About The Position

COLSA Corporation is seeking a Risk Management Framework (RMF) Cyber Analyst to serve as an Information Systems Security Officer (ISSO) in support of a US Army contract, Aviation and Missile Center. The selected candidate will support system records for Authorization to Operate (ATO) approval on multiple Information Systems, including Enclaves and Major Applications for both classified and unclassified networks. The candidate will provide support for system monitoring and analysis of detected cyber incidents and provide corrective action recommendations.

Requirements

  • Risk Management Framework (RMF) Cyber Analyst experience
  • Information Systems Security Officer (ISSO) experience
  • Support for Authorization to Operate (ATO) approval on multiple Information Systems
  • Experience with Enclaves and Major Applications for both classified and unclassified networks
  • Support for system monitoring and analysis of detected cyber incidents
  • Provide corrective action recommendations
  • Experience with eMASS
  • Experience with DISA Security Technical Implementation Guides (STIGs) and Security Requirements Guides (SRGs)
  • Experience with tools like STIG Viewer and Security Content Automation Protocol (SCAP)
  • Experience with monitoring tools such as Tenable Nessus ACAS, Trellix ePO / legacy HBSS
  • Experience creating Cyber Security training materials
  • Experience mentoring team members
  • Experience updating artifacts in eMASS such as System Security Plan (SSP), IS Security Architecture, Hardware/Software list, and POA&Ms
  • Experience performing activities necessary to obtain security accreditation of solutions/applications as it relates to system administration
  • Experience preparing and delivering technical data for RMF accreditation package submissions
  • Experience providing data and information regarding system security as it relates to system administration and system architecture
  • Experience working with System Administrators to identify and resolve vulnerabilities and computer incidents
  • Experience identifying system/network deviations from acceptable configurations, enclave policy, or local policy
  • Experience providing compliance recommendations for networks, workstations, servers, and IT assets

Responsibilities

  • Analyzing and implementing Cybersecurity (IA) requirements into RMF A&A accreditation packages that meet DoD and Army accreditation standards classified and unclassified enclaves.
  • Developing and implementing a Security-Focused Configuration Management Plan that includes, assisting the Information System Owner or Information System Security Manager in completing Information Security Continuous Monitoring responsibilities.
  • Implementing, assessing and monitoring security controls on systems and within eMASS.
  • Conducting risk assessments to include: Configuration change security impact analysis, Vulnerability audits and security configuration checks, Hardware and software assessments.
  • Ensuring the implementation of vendor-supplied security software packages, performance of diagnostics for security problems, and assisting with the identification/mitigation of security risks.
  • Monitoring DISA Security Technical Implementation Guides (STIGs) and Security Requirements Guides (SRGs) by using tools similar to STIG Viewer and Security Content Automation Protocol (SCAP).
  • Completing analysis from monitoring tools such as Tenable Nessus ACAS, Trellix ePO / legacy HBSS, and other IA-specific software.
  • Creating Cyber Security training materials and mentoring team members when applicable.
  • Continuously monitoring and updating artifacts in eMASS such as System Security Plan (SSP), IS Security Architecture, Hardware/Software list, and POA&Ms.
  • Performing the activities necessary to obtain security accreditation of solutions/applications as it relates to system administration.
  • Preparing and delivering the technical data needed for the submissions of accreditation packages in support of RMF.
  • Providing data and information as well as making recommendations regarding the overall system security as it relates to system administration and system architecture.
  • Working with System Administrators to identify and provide information regarding resolution of vulnerabilities, and computer incidents.
  • Identifying where systems/networks deviate from acceptable configurations, enclave policy, or local policy.
  • Providing compliance recommendations for networks, workstations, servers, and IT assets.
  • Other duties as assigned.

Benefits

  • Employee-centric culture
  • Benefits detailed at https://www.colsa.com/culture_benefits
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service