Job Information
UIC Government Services and the Bowhead Family of Companies IT Audit & Controls Analyst I- RMF / FISCAM in Andrews AFB, Maryland
Overview
IT Audit & Controls Analyst I -RMF/FISCAM
Bowhead seeks an IT Audit & Controls Analyst I -RMF/FISCAM to support the AF FIAR contract in Andrews AFB, MD. The IT Audit & Controls Analyst I -RMF/FISCAM will support audit readiness efforts by assessing, testing, and sustaining IT internal controls aligned with FISCAM, NIST 800-53 (RMF), and FIAR guidance. This role focuses on validating control effectiveness, supporting remediation efforts, and ensuring IT systems and processes meet federal financial management and cybersecurity compliance requirements.
Responsibilities
Assess, document, test, and monitor IT general controls (ITGCs) and business process controls
Perform control re-testing, remediation validation, and sustainment testing following FIAR baseline assessments
Develop and maintain control documentation, test plans, and results in accordance with audit standards
Identify control gaps, deficiencies, and risks; support development of corrective actions
Draft system change requests and define requirements related to system issues (e.g., SIDs, Critical Issues, NFRs)
Support IT audit readiness efforts, including responding to auditor requests, RFIs, and findings
Maintain evidence repositories (e.g., SharePoint) to ensure audit traceability and compliance
Collaborate with IT, cybersecurity, and financial stakeholders to align controls with system functionality and mission requirements
Support IT system modernization, migration, and implementation efforts from a controls and compliance perspective
Prepare clear briefings and status reports for technical and non-technical stakeholders
Other duties as assigned
Qualifications
Bachelor’s degree in Information Systems, Computer Science, or related field (or 4+ years of relevant experience)
2+ years of experience supporting IT audit, controls testing, or compliance efforts
Experience with FISCAM and/or NIST 800-53 Risk Management Framework (RMF)
Experience documenting and testing IT controls and supporting remediation activities
Familiarity with IT system modernization, migration, or ERP implementations
Understanding of current IT and cybersecurity trends
Strong analytical, documentation, and communication skills
Preferred Qualifications
Experience with DoD or Air Force systems and environments
Familiarity with FIAR guidance and federal financial management system requirements (e.g., OMB A-127)
Knowledge of Federal Information System Controls Audit Manual (FISCAM) requirements
Experience with Oracle Federal Financials or similar ERP systems
Domain knowledge of Foreign Military Sales (FMS) or Security Cooperation processes
Strong background in audit readiness, remediation, and internal controls
Physical Demands:
Must be able to lift up to 25 pounds
Must be able to stand and walk for prolonged amounts of time
Must be able to twist, bend and squat periodically
SECURITY CLEARANCE REQUIREMENTS: Must be able to maintain a security clearance at the Secret level. US Citizenship is a requirement for this contract.
#LI-JS1
Applicants may be subject to a pre-employment drug & alcohol screening and/or random drug screen, and must follow UIC’s Non-DOT Drug & Alcohol Testing Program requirements. If the position requires, an applicant must pass a pre-employment criminal background history check. All post-secondary education listed on the applicant’s resume/application may be subject to verification.
Where driving may be required or where a rental car must be obtained for business travel purposes, applicants must have a valid driver license for this position and will be subject to verification. In addition, the applicant must pass an in-house, online, driving course to be authorized to drive for company purposes.
UIC is an equal opportunity employer. We evaluate qualified applicants without regard to race, age, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, and other protected characteristics EOE/D/V. In furtherance, pursuant to The Alaska Native Claims Settlement Act 43 U.S.C. Sec. 1601 et seq., and federal contractual requirements, UIC and its subsidiaries may legally grant certain preference in employment opportunities to UIC Shareholders and their Descendants, based on the provisions contained within The Alaska Native Claims Settlement Act. Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities. Please view Equal Employment Opportunity postershere (https://www.eeoc.gov/sites/default/files/2023-06/22-088_EEOC_KnowYourRights6.12ScreenRdr.pdf) .
All candidates must apply online at www.uicalaska.com , and submit a completed application for all positions they wish to be considered. Once the employment application has been completed and submitted, any changes to the application after submission may not be reviewed. Please contact a UIC HR Recruiter if you have made a significant change to your application. In accordance with the Americans with Disabilities Act of 1990 (ADA), persons unable to complete an online application should contact UIC Human Resources for assistance www.uicalaska.com/careers/recruitment/ .
The contractor will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor's legal duty to furnish information. 41 CFR 60-1.35(c)
UIC Government Services (UICGS / Bowhead) provides innovative business solutions to federal and commercial customers in the areas of engineering, maintenance services, information technology, program support, logistics/base support, and procurement. Collectively, the fast-growing Bowhead Family of Companies offers a breadth of services which are performed with a focus on quality results. Headquartered in Springfield, VA, we are a fast-growing, multi-million-dollar company recognized as a top Alaska Native Corporation providing services across the Department of Defense and many federal agencies. Bowhead offers competitive benefits including medical, dental, vision, life insurance, accidental death and dismemberment, short/long-term disability, and 401(k) retirement plans as well as a paid time off programs for eligible full-time employees. Eligible part-time employees are able to participate in the 401(k) retirement plans and state or contract required paid time off programs.
Join our Talent Community!
Join our Talent Community (https://talentconnect.uicalaska.com/government-services/talentcommunity) to receive updates on new opportunities and future events.
ID 2026-25093
Category Information Technology
Location : Location US-MD-Andrews AFB
Min USD $85,000.00/Yr.
Max USD $107,000.00/Yr.
Minimum Clearance Required Secret
Travel Requirement N/A