Senior Cybersecurity Compliance Analyst
ASRC Federal Holding Company
Remote
Full-Time
Skill Insights
Compare your current skills to what this opportunity needs—we'll show you what you already have and what could strengthen your application.
Job Description
SP 800-171, NIST SP
800-161, andNIST SP 800-53.
This role will support enterprise cybersecurity, audit readiness, risk assessments, POA&M management, continuous monitoring, and the implementation of required security controls across systems, vendors, and business units. The ideal candidate will bring deep expertise in federal cybersecurity frameworks, strong analytical skills, and the ability to collaborate with technical and non-technical stakeholders to ensure robust compliance. Key Responsibilities CMMC Level 2Compliance:
Lead the organization's readiness efforts toward achieving and maintaining CMMC Level 2 certification. Perform gap assessments, evidence collection, control validation, andSSP/POA&M
development. Coordinate with internal engineering teams and external assessors during CMMC audits.NIST SP 800-171
Oversee compliance with DFARS 252.204-7012 andNIST 800-171
requirements for protecting Controlled Unclassified Information (CUI). Maintain and update System Security Plans (SSPs) and associated security documentation. Manage risk assessments, incident response requirements, and continuous monitoring activities.NIST SP 800-161
(Supply Chain Risk Management): Implement and monitor Cybersecurity Supply Chain Risk Management (C-SCRM) requirements. Assess vendor cybersecurity posture, conduct supplier assessments, and support acquisition security requirements. Develop processes to track, evaluate, and mitigate supply chain-related risks.NIST SP 800-53
Support enterprise-level compliance withNIST 800-53
security and privacy controls. Assist in RMF activities including categorization, control selection, control assessments, and continuous monitoring. Work with system owners to remediate findings and ensure controls are implemented effectively. General Responsibilities Collaborate with engineering, IT, procurement, legal, and executive teams to ensure compliance alignment across the organization. Prepare compliance reports, dashboards, and metrics for leadership. Lead internal audits and coordinate external audits. Serve as a subject matter expert on cybersecurity compliance frameworks and best practices. Improve and mature enterprise cybersecurity governance processes, policies, and procedures. Required Qualifications Bachelor's degree in cybersecurity, information systems, or related field (or equivalent experience). 7+ years of relevant cybersecurity compliance or risk management experience. 5+ years of experience with a Master's degree in Cybersecurity.Hands-on experience implementing:
CMMC Level 2 controls, NISTSP 800-171, NIST SP 800-161, NIST SP 800-53.
Strong understanding of Risk Management Framework (RMF). Experience preparing SSPs, POA&Ms, security documentation, and audit evidence. Ability to work with cross-functional teams and communicate complex requirements clearly. U.S. citizenship required ; ability to obtain and maintain a security clearance may be required depending on contract. Preferred Qualifications Industry certifications (one or more): CISSP, CISM, CRISC, CAP, CCAK, or CMMC Certified Professional/Assessor. Experience supporting DoD, federal agencies, or defense contractors. Familiarity with FedRAMP, DFARS, SCF, orISO 27001
frameworks. Experience with continuous monitoring technologies and GRC tools (e.g., Archer, ServiceNow, eMASS).Additional Information Reports to:
Cybersecurity Governance, Risk & Compliance Leadership Travel:
Minimal (0-10%)Clearance:
Secret cleaance preferred but not required; may be required based on project needs. We invest in the lives of our employees, both in and out of the workplace, by providing competitive pay and benefits packages. Benefits offered may include health care, dental, vision, life insurance; 401(k); education assistance; paid time off including PTO, holidays, and any other paid leave required by law. The salary offered will depend on several factors including, but not limited to, relevant experience, skills, education, geographic location, internal equity, business needs, and other factors permitted by law. Posted pay ranges are a general guideline only and are not a guarantee of compensation or salary. EEO Statement ASRC Federal and its Subsidiaries are Equal Opportunity employers. All qualified applicants will receive consideration for employment without regard to race, gender, color, age, sexual orientation, gender identification, national origin, religion, marital status, ancestry, citizenship, disability, protected veteran status, or any other factor prohibited by applicable law. Job Details Job Family Information Technology Job Function Information Security Pay Type Salary Education Level Bachelor's Degree Scan this QR code and apply! Download Reston, VA, USASimilar remote jobs
Central Arizona College
Tucson, AZ
Posted1 day ago
Updated4 hours ago
LifeStance Health
Midlothian, VA
Posted1 day ago
Updated4 hours ago
Fujifilm
Denver, CO
Posted1 day ago
Updated4 hours ago
Danaher Corporation
Charleston, SC
Posted1 day ago
Updated4 hours ago
Westinghouse Electric
Cranberry Township, PA
Posted1 day ago
Updated4 hours ago
Similar jobs in Reston, VA
Kensington Senior Living, LLC
Reston, VA
Posted1 day ago
Updated4 hours ago
Similar jobs in Virginia
Publix Asset Management Company
Suffolk, VA
Posted1 day ago
Updated4 hours ago
Domino's
Newport News, VA
Posted1 day ago
Updated4 hours ago
Federal Emergency Management Agency
Round Hill, VA
Posted1 day ago
Updated4 hours ago