Senior Web Vulnerability Analyst

Athena Technology Group
  • Ogden, Utah
    7 days ago

    Job Description

    Job Title: Senior Web Vulnerability Analyst

    Location: DISA Ogden, 7879 Wardleigh Rd Bldg. 891, Hill AFB, UT 84056-5997 (SCIF), Some Travel Required.  

    Employment Type: Full-Time  

    Shift: N/A

    About the Company 

    Athena Technology Group, Inc. (ATG) is a Service-Disabled Veteran Owned Small Business (SDVOSB) focused on Information Technology and Communications consulting, system engineering, integration, deployment and operation of state of the art command and control and information systems that deliver critical network centric solution to the warfighter.  With a proven track record of technical support to our customers, we are looking for innovative industry professionals to join our team. 

    ATG is an Equal Opportunity/Affirmative Action Employer Minorities/Females/Vets/Disability 

    Job Summary  

    We are seeking a Senior Web Vulnerability Analyst  to join our team. In this role, you will provide Cybersecurity management support for the DISA Cybersecurity Division by supporting compliance monitoring/reporting, response and mitigation, automation and management services, compliance validation, configuration, change management and account management. This person will work as part of a disperse team requiring coordination, teamwork and must provide a  proven ability to strategize and implement high-level program initiatives.  

    Key Responsibilities 

    • Serve as a Web technical specialist for assets connected to isolated environments, NIPRNet and SIPRNet to support cybersecurity and IT services. 

    • Review, identify, and report problems with the installation and operations of web instances to include system options, software used and not used, default security controls that are enabled, disabled, or bypassed, and system wide options or parameters that may create security vulnerabilities. 

    • Determine the impact and risk of submitted change requests prior to implementation and participate in CAB meetings (up to daily) to provide cyber oversight for database changes that affect the level of risk. 

    • Recommend security countermeasures to mitigate identified web risks. 

    • Identify, monitor, analyze, report, and brief status of vulnerabilities. 

    • Ensure high risk and high severity vulnerabilities are managed with increased visibility and escalated. 

    • Analyze, validate, monitor, and report compliance status of DoD and DISA directives and orders.  

    • Create, maintain, and provide automated and customized vulnerability reports. 

    • Analyze mission requirements and organizational feedback to improve vulnerability reports and processes. 

    • Provide recommendations for web vulnerability analysis, guidance, deficiency resolution, and implementation suggestions to DISA customers and Mission Partners. 

    • Assess, audit, review, analyze, validate, and report database SRG and STIG vulnerabilities, and ensure security controls are implemented within databases IAW DoD, DISA and cybersecurity policies and procedures. 

    • Evaluate discrepancies as they relate to policy, orders, and database SRG and/or STIGs, and document recommended additions, deletions, or changes. 

    • Identify and report the need to add technical guidance for modification of policies and orders. 

    • Review and validate the installation and configuration of cyber tools on assets, and report deficiencies. 

    • Review database SRG and/or STIGs as updates are released, and report changes with the potential to have significant impact. 

    • Determine the impact and risk of submitted change requests prior to implementation and participate in meetings to provide cyber oversight for web changes that affect the level of risk. 

    • Recommend security countermeasures to mitigate identified web risks. 

    • Participate in audits and provide documentation (up to daily). 

    Qualifications 

    Required:  

    • Active Secret clearance  

    • Bachelor's degree or higher 

    • 5+ years of professional experience with endpoint tools and cybersecurity 

    • 3+ Years experience with Microsoft Products 

    • Current 8570/8140 Certificate with Network Environment focus and ESS certifications 

    • Strong communication, leadership, and organizational skills 

    • Must be a US citizen 

    Desired:  

    • Experience working with teams in multiple locations across the United States. 

    • Experience working with IT teams in various capacities.  

    Physical and Environmental Conditions 

    • Normal Office Environment. Requires Sitting, Standing, Near Acuity, Speaking with colleagues and customers, Listening, Sight, Use of hands/fingers. 

    Additional Benefits 

    • Performance Bonuses and annual salary reviews 

    • Health, dental, and vision insurance 

    • Short Term Disability, Long Term Disability, and Life Insurance 

    • 401(k) plan with company match 

    • Opportunities for professional growth and development 

    • A collaborative and inclusive work environment 

    ATG is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, religion, creed, color, national origin, ancestry, sex (including pregnancy, childbirth, breastfeeding, or medical conditions related to pregnancy, childbirth, or breastfeeding), age, medical condition, marital or domestic partner status, sexual orientation, gender, gender identity, gender expression and transgender status, mental disability or physical disability, genetic information, military or veteran status, citizenship, low-income status or any other status or characteristic protected by applicable law. Learn more about your rights under Federal EEO laws and supplemental language. 

     

    Numbers & Facts

    LocationOgden, Utah
    Websitehttps://www.athenatechgrp.com

    Skills

    • Analysis Skillsunmatched
    • Automationunmatched
    • Change Managementunmatched
    • Change Requests/Ordersunmatched
    • Communication Skillsunmatched
    • Computer Securityunmatched
    • Configuration Managementunmatched
    • Customer Support/Serviceunmatched
    • Defense Information Systems Agency (DISA)unmatched
    • Dental Insuranceunmatched
    • Disability Accommodationsunmatched
    • Disability Insuranceunmatched
    • Documentationunmatched
    • Identify Issuesunmatched
    • Information Technology & Information Systemsunmatched
    • Information Technology Consultingunmatched
    • Internet Securityunmatched
    • Leadershipunmatched
    • Life Insuranceunmatched
    • Maintain Complianceunmatched
    • Microsoft Product Familyunmatched
    • Organizational Skillsunmatched
    • Policy Developmentunmatched
    • Requirements Managementunmatched
    • Riskunmatched
    • Risk Analysisunmatched
    • Risk Managementunmatched
    • Sales Managementunmatched
    • Secret Clearanceunmatched
    • Security Analysisunmatched
    • Sensitive Compartmented Information Facility (SCIF)unmatched
    • Small Businessunmatched
    • Status Reportsunmatched
    • System Integration (SI)unmatched
    • Systems Engineeringunmatched
    • Team Playerunmatched
    • Technical Leadershipunmatched
    • Technical Supportunmatched
    • United States Citizenunmatched
    • United States Department of Defense (DoD)unmatched
    • Vision Planunmatched
    • Web Analyticsunmatched
    • Web Site Monitoringunmatched
    • Willing to Travelunmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder