Talent.com
Sr. Security RMF Audit Analyst
Sr. Security RMF Audit AnalystOasys International • Charlotte, NC, United States
Sr. Security RMF Audit Analyst

Sr. Security RMF Audit Analyst

Oasys International • Charlotte, NC, United States
30+ days ago
Job type
  • Full-time
Job description

Who We Are : Oasys International, LLC (Oasys) is a rapidly expanding firm that has been recognized on Inc. 5000 magazine's list of the fastest-growing companies for five consecutive years. We are a dynamic organization dedicated to providing world-class technology consulting services through our team of expert technologists, consultants, engineers, and subject matter experts. At Oasys, we prioritize continuous learning, a healthy work-life balance, and a collaborative work environment. Our culture is merit-based, recognizing and rewarding performance and fostering a supportive and social atmosphere.

Position Summary :

Oasys is seeking a Sr. Security RMF Audit Analyst to support the United States Coast Guard (USCG) at the Aviation Logistics Center (ALC)-Information Systems Division (ISD). The Sr. Security RMF Audit Analyst will lead audit preparation and execution, support continuous RMF lifecycle activities, and oversee compliance with federal cybersecurity requirements across on-premises, virtual, and cloud-hosted systems.

This position will serve as a senior technical advisor in security compliance efforts, guiding cross-functional teams through POA&M development, control remediation, ATO documentation, and continuous monitoring in accordance with NIST 800-53, DHS 4300A, and FISMA standards.

Primary Responsibilities :

  • Oversee the Risk Management Framework (RMF) lifecycle, including assessment, authorization, and continuous monitoring across all ALC-ISD systems.
  • Lead and coordinate internal and external cybersecurity audits, including pre-audit readiness assessments and post-audit remediation tracking.
  • Validate the implementation of security controls (NIST SP 800-53 Rev. 5) and ensure they are effectively documented within System Security Plans (SSPs), Security Assessment Reports (SARs), and related artifacts.
  • Design and implement vulnerability management strategies, assess threat vectors, and develop comprehensive Plans of Action and Milestones (POA&Ms).
  • Analyze cyber risks and provide guidance on remediation strategies aligned with DHS policy and evolving cybersecurity threats.
  • Perform and document risk assessments, penetration testing coordination, and impact analyses to evaluate the security posture of information systems.
  • Collaborate with Security Control Assessors (SCAs), engineers, ISSOs, and DevSecOps teams to ensure audit alignment with enterprise system modernization efforts.
  • Manage and maintain audit packages, compliance dashboards, and evidence repositories using platforms like Jira, Confluence, and SharePoint.
  • Assess and validate configurations of infrastructure (e.g., Windows, Linux, databases, Active Directory) for compliance with security benchmarks (e.g., DISA STIGs, CIS).
  • Draft and update security-related documentation including SOPs, incident response plans, and security test procedures.
  • Serve as a subject matter expert to stakeholders on RMF best practices, ATO sustainment, and security documentation management.
  • All other duties as assigned by management.

Skills / Qualifications :

  • Advanced knowledge of NIST RMF, NIST SP 800-37, 800-53, DHS 4300A, and FISMA compliance.
  • Experience preparing and maintaining RMF ATO documentation and conducting system assessments.
  • Familiarity with Security Information and Event Management (SIEM) platforms for log analysis and incident monitoring.
  • Proficient in evaluating and documenting security configurations and technical implementations for federal systems.
  • Strong understanding of cybersecurity audit workflows, control testing, and risk-based prioritization of vulnerabilities.
  • Excellent writing and communication skills, capable of producing technical documentation and executive summaries.
  • Experience in Agile or DevSecOps environments, with a strong understanding of security integration within CI / CD pipelines.
  • Education / Experience Requirements :

  • Bachelor's or Associate's degree in Computer Science, Math, Information Technology, Engineering, or related field. Two (2) years of directly relevant experience may substitute for one (1) year of formal education.
  • Minimum of five (5) years of experience in Information security with auditing and IT controls design experience.
  • Minimum of five (5) years of experience with Security Information and Event Management (SIEM).
  • Minimum of five (5) years of experience in the risk management framework.
  • Hands-on experience with Active Directory, Windows / UNIX systems, and relational databases in secure environments.
  • Previous support of federal government enterprise systems or DHS / DOD programs is strongly preferred.
  • Clearance :

  • U.S. citizenship required
  • Must have an active DoD Secret Clearance.
  • Certification Requirement

  • CompTIA Security+
  • Additional certifications (Network+, AWS Certified Cloud Practitioner, Microsoft Azure Fundamentals, Certified Information Systems Auditor (CISA), Certified Information Security Manager (CISM), ITIL Foundation, TOGAF, or other cybersecurity architecture certifications) are a plus.
  • Work Location :

  • Elizabeth City, NC - Hybrid
  • North Carolina Region - Must be able to go on-site at least three days a week
  • Oasys is proud to be an equal opportunity employer for all protected groups, including protected veterans and individuals with disabilities.

    Create a job alert for this search

    Audit Analyst • Charlotte, NC, United States

    Related jobs
    Sr. Analyst, Security Systems

    Sr. Analyst, Security Systems

    LPL Financial Holdings, Inc. • Fort Mill, SC, United States
    Full-time
    At LPL Financial, we empower professionals to shape their success while helping clients pursue their financial goals with confidence. If you're ready to take the next step, discover what's possible ...Show more
    Last updated: 2 days ago • Promoted
    Stratascale Associate Security Analyst - Operations

    Stratascale Associate Security Analyst - Operations

    SHI GmbH • Charlotte, NC, United States
    Full-time
    As a digital and cybersecurity services company, Stratascale exists to help the Fortune 1000 transform the way they use technology to advance the business, generate revenue, and respond quickly to ...Show more
    Last updated: 30+ days ago • Promoted
    Stratascale Associate Security Analyst - Operations

    Stratascale Associate Security Analyst - Operations

    StrataScale • Charlotte, NC, United States
    Full-time
    As a digital and cybersecurity services company, Stratascale exists to help the Fortune 1000 transform the way they use technology to advance the business, generate revenue, and respond quickly to ...Show more
    Last updated: 30+ days ago • Promoted
    Accounting Manager

    Accounting Manager

    Vaco by Highspring • Claremont, NC, US
    Permanent
    Reporting to the VP of Finance, the Accounting Manager will lead the day-to-day financial accounting and administrative activities with functional responsibility over the general ledger, accounts p...Show more
    Last updated: 30+ days ago • Promoted
    Audit Manager

    Audit Manager

    Jobot • Hickory, NC, US
    Full-time
    Rapidly Growing CPA Firm offering great culture, benefits, & pay!.This Jobot Job is hosted by : Davis Greinke.Are you a fit? Easy Apply now by clicking the "Apply Now" button and sending us your res...Show more
    Last updated: 30+ days ago • Promoted
    Accounting & Finance Manager

    Accounting & Finance Manager

    The Lane Construction Corporation • Gastonia, NC, US
    Temporary
    The Administrative, Financial and Controls Manager oversees day-to-day administrative / finance and cost control functions at the Project Level supporting Project Director in the decision-making proc...Show more
    Last updated: 30+ days ago • Promoted
    Senior Analyst, AML Compliance Governance, Advisory, and Training

    Senior Analyst, AML Compliance Governance, Advisory, and Training

    LPL Financial • Fort Mill, SC, US
    Full-time
    At LPL Financial, we empower professionals to shape their success while helping clients pursue their financial goals with confidence. Discover what's possible with LPL Financial.The AML Compliance S...Show more
    Last updated: 3 days ago • Promoted
    Sr. Manager, Internal Audit

    Sr. Manager, Internal Audit

    Sunbelt Rentals • Fort Mill, SC, United States
    Full-time
    Sunbelt Rentals strives to be the customer's first choice in the equipment rental industry.From pumps to scaffolding to general construction tools, we aim to be the only call needed to outfit a job...Show more
    Last updated: 2 days ago • Promoted
    Make Money from Home – Become a Financial Survey Analyst! (Hiring Immediately)

    Make Money from Home – Become a Financial Survey Analyst! (Hiring Immediately)

    Maxion Research • Mint Hill, North Carolina, US
    Part-time
    Part-time Research Study Personnel (Pay up to $790 / wk.Due to demand, we are now accepting applications for personnel to participate in our local in-person and nationwide remote research studies.Thi...Show more
    Last updated: 30+ days ago • Promoted
    Product Management Analyst III

    Product Management Analyst III

    Daimler Truck North America • Fort Mill, SC, United States
    Full-time
    This position is responsible for the strategy and positioning of the product segment.You will be responsible for analyzing the market for your products. determining any product gaps; advising Prici...Show more
    Last updated: 8 days ago • Promoted
    Senior Internal Audit Analyst

    Senior Internal Audit Analyst

    Albemarle • Charlotte, NC, United States
    Full-time
    Be an essential element to a brighter future.We work together to transform essential resources into critical ingredients for mobility, energy, connectivity and health. Join our values-led organizati...Show more
    Last updated: 15 days ago • Promoted
    U.S. Border Patrol Agent

    U.S. Border Patrol Agent

    U.S. Customs and Border Protection • Cooleemee, North Carolina, United States
    Full-time
    Customs and Border Protection (CBP) offers those interested in a career in law enforcement an exceptional opportunity to work with an elite team of highly trained professionals whose camaraderie, p...Show more
    Last updated: 30+ days ago • Promoted
    Credit Risk Analyst

    Credit Risk Analyst

    True Homes • Monroe, NC, United States
    Full-time
    The Credit Risk Analyst is responsible for ensuring the accuracy, compliance, and integrity of all documentation and milestones supporting a client's financing from contract through home start.This...Show more
    Last updated: 9 hours ago • Promoted • New!
    SAP FI Finance Systems Analyst Local Key User (LKU)

    SAP FI Finance Systems Analyst Local Key User (LKU)

    Continental • Fort Mill, South Carolina, USA
    Full-time
    Responsible for understanding United States and Canada business processes and financial systems capabilities.Primary task is to provide support to the local users in United States and Canada SAP se...Show more
    Last updated: 5 days ago • Promoted
    Border Patrol Agent

    Border Patrol Agent

    U.S. Customs and Border Protection • Sharon, South Carolina, United States
    Full-time
    Customs and Border Protection (CBP) offers those interested in a career in law enforcement an exceptional opportunity to work with an elite team of highly trained professionals whose camaraderie, p...Show more
    Last updated: 30+ days ago • Promoted
    Audit Lead - AI Model Risk (Hiring Immediately)

    Audit Lead - AI Model Risk (Hiring Immediately)

    USAA • CHARLOTTE, NC, United States
    Full-time
    At USAA, our mission is to empower our members to achieve financial security through highly competitive products, exceptional service and trusted advice. We seek to be the #1 choice for the military...Show more
    Last updated: 2 days ago • Promoted
    Director Cyber Security

    Director Cyber Security

    New-Indy Containerboard • Catawba, South Carolina, USA
    Full-time
    Home Office - Catawba - Catawba SC.New-IndyWhere Innovation Meets Opportunity!.New-Indy is an independent privately-owned manufacturer and supplier of corrugated boxes recycled containerboard and v...Show more
    Last updated: 1 day ago • Promoted
    Sr. Manager-Accounting

    Sr. Manager-Accounting

    Lowe's • Mooresville, NC, United States
    Full-time
    The primary purpose of this role is to lead a team responsible for accurately processing and reviewing financial activities related to revenue accounting to enable accurate reporting on a monthly, ...Show more
    Last updated: 9 hours ago • Promoted • New!