Qureos

Find The RightJob.

Compliance Analyst

GES is seeking an RMF/Information Assurance Engineer to support large-scale migration and operations on a large, high-profile DOD contract. The I3TS program provides enterprise-wide IT support to enable DTRA’s Information Management & Technology Directorate (ITD) to consolidate, modernize, and continuously innovate the delivery of IT services and mission capabilities to DTRA’s internal and external mission partners operating in CONUS and OCONUS locations.

Primary Responsibilities

  • Knowledge of Cyber Task Orders
  • Continuous upkeep, monitoring, analysis, and response to Information System, network and security events.
  • Documents compliance actions within the approved automated compliance tracking system
  • Brief leadership on compliance status of Cyber Task Orders
  • Evaluates proposed changes or additions to the information system and advises senior site leadership of the security relevance.

Required Qualifications:

  • BS degree with 4+ years’ experience or 8+ years of IA experience without a degree.
  • Current IAT Level II or higher Certification such as Security + or CISSP.
  • Familiarity with network technologies (LAN & WAN) and best practices within a classified environment to include crypto and key management
  • STIG compliance, SCC and STIG Viewer experience, and ACAS expertise.
  • Expert with Microsoft Windows, Linux, and system virtualization in a secure network environment.
  • Must be able to work in a constantly changing regulatory environment with short-, mid-, and long-term timelines for remediating any non-compliance
  • Must be able to work well within a team environment and able to adapt quickly to change
  • Good writing and verbal presentation skills
  • Security+ or CISSP
  • Active TS/SCI

Desired Qualifications:

  • Understanding of the Risk Management Framework (RMF), NIST, ICD, and CNSS standards.
  • Past or current ISSM/ISSO experience
  • GCIH a plus
  • DoD IS knowledge and experience
  • Background or understanding of System Security Plans (SSP)
  • Security hardening scripting/automation experience
  • Microsoft OS Certification (MCSE Win 7 or other)
  • Linux certification (RHCSA, CompTIA Linux, LCFS/LCFE, etc.)

Location: Fort Belvoir, VA

© 2026 Qureos. All rights reserved.