Summary
Five Rivers Analytics delivers federal IT and cybersecurity support for government customers. The Azure Cyber Security Specialist secures cloud-based solutions and ensures compliance with Department of Defense and United States Marine Corps requirements by supporting ATO processes, implementing security controls, maintaining RMF documentation, and collaborating with engineering and government stakeholders.
Responsibilities
- Lead and support the development, review, and maintenance of USMC and DoD RMF packages, including System Security Plans (SSPs), Security Controls Traceability Matrices (SCTMs), POA&Ms, and continuous monitoring documentation
- Execute, validate, and document STIGs, SRGs, and other DoD cybersecurity configuration requirements across Azure environments
- Coordinate and support ATO activities, ensuring all required evidence, artifacts, and controls are properly implemented and updated throughout the system lifecycle
- Work directly with cloud engineers, architects, and development teams to integrate secure configurations, remediate vulnerabilities, and ensure alignment with cybersecurity policies
- Manage security posture across Azure services, including identity and access management, network security, logging and monitoring, and incident response processes
- Conduct security assessments, gap analyses, and risk evaluations to identify and address weaknesses in cloud-based systems
- Collaborate with multiple stakeholders, including government cybersecurity teams, program managers, system owners, and external partners to ensure compliance and timely delivery of security milestones
- Monitor evolving DoD and USMC cybersecurity guidance and apply updates to security processes, documentation, and technical controls
- Provide subject matter expertise on Azure security features, best practices, and architecture design
Skills
- Must possess a Bachelors degree and 2 years of related experience. In lieu of Bachelor's degree, must possess at least 5 years of related experience
- Must possess an active Secret clearance with the ability to obtain a Top-Secret clearance
- Hands-on experience with USMC or DoD ATO processes, RMF workflows, and compliance documentation
- Proficiency implementing and validating STIGs, SRGs, and security controls within cloud or hybrid environments
- Strong understanding of Azure security services, including Azure AD, Defender, Security Center, Key Vault, network security groups, and logging/monitoring tools
- Experience developing and managing POA&Ms, SSPs, and other RMF artifacts
- Ability to work closely with engineering teams to interpret technical designs and integrate cybersecurity requirements
- Demonstrated skill coordinating with multiple stakeholders across technical and non-technical teams
- Familiarity with vulnerability management tools, secure configuration practices, and cloud infrastructure security
- DoD 8570/8140 certifications (e.g., Security+, CISSP, CCSP)
- Microsoft Azure security certifications (e.g., AZ-500, SC-100)
- Experience supporting government cloud environments such as Azure Government or IL4/IL5 workloads
- Background in incident response or cloud threat detection
- Experience using eMASS for RMF package creation, updates, artifact management, and ATO coordination
Qualifications
Must Haves
- Must possess a Bachelors degree and 2 years of related experience. In lieu of Bachelor's degree, must possess at least 5 years of related experience
- Must possess an active Secret clearance with the ability to obtain a Top-Secret clearance
- Hands-on experience with USMC or DoD ATO processes, RMF workflows, and compliance documentation
- Proficiency implementing and validating STIGs, SRGs, and security controls within cloud or hybrid environments
- Strong understanding of Azure security services, including Azure AD, Defender, Security Center, Key Vault, network security groups, and logging/monitoring tools
- Experience developing and managing POA&Ms, SSPs, and other RMF artifacts
- Ability to work closely with engineering teams to interpret technical designs and integrate cybersecurity requirements
- Demonstrated skill coordinating with multiple stakeholders across technical and non-technical teams
- Familiarity with vulnerability management tools, secure configuration practices, and cloud infrastructure security
Nice to Haves
- DoD 8570/8140 certifications (e.g., Security+, CISSP, CCSP)
- Microsoft Azure security certifications (e.g., AZ-500, SC-100)
- Experience supporting government cloud environments such as Azure Government or IL4/IL5 workloads
- Background in incident response or cloud threat detection
- Experience using eMASS for RMF package creation, updates, artifact management, and ATO coordination
Benefits
- Medical insurance
- Dental insurance
- Vision insurance
- Life insurance
- 401(k)
- A range of other voluntary benefits
- Paid Time Off (PTO) is offered to regular full-time and part-time employees.
- Remote work
- Growth opportunities
- Excellent retirement options