About this role
WHAT YOU WILL BE DOING
- Support Information Assurance and Continuous Monitoring (ConMon) activities, including log reviews, vulnerability scans, and documentation updates.
- Assist with NIST SP 800-171 and Risk Management Framework (RMF) compliance activities, including control evidence collection and tracking.
- Support Plan of Action and Milestones (POA&M) management by reviewing findings and tracking remediation efforts.
- Assist with audit and assessment readiness activities, including preparation of documentation and evidence for DAAPM, JSIG, and CMMC requirements.
- Create and maintain compliance trackers, documentation, workflows, and IA knowledge bases using tools such as JIRA and Confluence.
- Shadow ISSM and ISSO personnel to gain exposure to system authorization, accreditation, and security lifecycle activities.
- Participate in cybersecurity awareness activities, training, and team initiatives.
- Provide analytical, documentation, and administrative support for cybersecurity and Information Assurance projects.
- Collaborate with security and technical teams to identify opportunities to improve compliance processes and cyber risk management.
WHAT YOU HAVE DONE
- Currently pursuing a Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Information Systems, or a related field.
- Demonstrated interest in Information Assurance, cybersecurity, risk management, or compliance.
- Familiarity with one or more of the following: NIST SP 800-171, RMF, JSIG, DAAPM, or CMMC.
- Proficiency with Microsoft Office, particularly Excel, Word, and PowerPoint.
- Strong written and verbal communication skills.
- Strong attention to detail and organizational skills.
- Ability to work collaboratively in a fast-paced, deadline-driven environment.
- Ability to handle sensitive information professionally and with discretion.
- Ability to obtain a U.S. security clearance.
EVEN BETTER
- Prior internship, coursework, academic project, or hands-on experience in cybersecurity, Information Assurance, risk management, or compliance.
- Exposure to vulnerability management or scanning tools such as Nessus, OpenVAS, or Qualys.
- Experience with JIRA, Confluence, or similar workflow and project management tools.
- Security+ or another entry-level cybersecurity certification, or actively pursuing certification.
- Familiarity with DoD cybersecurity policies, security controls, or authorization processes.
- Experience documenting technical processes, maintaining compliance records, or analyzing security findings.
At RII, we believe that diversity in our workforce is critical to our success. We strive to hire great people from a wide variety of backgrounds, not just because it’s the right thing to do, but because it makes us stronger. We work to help your intellectual passions and creativity thrive. It’s one of our core values: Let your geek flag fly.
We also offer all employees comprehensive benefits including: flexible work schedules, health insurance coverage, paid time off, 401k with a company match, paid parental leave, access to wellness programs and much more. You get this all from day one, and all paid for by RII.
It’s all part of another of our core values: Stay human. It’s why our comfortable and colorful offices such as our headquarters, include a community game room, pantry, massage chair, and an escape room, among other amenities. It’s why we have community ambassadors and regular community events.
Research Innovations Incorporated is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, or any other characteristic protected by applicable law.