Cybersecurity Compliance & Continuous Monitoring Analyst

General Dynamics

Confirmed live yesterday High trust

Quick summary

Work type
On-site
Location
McLean, VA
Salary
$158,950–$215,050 / yr
Posted
6 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

Above market

How this pay compares to similar roles

Similar $144k
This role $187k
$99k most similar roles pay here $228k

This role pays more than 89% of similar roles. Most pay $122,275–$166,675 — the shaded band above. At the midpoint, this role pays about $187k versus about $144k for comparable roles.

Based on 239 similar postings.

Employer

About General Dynamics

General Dynamics is a global aerospace and defense company offering a broad portfolio of products and services in business aviation, ship construction, land combat vehicles, and information technology. It serves customers in the U.S. government, allied governments, and a diverse array of commercial markets.

General Dynamics currently has 1123 open roles on FindRole.

Listed pay typically runs $124,093–$150,385 across 984 roles with salary data.

Most-posted roles

View all roles at General Dynamics

At a glance

TL;DR · Cybersecurity Compliance & Continuous Monitoring Analyst

The Cybersecurity Compliance & Continuous Monitoring Analyst joins the cyber team to secure and monitor a classified workstation secure enclave. This role involves managing the full RMF and Assessment & Authorization lifecycle, including control implementation, POA&M tracking, and reporting for FedRAMP and CNSSI 1253 requirements. The analyst will collaborate with engineers and system administrators to integrate security controls, evaluate network architectures, and perform audits for 3PAO assessments. Day-to-day tasks include identifying and remediating vulnerabilities using Tenable Nessus, Tenable.sc, SCC, and STIG tooling while ensuring accurate host inventory and scan policies. The position requires expertise in NIST SP 800 series standards, including 800-37, 800-53, and 800-30. This role addresses the critical challenge of maintaining a robust security posture for classified commercial cloud environments while ensuring compliance with stringent federal and defense mandates.

What you'll do

  • Manage the full RMF and Assessment & Authorization lifecycle for a workstation secure enclave.
  • Maintain a body of evidence for FedRAMP and CNSSI 1253 requirements, including POA&M tracking and reporting.
  • Identify, assess, and remediate vulnerabilities using Tenable Nessus, Tenable.sc, SCC, and STIG tooling.
  • Review scan results and STIG findings to ensure the hardening of operating systems, network devices, and applications.
  • Evaluate system designs, network architectures, and firewall rules to ensure security principles are integrated from the start.
  • Lead the preparation and execution of security control audits and FedRAMP 3PAO assessments.
  • Manage a continuous monitoring and GRC program to identify trends, anomalies, and potential incidents.
  • Support risk assessments and incident response by recommending mitigating controls and providing technical expertise.

What we're looking for

  • Must possess a current Top Secret security clearance.
  • Must be a United States citizen.
  • Bachelor of Arts or Bachelor of Science degree required.
  • 8+ years of related experience in information assurance and cybersecurity roles.
  • Minimum of 5 years of direct, hands-on experience as an ISSO or ISSM for classified systems.
  • Expert-level knowledge of NIST SP 800 series (specifically 800-37, 800-53, and 800-30) and risk management principles.
  • Experience with FedRAMP, CNSSI 1253, DISA STIGs, and continuous monitoring requirements.
  • US Citizenship.

More like this

Similar roles

Senior Principal Information Security Analyst, Cloud

General Dynamics

Fort Meade, MD 12 days ago $142,792$184,000
RMF eMASS NIST 800-53 STIGs ACAS Nessus Microsoft Defender McAfee FedRAMP Azure ICAM Cybersecurity Information Security Incident Response Vulnerability Management Firewalls API Gateways Agile
8+ yrs exp Hybrid

Senior Cybersecurity Analyst, OT Compliance

Marathon Petroleum

Findlay, OH +2 2 days ago $106,900$184,300
OT Cybersecurity Risk Management SIEM Vulnerability Management Penetration Testing Identity Access Management Security Governance Threat Hunting Forensics Web Application Scanning Asset Inventory Information Technology Operational Technology
5+ yrs exp

Continuous Monitoring Analyst

Leidos

Alexandria, VA 15 days ago
Splunk Axonius ACAS Microsoft Defender HBSS ESS RMF NIST SP 800-53 NIST SP 800-37 CNSSI 1253 eMASS Vulnerability Management Elastic Cybersecurity Network Security
4+ yrs exp

Cyber Security Analyst

Leidos

Adelphi, MD 17 days ago $87,100$157,450
SIEM IDS AWS Microsoft Azure Google Cloud Platform Oracle Cloud NetFlow Packet Capture TCP/IP Unix Incident Response Cyber Kill Chain SaaS Security+ CE CSSP-Infrastructure Support Vulnerability Management Network Security
4+ yrs exp Hybrid

Cyber Security Analyst

Leidos

Adelphi, MD 17 days ago $87,100$157,450
SIEM IDS Incident Response NetFlow Packet Capture AWS Microsoft Azure Google Cloud Platform Oracle Cloud TCP/IP Unix Cyber Kill Chain SaaS Vulnerability Management Network Security Security+ CE CSSP-Infrastructure Support
4+ yrs exp Hybrid