About The Position

SAIC is seeking a RMF Cyber Security Analyst Senior to support a transformational infrastructure program for the Defense Counterintelligence and Security Agency (DCSA). This role involves sustaining, modernizing, and transforming enterprise IT capabilities for DCSA, which is the designated oversight authority on the accreditation of classified facilities, information systems, and the insider threat program. SAIC will provide an enterprise IT solution that delivers highly secure and adaptable IT infrastructure, customer support, and cutting-edge technologies under a single IT environment (One IT). The RMF Cyber Security Analyst Senior will provide support for proposing, coordinating, implementing, and enforcing information systems or enclave cybersecurity policies, standards, and methodologies. They will maintain the operational security posture for an information system, program, or enclave, ensuring cybersecurity standards and procedures are established and followed. This includes performing day-to-day security operations, IT security control assessments, and configuration management for information system security software, hardware, and firmware. The role also involves managing changes to the system and assessing their security impact, as well as preparing and reviewing documentation such as Systems Security Plans (SSPs) and Security Assessment & Authorization (SA&A) packages in accordance with DoD Risk Management Framework (RMF) procedures.

Requirements

  • Provide support for a program, an organization, system, or an enclave.
  • Provide support for proposing, coordinating, implementing, and enforcing information systems or enclave cybersecurity policies, standards, and methodologies.
  • Maintain operational security posture for an information system, program, or enclave to ensure cybersecurity standards, and procedures are established and followed.
  • Perform day-to-day security operations of the system or enclave.
  • Perform IT security control assessments.
  • Provide configuration management (CM) for information system security software, hardware, and firmware.
  • Manage changes to system and assess the security impact of those changes.
  • Prepare and review documentation to include Systems Security Plans (SSPs) and Security Assessment & Authorization (SA&A) packages in accordance with DoD Risk Management Framework (RMF) procedures.
  • Experience with ACAS or Nessus for vulnerability scanning.
  • Knowledge of DoD 8510 & 8500.
  • Experience with eMASS.
  • Experience with RMF lifecycle.

Responsibilities

  • Interface with Project/Program Managers, Subject Matter Experts (SME) and Information System Security Managers (ISSM) on Major Application / General Enclave issues and updates.
  • Drive the 7 steps of the RMF lifecycle (Prepare, Categorize, Select, Implement, Assess, Authorize, and Monitor).
  • Create and maintain security packages in eMASS.
  • Review vulnerability scan results (using tools like ACAS or Nessus) and coordinate remediation.
  • Act as a bridge between technical engineers, Information System Security Officers (ISSOs), and executive leadership.
  • Track and report on Plan of Action and Milestone (POA&M) items; RMF Status, Annual Assessments, Authority to Operate (ATO) and Continuous Monitoring actions.
  • Responsible for documentation compliance and review to ensure programs receive ATOs for multiple systems.
  • Prepare briefs and A&A documents for approval in support of RMF reporting and policy development.
  • Perform ISSO Type duties as defined in DoD 8510 & 8500.
  • Provide risk mitigation strategies.
  • Perform quality checks on POA&Ms, risk assessments, and documentation.
  • Conduct security control and risk assessments to support authorizations.
  • Review existing documentation bi-annually for accuracy and relevance to current DoD and DCSA mandates.
  • Assist with research on cybersecurity items of interest.
  • Perform other duties as related to risk management, communication, and assessments.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service