hirly

LOGC2

Information Security Analyst, SME, Lead

Springfield, VA

See how you match this job — and similar ones. Free.

Upload your resume and hirly scores it against this role at LOGC2 first, then against similar open jobs, and shows where you fit and why.

PDF or DOCX, up to 12MB. No sign-up to see your matches.

Get past the screening software and onto a recruiter's desk

hirly rewrites your resume for this job — matching the keywords and skills in the posting, moving your most relevant experience to the top, and writing a cover letter to fit. About 30 seconds.

  • Keywords matched to this posting
  • Fit score before you apply
  • Cover letter included

Matched against 2.3M live jobs from 200,000+ employers in 200+ countries.

Tailor my resume for this job →

hirly's read of this role

Seniority
Lead / management
Stated salary
$120,000 per year
Country
US
Work mode
Remote-friendly
First seen by hirly
1 Oct 2026

Derived automatically from the posting. Upload your resume above to see how the role scores against it.

the posting

Description

Contingent on Contract Award

National Capital Region (Hybrid On-site/Telework if approved)

Connected Logistics is seeking an Information Security Analyst, SME, RMF Step 6 Lead, to assist in providing the Department of State Directorate of Technology (DT), Enterprise Architecture (EA), Cyber Security Team (CST) comprehensive cybersecurity support services to protect critical consular systems and data. The CST Cyber portfolio ensures compliance with federal mandates including the Federal Information Security Modernization Act (FISMA) and the Risk Management Framework (RMF), encompassing security monitoring, incident response, threat detection, vulnerability management, and continuous authorization activities.

Information Security Analyst, SME (Step 6 /Continuous Monitoring Lead) will direct personnel supporting the operational security and authorization posture of consular systems. The Lead uses system risk, vulnerability exposure, changes, authorization conditions, and reporting obligations to prioritize work and maintain current, traceable RMF records.

Key Responsibilities:

Responsible for directing continuous monitoring, ongoing authorization support, vulnerability and cloud-posture analysis, POA&M tracking, change-impact reviews, and CO1 Tenable operational coverage.

  • Assign ConMon work and review exception queues, authorization milestones, overdue findings, and emerging risk.
  • Oversee scheduled Tenable coverage, relief staffing, shift handoffs, escalation, platform health, and recovery coordination.
  • Correlate Tenable and Wiz findings with CA systems and authorization boundaries using approved system identifiers.
  • Prioritize KEVs, BOD actions, critical and high findings, remediation milestones, and evidence-backed closure.
  • Direct SIA/NOC reviews and related updates to SSPs, diagrams, inventories, privacy artifacts, and POA&Ms.
  • Coordinate annual assessment support, contingency tests, audit responses, FISMA submissions, and incident-related artifact updates.
  • Escalate authorization-impacting conditions and coordinate return to earlier RMF activities when required.
  • Coordinate CO1 tool responsibilities with CO5 through approved responsibility assignments and interfaces.

Requirements

  • U.S. citizenship and a final Secret clearance or higher
  • Relevant degree in cybersecurity, computer science, information systems, or a related discipline, subject to the SME LCAT and permitted substitutions.
  • Advanced Federal continuous-monitoring and vulnerability-management experience with demonstrated team leadership and ongoing authorization support.
  • Proficiency in POA&M management, security impact analysis, risk prioritization, FISMA reporting, and NIST RMF requirements.
  • Practical understanding of Tenable platform administration, credentialed scanning, cloud posture analysis, integrations, and operational escalation.
  • Availability to support coverage planning and after-hours escalation as assigned; meet applicable certification requirements.
  • Meet applicable LCAT certification requirements and maintain required credentials.

Preferred Qualifications

  • CISSP, CGRC, CISM, or role-relevant Tenable and cloud credentials.
  • DOS experience with ArchAngel, Wiz, iPost/iMatrix, SIA/NOC processes, and KEV/BOD remediation.
  • Leadership of shift-based vulnerability operations and automated monitoring workflows.

Success in this position will be demonstrated by reliable operational coverage, current authorization records, actionable monitoring data, timely risk escalation, and validated remediation progress.

Total Rewards Statement

We believe in fairness and clarity throughout our hiring process. The anticipated salary range for this position is $120,000.00-$130,000.00 USD. This is a good-faith range based on factors such as your experience, geographic location, and any applicable contractual requirements, and may vary slightly.

Beyond salary, we provide a robust benefits package and encourage ongoing professional development, because your growth and well-being matter to us. We’re excited to support you in building a rewarding career with us!

Connected Logistics respects the need for confidentiality for all applicants.

Connected Logistics has been named a 2026 WTOP Top Workplace in the medium sized business category. Our mission is clear: we deliver mission-focused IT, cybersecurity, logistics, and enterprise modernization support to federal agencies. When we invest in our people and create an environment where they feel valued and empowered, we deliver stronger outcomes for our clients and the missions we support.

Connected Logistics offers an excellent benefits package that includes health, dental, vision, life, and disability insurance, a great 401(k) package, and generous Paid Time Off.

EOE/Disability/Veterans

Original posting on LOGC2's site ↗

Want this one?

Upload your resume and hirly rewrites it for this job and writes the cover letter — in about thirty seconds, before you sign up.

Tailor my resume for this job