Security Analyst FedRAMP / RMF / NIST Hybrid (Herndon, VA)

Overview

On Site
Hybrid
$50 - $80
Full Time
No Travel Required

Skills

FedRAMP
NIST RMF
FISMA
DISA STIG
DISA SRG
NIST 800-53
NIST 800-171
ATO packages
POAM
CONMON
SSP
cybersecurity
vulnerability management
Nessus
Splunk
cloud security
AWS
Azure
system security
security controls
risk management
Collaboration
Risk Management Framework
Regulatory Compliance
RMF
NIST SP 800 Series

Job Details

Type: Contract / Contract-to-Hire/ Full time
Location: Herndon, VA (Hybrid Tues to Thurs on-site)


Job Description:
We re looking for a Security Analyst with strong FedRAMP and NIST RMF experience to support a major cloud enterprise security program. This hybrid role (3 days/week onsite in Herndon, VA) is part of a prime federal contract supporting SAP NS2.


Responsibilities Include:

  • Create and maintain FedRAMP-compliant security documentation (SSP, POAMs, CONMON)

  • Collaborate with ISSOs and cloud teams to remediate vulnerabilities

  • Analyze cloud system posture and RMF package compliance

  • Review and produce technical documentation including data flows, system diagrams

  • Ensure controls meet NIST 800-53, NIST 800-171, DISA STIG/SRG requirements


Required Skills:

  • U.S. Citizen (mandatory for federal work)

  • Experience supporting FedRAMP and RMF A&A processes

  • Strong familiarity with FISMA, DISA, and NIST control baselines

  • Tools: Nessus, Splunk, or equivalent scanning tools

  • Able to interpret architecture diagrams and support compliance reporting


Nice to Have:

  • Previous experience supporting federal cloud environments


Start Date: ASAP
Duration: 6 Months (Contract-to-Hire)
Interview: 1 2 rounds (technical + team)


Apply Today!
Be part of a high-impact team securing mission-critical cloud environments.

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.

About NextGen IT Services