Information Security Analyst- Mid Level
Aki Kodiak · Colorado Springs, CO, US · United States · On-site
Pay: USD 105,000 – 120,000 a year
Posted Jul 17, 2026
Sign up free: we match you to jobs like this, tailor your application and fill the form. 2 free applications every day.
Information Security Analyst-Mid Level
Company: Sugpiat Defense
Program: Missile Defense Agency (MDA)
Employment Type: Full-Time
Position Overview
Sugpiat Defense is seeking an experienced Information Security Analyst- Mid Level to support the Missile Defense Agency (MDA) in Colorado Springs, Colorado. The selected candidate will assist in protecting mission-critical information systems by implementing cybersecurity policies, supporting Risk Management Framework (RMF) activities, monitoring system security posture, and ensuring compliance with Department of Defense (DoD) cybersecurity requirements.
The ideal candidate is detail-oriented, possesses strong analytical and problem-solving skills, and has experience supporting cybersecurity operations within a DoD environment. This role works closely with Information System Security Managers (ISSMs), engineers, system administrators, and government personnel to maintain the security and compliance of MDA information systems.
Essential Duties and Responsibilities
Support the implementation and maintenance of cybersecurity requirements for classified and unclassified information systems.
Assist with Risk Management Framework (RMF) activities throughout the system lifecycle.
Maintain and update RMF documentation, including System Security Plans (SSPs), Security Assessment Reports (SARs), Plans of Action and Milestones (POA&Ms), and supporting artifacts.
Perform continuous monitoring activities to ensure compliance with DoD cybersecurity requirements.
Review vulnerability scan results, document findings, and coordinate remediation efforts with technical teams.
Support implementation and validation of DISA Security Technical Implementation Guides (STIGs).
Assist with Assessment and Authorization (A&A) activities to maintain system Authority to Operate (ATO).
Monitor system security posture and report cybersecurity risks and compliance issues.
Support security audits, inspections, and cybersecurity assessments.
Assist with investigating and documenting cybersecurity incidents in accordance with established procedures.
Review proposed system changes to identify potential security impacts.
Collaborate with engineers, system administrators, and government stakeholders to ensure cybersecurity requirements are incorporated into system operations.
Prepare reports, metrics, and status updates related to cybersecurity compliance and continuous monitoring.
Stay current on DoD cybersecurity policies, emerging threats, and industry best practices.
Required Qualifications
Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Information Assurance, or a related field.
Minimum of 3–5 years of experience supporting information assurance or cybersecurity programs, preferably within the Department of Defense.
Experience supporting the DoD Risk Management Framework (RMF).
Working knowledge of: NIST SP 800-53
NIST SP 800-37
DoD RMF
DISA STIGs
…