurity Analyst provides cybersecurity, information assurance, risk management, and compliance support across Digital Services initiatives. The role supports Authorization to Operate (ATO) activities, continuous monitoring, security assessments, vulnerability management, and implementation of federal cybersecurity requirements while collaborating with engineering, architecture, product, infrastructure, and program teams throughout the solution lifecycle. The Cybersecurity Analyst will serve as the Information System Security Officer (ISSO) for assigned federal systems and environments. This position contributes to cybersecurity governance, develops and maintains security documentation, supports security assessments and audits, and helps ensure digital products, cloud environments, and enterprise technology solutions meet applicable federal security and privacy requirements. Essential Job Functions Cybersecurity Advisory & Secure Solution Delivery Provide cybersecurity and privacy subject matter expertise across digital products, cloud services, enterprise applications, AI initiatives, and technology modernization efforts. Advise project teams on identity and access management, security controls, data protection, authorization boundaries, and cybersecurity best practices throughout the system development lifecycle. Review technical solutions, architectures, and proposed system changes to identify security risks and recommend appropriate mitigations. Collaborate with software engineering, infrastructure, architecture, product, and data teams to integrate security requirements into solution planning, development, testing, deployment, and operational support. Support alignment of technology initiatives with applicable federal cybersecurity, privacy, and risk management requirements. Risk Management & Compliance Support identification, analysis, documentation, and tracking of cybersecurity and compliance risks across systems, applications, cloud environments, and operational activities. Conduct or support security assessments, compliance reviews, technical evaluations, and security control validation activities. Contribute to governance reviews, technical assessments, risk recommendations, and cybersecurity decision support. Assist in developing and maintaining cybersecurity policies, procedures, standards, and implementation guidance. Support continuous improvement of security posture, compliance maturity, and enterprise risk visibility. Authorization to Operate (ATO) & Security Authorization Support Authorization to Operate (ATO) and Security Assessment and Authorization (SA&A) activities throughout the system lifecycle. Develop, coordinate, maintain, and update authorization documentation, including System Security Plans (SSPs), Security Assessment Plans (SAPs), Security Assessment Reports (SARs), Plans of Action and Milestones (POA&Ms), and related security artifacts. Coordinate security assessments, evidence collection, remediation activities, and documentation required to obtain and maintain system authorization. Support authorization decisions by collaborating with governance bodies, Authorizing Officials, Information System Security Managers (ISSMs), system owners, and technical teams. Advise project teams on authorization boundaries, security categorization, inheritance, and applicable federal security requirements. Support continuous monitoring activities necessary to maintain ongoing authorization. Security Operations & Continuous Monitoring Coordinate vulnerability identification, remediation tracking, and verification activities in collaboration with engineering, infrastructure, and operations teams. Review vulnerability scan results, assess security findings, monitor corrective actions, and track remediation through completion. Support security incident response activities through documentation, coordination, evidence collection, corrective action tracking, and lessons learned. Monitor changes to systems and cloud environments to help ensure continued compliance with approved security baselines. Support internal and external audits through evidence collection, documentation, corrective action management, and audit response activities. Governance, Collaboration & Delivery Integration Coordinate with project managers, architects, developers, Corporate IT, Data & AI, and governance stakeholders to ensure cybersecurity considerations are integrated throughout project planning and delivery. Participate in development of governance materials, executive briefings, technical documentation, reports, and other artifacts requiring cybersecurity or compliance input. Promote secure development practices and provide guidance on applicable cybersecurity requirements across Digital Services initiatives. Contribute to the continuous improvement of cybersecurity templates, operational procedures, documentation standards, and governance processes. Minimum Qualifications Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related field. 3 years of experience supporting cybersecurity, information assurance, security compliance, enterprise security, or risk management programs. 3 years of experience applying federal cybersecurity frameworks and standards, including FISMA, NIST Risk Management Framework (RMF), NIST SP 800-53, FICAM, or comparable federal requirements. 3+ years of experience supporting Authorization to Operate (ATO), Security Assessment and Authorization (SA&A), continuous monitoring, or related authorization activities. Experience supporting the security lifecycle of one or more FIPS 199 Moderate-impact federal information systems, including security documentation, security control implementation, assessment support, Authorization to Operate (ATO), and continuous monitoring activities. Experience developing and maintaining security authorization documentation, including SSPs, SAPs, SARs, POA&Ms, and related security artifacts. Experience supporting security assessments, compliance reviews, vulnerability management, audit support, or enterprise risk management activities. Experience collaborating with software engineering, cloud, infrastructure, architecture, product, and project teams to integrate cybersecurity requirements into technology solutions. Working knowledge of cloud platforms (AWS and/or Azure), identity and access management, secure system development lifecycle (SDLC), and cybersecurity best practices. One or more professional cybersecurity certifications such as CompTIA Security+, CompTIA CySA+, ISC2's Certified in Cybersecurity (CC), Certified in Governance, Risk and Compliance (CGRC), Systems Security Certified Practitioner (SSCP), or an equivalent cybersecurity certification is required. Strong analytical, organizational, written, and verbal communication skills with the ability to communicate effectively with both technical and non-technical stakeholders. Security Clearance This position requires the ability to obtain a Public Trust. Location Remote with the consideration that if a candidate lives within a 50-mile radius of JBS's North Bethesda, MD or San Mateo, CA offices, the position will be considered hybrid. Physical Requirements Ability to sit forprolonged periods at a desk or computer workstation. Regularly uses a computer, keyboard, and mouse. Normal or corrected vision to read documents, view computer screens, and perform tasks that require visual accuracy. Ability to hear and understand spoken information in person and over the phone. Minimal lifting and carrying may be required, typically light office supplies or documents. Ability to move within the office environment to access equipment, files, and interact with colleagues. Ability to handle occasional stress related to deadlines, workloads, or challenging tasks. Preferred Qualifications Advanced cybersecurity certifications such as ISC2 CISSP, ISACA CISM, or equivalent. Experience supporting FedRAMP-authorized cloud environments. Experience with vulnerability management and security assessment tools such as Tenable, Nessus, AWS Inspector, Microsoft Defender, or comparable technologies. Familiarity with DevSecOps, secure software development lifecycle (Secure SDLC), or cloud-native application security practices. Experience supporting web applications, cloud-native solutions, AI-enabled technologies, APIs, or enterprise business systems. Experience supporting privacy, data protection, or governance initiatives within federal environments. Other Duties Assigned This position description should not be construed to imply that these requirements are the exclusive standards of the position, nor will it be the sole basis for any subsequent employee evaluations. Incumbents will follow any other instructions and perform any other related duties as may be required by their supervisor. This position is subject to availability of funds and to any and all restrictions contained in the contract or contracts that provide funding for this position. Our company is an equal opportunity/affirmative action employer. Applicants can learn more about the company's status as an equal opportunity employer by viewing the federal "EEO" poster at EEOPost.pdf. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender identity, sexual orientation, national origin, disability, or protected Veteran status. If you need a reasonable accommodation for any part of the employment process, please contact us by email at View email address on click.appcast.io and let us know the nature of your request and your contact information. #J-18808-Ljbffr JBS International
- JBS International seeks a Cybersecurity Analyst to support cybersecurity, information assurance, risk management, and compliance across Digital... ...for assigned federal systems and environments, assisting with ATO activities throughout the solution lifecycle. You will work with...SuggestedRemote job
- ...Cybersecurity Analyst Certification requirements: At start date must possess an active CompTIA Security+CE certification. At start date, must... ...approving systems access requests to eMASS in support of the RMF. Assist in examining the security architecture and vulnerabilities...SuggestedContract workWork experience placementWork at office
$105.4k - $165.5k
Cybersecurity Analyst Careers - R10193019-4 Join to apply for the Cybersecurity Analyst Careers - R10193019-4 role at Northrop Grumman RELOCATION... ...assessments, monitoring, vulnerability scanning, and RMF. Sr. Principal Cybersecurity Analyst: Senior Information Systems...SuggestedFull timeWork at officeLocal areaRelocation packageShift work$114k - $171k
...Classified Solutions team is seeking a Principal Classified Cybersecurity Analyst to support information systems lifecycle activities. The selected... ...compliance (ex. Assessment & Authorization under RMF). CI Polygraph. Knowledge of security tools such as ACAS...SuggestedFull timeLocal areaRelocationFlexible hoursShift work$102k - $123k
Job DescriptionWho We AreCreative Artists Agency (CAA) is the leading entertainment and sports agency, with global expertise in filmed and live entertainment, digital media, publishing, sponsorship sales and endorsements, media finance, consumer investing, fashion, brand...SuggestedPermanent employmentFull timeWork at officeLocal area$102k - $123k
...Security Analyst Creative Artists Agency (CAA) is the leading entertainment and sports agency, with global expertise in filmed and live entertainment, digital media, publishing, sponsorship sales and endorsements, media finance, consumer investing, fashion, brand management...Work at office- ...Security and Network Engineer to support the cybersecurity, compliance architecture, and high-... ...Engineer, your role will be to:Manage NASA ATO Compliance & Reporting: Coordinate IPAC’s... ...compliance frameworks (e.g., NIST SP 800-53, RMF).Qualify as a US PERSON as defined by...Permanent employmentCasual workRemote work1 day per week
$20k
...RESPONSIBILITIES: Responsible for the complete RMF A&A lifecycle process for assigned SpaceX... ...Guide and mentor Cleared Cyber Assurance Analyst(s) Build and maintain positive... ...and environments Experience with obtaining ATO(s) for networks, weapon systems, and satellite...Permanent employmentTemporary workRemote workWeekend work- A leading ticketing company is seeking a Security Analyst to enhance the security of its global platform. The role requires a minimum of 4 years in cybersecurity and offers a hybrid work model in Beverly Hills, CA. Key responsibilities include detecting security incidents...
- ...Officer (ISSO) with DIACAP and/or RMF experience who has deep... ...their Authorization to Operate (ATO). This position is located at... ...Maintain responsibility for managing cybersecurity risk from an organizational... ...an Information Assurance (IA) Analyst, ISSE, ISSO, or similar role...Full timeLocal areaFlexible hours
- ...Segundo, CA, is seeking a Journeyman Information Security Analyst to support Space Systems Command's Space Sensing activities at Los Angeles Air Force Base. You will perform cybersecurity, information assurance, RMF, and system authorization tasks in a fast-paced DoD...
$130k - $180k
SpaceX: SR. Classified Cyber Assurance Analyst SpaceX is seeking a senior classified cyber assurance... ...Responsible for the complete RMF A&A lifecycle process for assigned SpaceX... ...teams and environments. Experience obtaining ATO(s) for networks, weapon systems, and satellite...Permanent employmentTemporary workRemote workWeekend work$180k - $220k
...documentation including solution design documents, network diagrams, data flow maps, and Authority to Operate (ATO) supporting artifacts aligned to NIST RMF, ICD 503, and FedRAMP. Define and enforce cloud security architecture standards including Zero Trust Architecture...For contractorsWork experience placementCasual workRelocation package$155.6k - $306.8k
...degree in Computer Science, Engineering, Information Technology, Cybersecurity, or a related field; alternatively, equivalent demonstrated... ...fraud and bot-mitigation experience (WAF, credential-stuffing and ATO countermeasures) adjacent to CIAM.• Kubernetes, GitOps, and...Local areaVisa sponsorship$105.4k - $207.8k
...understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our... ...such as Microsoft Certified: Security Operations Analyst Associate (SC-200), Certified Cloud Security Professional, Certificate...Local areaVisa sponsorship- Join the Clean Energy RevolutionBecome a Cybersecurity Senior Advisor at Southern California Edison (SCE) and build a better tomorrow. In... ...with external managed security solution provider and analysts to enhance security solutions to reduce malicious and suspicious...Remote workRelocation
- Cyber Security Consultant Location: Downey, CA Duration: 9 Months Minimum Skills: The consultants must meet all the following minimum qualifications: One (1) year of experience within the last two (2) years responding to MS-ISAC, CAL-CSIC, and or any related...
- ...relationships with stakeholders. The candidate should possess a Bachelor's degree or equivalent experience, with at least 3 years managing cybersecurity in classified environments. Benefits include competitive salary, comprehensive medical coverage, paid time off, and long-term...
$80k - $90k
...? Silvus is seeking a Linux System and Security Analyst to analyze, troubleshoot, automate, and conduct CyberSecurity activities based on Cybersecurity Maturity Model... ...required for continuous Authorization to Operate (ATO). Responsible for Automated Deployment and monitoring...Permanent employmentFor contractorsWork experience placementRelocationMonday to FridayNight shiftWeekend work- ...We are seeking an experienced Information Security Analyst with strong expertise in cybersecurity risk management, security audits, compliance, internal controls... .... Strong knowledge of NIST SP 800-53 Rev. 5, RMF, IRS Publication 1075, HIPAA/HITECH, HITRUST, CJIS, and...
- ...solutions and PingFederate implementations. It offers an excellent opportunity for individuals looking to build hands-on experience in cybersecurity and modern authentication technologies. Key Responsibilities ~ Install, configure, and maintain PingFederate for...Full timeRemote workWork from home
$82.6k - $162.8k
Position Summary Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions...Local areaVisa sponsorship$105.4k - $207.8k
...expertise, to best support our clients.Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful...Work experience placementLocal areaRemote work- ...Key Responsibilities: • Support the Risk Management Framework (RMF) processes and system authorization lifecycle • Experience... ...experience as an Information System Security Officer (ISSO) or similar cybersecurity role • Strong knowledge of NIST RMF (CSF, 800-53) and related...Work at officeWorldwide
$134.5k - $265.1k
Position Summary Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions...Local area$115k - $165k
...Compliance: Own and drive the IATT and ATO process end-to-end, building on Icarus's... ...components Coordinate directly with government cybersecurity leads on compliance artifacts, scan... ...DoD cybersecurity compliance frameworks (RMF, NIST 800-171) ~ Experience working with...Work experience placementWork at officeFlexible hours- Baker Tilly US in Santa Monica, CA is seeking an IT Audit, Cybersecurity & Risk Experienced Consultant (SOC Focus) to join its fast-growing Risk Advisory practice. You will work with client executives to assess IT controls, deliver strategic recommendations, draft reports...
$120k - $140k
...seeking a Journeyman Information Security Analyst to support United States Space Force... ...California. This position will provide cybersecurity, information assurance, Risk Management... ...program products for security impacts and RMF compliance. Support cybersecurity Integrated...Contract workFor contractorsWork experience placementWork at office- Baker Tilly US, a leading advisory, tax and assurance firm, seeks an IT Audit, Cybersecurity & Risk Senior Consultant in California. You will partner with client executives to assess IT risk, governance and cybersecurity controls, delivering strategic recommendations and...
- Trident Consulting is seeking a " Senior Cybersecurity Consultant " for one of our client in " Rosemead, CA " A global leader in business and technology services. Please find additional details about the role below: Job Title: Senior Cybersecurity Consultant Location: Rosemead...Full timeContract workRemote workMonday to Friday
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cybersecurity Analyst, RMF & ATO. Be the first to apply!
- cyber security specialist Los Angeles, CA
- cyber security consultant Los Angeles, CA
- IT cyber security Los Angeles, CA
- cyber security intern Los Angeles, CA
- cybersecurity certificate Los Angeles, CA
- cybersecurity grc Los Angeles, CA
- cybersecurity Los Angeles, CA
- remote cyber security Los Angeles, CA
- cyber security technician Los Angeles, CA
- cybersecurity administrator Los Angeles, CA


