Hiring.Camp

Security Analyst

Coreone

·

Mar 27, 2026

Location
McLean, VA
Department
Application Development
Experience
3+ years
Education
Master
Clearance
Required
Source
Greenhouse

Description

Join our team at Core One! Our mission is to be at the forefront of devising analytical, operational and technical solutions to our Nation's most complex national security challenges. In order to achieve our mission, Core One values people first! We are committed to recruiting, nurturing, and retaining top talent! We offer a competitive total compensation package that sets us apart from our competition. Core One is a team-oriented, dynamic, and growing company that values exceptional performance!

Clearance Required: Active TS/SCI with Polygraph

Summary

We are seeking a Security Analyst to support cybersecurity operations, compliance, and risk management for FedRAMP-authorized and Intelligence Community (IC) systems. This role is responsible for ensuring systems meet stringent federal security requirements while enabling secure, scalable, and compliant cloud and on-premises solutions.

The ideal candidate brings deep expertise in NIST frameworks, FedRAMP authorization processes, continuous monitoring (ConMon), and ATO lifecycle management, along with the ability to operate in classified or high-security environments.

Key Responsibilities

  • Lead and support FedRAMP Moderate/High and IC ATO authorization processes
  • Develop, review, and maintain security documentation: System Security Plans (SSP), Security Assessment Reports (SAR), Plan of Action & Milestones (POA&M)
  • Ensure compliance with NIST SP 800-53 / 800-37 RMF, FedRAMP baselines, ICD 503
  • Perform risk assessments, control assessments, and gap analyses
  • Implement and manage RMF lifecycle activities (Categorize → Monitor)
  • Track and manage POA&M remediation activities
  • Facilitate security control inheritance and shared responsibility models
  • Execute continuous monitoring strategies and reporting
  • Analyze security posture using Vulnerability scans and Configuration compliance
  • Produce monthly/quarterly ConMon deliverables
  • Monitor and analyze security events and alerts
  • Support incident response and forensic analysis
  • Coordinate with SOC teams and stakeholders for threat mitigation
  • Conduct root cause analysis and lessons learned
  • Secure cloud environments aligned with FedRAMP controls
  • Implement identity and access controls
  • Support 3PAO assessments and audits
  • Prepare evidence artifacts for FedRAMP JAB/Agency ATO reviews and Inspector General (IG) audits
  • Coordinate with internal/external auditors
  • Utilize security tools for monitoring and compliance: Splunk, Sentinel, Vulnerability management tools, RSA Archer, ServiceNow
  • Support automation of compliance and reporting workflows
  • Act as liaison between Engineering teams, ISSOs / ISSMs, and Compliance and audit teams
  • Provide security guidance during system design and change management
  • Mentor junior analysts and support team development
  • Promote a culture of security-first engineering and compliance excellence
  • Contribute to security governance and policy development

Qualifications 

  • Active TS/SCI with Polygraph
  • Bachelor's degree or higher in Cybersecurity, IT, or related field and 5+ years' experience in Cybersecurity in federal or IC environments
  • OR Masters and 3+ years of experience in Cybersecurity in federal or IC environments
  • Strong Knowledge of NIST RMF (800-37), NIST 800-53 controls, and FedRAMP requirements
  • At least one of the following certifications: CISM or CISA, CompTIA Security+ (baseline), Certified Authorization Professional (CAP), CCSP (cloud security)
  • Experience in the following tools: NIST 800-53, RMF, FedRAMP, ICD 503, RSA Archer, ServiceNow GRC, Splunk, Azure Sentinel, Nessus, ACAS, AWS GovCloud, Azure Government, GCP, SCAP, STIG Viewer

Desired Qualifications

  • Experience with cloud-native security tools
  • Knowledge of Zero Trust Architecture
  • Experience with cross-domain solutions
  • Experience with ICD 503
  • Familiarity with DevSecOps pipelines in regulated environments

Core One is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender identity, sexual orientation, national origin, or protected veteran status and will not be discriminated against on the basis of disability.

Skills

AWSAzureGCPServiceNowCybersecuritySOCSplunkRisk ManagementComplianceChange ManagementCompTIA

Similar Jobs

30

Security Analyst

Sprezzatura Management Consulting · Remote, US · Remote

Yesterday

Security Analyst

Beacontechnologies · Madison, Wisconsin, US

Yesterday

Security Analyst

Queracomputinginc · Boston, MA, USA +1

2 days ago

Security Analyst

Nokia · Portugal, PT · Hybrid

5 days ago

Security Analyst

Thales · Mexico Polanco · Hybrid

5 days ago

Security Analyst

Litmos · India +1

6 days ago

Security Analyst

Nokia · Portugal, PT · Hybrid

1 week ago

Security Analyst

Thermofisher · US - Waltham, MA - 500 Totten Pond Road, 5th Floor, United States of America · Onsite

1 week ago

Security Analyst

METRO/MAKRO · Pune, Maharshtra, India

1 week ago

Security Analyst

Nokia · Portugal, PT · Hybrid

1 week ago

Security Analyst

CAREER OPPORTUNITIES · Ontario, Canada | WFH | CAN-ON +1 · Remote

1 week ago

Security Analyst

Safe-Guard Products International · Atlanta, GA

1 week ago

Security Analyst

Uw · Seattle, Non-Campus, United States of America · Hybrid

1 week ago

Security Analyst

Dssmith · Krakow Global Business Services Center - IP (POL), Poland · Hybrid

2 weeks ago

Security Analyst

Asia Select Inc. · PH

2 weeks ago

Security Analyst

Cobdenandcarter · Pasig

3 weeks ago

Security Analyst

Nokia · Portugal, PT · Hybrid

3 weeks ago

Security Analyst

Acquireai · Pasig City, Philippines

3 weeks ago

Security Analyst

Privacy Policy · Hyderabad, Telangana, India

4 weeks ago

Data Security Analyst

Clarivate · R244-Kansas City, United States of America · Hybrid

4 weeks ago

Data Security Analyst

Career opportunities · R244-Kansas City, United States of America · Hybrid

4 weeks ago

Security Analyst

Center For Health Information And Analysis · Boston, MA

1 month ago

Security Analyst

ASOS · London, England, United Kingdom · Hybrid

1 month ago

Security Analyst

SkyBox Labs · Burnaby, British Columbia · Onsite

1 month ago

Security Analyst

Careers - AbsenceSoft · Denver, CO

1 month ago

Security Analyst

Computer World Services · Morrisville, NC · Hybrid

1 month ago

Security Analyst

Infios · Remote Brazil · Remote

1 month ago

Security Analyst

Pencor Services · Palmerton, Pennsylvania

1 month ago

Security Analyst

Rytbank · KL - Headquarter, Malaysia

1 month ago

Security Analyst

Trendmicro · Tokyo, Japan

1 month ago
Security Analyst at Coreone | Hiring.Camp