Information System Security Analyst (ISSA)
Posted 3 months ago Expired
This job has expired
Looking for a job like Information System Security Analyst (ISSA) in or near Mooresville, NC? Upload your resume and we'll notify you when similar positions become available.
Upload Your ResumeAbout This Role
This Information System Security Analyst (ISSA) role focuses on the technical execution of Risk Management Framework (RMF) efforts within the Corporate Information System Security team, covering system scanning, hardening, and evidence gathering for Authorizations to Operate (ATOs). This position is ideal for an early career professional interested in working with diverse Windows and Linux environments on defense engineering projects.
Responsibilities
- Perform routine security sustainment activities, including audit log reviews, media protection, and hardware/software baseline audits supporting standalone or small enclave systems
- Validate system hardening by applying DISA STIGs and SRGs to Windows and Red Hat Enterprise Linux (RHEL) systems
- Conduct regular vulnerability scans using Tenable Nessus/Security Center; analyze results and assist system administrators in remediating findings
- Generate and organize technical evidence for SSPs, POAMs, and RARs
- Manage and update records within Enterprise Mission Assurance Support Service (eMASS)
- Work with System Administrators to ensure all changes to the environment maintain a strong security posture and follow approved change control processes
- Support the IS Security team in investigating and reporting potential security incidents or spills
Requirements
- U.S. Citizen
- Possess (and maintain) a Secret Clearance
- Familiarity with NISPOM, DAAPM, RMF, CMMC and other NIST (i.e., 800-171, NIST-53) publications
- Hands-on experience with STIG Viewer and SCAP Compliance Checker (SCC)
- Familiarity with ACAS (Nessus) scanning and reporting functions
- Basic administration skills in Windows and RHEL
Qualifications
- Bachelor's Degree in a related discipline or equivalent experience
- At least 1 year in Cybersecurity, Information Technology, or System Administration (experience can substitute for the degree requirement)
Nice to Have
- Scripting experience (e.g., PowerShell, Bash)
Skills
* Required skills
Benefits
Certifications
About Corvid Technologies
Corvid Technologies is an engineering firm specializing in using high-fidelity, computational modeling and simulation to analyze, design and manufacture products for aerospace, DoD, and commercial customers. They offer a fast-paced and flexible work environment that encourages creativity and collabo...