BAE Systems

RMF Analyst

Job posted: Jan 30, 2025
Sterling, Alaska, United States; Virginia, Alabama, United States
  • Salary average
    $92,290  -  $156,860
    per YEAR
  • Type of employment
    Full-time
  • Remote
    No

Company

BAE Systems, Inc. is the U.S. subsidiary of BAE Systems plc, an international defense, aerospace and security company which delivers a full range of products and services for air, land and naval forces, as well as advanced electronics, security, information technology solutions and customer support services.

Inspired by a shared set of values, our employees are trusted, innovative, and bold in everything they do. They shine in a highly collaborative environment where everyone wants to see each other succeed – because they know the quality of our work truly matters.

Responsibilities

  • Responsible for supporting adherence to all aspects of a rigorous Risk Management Framework (RMF) compliance program as stipulated by NISPOM/DAAPM, JSIG, STIGs and associated NIST publications.
  • Ensure continuous monitoring (e.g., weekly, monthly, etc.) in accordance with cognizant security authority requirements are being implemented and met.
  • Coordinating requirements with the responsible personnel and tracks suspense for completing required actions and reports virus problems in accordance with established procedures
  • Obtain and maintain Authority to Operate (ATO) approvals by adhering to the Risk Management Framework (RMF).
  • Support cybersecurity efforts throughout the RMF process to include the development and management of System Security documentation, Plans of Action and Milestones (POA&Ms), assessing and auditing systems security controls, and continuous monitoring of controls.
  • Provide oversight for compliance and ensure the execution of our strong self-inspection program.
  • Ensure all security certification and accreditation documents are up to date.
  • Ensuring the confidentiality, integrity and availability of systems and networks by planning, analyzing, developing, and implementing information systems security programs, policies, procedures, and tools.
  • Establish CONOPS and support a security operation center
  • Evaluate security controls to ensure adequate defenses and countermeasures to intercept and prevent internal or external attacks
  • Evaluate and document Zero Trust Architecture and associated controls
  • Evaluating operational readiness of communications equipment, network devices, sensors, intrusion detection and related support equipment.
  • Evaluate security policies to control physical and virtual access to systems
  • Evaluate cloud-based security services to ensure compliance with ZTA and RMF requirements for end user services such as email, web browsing, and virtual desktops

Contract

40 hours per week

Candidate requirements

  • Excellent verbal and written communication skills
  • We provide impactful professional development experiences to our employees and invest in social impact partnerships to uplift communities and drive purposeful change
  • At BAE Systems, we promote a strong, collaborative culture and provide our employees with the tools, skills and training they need to succeed
  • Team player with a proactive attitude, the ability to be productive in a dynamic / collaborative environment
  • Attentive to detail, ability to stay focused on task
  • Provide oversight for compliance and ensure the execution of our strong self-inspection program
  • Ability to prioritize work, write in a highly professional manner
  • Ability to analyze problems and identify viable solutions
  • Strong analytical, problem-solving, teamwork, and communication skills

Skills used at work

  • Accreditation
  • Architecture
  • Availability
  • Continuous monitoring
  • Documentation
  • End user
  • Information system
  • Information systems
  • Integrity
  • Management
  • Networks
  • Risk management
  • Risk management framework
  • Security
  • Security controls
  • Security services
  • Services
  • Systems security
  • Trust

Job Description

BAE Systems, a top-ten prime contractor to the U.S. Department of Defense, enables the U.S. government to transform data into intelligence and provides engineering, integration and sustainment support for critical military platforms and systems. Intelligence & Security provides services and products to the Department of Defense, the intelligence community, federal law enforcement officials, and troops deployed around the world.

At BAE Systems, we promote a strong, collaborative culture and provide our employees with the tools, skills and training they need to succeed. We are all about trust, camaraderie and a shared ambition to lead the world in defense technologies and national security services. Be a part of a company that is part of the community; driven to improve our future and protect our freedom.

BAE Systems is looking for an RMF Analyst to evaluate network and security services for a program that delivers cloud services across multiple classification levels in the environment, ensuring compliance with RMF and ZTA requirements.

Responsibilities will include:

  • Evaluate security controls to ensure adequate defenses and countermeasures to intercept and prevent internal or external attacks
  • Evaluate and document Zero Trust Architecture and associated controls
  • Responsible for supporting adherence to all aspects of a rigorous Risk Management Framework (RMF) compliance program as stipulated by NISPOM/DAAPM, JSIG, STIGs and associated NIST publications.
  • Obtain and maintain Authority to Operate (ATO) approvals by adhering to the Risk Management Framework (RMF).
  • Support cybersecurity efforts throughout the RMF process to include the development and management of System Security documentation, Plans of Action and Milestones (POA&Ms), assessing and auditing systems security controls, and continuous monitoring of controls.
  • Provide oversight for compliance and ensure the execution of our strong self-inspection program.
  • Ensure all security certification and accreditation documents are up to date.
  • Ensure continuous monitoring (e.g., weekly, monthly, etc.) in accordance with cognizant security authority requirements are being implemented and met.
  • Evaluating operational readiness of communications equipment, network devices, sensors, intrusion detection and related support equipment.
  • Coordinating requirements with the responsible personnel and tracks suspense for completing required actions and reports virus problems in accordance with established procedures
  • Ensuring the confidentiality, integrity and availability of systems and networks by planning, analyzing, developing, and implementing information systems security programs, policies, procedures, and tools.
  • Evaluate security policies to control physical and virtual access to systems
  • Establish CONOPS and support a security operation center
  • Evaluate cloud-based security services to ensure compliance with ZTA and RMF requirements for end user services such as email, web browsing, and virtual desktops

Required Education, Experience, & Skills

  • Bachelor's Degree and 5 years work experience or equivalent experience
  • DoD 8570.01 IAT/IAM level 2 cert
  • Strong analytical, problem-solving, teamwork, and communication skills
  • Ability to prioritize work, write in a highly professional manner
  • Ability to analyze problems and identify viable solutions
  • Able to work independently without close supervision; self-motivated and disciplined
  • Attentive to detail, ability to stay focused on task
  • Excellent verbal and written communication skills
  • Excellent Microsoft Office skills (Word, Excel, PowerPoint, Access, Outlook, etc.)
  • Team player with a proactive attitude, the ability to be productive in a dynamic / collaborative environment (e.g. open seating arrangement)

Preferred Education, Experience, & Skills

  • Master's degree
  • AWS Solution Architect Professional
  • DoD 8570.01 IAT/IAM level 3 cert

Pay Information

Full-Time Salary Range: $92290 - $156860

Please note: This range is based on our market pay structures. However, individual salaries are determined by a variety of factors including, but not limited to: business considerations, local market conditions, and internal equity, as well as candidate qualifications, such as skills, education, and experience.

Employee Benefits: At BAE Systems, we support our employees in all aspects of their life, including their health and financial well-being. Regular employees scheduled to work 20+ hours per week are offered: health, dental, and vision insurance; health savings accounts; a 401(k) savings plan; disability coverage; and life and accident insurance. We also have an employee assistance program, a legal plan, and other perks including discounts on things like home, auto, and pet insurance. Our leave programs include paid time off, paid holidays, as well as other types of leave, including paid parental, military, bereavement, and any applicable federal and state sick leave. Employees may participate in the company recognition program to receive monetary or non-monetary recognition awards. Other incentives may be available based on position level and/or job specifics.

About BAE Systems Intelligence & Security

BAE Systems, Inc. is the U.S. subsidiary of BAE Systems plc, an international defense, aerospace and security company which delivers a full range of products and services for air, land and naval forces, as well as advanced electronics, security, information technology solutions and customer support services. Improving the future and protecting lives is an ambitious mission, but it's what we do at BAE Systems. Working here means using your passion and ingenuity where it counts – defending national security with breakthrough technology, superior products, and intelligence solutions. As you develop the latest technology and defend national security, you will continually hone your skills on a team—making a big impact on a global scale. At BAE Systems, you'll find a rewarding career that truly makes a difference.

Intelligence & Security (I&S), based in McLean, Virginia, designs and delivers advanced defense, intelligence, and security solutions that support the important missions of our customers. Our pride and dedication shows in everything we do—from intelligence analysis, cyber operations and IT expertise to systems development, systems integration, and operations and maintenance services. Knowing that our work enables the U.S. military and government to recognize, manage and defeat threats inspires us to push ourselves and our technologies to new levels.

Job posted: Jan 30, 2025

Expiration date: Jan 30, 2026