Dragonfli Group
Junior Cybersecurity GRC Analyst
We tailor your resume to this role and apply for you in seconds.
Apply to Junior Cybersecurity GRC Analyst at Dragonfli GroupJob details
- Work type
- Remote
- Posted
- 2 weeks ago
- Apply on
- comeet.com
About this role
Dragonfli Group is a cybersecurity and IT consulting firm serving federal agencies and Fortune 100 enterprises. The Junior Cybersecurity GRC Analyst will support a federal cybersecurity program by executing the Risk Management Framework, assessing risk posture, supporting authorization decisions, developing mitigation strategies, and maintaining compliance reporting and tracking.
What you'll do:
- Support and contribute to the execution of the Risk Management Framework to authorize IT systems
- Provide information on whether information systems are operating at an acceptable level of risk to the organization
- Support information system authorization decisions by performing risk trade-off analyses
- Contribute to the development of risk mitigation strategies and solutions
- Support technical analysis across cybersecurity risk management activities: categorizing a system, proposing security control selections, implementing security controls, and providing comprehensive assessments of risk posture
- Support security control assessment activities in accordance with NIST SP 800-37 and NIST SP 800-53A
- Support presentations and, at times, present to clients and other decision makers across technical and non-technical audiences
- Support advice to clients on technical designs, implementations, and solutions that protect against cybersecurity attacks
- Support POA&M tracking, cyber risk register upkeep, and tracking of cybersecurity regulations, guidance, and data calls
- Support cybersecurity dashboard development and the automation of routine risk reporting and compliance tracking
What they're looking for:
- * Bachelor's degree in cybersecurity, information technology, or a related field
- * Exposure to Assessment and Authorization (RMF) work, including testing or assessing cybersecurity solutions, through coursework, internship, or professional experience
- * Working understanding of the Risk Management Framework and the federal authorization process
- * Strong written and verbal communication skills, including comfort supporting or delivering presentations
- * Ability to work independently and as a member of a team
- * U.S. Citizenship or Permanent Residency, with all work performed within the continental U.S
- * Internship, co-op, or 1 to 2 years of professional experience in a GRC, audit, or compliance role
- * Familiarity with NIST SP 800-53 control families and evidence expectations
- * Exposure to a GRC platform such as Xacta, eMASS, CSAM, Archer, or ServiceNow IRM
- * Exposure to FISMA reporting, SCRM, or TPRM concepts
- * Interest in or exposure to automation and AI-assisted compliance tooling
- * Security+ or CGRC (formerly CAP) certification, or active pursuit of one
Benefits:
- Medical: Multiple POS health plan options including an HSA-compatible plan
- Dental: PPO coverage for preventive, basic, and major services
- Vision: Annual exam, frames, lenses, and contact lens allowance
- 401(k): Employer match up to 5% of eligible compensation
- Long-Term Disability: 100% employer-paid coverage at 50% of pre-disability earnings
- Life Insurance & AD&D: 100% employer-paid coverage valued at $10,000 each
- PTO: 15–25 days annually based on tenure
- Paid Federal Holidays: All 11 federal holidays observed
- Fully remote work arrangement
Ready to apply to Dragonfli Group?
ApplyBolt finds matching jobs, tailors your resume, and submits applications for you.