Dragonfli Group

Junior Cybersecurity GRC Analyst

RemotePosted 2 weeks ago

We tailor your resume to this role and apply for you in seconds.

Apply to Junior Cybersecurity GRC Analyst at Dragonfli Group

Job details

Work type
Remote
Posted
2 weeks ago
Apply on
comeet.com

About this role

Dragonfli Group is a cybersecurity and IT consulting firm serving federal agencies and Fortune 100 enterprises. The Junior Cybersecurity GRC Analyst will support a federal cybersecurity program by executing the Risk Management Framework, assessing risk posture, supporting authorization decisions, developing mitigation strategies, and maintaining compliance reporting and tracking.

What you'll do:

  • Support and contribute to the execution of the Risk Management Framework to authorize IT systems
  • Provide information on whether information systems are operating at an acceptable level of risk to the organization
  • Support information system authorization decisions by performing risk trade-off analyses
  • Contribute to the development of risk mitigation strategies and solutions
  • Support technical analysis across cybersecurity risk management activities: categorizing a system, proposing security control selections, implementing security controls, and providing comprehensive assessments of risk posture
  • Support security control assessment activities in accordance with NIST SP 800-37 and NIST SP 800-53A
  • Support presentations and, at times, present to clients and other decision makers across technical and non-technical audiences
  • Support advice to clients on technical designs, implementations, and solutions that protect against cybersecurity attacks
  • Support POA&M tracking, cyber risk register upkeep, and tracking of cybersecurity regulations, guidance, and data calls
  • Support cybersecurity dashboard development and the automation of routine risk reporting and compliance tracking

What they're looking for:

  • * Bachelor's degree in cybersecurity, information technology, or a related field
  • * Exposure to Assessment and Authorization (RMF) work, including testing or assessing cybersecurity solutions, through coursework, internship, or professional experience
  • * Working understanding of the Risk Management Framework and the federal authorization process
  • * Strong written and verbal communication skills, including comfort supporting or delivering presentations
  • * Ability to work independently and as a member of a team
  • * U.S. Citizenship or Permanent Residency, with all work performed within the continental U.S
  • * Internship, co-op, or 1 to 2 years of professional experience in a GRC, audit, or compliance role
  • * Familiarity with NIST SP 800-53 control families and evidence expectations
  • * Exposure to a GRC platform such as Xacta, eMASS, CSAM, Archer, or ServiceNow IRM
  • * Exposure to FISMA reporting, SCRM, or TPRM concepts
  • * Interest in or exposure to automation and AI-assisted compliance tooling
  • * Security+ or CGRC (formerly CAP) certification, or active pursuit of one

Benefits:

  • Medical: Multiple POS health plan options including an HSA-compatible plan
  • Dental: PPO coverage for preventive, basic, and major services
  • Vision: Annual exam, frames, lenses, and contact lens allowance
  • 401(k): Employer match up to 5% of eligible compensation
  • Long-Term Disability: 100% employer-paid coverage at 50% of pre-disability earnings
  • Life Insurance & AD&D: 100% employer-paid coverage valued at $10,000 each
  • PTO: 15–25 days annually based on tenure
  • Paid Federal Holidays: All 11 federal holidays observed
  • Fully remote work arrangement
Ready to apply to Dragonfli Group?
ApplyBolt finds matching jobs, tailors your resume, and submits applications for you.

About Dragonfli Group

Dragonfli Group