Security & Compliance Analyst - Mid
Doral, FL
Full Time
Mid Level
Join the Nalley Consulting team at Southcom HQ.
Position: Security & Compliance Analyst
LCAT: Mid
Location: SOUTHCOM HQ, Doral, FL / On-site
Office: U.S. SOUTHERN Command J2
Required clearance: TS/SCI
Required education: Bachelor's degree in Cybersecurity, Information Assurance, or a related field, or five (5) years of equivalent experience in security compliance analysis.
Description:
Position: Security & Compliance Analyst
LCAT: Mid
Location: SOUTHCOM HQ, Doral, FL / On-site
Office: U.S. SOUTHERN Command J2
Required clearance: TS/SCI
Required education: Bachelor's degree in Cybersecurity, Information Assurance, or a related field, or five (5) years of equivalent experience in security compliance analysis.
Description:
- Ensure compliance with DoD identity governance policies, regulatory frameworks, and cybersecurity best practices.
- Conduct security assessments and audits to verify adherence to NIST 800-53 Rev. 5, FedRAMP, DoD IL-4/IL-5 security mandates, and Risk Management Framework (RMF) guidelines.
- Maintain System Security Plan (SSP), Security Assessment Reports (SAR), and other documentation supporting the Authority to Operate (ATO) process.
- Provide oversight of security controls related to IAM, data protection, and cloud security configurations.
- Produce the Security Compliance & Audit Report, documenting compliance gaps, remediation actions, and assessment results.
- Possess the knowledge and capability to assess, implement, and monitor security compliance frameworks across cloud and hybrid environments, ensuring adherence to FedRAMP, NIST 800-53 Rev. 5, DoD RMF, and Zero Trust security principles.
- Proficient in security risk assessment, compliance reporting, and vulnerability remediation strategies.
- Demonstrated experience in conducting security assessments, preparing compliance documentation (SSPs, POA&Ms), and ensuring regulatory adherence for cloud and hybrid infrastructures. Proficiency with compliance tools such as Microsoft Purview, AWS Security Hub, Nessus, or Splunk Enterprise Security is required.
- Certified Information Systems Auditor (CISA), Certified Information Systems Security Professional (CISSP), or CompTIA Security+.
ABOUT NALLEY CONSULTING
Nalley Consulting is a Service Disabled Veteran Owned Small Business working with prime partners to staff Department of Defense and Intelligence Community positions. Created by a U.S. Navy intelligence veteran, Nalley Consulting has grown to include multiple IDIQ vehicles in several states.
Nalley Consulting fringe benefits include:
- Excellent medical, dental, and vision benefits
- PTO
- 11 paid federal holidays
- Tuition assistance
- Paid military-reserve leave
- Paid parental leave for birth or adoption
- 401k matching up to 5 percent of the base salary
- Flex time
- Company-paid short-term disability, long-term disability, and life insurance.
Apply for this position
Required*