Cybersecurity Analyst II
ASPIS LLC
Aspis strives to make enterprise cybersecurity solutions and professional services accessible to organizations of all sizes, from small and medium-sized businesses to large enterprises, nonprofits, and municipal, state, and federal government agencies. Aspis is a HUBZone-certified small business. Our values are Integrity, Community, and Diversity.
Aspis is hiring a Compliance / ATO Specialist to own security compliance and authorization work on a large Federal civilian cloud platform operations and maintenance program. The environment is hybrid: a FedRAMP-authorized AWS commercial cloud footprint alongside Azure, on-premises data centers, and legacy and mainframe-connected applications supporting hundreds of business applications. You will keep authorization packages current, run the continuous monitoring and POA&M cadence, maintain the compliance evidence repository, and carry the compliance story through FISMA reporting, A-123 testing, independent assessments, and penetration test cycles. It is the role that protects authorization continuity for the program, working closely with cybersecurity engineers, cloud engineers, system owners, and government stakeholders.
This is a full-time W-2 position supporting a federal government client as part of a contract delivery team. This is not designed to be a full-time remote position. Relocation assistance may be considered. The Kansas City, Missouri metropolitan area is strongly preferred and candidates who reside in and can work from the Kansas City metro will receive preference; however, residency there is not required, and we will consider candidates elsewhere in the United States who are able to travel to the client sites as needed. Due to the support a federal client, working abroad (outside of the United States) is explicitly prohibited. Travel to Kansas City for remote workers will not be reimbursed. Consistent with Aspis' return to office and telework policy, employees are required to report to an Aspis office on a regular basis but may be allowed to work from home and are required to visit client job sites as applicable. The company reserves the right to change its employment policies at any time without notice.
To be considered for this position, your resume must clearly document knowledge, skills, experience, and abilities similar to the responsibilities, qualifications, and requirements below.
A Cybersecurity Analyst may perform any combination of the functions below based on assignment and experience level.
Responsibilities
- Prepare and maintain assessment and authorization packages under the Risk Management Framework, including System Security Plans, control implementation statements, and risk documentation.
- Run the continuous monitoring cadence: control assessment scheduling, evidence collection, and posture reporting.
- Maintain a living POA&M inventory, conduct aging reviews, and escalate items at risk of breaching remediation service levels before they slip.
- Support FISMA reporting, OMB A-123 general computer controls testing, independent assessments, penetration tests, and contingency and disaster recovery exercises.
- Maintain the standards compliance matrix and the deviation and waiver log, and keep the compliance evidence repository audit-ready.
- Perform security impact analyses for proposed changes, migrations, and new services, and verify FedRAMP authorization status for proposed tooling.
- Track vulnerability remediation status against contract thresholds and coordinate closure with engineering teams and system owners.
- Improve and automate compliance and posture reporting to reduce manual evidence collection.
- Communicate compliance findings and risk positions clearly to technical and non-technical stakeholders, and support knowledge transfer to government staff.
- Other duties as assigned.
Qualifications
- Demonstrated hands-on RMF work in a cloud or hybrid environment.
- Working knowledge of NIST SP 800-53 Rev 5, NIST SP 800-37, FISMA, and FedRAMP, and familiarity with Federal audit cycles.
- Experience authoring or maintaining SSPs, control implementation statements, POA&Ms, and risk documentation.
- Working familiarity with AWS and Azure security services sufficient to validate controls and collect evidence.
- Clear, professional written and verbal communication, including the ability to produce security documentation that holds up under audit.
- Strong analytical skills, attention to detail, and comfort tracking many open items to closure.
- Ability to manage multiple assignments and deadlines with limited day-to-day oversight.
- Discretion in handling sensitive client, system, and company information.
- Ability to obtain and maintain a Federal Public Trust background investigation.
Skills:
- RMF and authorization documentation, continuous monitoring, POA&M management, audit and assessment support, and cloud compliance evidence collection.
- GRC software (e.g., eMASS, Xacta, CSAM, Archer, etc.)
- Microsoft Office Suite (e.g., Word, PowerPoint, Excel, etc.)
- Strong verbal and written communication skills.
Background Check:
- Successful completion of reference check.
- Successful completion of a commercial background check.
- Authorized to work in the United States without sponsorship.
- Successful completion of an OF-306 (as a contractor).
- Successful completion of a Federal Public Trust background check required.
Degree Required: Associate's degree or higher preferred; equivalent experience and/or certifications considered in lieu of a degree.
Experience Required: 3-8 years of relevant cybersecurity experience.
Industry Certifications: CompTIA Security+ (or equivalent) required; CGRC (formerly CAP), CISA, CISM, CCSP, or CISSP preferred.
We are an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability, protected veteran status, or any other characteristic protected by law. We will consider for employment qualified applicants with criminal histories consistent with applicable law.
PI35214bdadb42-26289-41357907
$18 per hour
Starting Hourly Rate / Salario por Hora Inicial: $18.00 USD per hour ALL ABOUT TARGET Working at Target means helping all families discover the joy of everyday life. We bring that vision to life through our values and culture. Learn more about Target here. ALL...SuggestedHourly payLocal areaFlexible hoursShift workNight shiftDay shift- Drury Hotels in Cleveland, OH is seeking a Safety & Security Officer to maintain a safe and secure environment for team members, guests, and visitors. You will patrol designated areas, monitor access points, respond to incidents, and document events with accuracy. You will...Suggested
$18 per hour
Schedule (Open Availability Highly Preferred) Thursday through Monday 10:00 PM to 06:30 AM Pay Range: $18 hourly As a Safe and Secure Associate, you will be an integral part of the Safe and Secure Team executing programs and processes at our facility to ensure our associates...SuggestedHourly payFull timeNight shift$18 per hour
Carvana is seeking a Safe and Secure Associate in Belton, MO, to help protect people, assets and operations at our facility. You’ll staff gates, monitor access, document movements of vehicles, and uphold safety and incident response protocols. Ideal candidates have 1-2 ...SuggestedHourly payFull timeNight shift- A specialized HVAC company is seeking an HVAC Estimator to assess project timelines and research material costs while communicating with clients to define scopes. The ideal candidate will analyze blueprints to determine equipment sizing and identify materials needed. Strong...Suggested
- G.E.H.A (Government Employees Health Association, Inc.) is seeking a Clinical Operations Analyst to analyze, develop, and deliver clinical reports for senior leadership. The role supports Clinical Quality, Population Health, Dental, Pharmacy, Medical Management, and Health...Remote job
- The City of Belton, MO, is seeking a dedicated Correctional Officer to oversee the daily operations and security of the jail. Responsibilities include inmate management, maintaining facility safety, and supporting community relations. Candidates should have excellent communication...Work experience placement
- Intrinsic Development, based in Lee's Summit, Missouri, seeks a Construction Project Analyst to manage finances for building projects. The role involves tracking budgets, analyzing costs, and ensuring timely financial closeouts. The ideal candidate has over 2 years of construction...
- Business Analyst - Quote to Cash page is loaded## Business Analyst - Quote to Cashlocations: US-OH-GRANDVIEWtime type: Full timeposted on: Posted 2 Days Agojob requisition id: 2026 - 058Alta Performance Materials US, LLCBe Part of a Bold New Chapter in Composites Industry...Work at office
- Business Analyst - Manufacturing & Supply Chain page is loaded## Business Analyst - Manufacturing & Supply Chainlocations: US-OH-GRANDVIEWtime type: Full timeposted on: Posted 2 Days Agojob requisition id: 2026 - 057Alta Performance Materials US, LLCBe Part of a Bold New...Work at office
$60k - $90k
...Job Description Job Description CONSTRUCTION CONTRACT ANALYST PAY RANGE; $60,000 - $90,000, based upon experience. THE COMPANY: Intrinsic Development is a full service real estate development company that specializes in upscale multi-family and commercial mixed...Contract workFor subcontractorWork at office- ...collaboratively with solutions, engineering, and support to define the best solution for the client.POSITION SUMMARYThe Project Finance Analyst represents the FP&A department at the project level, serving as the financial link between the Project Management Office (PMO),...Temporary workLocal area
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cybersecurity Analyst II. Be the first to apply!

