Apply with hirly
Information Security Analyst, SME, Lead
LOGC2 · Springfield, VA
Upload your resume to see how well you match this job — free, in seconds, no account needed.
Your resume is used only to score it against this job. If you don't create an account, it is deleted within 24 hours.
Already have an account? Sign in to see your saved application
Description Contingent on Contract Award National Capital Region (Hybrid On-site/Telework if approved) Connected Logistics is seeking an Information Security Analyst, SME, RMF Step 6 Lead, to assist in providing the Department of State Directorate of Technology (DT), Enterprise Architecture (EA), Cyber Security Team (CST) comprehensive cybersecurity support services to protect critical consular systems and data. The CST Cyber portfolio ensures compliance with federal mandates including the Federal Information Security Modernization Act (FISMA) and the Risk Management Framework (RMF), encompassing security monitoring, incident response, threat detection, vulnerability management, and continuous authorization activities. Information Security Analyst, SME (Step 6 /Continuous Monitoring Lead) will direct personnel supporting the operational security and authorization posture of consular systems. The Lead uses system risk, vulnerability exposure, changes, authorization conditions, and reporting obligations to prioritize work and maintain current, traceable RMF records. Key Responsibilities: Responsible for directing continuous monitoring, ongoing authorization support, vulnerability and cloud-posture analysis, POA&M tracking, change-impact reviews, and CO1 Tenable operational coverage.
- Assign ConMon work and review exception queues, authorization milestones, overdue findings, and emerging risk.
- Oversee scheduled Tenable coverage, relief staffing, shift handoffs, escalation, platform health, and recovery coordination.
- Correlate Tenable and Wiz findings with CA systems and authorization boundaries using approved system identifiers.
- Prioritize KEVs, BOD actions, critical and high findings, remediation milestones, and evidence-backed closure.
- Direct SIA/NOC reviews and related updates to SSPs, diagrams, inventories, privacy artifacts, and POA&Ms.
- Coordinate annual assessment support, contingency tests, audit responses, FISMA submissions, and incident-related artifact updates.
- Escalate authorization-impacting conditions and coordinate return to earlier RMF activities when required.
- Coordinate CO1 tool responsibilities with CO5 through approved responsibility assignments and interfaces. Requirements
- U.S. citizenship and a final Secret clearance or higher
- Relevant degree in cybersecurity, computer science, information systems, or a related discipline, subject to the
Sme Lcat
and permitted substitutions.
- Advanced Federal continuous-monitoring and vulnerability-management experience with demonstrated team leadership and ongoing authorization support.
- Proficiency in POA&M management, security impact analysis, risk prioritization, FISMA reporting, and
Nist Rmf
requirements.
- Practical understanding of Tenable platform administration, credentialed scanning, cloud posture analysis, integrations, and operational escalation.
- Availability to support coverage planning and after-hours escalation as assigned; meet applicable certification requirements.
- Meet applicable LCAT certification requirements and maintain required credentials. Preferred Qualifications
- CISSP, CGRC, CISM, or role-relevant Tenable and cloud credentials.
- DOS experience with ArchAngel, Wiz, iPost/iMatrix, SIA/NOC processes, and KEV/BOD remediation.
- Leadership of shift-based vulnerability operations and automated monitoring workflows. Success in this position will be demonstrated by reliable operational coverage, current authorization records, actionable monitoring data, timely risk escalation, and validated remediation progress. Total Rewards Statement We believe in fairness and clarity throughout our hiring process. The anticipated salary range for this position is $120,000.00-$130,000.00 USD. This is a good-faith range based on factors such as your experience, geographic location, and any applicable contractual requirements, and may vary slightly. Beyond salary, we provide a robust benefits package and encourage ongoing professional development, because your growth and well-being matter to us. We’re excited to support you in building a rewarding career with us! Connected Logistics respects the need for confidentiality for all applicants. Connected Logistics has been named a 2026 WTOP Top Workplace in the medium sized business category. Our mission is clear: we deliver mission-focused IT, cybersecurity, logistics, and enterprise modernization support to federal agencies. When we invest in our people and create an environment where they feel valued and empowered, we deliver stronger outcomes for our clients and the missions we support. Connected Logistics offers an excellent benefits package that includes health, dental, vision, life, and disability insurance, a great 401(k) package, and generous Paid Time Off. EOE/Disability/Veterans