Job Requirements
Remote
Public Trust Polygraph not specified
Mid Level Career (5+ yrs experience)
$95,000 - $105,000
Job Description
Conviso Inc is hiring Security Documentation & Continuous Monitoring Analyst for Hybrid set-up position & this job comes with benefits, 401K & some accrued PTO.
Role: Security Documentation & Continuous Monitoring Analyst
Security Clearance: Tier 4 (High-Risk Public Trust) eligibility required
Hybrid, minimum 2 days per week onsite at Washington DC
Work Timings: 7:00 AM – 6:00 PM ET, Monday–Friday
Responsibilities
• Produce the consolidated monthly Continuous Monitoring Report covering the portfolio, delivered by the 5th business day
• Keep the existing CSAM enterprise dashboard current with authorization and posture data — maintenance only, no dashboard engineering
• Perform the monthly Splunk log-ingestion compliance audit: compare each system's expected log-source baseline against actual ingestion, and open a ticket and linked POA&M for every confirmed gap
• Escalate Splunk ingestion failures to the Enterprise IT Operations contractor within 1 business day of detection
• Maintain per-system Continuous Monitoring Plans in CSAM
• Maintain CSAM artifact currency and consistency; archive superseded versions per records policy
• Maintain the SharePoint repository for artifacts not native to CSAM, cross-referenced from the applicable CSAM record
• Produce the recurring deliverable set: Weekly Activity Report inputs, monthly vulnerability status report, POA&M reconciliation report, change activity summary, incident summary, and quarterly trend analysis
• Stage production across the month so the seven deliverables converging on the 5th business day are submitted, not drafted, that day
Required qualifications
• Bachelor's degree in a related field, or four additional years of relevant experience
• 3+ years experience in federal cybersecurity documentation, continuous monitoring, or compliance reporting
• Demonstrated experience producing recurring compliance deliverables to a fixed schedule
• Working knowledge of NIST SP 800-137 and 800-53 Rev. 5
• Splunk search proficiency sufficient to verify log ingestion completeness against an expected source list
• Strong technical writing; Security+ required
Strongly preferred
• Current, in-scope Tier 4 or higher federal investigation
• CSAM experience, particularly SSP generation and artifact management
• Experience maintaining a documentation repository through a federal audit
• Data reconciliation experience across multiple reporting sources
Role: Security Documentation & Continuous Monitoring Analyst
Security Clearance: Tier 4 (High-Risk Public Trust) eligibility required
Hybrid, minimum 2 days per week onsite at Washington DC
Work Timings: 7:00 AM – 6:00 PM ET, Monday–Friday
Responsibilities
• Produce the consolidated monthly Continuous Monitoring Report covering the portfolio, delivered by the 5th business day
• Keep the existing CSAM enterprise dashboard current with authorization and posture data — maintenance only, no dashboard engineering
• Perform the monthly Splunk log-ingestion compliance audit: compare each system's expected log-source baseline against actual ingestion, and open a ticket and linked POA&M for every confirmed gap
• Escalate Splunk ingestion failures to the Enterprise IT Operations contractor within 1 business day of detection
• Maintain per-system Continuous Monitoring Plans in CSAM
• Maintain CSAM artifact currency and consistency; archive superseded versions per records policy
• Maintain the SharePoint repository for artifacts not native to CSAM, cross-referenced from the applicable CSAM record
• Produce the recurring deliverable set: Weekly Activity Report inputs, monthly vulnerability status report, POA&M reconciliation report, change activity summary, incident summary, and quarterly trend analysis
• Stage production across the month so the seven deliverables converging on the 5th business day are submitted, not drafted, that day
Required qualifications
• Bachelor's degree in a related field, or four additional years of relevant experience
• 3+ years experience in federal cybersecurity documentation, continuous monitoring, or compliance reporting
• Demonstrated experience producing recurring compliance deliverables to a fixed schedule
• Working knowledge of NIST SP 800-137 and 800-53 Rev. 5
• Splunk search proficiency sufficient to verify log ingestion completeness against an expected source list
• Strong technical writing; Security+ required
Strongly preferred
• Current, in-scope Tier 4 or higher federal investigation
• CSAM experience, particularly SSP generation and artifact management
• Experience maintaining a documentation repository through a federal audit
• Data reconciliation experience across multiple reporting sources
group id: 10368240