Cybersecurity Analyst – RMF & Vulnerability (ACAS / STIG / DoD)

Moseley Technical Services, Inc.North Charleston, SC
6d$50 - $55

About The Position

Join Moseley as a Cybersecurity Analyst supporting DoD systems in Charleston, SC, performing RMF, vulnerability, and STIG assessments using ACAS and enterprise cyber tools. Active Secret clearance required — TS/SCI preferred. Moseley is seeking a Cybersecurity Analyst to support cybersecurity assessment, compliance, and sustainment activities for DoD systems and networks. This position performs vulnerability scanning, STIG validation, RMF support, and security control assessments across Windows, Linux, virtual, and network environments. The analyst works closely with Information Assurance staff, system administrators, and program teams to maintain system security posture and support accreditation and continuous monitoring requirements. This role is ideal for a hands-on cybersecurity professional experienced with ACAS/Nessus scanning, STIG remediation, POA&M management, and eMASS documentation in DoD environments.

Requirements

  • Active Secret Clearance Required
  • Minimum 4 years of direct cybersecurity / information assurance experience supporting DoD programs
  • CompTIA Security+ (Security+ CE) required
  • Must meet DoD 8570 IAT Level II requirements
  • Hands-on experience with vulnerability scanning tools (ACAS / Nessus)
  • Experience implementing and validating DISA STIGs
  • Experience creating and maintaining POA&Ms
  • Experience supporting RMF and security assessment activities
  • Working knowledge of: Windows operating systems Linux operating systems Network and Cisco equipment
  • Experience with eMASS documentation and workflows
  • Strong written and verbal communication skills

Nice To Haves

  • CASP+, CEH, or other advanced cybersecurity certifications
  • Experience supporting DoD cyber or enterprise network programs
  • Experience with SCCM patching and compliance support
  • Active Directory and Group Policy experience
  • Experience with HBSS / ePO / Trellix platforms
  • Experience with Splunk or enterprise log analysis tools
  • Experience with SCAP, STIG Viewer, Vulnerator, or similar tools
  • Virtualization experience (VMware, Hyper-V)
  • Bachelor’s degree in Cybersecurity, Information Technology, or related field preferred
  • Experience supporting TacMobile or P-8 ground system cybersecurity activities is a plus

Responsibilities

  • Perform cybersecurity assessment and sustainment activities for DoD systems and subsystems
  • Conduct vulnerability scans using ACAS/Nessus and related tools
  • Analyze scan results and coordinate remediation actions
  • Apply and validate DISA Security Technical Implementation Guides (STIGs)
  • Perform STIG reviews across Windows, Linux, network devices, and virtual platforms
  • Generate, update, and maintain POA&Ms and remediation tracking documentation
  • Support Risk Management Framework (RMF) lifecycle activities
  • Perform NIST 800-53 control validation and security control assessments
  • Document and upload security artifacts and control evidence in eMASS
  • Support ATO and continuous monitoring requirements
  • Review SCAP results, STIG checklists, and compliance reports
  • Support IAVA/IAVM response and vulnerability mitigation efforts
  • Maintain IA compliance across Windows, Linux, and Cisco-based systems
  • Support HBSS / ePO / Trellix security tools where applicable
  • Review and validate scan uploads and asset compliance data
  • Compile findings and prepare cybersecurity status reports
  • Coordinate with system administrators, network engineers, and program security staff
  • Provide clear technical documentation and assessment results

Benefits

  • Applicants selected for employment will be required to pass a pre-employment drug screening and background investigation, which may include education, criminal, and work history verifications.
  • Accepted applicants will be eligible for benefits, including medical and supplemental insurance, and a 401(k) plan.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service