Cybersecurity Analyst (Vulnerability Management & Continuous Monitoring)
Chenega Corporation
Oakton, VA (In Person)
Full-Time
Skill Insights
Compare your current skills to what this opportunity needs—we'll show you what you already have and what could strengthen your application.
Job Description
IAVA/IAVM
notices and ensure timely remediation or mitigation. Develop and maintain Plan of Action and Milestones (POA&M) documentation. Maintenance of Risk Acceptance (RA) POA&M items within SOR (System of Record) and coordinating with System administrators to validate that RA is required instead of aPOA&M. STIG
Compliance & Hardening Apply and validate Security Technical Implementation Guides (STIGs) across operating systems, applications, and network devices. Conduct manual and automated STIG compliance checks using tools such as ACAS Audit checks, STIG Viewer, SCAP Compliance Checker (SCC), and Evaluate-STIG. Document compliance status and provide remediation guidance to system administrators. Support system hardening efforts aligned with DoD baseline configurations. Ensure that golden images are maintained for Servers (RHEL and Windows) and Workstations following STIG guidance.IAVA/IAVM
Management Monitor and assess Information Assurance Vulnerability Alerts (IAVAs) and Bulletins (IAVBs). Determine system applicability and operational impact. Coordinate remediation actions and track compliance deadlines. Maintain IAVA compliance reporting and documentation for audits. Continuous Monitoring (ConMon) Execute Continuous Monitoring activities in accordance with RMF Step 6. Monitor security controls for effectiveness and ongoing compliance. Conduct control assessments and assist with periodic security reviews. Support automated and manual data collection for ConMon dashboards and reporting. Identify trends, recurring issues, and systemic risks across systems. RMF & Compliance Support Support RMF activities across all six steps, with emphasis on: Control implementation validation Security control assessment support Ongoing authorization (ATO sustainment) Update and maintain RMF artifacts, including: System Security Plan (SSP) Security Assessment Report (SAR) Plan of Action and Milestones (POA&M) Security Assessment Plan (SAP) Map vulnerabilities and findings toNIST SP 800-53
controls. Reporting & Documentation Generate vulnerability and compliance reports for leadership and Authorizing Officials (AOs). Provide risk-based recommendations and remediation strategies. Maintain audit-ready documentation in accordance with DoD and agency requirements Other duties as assigned Qualifications High school diploma or GED equivalent 5+ years of experience in DoD cybersecurity or RMF-based environments Hands-on experience with: ACAS (Nessus / Tenable.sc) STIG implementation and validationIAVA/IAVM
processes Experience with vulnerability assessment, risk analysis, and remediation tracking. DoD 8570/8140Compliance:
Must meet IAT Level II requirements (e.g., Security+) Active DoD Top Secret clearance with SCI eligibility.Knowledge, Skills, and Abilities:
Strong understanding of: DoD RMF (DoDI 8510.01)NIST SP 800-53
security controls Ability to manage multiple systems and priorities in a regulated environment Strong analytical and problem-solving skills Attention to detail and compliance rigor Ability to translate technical risk into mission impact Effective communication with technical and non-technical stakeholders Relevant certifications: Certified Information Systems Security Professional (CISSP) Certified Ethical Hacker (CEH) or equivalentDISA ACAS
Training Certificate Experience with:ACAS SCAP
Compliance Checker (SCC) / Evaluate-STIG STIG Viewer eMASS, Xacta Trellix, MDE Splunk, Elastic Familiarity with scripting (e.g., PowerShell, Python) for automation. Experience in enterprise-level ConMon programs orNOSC/SOC
environments. How you'll grow At Chenega MIOS, our professional development plan focuses on helping our team members at every level of their careers to identify and use their strengths to do their best work every day. From entry-level employees to senior leaders, we believe there's always room to learn. We offer opportunities to help sharpen skills in addition to hands-on experience in the global, fast-changing business world. From on-the-job learning experiences to formal development programs, our professionals have a variety of opportunities to continue to grow throughout their careers. Benefits At Chenega MIOS, we know that great people make a great organization. We value our team members and offer them a broad range of benefits. Learn more about what working at Chenega MIOS can mean for you. Chenega MIOS's culture Our positive and supportive culture encourages our team members to do their best work every day. We celebrate individuals by recognizing their uniqueness and offering them the flexibility to make daily choices that can help them be healthy, centered, confident, and aware. We offer well-being programs and continuously look for new ways to maintain a culture where we excel and lead healthy, happy lives. Corporate citizenship Chenega MIOS is led by a purpose to make an impact that matters. This purpose defines who we are and extends to relationships with our clients, our team members, and our communities. We believe that business has the power to inspire and transform. We focus on education, giving, skill-based volunteerism, and leadership to help drive positive social impact in our communities. Learn more about Chenega's impact on the world. Chenega MIOS News- https://chenegamios.com/news/ Tips from your Talent Acquisition Team We want job seekers exploring opportunities at Chenega MIOS to feel prepared and confident. To help you with your research, we suggest you review the following links: Chenega MIOS web site
- www.chenegamios.com Glassdoor
- https://www.glassdoor.com/Overview/Working-at-Chenega-MIOS-EI_IE369514.11,23.htm LinkedIn
- https://www.linkedin.com/company/1472684/ Facebook
- https://www.
Qualifications:
High school diploma or GED equivalent 5+ years of experience in DoD cybersecurity or RMF-based environments Hands-on experience with: ACAS (Nessus / Tenable.sc) STIG implementation and validationIAVA/IAVM
processes Experience with vulnerability assessment, risk analysis, and remediation tracking. DoD 8570/8140Compliance:
Must meet IAT Level II requirements (e.g., Security+) Active DoD Top Secret clearance with SCI eligibility.Knowledge, Skills, and Abilities:
Strong understanding of: DoD RMF (DoDI 8510.01)NIST SP 800-53
security controls Ability to manage multiple systems and priorities in a regulated environment Strong analytical and problem-solving skills Attention to detail and compliance rigor Ability to translate technical risk into mission impact Effective communication with technical and non-technical stakeholders Relevant certifications: Certified Information Systems Security Professional (CISSP) Certified Ethical Hacker (CEH) or equivalentDISA ACAS
Training Certificate Experience with:ACAS SCAP
Compliance Checker (SCC) / Evaluate-STIG STIG Viewer eMASS, Xacta Trellix, MDE Splunk, Elastic Familiarity with scripting (e.g., PowerShell, Python) for automation. Experience in enterprise-level ConMon programs orNOSC/SOC
environments. How you ll grow At Chenega MIOS, our professional development plan focuses on helping our team members at every level of their careers to identify and use their strengths to do their best work every day. From entry-level employees to senior leaders, we believe there s always room to learn. We offer opportunities to help sharpen skills in addition to hands-on experience in the global, fast-changing business world. From on-the-job learning experiences to formal development programs, our professionals have a variety of opportunities to continue to grow throughout their careers. Benefits At Chenega MIOS, we know that great people make a great organization. We value our team members and offer them a broad range of benefits. Learn more about what working at Chenega MIOS can mean for you. Chenega MIOS s culture Our positive and supportive culture encourages our team members to do their best work every day. We celebrate individuals by recognizing their uniqueness and offering them the flexibility to make daily choices that can help them be healthy, centered, confident, and aware. We offer well-being programs and continuously look for new ways to maintain a culture where we excel and lead healthy, happy lives. Corporate citizenship Chenega MIOS is led by a purpose to make an impact that matters. This purpose defines who we are and extends to relationships with our clients, our team members, and our communities. We believe that business has the power to inspire and transform. We focus on education, giving, skill-based volunteerism, and leadership to help drive positive social impact in our communities. Learn more about Chenega s impact on the world. Chenega MIOS News- https://chenegamios.com/news/ Tips from your Talent Acquisition Team We want job seekers exploring opportunities at Chenega MIOS to feel prepared and confident. To help you with your research, we suggest you review the following links: Chenega MIOS web site
- www.chenegamios.com Glassdoor
- https://www.glassdoor.com/Overview/Working-at-Chenega-MIOS-EI_IE369514.11,23.htm LinkedIn
- https://www.linkedin.com/company/1472684/ Facebook
- https://www.
Similar remote jobs
LifeStance Health
New Hyde Park, NY
Posted2 days ago
Updated5 hours ago
Albemarle County Public Schools
Charlottesville, VA
Posted2 days ago
Updated5 hours ago
Intermountain Health
Frankfort, KY
Posted2 days ago
Updated5 hours ago
Similar jobs in Oakton, VA
Anderson Merchandisers
Oakton, VA
Posted3 days ago
Updated5 hours ago
Giant Food - PROD
Oakton, VA
Posted4 days ago
Updated5 hours ago
Giant Food - PROD
Oakton, VA
Posted4 days ago
Updated5 hours ago
Similar jobs in Virginia
Rappahannock Community College
Virginia
Posted2 days ago
Updated9 hours ago
The Coca-Cola Company
Dinwiddie, VA
Posted2 days ago
Updated9 hours ago
Albemarle County Public Schools
Charlottesville, VA
Posted2 days ago
Updated5 hours ago