Cybersecurity Compliance & Continuous Monitoring Analyst

General Dynamics

Confirmed live 2 days ago High trust

Quick summary

Work type
On-site
Location
McLean, VA
Salary
$158,950–$215,050 / yr
Posted
6 days ago
Freshness
Confirmed live 2 days ago

Market check

Salary context

Above market

How this pay compares to similar roles

Similar $144k
This role $187k
$97k most similar roles pay here $228k

This role pays more than 89% of similar roles. Most pay $122,275–$166,675 — the shaded band above. At the midpoint, this role pays about $187k versus about $144k for comparable roles.

Based on 239 similar postings.

Employer

About General Dynamics

General Dynamics is a global aerospace and defense company offering a broad portfolio of products and services in business aviation, ship construction, land combat vehicles, and information technology. It serves customers in the U.S. government, allied governments, and a diverse array of commercial markets.

General Dynamics currently has 1123 open roles on FindRole.

Listed pay typically runs $124,093–$150,385 across 984 roles with salary data.

Most-posted roles

View all roles at General Dynamics

At a glance

TL;DR · Cybersecurity Compliance & Continuous Monitoring Analyst

The Cybersecurity Compliance & Continuous Monitoring Analyst joins the cyber team to secure and monitor a classified workstation secure enclave. This role involves managing the full RMF and Assessment & Authorization lifecycle, including control implementation, POA&M tracking, and reporting for FedRAMP and CNSSI 1253 requirements. The analyst will identify and remediate vulnerabilities using Tenable Nessus, Tenable.sc, SCC, and STIG tooling while reviewing scan results to ensure the hardening of operating systems and network devices. Key responsibilities include evaluating system designs, performing security control audits, and managing a robust GRC program to provide risk insights. The position requires expertise in NIST SP 800 series standards, FedRAMP baselines, and continuous monitoring. The role specifically addresses the challenge of maintaining high-security postures within classified commercial cloud environments while ensuring compliance with stringent federal mandates.

What you'll do

  • Manage the full RMF and Assessment & Authorization lifecycle for a workstation secure enclave.
  • Maintain evidence for FedRAMP/DoW packages, including POA&M tracking, reporting, and remediation.
  • Identify, assess, and remediate vulnerabilities using Tenable Nessus, Tenable.sc, SCC, and STIG tooling.
  • Review scan results and STIG findings to ensure accurate hardening of operating systems and network devices.
  • Evaluate system designs, network architectures, and firewall rules to ensure security principles are integrated.
  • Lead the preparation and execution of security control audits and FedRAMP 3PAO assessments.
  • Oversee and validate the implementation of security controls performed by engineers and system administrators.
  • Manage a continuous monitoring and GRC program to analyze security data and provide risk insights.

What we're looking for

  • Must be a United States citizen.
  • Must possess an active Top Secret security clearance.
  • Must have at least 8 years of related experience in the field.
  • Must have at least 5 years of direct, hands-on experience as an ISSO or ISSM for classified systems.
  • Must hold a Bachelor of Arts or Bachelor of Science degree.
  • Must be DoD 8140 / 8570.01-M compliant.
  • Must possess expert-level knowledge of the NIST SP 800 series and risk management principles.
  • US Citizenship.

More like this

Similar roles

Cybersecurity Compliance & Continuous Monitoring Analyst

General Dynamics

McLean, VA 6 days ago $158,950$215,050
FedRAMP CNSSI 1253 Tenable Nessus Tenable.sc DISA STIG RMF Continuous Monitoring POA&M GRC Cybersecurity Compliance Information Assurance Assessment & Authorization Network Architecture
8+ yrs exp

Senior Principal Information Security Analyst, Cloud

General Dynamics

Fort Meade, MD 12 days ago $142,792$184,000
RMF eMASS NIST 800-53 STIGs ACAS Nessus Microsoft Defender McAfee FedRAMP Azure ICAM Cybersecurity Information Security Incident Response Vulnerability Management Firewalls API Gateways Agile
8+ yrs exp Hybrid

Information Systems Security Manager

General Dynamics

McLean, VA 13 days ago $123,250$166,750
RMF STIGs Xacta ServiceNow Tenable SCAP NIST SP 800-53 CNSSI 1253 ICD 503 AWS Security+ CEH CISSP CISA NCSF
4+ yrs exp

Senior Cybersecurity Analyst, OT Compliance

Marathon Petroleum

Findlay, OH +2 2 days ago $106,900$184,300
OT Cybersecurity Risk Management SIEM Vulnerability Management Penetration Testing Identity Access Management Security Governance Threat Hunting Forensics Web Application Scanning Asset Inventory Information Technology Operational Technology
5+ yrs exp

Continuous Monitoring Analyst

Leidos

Alexandria, VA 15 days ago
Splunk Axonius ACAS Microsoft Defender HBSS ESS RMF NIST SP 800-53 NIST SP 800-37 CNSSI 1253 eMASS Vulnerability Management Elastic Cybersecurity Network Security
4+ yrs exp

Cyber Security Analyst

Leidos

Adelphi, MD 17 days ago $87,100$157,450
SIEM IDS AWS Microsoft Azure Google Cloud Platform Oracle Cloud NetFlow Packet Capture TCP/IP Unix Incident Response Cyber Kill Chain SaaS Security+ CE CSSP-Infrastructure Support Vulnerability Management Network Security
4+ yrs exp Hybrid