Posted today
Public Trust
Unspecified
Unspecified
(On-Site/Office)
OVERVIEW:
The IV&V Systems Analyst provides independent oversight and validation of Component IT
security control testing and remediation activities. This role ensures adequacy, completeness, and compliance with federal cybersecurity and IT governance requirements, supporting audit readiness, authorization activities, and executive-level reporting.
GENERAL DUTIES:
REQUIRED QUALIFICATIONS:
DESIRED QUALIFICATIONS:
CLEARANCE:
The IV&V Systems Analyst provides independent oversight and validation of Component IT
security control testing and remediation activities. This role ensures adequacy, completeness, and compliance with federal cybersecurity and IT governance requirements, supporting audit readiness, authorization activities, and executive-level reporting.
GENERAL DUTIES:
- Perform independent IV&V analysis of Component IV&V testing for remediated IT controls to ensure adequacy, completeness, and compliance with federal requirements.
- Review and validate Component-submitted IV&V packages; provide detailed written feedback and recommendations.
- Track IV&V submissions through the approval lifecycle, including CISOD and OCFO signatures.
- Contribute to monthly IT audit reporting through data analysis and metrics development.
- Review IT commitment letters and assess testing and passing status against documented commitments.
- Support development and refinement of QA processes for assessments and remediation activities.
- Assist in developing and maintaining traceability matrices, RACI documentation, and standardized checklists.
- Support enhancements to SSP documentation, GRC updates, and system review artifacts.
- Participate in Security Authorization
- Reviews, evaluating CFO-designated systems and SSP documentation for completeness and alignment to CIC controls.
- Develop clear, executive-ready reporting products that translate technical findings into risk-based insights.
REQUIRED QUALIFICATIONS:
- Relevant experience in IV&V, RMF, federal IT compliance, cybersecurity oversight, or audit support.
- Experience conducting independent validation of IT security controls or compliance assessments.
- Working knowledge of federal cybersecurity and IT governance frameworks, including: FISMA, RMF, NIST 800-series, FIPS 199/200, FedRAMP
- Experience preparing audit artifacts, compliance documentation, and reporting metrics.
- Strong written communication skills with experience providing structured written feedback to Stakeholders.
DESIRED QUALIFICATIONS:
- Degree Requirements (if applicable) bachelor's degree from an accredited institute in an area applicable to the position in Cybersecurity, Computer Science, Information Systems, or a related discipline. Four (4) years of additional experience in lieu of degree.
CLEARANCE:
- US Citizenship required and ability to obtain Public Trust
group id: 90943786
N