Career field not listed
Cyber Security Operations Analyst
Versar is seeking a Cybersecurity professional with experience in Risk Management Framework (RMF), compliance standards, and security governance to join its SkillBridge Internship Program. This internship provides transitioning service members hands-on civilian experience supporting the design, implementation, and continuous monitoring of cybersecurity controls, while helping ensure compliance with federal and industry standards such as NIST, FedRAMP, SOC 2, ISO 27001, and CMMC. The ideal candidate has experience or exposure to developing RMF artifacts, managing security tools, and supporting authorization processes.What You’ll Do:RMF & ComplianceSupport and execute the Risk Management Framework (RMF) lifecycleDevelop, manage, and maintain RMF documentation and artifacts, including:System Security Plan (SSP)Security Assessment Plan (SAP)Plan of Action and Milestones (POA&M)Continuous Monitoring StrategyPrivacy Impact Assessments (PIA)Contingency PlansPerform security control assessments aligned with NIST SP 800-53Assist in system authorization and ATO packagesPolicy & GovernanceDevelop, review, and update cybersecurity policies, procedures, and standardsEnsure alignment with: NIST frameworks and guidanceCMMC, SOC 2, ISO 27001FedRAMP requirementsSupport audits, assessments, and compliance reporting activitiesSupport risk management and incident responseSecurity Operations & ToolsWork with and manage security tools and platforms such as: SIEM solutions (e.g., Splunk, Microsoft Sentinel, ACAS, Tanium)eMASS, Xacta for RMF documentation and trackingMonitor system security posture and support continuous monitoring activitiesAnalyze security events and support incident response efforts as neededCloud & System SecuritySupport security compliance for cloud environments (AWS, Azure, or GCP)Implement and assess cloud security controls aligned with FedRAMP/NIST guidanceCollaborate with engineering teams to enforce secure configurationsWhat You’ll Bring:Minimum one of the following certifications (or equivalent): CompTIA Security+ CE | Certified in Governance, Risk and Compliance (CGRC) | CompTIA Advanced Security Practitioner (CASP+)Bachelor’s degree in Cybersecurity related fields OR 3–5+ years of experience in cybersecurity, compliance, or risk management rolesStrong analytical and problem-solving abilitiesExcellent written and verbal communication skillsAbility to work independently and collaboratively in a team environmentDetail-oriented with a focus on compliance, accuracy and completenessMust possess at least a Secret clearance Must be proficient in English, both written and verbal, to ensure effective communication and collaboration.Comply with company drug and alcohol policy.Be authorized to work in the US or will be authorized by the successful candidate’s start date.Desired qualifications:Security management of cloud environments (Azure, AWS etc.)RMF system of records management, EMASS/XACTASecurity tools operations SIEM solutions (e.g., Splunk, MS Sentinel, ACAS, Tanium)Additional certifications such as CISSP, CISM, or CCSPFamiliarity with DevSecOps and automated compliance toolingPreferred Military BackgroundsThis opportunity may align well with service members from cyber, information assurance, network defense, communications, or information technology backgrounds.During a SkillBridge internship, service members continue to receive their regular military pay and benefits through their branch of service during the program. The host company does not provide additional pay, but participants gain valuable civilian work experience, training, and networking opportunities to support their transition.Location RequirementsThe position will primarily work a hybrid scheduled with 50% of the work week to be spent at Newport News, VA.