FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Senior Security Analyst – A&A, Assessor – NIST
IT Coalition. Conduct A&A activities for NIST systems individually or as part of a team .
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in conducting A&A activities for NIST systems, implementing the NIST 800 Series Special Publications, and developing Security Assessment Reports. Proficient in risk management, vulnerability analysis, and IT security policy formulation.
Highest-signal resume keywords
NIST 800 Series ImplementationSecurity Assessment ReportsRisk Management FrameworkVulnerability ScanningCISSP Certification
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
A&A ActivitiesSecurity Test and EvaluationSystem Security PlansContingency PlansRisk Acceptance JustificationsVulnerability Data AnalysisTechnical WritingPolicy DevelopmentControl TestingRisk Mitigation
Soft Skills
Technical Oral SkillsCustomer Service Skills
Tools & Technologies
RSA ArcherCSAMTenableWebInspectAppDetectiveAWSAzure
Certifications & Qualifications
CISSPCISMCISA
Industry Keywords
Federal ExperienceGOVCON ExperienceNIST Risk Management FrameworkInformation System Security OfficersVulnerability Briefings
Tech Stack
Tools & technologiesAWSAzureCloud
About the role
Key responsibilities & impact- Conduct A&A activities for NIST systems individually or as part of a team
- Work with NIST staff to provide technical and policy-driven solutions to remediate or mitigate identified risks
- Support system personnel with remediation plans for A&A findings
- Provide guidance to Information System Security Officers (ISSO) on system documentation
- Coordinate and conduct vulnerability scans and analyze results
- Complete Security Assessment Reports covering technical and policy-related aspects of assessments
- Review and update A&A packages based on management feedback
Requirements
What you’ll need- 5 - 8 years of experience implementing the NIST 800 Series Special Publications
- Demonstrable experience conducting IT assessor activities based on the NIST Risk Management Framework, including interviewing, examining and testing related control sets
- Experience reviewing and/or updating System Security Plans, Contingency Plans, Privacy Threshold Assessments, hardware and software inventories, and system diagrams
- Experience performing Security Test and Evaluation and developing Security Assessment Reports for NIST senior management
- Experience delivering risk and vulnerability briefings to management and government customers
- Experience working with vulnerability data, writing Assessment Reports, POA&Ms and Risk Acceptance justifications
- Knowledge of forming and implementing IT security policies addressing confidentiality, integrity and availability of information systems
- Strong technical oral, writing and customer service skills
- Ability to successfully pass a National Agency Check with Local Agency Check (NACLC)
- Candidate must be able to function in a general office environment
- Prior federal or GOVCON experience preferred
- Cloud experience (AWS or Azure) preferred
- Active CISSP, CISM, CISA or comparable certification preferred
- Advanced degree in computer science or related field or related experience preferred
- Direct experience with NIST or other academic environments preferred
- Expertise with COTS-based security tools such as RSA Archer, CSAM, Tenable, WebInspect, and AppDetective preferred
Benefits
Comp & perks- Health, Dental and Vision
- 401(k)
- Flexible Spending Account (FSA)
- 11 Paid Federal Holidays
- PTO
- education reimbursement
- Outstanding compensation and benefits plan
- Challenging and rewarding professional work environment