1

Navfac Jobs in Guam (NOW HIRING)

GU ยท On-site

NAVFAC / COTR (Contracting Officer's Technical Representative)Commissioning Authority and Government Commissioning Authority General Contractor (GC) and subcontractorsMechanical, Electrical, Plumbing ...

GU ยท On-site

$85K/yr

Implement and manage the Interim and Final Construction Phase Commissioning Plans in compliance with NAVFAC specifications. * Ensure required submissions are completed within mandated timelines:

$106K/yr

Specialized experience must demonstrate the following: formulating resource utilization and financial analysis for programs supporting the NAVFAC mission. Additional qualification information can be ...

$106K/yr

Specialized experience must demonstrate the following: formulating resource utilization and financial analysis for programs supporting the NAVFAC mission. Additional qualification information can be ...

$106K/yr

Specialized experience must demonstrate the following: formulating resource utilization and financial analysis for programs supporting the NAVFAC mission. Additional qualification information can be ...

$86K - $106K/yr

Proficient in the NAVFAC Three phases of the control process. * Effectively communicate the standards of care required for each definable feature of work to the various team members in the project ...

GU ยท On-site

Drive the end-to-end RMF lifecycle (Steps 1-6) in accordance with current Department of the Navy and NAVFAC Echelon II guidance; verify artifacts for completeness, quality, and compliance and ...

next page

Showing results 1-20

Navfac information

What is NAVFAC?

NAVFAC stands for Naval Facilities Engineering Systems Command, which is a division of the United States Navy responsible for building and maintaining naval facilities around the world. NAVFAC provides engineering, acquisition, and technical services to support the Navy and Marine Corps' infrastructure needs, including construction, environmental management, energy programs, and facility maintenance. Employees at NAVFAC may include engineers, architects, project managers, and other professionals who help ensure that Navy installations are safe, efficient, and mission-ready.

What are common challenges faced by professionals working at NAVFAC, and how can new hires prepare for them?

Professionals at NAVFAC (Naval Facilities Engineering Systems Command) often manage complex projects that require coordination between military clients, contractors, and diverse engineering teams. Common challenges include navigating federal regulations, adhering to strict safety and security standards, and balancing multiple priorities on tight deadlines. New hires can prepare by familiarizing themselves with DoD project management processes, enhancing their communication skills, and being adaptable to a structured, mission-driven work environment. Proactively seeking mentorship and engaging in NAVFAC's training programs can also help ease the transition.

What are the key skills and qualifications needed to thrive as a NAVFAC professional, and why are they important?

To thrive as a NAVFAC professional, you typically need a background in engineering, architecture, or construction management, often supported by a relevant degree and professional licensure (e.g., PE, RA). Familiarity with project management software, AutoCAD, and federal contracting procedures is crucial for handling military and government projects. Strong problem-solving abilities, teamwork, and effective communication skills help you coordinate with diverse stakeholders and adapt to evolving project requirements. These competencies are essential for delivering complex infrastructure projects on time, within budget, and in compliance with strict regulatory standards.

What kind of jobs are at NAVFAC?

NAVFAC (Naval Facilities Engineering Command) offers a variety of jobs including civil engineering, architecture, project management, environmental science, and facilities maintenance. These roles often require technical skills, security clearances, and knowledge of construction, engineering, or environmental regulations.

What cities in Guam are hiring for Navfac jobs?

Cities in Guam with the most Navfac job openings:

Infographic showing various Navfac job openings in Guam as of August 2026, with employment types broken down into 100% Full Time. Highlights an 100% In-person job distribution.

Cybersecurity Analyst with Security Clearance

Ares Enterprise, LLC

Santa Rita, GU โ€ข On-site

Contractor

Posted 10 days ago


Job description

The Cybersecurity Analyst will provide hands-on cybersecurity support across NAVFAC Marianas Facility-Related Control Systems (FRCS) environments, helping protect the confidentiality, integrity, and availability of systems, networks, and data. The role supports the planning, implementation, documentation, maintenance, and improvement of cybersecurity programs, policies, procedures, and tools. This position works closely with system owners, independent validators, the Information Systems Security Manager (ISSM), NAVFAC CIO personnel, and other government stakeholders. The analyst will also support cybersecurity incident response as a member of the MAR Cyber Emergency Response Team (CERT), participate in on-call rotations, and independently drive RMF and cybersecurity activities with minimal supervision. The successful candidate will manage the full Risk Management Framework (RMF) lifecycle, Steps 1โ€“6, in accordance with Department of the Navy and NAVFAC Echelon II guidance. The candidate will be capable of independently driving cybersecurity and RMF activities with minimal supervision, supporting systems throughout the full RMF lifecycle, maintaining Authorities to Operate (ATOs), conducting vulnerability and compliance assessments, and providing continuous monitoring and incident response support. Essential Duties & Responsibilities: Execute the end-to-end RMF lifecycle (Steps 1โ€“6) and ensure required artifacts meet DoN and NAVFAC requirements and are properly uploaded and maintained within eMASS.
Support the attainment, maintenance, and tracking of Authorities to Operate (ATOs) for Facility-Related Control Systems.
Facilitate annual security reviews and develop Memorandums for Record associated withsystem baseline changes.
Develop and maintain cybersecurity policies, Standard Operating Procedures (SOPs), and implementation plans aligned with NIST SP 800-53 security control families and NAVFAC/DoN cybersecurity requirements.
Develop and execute a comprehensive vulnerability management strategy.
Perform vulnerability and compliance assessments using approved tools such as ACAS, SCAP, and Evaluate STIG.
Perform manual STIG and Security Requirements Guide (SRG) validations and maintain required checklists.
Generate Security Center and eMASSter reports and ensure vulnerability results are accurately maintained in the Vulnerability Remediation Asset Management (VRAM) database.
Conduct System-Level Continuous Monitoring (SLCM), including recurring vulnerability scanning, security control reviews, audit log analysis, vulnerability remediation/mitigation, and quarterly Plan of Action and Milestones (POA&M) updates.
Provide on-site validation and technical testing support for RMF Step 4 activities.
Coordinate with system owners and independent validators during site assessments and technical evidence collection.
Serve as a technical representative and/or Configuration Management Officer on the Configuration Control Board (CCB) and provide security impact analyses and risk assessments for proposed FRCS changes.
Support cybersecurity incident response operations as a member of the MAR Cyber Emergency Response Team (CERT) and participate in required on-call rotations.
Prepare incident response reports and operational documentation following cybersecurity events.
Provide bi-weekly RMF status reporting to the ISSM and maintain FRCS RMF project records in Maximo and/or eProjects.
Prepare recurring project, cybersecurity, continuous monitoring, and ATO milestone reporting in support of NAVFAC CIO priorities. Required Qualifications: U.S. Citizenship is required.
Minimum of five (5) years of Risk Management Framework (RMF) experience.
Minimum of one (1) year of specialized experience supporting Facility-Related Control Systems (FRCS) while performing RMF and cybersecurity engineering activities.
Must be fully qualified in accordance with DoDM 8140.03, Cyber Workforce Work Role 461 โ€“ Systems Security Analyst, at the Intermediate or Advanced proficiency level prior to onboarding.
Must possess and maintain an approved cybersecurity certification. Intermediate-level certifications include CCSP, Cloud+, GICSP, GISF, GSEC, or Security+. Advanced certifications identified include RCCE Level 1, CISSO, CISSP-ISSEP, CySA+, FITSP-O, GCLD, GCSA, or GSNA.
Must maintain required certification status and complete at least 20 hours annually of Continuous Professional Development (CPD), or the minimum required to maintain the applicable commercial certification, whichever is greater.
Demonstrated ability to independently perform technical cybersecurity work with minimal government supervision.
Demonstrated experience developing comprehensive technical reports, cybersecurity policies, procedures, and related security documentation.
Ability to communicate effectively with government personnel, system owners, technical stakeholders, and Information Systems Security Managers.
Ability to communicate fluently and effectively in English, both verbally and in writing.
Ability to work in mechanical and facility environments and lift or move equipment weighing up to 25 pounds. Security clearance requirements: Must possess an active Tier 5 (T5) Top Secret security clearance or be able to obtain an interim T5 clearance prior to onboarding and the start of performance.
The required security clearance must be maintained in active and good standing throughout the period of contract performance.
Personnel must comply with all applicable DoD, Department of the Navy, NAVFAC, and site-specific information security and safeguarding requirements