Talent.com
Sr. Security RMF Audit Analyst
Sr. Security RMF Audit AnalystOasys International • Charlotte, NC, United States
Sr. Security RMF Audit Analyst

Sr. Security RMF Audit Analyst

Oasys International • Charlotte, NC, United States
30+ days ago
Job type
  • Full-time
Job description

Who We Are : Oasys International, LLC (Oasys) is a rapidly expanding firm that has been recognized on Inc. 5000 magazine's list of the fastest-growing companies for five consecutive years. We are a dynamic organization dedicated to providing world-class technology consulting services through our team of expert technologists, consultants, engineers, and subject matter experts. At Oasys, we prioritize continuous learning, a healthy work-life balance, and a collaborative work environment. Our culture is merit-based, recognizing and rewarding performance and fostering a supportive and social atmosphere.

Position Summary :

Oasys is seeking a Sr. Security RMF Audit Analyst to support the United States Coast Guard (USCG) at the Aviation Logistics Center (ALC)-Information Systems Division (ISD). The Sr. Security RMF Audit Analyst will lead audit preparation and execution, support continuous RMF lifecycle activities, and oversee compliance with federal cybersecurity requirements across on-premises, virtual, and cloud-hosted systems.

This position will serve as a senior technical advisor in security compliance efforts, guiding cross-functional teams through POA&M development, control remediation, ATO documentation, and continuous monitoring in accordance with NIST 800-53, DHS 4300A, and FISMA standards.

Primary Responsibilities :

  • Oversee the Risk Management Framework (RMF) lifecycle, including assessment, authorization, and continuous monitoring across all ALC-ISD systems.
  • Lead and coordinate internal and external cybersecurity audits, including pre-audit readiness assessments and post-audit remediation tracking.
  • Validate the implementation of security controls (NIST SP 800-53 Rev. 5) and ensure they are effectively documented within System Security Plans (SSPs), Security Assessment Reports (SARs), and related artifacts.
  • Design and implement vulnerability management strategies, assess threat vectors, and develop comprehensive Plans of Action and Milestones (POA&Ms).
  • Analyze cyber risks and provide guidance on remediation strategies aligned with DHS policy and evolving cybersecurity threats.
  • Perform and document risk assessments, penetration testing coordination, and impact analyses to evaluate the security posture of information systems.
  • Collaborate with Security Control Assessors (SCAs), engineers, ISSOs, and DevSecOps teams to ensure audit alignment with enterprise system modernization efforts.
  • Manage and maintain audit packages, compliance dashboards, and evidence repositories using platforms like Jira, Confluence, and SharePoint.
  • Assess and validate configurations of infrastructure (e.g., Windows, Linux, databases, Active Directory) for compliance with security benchmarks (e.g., DISA STIGs, CIS).
  • Draft and update security-related documentation including SOPs, incident response plans, and security test procedures.
  • Serve as a subject matter expert to stakeholders on RMF best practices, ATO sustainment, and security documentation management.
  • All other duties as assigned by management.

Skills / Qualifications :

  • Advanced knowledge of NIST RMF, NIST SP 800-37, 800-53, DHS 4300A, and FISMA compliance.
  • Experience preparing and maintaining RMF ATO documentation and conducting system assessments.
  • Familiarity with Security Information and Event Management (SIEM) platforms for log analysis and incident monitoring.
  • Proficient in evaluating and documenting security configurations and technical implementations for federal systems.
  • Strong understanding of cybersecurity audit workflows, control testing, and risk-based prioritization of vulnerabilities.
  • Excellent writing and communication skills, capable of producing technical documentation and executive summaries.
  • Experience in Agile or DevSecOps environments, with a strong understanding of security integration within CI / CD pipelines.
  • Education / Experience Requirements :

  • Bachelor's or Associate's degree in Computer Science, Math, Information Technology, Engineering, or related field. Two (2) years of directly relevant experience may substitute for one (1) year of formal education.
  • Minimum of five (5) years of experience in Information security with auditing and IT controls design experience.
  • Minimum of five (5) years of experience with Security Information and Event Management (SIEM).
  • Minimum of five (5) years of experience in the risk management framework.
  • Hands-on experience with Active Directory, Windows / UNIX systems, and relational databases in secure environments.
  • Previous support of federal government enterprise systems or DHS / DOD programs is strongly preferred.
  • Clearance :

  • U.S. citizenship required
  • Must have an active DoD Secret Clearance.
  • Certification Requirement

  • CompTIA Security+
  • Additional certifications (Network+, AWS Certified Cloud Practitioner, Microsoft Azure Fundamentals, Certified Information Systems Auditor (CISA), Certified Information Security Manager (CISM), ITIL Foundation, TOGAF, or other cybersecurity architecture certifications) are a plus.
  • Work Location :

  • Elizabeth City, NC - Hybrid
  • North Carolina Region - Must be able to go on-site at least three days a week
  • Oasys is proud to be an equal opportunity employer for all protected groups, including protected veterans and individuals with disabilities.

    Create a job alert for this search

    Audit Analyst • Charlotte, NC, United States

    Related jobs
    Internal Auditor

    Internal Auditor

    Family Trust Federal Credit Union • Rock Hill, SC, United States
    Full-time
    The Internal Auditor supports the Internal Audit Department's goal of providing independent, objective, assurance and consulting services to the Board of Directors, Supervisory Committee and Senior...Show more
    Last updated: 17 days ago • Promoted
    cyber security (Stealth Auditor)

    cyber security (Stealth Auditor)

    CData Software • Charlotte, NC, United States
    Full-time
    Responsibilities include (but arent limited to) : • Must be a US Citizen (No GC holder) • Implement / Customize Workflows, Forms, reports, and processes to support our customers • Design, implement, and ...Show more
    Last updated: 15 days ago • Promoted
    Sr. Financial Analyst

    Sr. Financial Analyst

    Shutterfly Inc • Fort Mill, SC, United States
    Full-time
    This role is hybrid based out of our Fort Mill, SC facility.At Shutterfly, we make life's experiences unforgettable.We believe there is extraordinary power in the self-expression.That's why our fam...Show more
    Last updated: 13 days ago • Promoted
    Sr. Financial Analyst

    Sr. Financial Analyst

    Shutterfly Career Site • Fort Mill, SC, United States
    Full-time
    This role is hybrid based out of our Fort Mill, SC facility.At Shutterfly, we make life's experiences unforgettable.We believe there is extraordinary power in the self-expression.That's why our fam...Show more
    Last updated: 13 days ago • Promoted
    Associate Analyst, ICQA Shortage Control

    Associate Analyst, ICQA Shortage Control

    Ross • Rock Hill, SC, United States
    Full-time
    The Associate Analyst, Inventory Control & Quality Assurance Shortage Control position is responsible for the supporting of all inventory control indicators, transactions, and quality control metri...Show more
    Last updated: 13 days ago • Promoted
    Stratascale Associate Security Analyst - Operations

    Stratascale Associate Security Analyst - Operations

    SHI GmbH • Charlotte, NC, United States
    Full-time
    As a digital and cybersecurity services company, Stratascale exists to help the Fortune 1000 transform the way they use technology to advance the business, generate revenue, and respond quickly to ...Show more
    Last updated: 30+ days ago • Promoted
    Stratascale Associate Security Analyst - Operations

    Stratascale Associate Security Analyst - Operations

    StrataScale • Charlotte, NC, United States
    Full-time
    As a digital and cybersecurity services company, Stratascale exists to help the Fortune 1000 transform the way they use technology to advance the business, generate revenue, and respond quickly to ...Show more
    Last updated: 30+ days ago • Promoted
    Audit Sr Advisor - Corporate

    Audit Sr Advisor - Corporate

    First Horizon Bank • Charlotte, NC, United States
    Full-time
    On site at locations listed Memphis, TN, Birmingham, AL, Dallas, TX, Lafayette, LA, New Orleans, LA, Charlotte, NC, Raleigh, NC, Atlanta, GA, Miami, FL. Primarily responsible for completing audit en...Show more
    Last updated: 25 days ago • Promoted
    Senior Analyst, AML Compliance Governance, Advisory, and Training

    Senior Analyst, AML Compliance Governance, Advisory, and Training

    LPL Financial • Fort Mill, SC, US
    Full-time
    At LPL Financial, we empower professionals to shape their success while helping clients pursue their financial goals with confidence. Discover what's possible with LPL Financial.The AML Compliance S...Show more
    Last updated: 5 days ago • Promoted
    IAM Risk Analyst

    IAM Risk Analyst

    Experis • Charlotte, NC, United States
    Full-time
    Our client, a leading financial services institution, is seeking an IAM Triage Lead Analyst (Information Security Analyst 3) to join their team. As an IAM Triage Lead Analyst, you will be part of th...Show more
    Last updated: 30+ days ago • Promoted
    Senior Risk Analyst

    Senior Risk Analyst

    First Citizens Bank • Charlotte, NC, US
    Full-time
    This is a hybrid role located in Raleigh, NC or Charlotte, NC with the expectation that time working will regularly take place inside and outside of a company office. Open to remote in several marke...Show more
    Last updated: 30+ days ago • Promoted
    Sr Analyst (Space Management)

    Sr Analyst (Space Management)

    Acosta Group • Charlotte, NC, United States
    Full-time
    Evaluate item performance, optimize assortment planning, and develop store clustering strategies through the.Use strong communication and influencing skills to translate insights into actionable re...Show more
    Last updated: 25 days ago • Promoted
    Sales Pro

    Sales Pro

    Premium Retail Services • Statesville, NC, US
    Full-time
    Premium operates wireless locations in over 1,300 Wireless Retail outlets via Walmart Supercenter, with a dedicated sales team of over 3,200 brand representatives. As one of Premium's Wireless Sales...Show more
    Last updated: 30+ days ago • Promoted
    Audit Manager Senior Specialist - Cyber Security

    Audit Manager Senior Specialist - Cyber Security

    Charlotte Staffing • Charlotte, NC, US
    Full-time +1
    Audit Manager Senior Specialist.At PNC, our people are our greatest differentiator and competitive advantage in the markets we serve. We are all united in delivering the best experience for our cust...Show more
    Last updated: 22 days ago • Promoted
    Ops Sr. Analyst MKTS

    Ops Sr. Analyst MKTS

    Bank of America • Charlotte, NC, United States
    Full-time
    To proceed with your application, you must be at least 18 years of age.To proceed with your application, you must be at least 18 years of age. At Bank of America, we are guided by a common purpose t...Show more
    Last updated: 1 day ago • Promoted
    Sr Analyst Batch Operations

    Sr Analyst Batch Operations

    TalentBridge • Fort Mill, SC, United States
    Full-time
    Senior Analyst - Batch Operations.The ideal candidate will have strong expertise in.ETL processes, scheduling tools, cloud-based frameworks (AWS / Airflow), and ServiceNow modules.This role requires ...Show more
    Last updated: 25 days ago • Promoted
    SAP FI Finance Systems Analyst Local Key User (LKU)

    SAP FI Finance Systems Analyst Local Key User (LKU)

    Continental • Fort Mill, South Carolina, USA
    Full-time
    Responsible for understanding United States and Canada business processes and financial systems capabilities.Primary task is to provide support to the local users in United States and Canada SAP se...Show more
    Last updated: 7 days ago • Promoted
    Sr. Analyst, Revenue Analytics

    Sr. Analyst, Revenue Analytics

    LendingTree • Charlotte, NC, United States
    Full-time
    PLEASE NOTE : This role requires the candidate to be in or near Charlotte, NC.In-office presence is required three days a week. Additionally, this position does not offer visa sponsorship.You absolut...Show more
    Last updated: 1 day ago • Promoted