Senior Information Security Analyst
5468
CALIBRE Systems, Inc., an employee-owned mission focused solutions and digital transformation company, is looking for a highly qualified Senior Information Security Analyst to support a DoD client with enterprise cybersecurity for a large program serving military families. This position will be hybrid with some required meetings in Alexandria, VA.
This candidate will lead and oversee cybersecurity compliance, security architecture, threat detection, vulnerability management, incident response, RMF/eMASS support, and ATO sustainment for DoD cloud infrastructure and information systems. The senior analyst will provide technical leadership for Zero Trust Architecture implementation, advanced security monitoring, vulnerability remediation, cyber reporting, and coordination with Government cybersecurity stakeholders.
An active Secret clearance is required.
Salary range will be from $105k-$115k.
Key Responsibilities:
· Lead RMF, ATO, continuous monitoring, and eMASS activities, including development and execution of ATO action plans and sustainment documentation.
· Develop and maintain Zero Trust Architecture across IL2, IL4, and IL5 cloud infrastructure and prepare quarterly Zero Trust compliance briefings.
· Design and implement advanced security architectures for predictive threat detection, incident response, real-time security insights, and cloud infrastructure resilience.
· Oversee weekly DISA STIG/SRG and ACAS assessments, vulnerability prioritization, remediation planning, and integration of results into eMASS.
· Lead POA&M governance, evidence collection, mitigation planning, and validation coordination with ISSM, ISSO, SCA Team, CIO/AO, and other Government stakeholders.
· Direct monitoring and analysis of cyber resources, SIEM-integrated logs, WAF/NGFW activity, anomaly detection, account aging, compliance monitoring, insider threat indicators, and GovCloud logs.
· Provide rapid escalation and advisory support for abnormal findings, vulnerabilities, cyber threats, OPORDs, CTOs, WARNORDs, and secure incident communications.
· Lead vulnerability assessments and penetration testing for new or modified applications, servers, databases, and infrastructure components before deployment.
· Coordinate with the Tier 2 Cybersecurity Service Provider to support incident lifecycle management, response coordination, and reporting timelines.
· Develop, recommend, and implement automated incident response workflows, cybersecurity playbooks, threat simulation labs, and cross-agency exercise scenarios.
· Oversee recurring audits of cybersecurity SOPs, contingency planning, disaster recovery exercises, and reporting through the IT, Cybersecurity, and Data Operations Dashboard.
· Access SIPRNet and attend classified briefings at the Government facility in Alexandria, Virginia, as required.
· Advanced knowledge of NIST RMF, eMASS, DISA STIGs/SRGs, ACAS, POA&Ms, DoD Zero Trust requirements, DoD 8140/DCWF mandates, and cybersecurity reporting requirements.
· Ability to analyze threat, vulnerability, compliance, and security monitoring data and translate findings into actionable remediation plans and executive-level reporting.
· Coordination with ISSMs, ISSOs, SCA teams, CIO/AO stakeholders, CSSPs, and technical operations teams.
· Ability to develop cybersecurity policies, SOPs, automated workflows, incident response playbooks, or security architecture recommendations.
Desired Skills and Qualifications:
· Master’s degree in Information Technology, Cybersecurity, Information Assurance, or a related field.
· DoD 8570/8140-aligned certification such as Security+ CE, CySA+, CISSP, CASP+, or equivalent
· Active Top Secret clearance
· Experience with eMASS or other compliance tracking platforms.
· Proficiency with cloud security controls and cloud-based compliance requirements.
· Demonstrable knowledge of Zero Trust principles and cybersecurity modernization strategies.
· Bachelor’s degree in Information Technology, Cybersecurity, Information Assurance, or a related field.
· Active Secret security clearance.
· 7+ years of experience in cybersecurity, RMF support, compliance, or information assurance.
· Senior-level experience (e.g. leading, mentoring, or supervising others) with DoD cybersecurity, information assurance, RMF, ATO, vulnerability management, compliance, or incident response activities.
Washington, District of Columbia, United States
Full-Time/Regular
Equal employment opportunity, including veterans and individuals with disabilities.
PI286597129