COMDTINST 5500.13I – Cybersecurity policies for the Coast Guard including guidance and requirements for CG Systems and technologies below the system level in alignment with the Department of Defense (DoD) Risk Management Framework (RMF) and the references. ASL is seeking a Governance, Risk, and Compliance (GRC) Analyst / Information System Security Officer (ISSO) to support cybersecurity compliance and RMF activities for the U.S. Coast Guard Waterways Commerce Cutter Program.
Numbers & Facts
Location
Metairie, Louisiana (Remote)
Description
Governance, Risk and Compliance (GRC) Analyst / ISSO Compensation: DOE Location: Remote with occasional commute to job site in Elmwood Louisiana (as required) Employment Type: Full-Time Openings: Two (2) About the Role ASL is seeking a Governance, Risk, and Compliance (GRC) Analyst / Information System Security Officer (ISSO) to support cybersecurity compliance and RMF activities for the U.S. Coast Guard Waterways Commerce Cutter Program. The successful candidate will support Assessment & Authorization (A&A) activities, maintain RMF documentation, assist with security control implementation, and ensure ongoing compliance with federal cybersecurity standards. Responsibilities
Support RMF implementation across assigned information systems.
Develop and maintain RMF documentation.
Assist with preparation of SSPs, SARs, POA&Ms, Security Assessment Plans, and related artifacts.
Coordinate security control testing.
Review system configurations for compliance.
Monitor implementation of security controls.
Track vulnerabilities and remediation efforts.
Support continuous monitoring activities.
Coordinate with system owners, engineers, and government stakeholders.
Maintain cybersecurity documentation throughout the ATO lifecycle.
Support internal audits and assessments.
Required Qualifications
Bachelor's degree in Cybersecurity, Information Technology, Information Assurance, or related field.
Minimum experience of 5 years supporting RMF Assessment & Authorizations (A&A), in ICS environments.
Experience supporting RMF and Assessment & Authorization activities.
Experience implementing and assessing NIST SP 800-53 security controls.
Familiarity with federal cybersecurity DoD and USCG standards and documentation requirements including:
NIST SP 800-53 Revision 5
NIST SP 800-82, NIST SP 800-172 and NIST SP 800-171
DoDI 8510.01 (RMF) and DoDI 8500.01
DHS 4300A and relevant USCG cybersecurity guidance
Identification of Applicable DOD STIGs/SRGs, and IAVM Support
DoDI 8551.01 – PPSM
COMDTINST 5500.13I– Cybersecurity policies for the Coast Guard including guidance and requirements for CG Systems and technologies below the system level in alignment with the Department of Defense (DoD) Risk Management Framework (RMF) and the references.
Strong analytical and documentation skills.
Excellent written communication skills.
Experience using eMASS or similar GRC platforms preferred.
US Citizenship
Required Certification
DoD 8140 Series 722 Intermediate Certification
Security+
Preferred Qualifications
CISSP
CISM
GSLC
CISA
Experience supporting DHS, DoD, or USCG cybersecurity programs.
Live within 50 miles of Elmwood, Louisiana
Benefits may include:
Competitive salary
Health, dental, and vision insurance
Paid time off and federal holidays
401(k) with company match (if applicable)
Professional development and certification support
Opportunities to work on mission-critical federal cybersecurity programs