Aretum · 14 hours ago
Security Compliance & Documentation Analyst
Aretum is a mission-driven organization focused on providing innovative solutions in defense, civilian, and homeland security sectors. The Mid-Level Security Compliance & Documentation Analyst will lead cybersecurity compliance activities, ensuring RMF package integrity and documentation quality while advising government stakeholders.
ConsultingInformation Technology
Responsibilities
Support and maintain development, maintenance, and oversight of RMF packages for classified C5ISR and IIR systems
Coordinate with Government System Owners, ISSOs, ISSEs, and Authorizing Officials to collect evidence, validate control implementation and maintain package accuracy
Execute RMF support activities for ATO/IATT and continuous monitoring across multiple systems/enclaves, including documentation updates driven by engineering and operational changes
Document and track POA&M items, support risk-based prioritization, and provide remediation status reporting through closure
Validate documentation alignment with system architecture, interconnections, control inheritance, and mission dependencies
Ensure systems comply with Department of War/DoD, and federal cybersecurity requirements
Support internal and external audits, inspections, and cybersecurity assessments
Monitor changes to cybersecurity policy and support implementation across supported systems
Provide compliance status, risk analysis, and authorization reporting to government leadership
Author, maintain, and approve cybersecurity SOPs, plans, and technical documentation
Standardized documentation practices across supported systems and teams
Ensure documentation supports audits, inspections, and operational continuity
Support cybersecurity risk management for C5ISR and IIR systems
Assess security impacts across enterprise, tactical, and mission networks
Support interconnected and cross-domain system authorization efforts
Qualification
Required
Active Top Secret Required
Master's Degree + 5 years of relevant experience or Bachelor's Degree + 8 years of relevant experience
3-6 years of experience in information assurance, cybersecurity, or compliance-focused roles
IAT Level III Certification: Must possess one of the following: CASP+ CE, CCNP Security+, CISA, CISSP, GCED, GCIH, or CCSP
Active Top Secret Clearance
Demonstrated experience maintaining and leading RMF packages in classified or regulated environments
Strong knowledge of NIST 800-series publications and DoD cybersecurity requirements
Proven experience developing SOPs, policies, and compliance documentation
Ability to communicate effectively with both technical and non-technical stakeholders
Demonstrated willingness to learn new tools/techniques and support cross-functional cybersecurity activities as mission needs evolve
Preferred
Extensive knowledge of AWS Security
Experience supporting Department of War, DoD, or intelligence community mission systems
Familiarity with Zero Trust concepts and assessment efforts
Advanced certifications such as CAP, CISM, or CISSP
Experience with cross-domain solutions and interconnected system authorization
Benefits
Health Care Plan (Medical, Dental & Vision)
Retirement Plan (401k)
Life Insurance (Basic, Voluntary & AD&D)
Paid Time Off
Family Leave (Maternity, Paternity)
Short Term & Long-Term Disability
Training & Development
Company
Aretum
ARETUM is a government contracting company specializing in technology-enabled mission support services for the Department of Defense.
Funding
Current Stage
Late StageRecent News
Washington Technology
2025-12-13
Venture Capital
2025-12-13
Company data provided by crunchbase