SOSi logoSOSi logo

Security & Compliance Analyst

SOSiDoral
On-site Full-time

Clicking Apply Now takes you to AutoApply where you can tailor your resume and apply.


Experience Level

Mid to Senior

Qualifications

Minimum Requirements:Active TS-SCI Clearance. Bachelor’s degree in Cybersecurity, Information Assurance, Computer Science, or a related field, or five (5) years of relevant experience in security and compliance roles. Proven ability to implement, monitor, and enforce security policies and compliance controls across both cloud-based and on-premises environments. Strong knowledge of NIST 800-53, FedRAMP, DoD IL-4/5 security policies, and risk assessment methodologies. Comprehensive understanding of identity and access management (IAM), security monitoring tools (such as Splunk and SIEM solutions), zero-trust architecture, and vulnerability assessment frameworks. Experience conducting security audits and ensuring system compliance with DoD cybersecurity standards, as well as implementing security controls in cloud and hybrid environments. Familiarity with security automation, endpoint protection, and incident response protocols.

About the job

**This position is contingent upon contract award**

SOSi is looking for a dedicated Security & Compliance Analyst to fulfill mission requirements by developing, integrating, and maintaining a scalable and federated data ecosystem. This role is crucial for enhancing interoperability, governance, and mission-driven analytics for our Department of Defense (DoD) client. The primary goal is to address operational challenges between DoD, Intelligence Community (IC), interagency, and international partners, facilitating real-time information exchange and customized analytical capabilities.

Key Responsibilities:

  • Oversee and validate Kubernetes and data lake deployments to ensure compliance with Risk Management Framework (RMF), NIST 800-53, and DoD IL4/IL5 standards, in collaboration with cybersecurity teams.
  • Maintain continuous monitoring dashboards and conduct vulnerability assessments of the deployed infrastructure and workloads, supporting the agency’s Authority to Operate (ATO) process and overall risk posture.
  • Draft and update security documentation, including System Security Plans (SSPs), Security Assessment Reports (SARs), and Plans of Action and Milestones (POA&Ms) to reflect architectural changes and risk conditions.
  • Implement encryption, logging, and identity access management policies (IAM, RBAC, audit logging) to ensure accountability across the Kubernetes-based data environment.
  • Compile the Security & Compliance Assessment Report, summarizing control effectiveness, findings, and suggested remediation measures.

About SOSi

Founded in 1989, SOSi is a leading private, founder-owned technology and services integrator in the defense and government sectors. We provide customized solutions, proven leadership, and reliable results to support national security missions globally.

Similar jobs

Browse all companies, explore by city & role, or SEO search pages.

Tailoring 0 resumes

We'll move completed jobs to Ready to Apply automatically.