Find Jobs
Find Jobs Near You – Available Work in Your Location
Cybersecurity & RMF Analyst
Career Insights for Vulnerability Analyst / Penetration Tester
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on Illinois data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
A Vulnerability Analyst or Penetration Tester probes for and exploits security vulnerabilities in web-based applications, networks and systems. Penetration Tests are designed to achieve a specific, attacker-simulated goal and should be requested by customers who are already at their desired security posture. A typical goal could be to access the contents of the prized customer database on the internal network, or to modify a record in an HR system. Vulnerability Assessments are designed to yield a prioritized list of vulnerabilities and are generally for clients who already understand they are not where they want to be in terms of security. The customer already knows they have issues and simply need help identifying and prioritizing them.
$115,132 / year median in Illinois
+3% projected growth
Job Description
NIST SP 800-53
Technical documentation Vulnerability assessment tools English DoD experience System risk assessment (security system operation) Regulatory Frameworks (Architecture security) Vulnerability scanning Technical writing experience within technology CompTIA Security+ Information security auditing Audit supportFull Job Description Description:
Cybersecurity & RMF Analyst Location:
Champaign, IL Summary:
Drive RMF compliance and eMASS records forSMS/E-SMS
; produce and manage POA&Ms; align systems (servers/web/databases/VMs/apps) to STIGs/NIST/DoD best practices; support Assess-Only/ATO paths. Responsibilities Maintain RMF artifacts and eMASS entries; document findings, vulnerabilities, and implementation decisions per STIGs/NIST/Cyber.mil guidance. Create and track POA&Ms within five business days of incident discovery; report status in monthly deliverables. Provide input on contingency plans, off-site backup/recovery, and CCB processes; coordinate with System Operations and development teams.Requirements:
CompTIA Security+; demonstrated RMF/eMASS experience for DoD systems. Familiarity with DISA STIGs, ACAS/SCAP, NIST 800-53; strong technical writing and audit support. Per Government contracting requirements, the candidate must be able to clearly speak, read, and write in the English language, be a US citizen, and pass and maintain a National Agency Check Investigation. Areli is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, national origin, veteran status, or on the basis of disability.Benefits
- Dental Insurance