Senior Windows Vulnerability Analyst PD IncSenior Windows Vulnerability AnalystMDFull timeReview, identify, and report problems with the installation and operations of assets to include system options, software used and not used, default security controls that are enabled, disabled, or bypassed, and system wide options or parameters that may create security vulnerabilities. Assess, audit, review, analyze, validate, and report OS, SRG, and STIG vulnerabilities, and ensure security controls are implemented within OS IAW DoD, DISA, and industry cybersecurity policies and procedures.
Vice President, Economic Security Beacon Global StrategiesVice President, Economic SecurityWashingtonProvide substantive, current guidance on the mechanics and enforcement posture of key regulatory regimes, including EAR/BIS controls, OFAC frameworks, and FCC national security actions, with fluency in adjacent instruments including CFIUS, the outbound investment screening regime, and Entity List and 1260H designation processes. Bring substantive expertise to bear in ways that strengthen the practice's standing with prospective clients— contributing to proposals, representing the firm at senior levels, and identifying opportunities to deepen existing engagements and expand Beacon’s client base.
NewCloud Security Architect / FedRAMP Advisor Apogee Global RMSCloud Security Architect / FedRAMP AdvisorMcLean, VAThis role is built for architects who understand the intersection of cloud engineering, compliance frameworks, and real‑world security design — and who can guide federal programs through secure cloud adoption with precision and authority. You will serve as a trusted advisor across AWS, Azure, and hybrid environments, shaping security architectures, guiding FedRAMP readiness, and ensuring cloud platforms meet stringent federal requirements.
NewSecurity Compliance Lead TSTCSecurity Compliance LeadAnnapolis Junction, MDMust have hands-on real-world experience both doing and leading a team that does: Assessment & Authorization (A&A) lifecycle support (documentation updates, ISAs, POA&M management, monthly reports, and responding to ad hoc requests). The ideal candidate combines hand’s on security compliance with the ability to translate that and help manage tasks for more junior level staff and is discussing complex topics with senior leadership.
Purple Team Manager (Defense Improvement Analysis) Capital OnePurple Team Manager (Defense Improvement Analysis)McLean, VirginiaOffensive Security is part of the Cyber Operations and Intelligence program and assists with identifying opportunities to enhance Capital One’s information security posture against a broad range of cyber threats, and develop strategies to most effectively address the threats. Operational Research: Continuously research emerging threat behaviors and automate repetitive post-exploitation analysis tasks to scale the team’s ability to identify and address novel TTPs.
Senior Information Security Analyst CALIBRESenior Information Security AnalystWashington, DC$105,000–$115,000Full timeCALIBRE Systems, Inc., an employee-owned mission focused solutions and digital transformation company, is looking for a highly qualified Senior Information Security Analyst to support a DoD client with enterprise cybersecurity for a large program serving military families. This candidate will lead and oversee cybersecurity compliance, security architecture, threat detection, vulnerability management, incident response, RMF/eMASS support, and ATO sustainment for DoD cloud infrastructure and information systems.
Information Security Analyst CALIBREInformation Security AnalystWashington, DC$80,000–$90,000Full timeCALIBRE Systems, Inc., an employee-owned mission focused solutions and digital transformation company, is looking for a highly qualified Journeyman Information Security Analyst to support a DoD client with enterprise cybersecurity for a large program serving military families. The analyst will help maintain compliance with DoD, DISA, U.S. Cyber Command, MC&FP, NIST RMF, Zero Trust, STIG/SRG, ACAS, and eMASS requirements while supporting the attainment and sustainment of Government-issued Authorizations to Operate (ATOs).
NewManager, Cyber Risk & Analysis (International and Regulatory Risk) Capital OneManager, Cyber Risk & Analysis (International and Regulatory Risk)McLean, VirginiaAs a Manager on the International and Regulatory Risk team, you will manage TDRM’s engagement in international risk workstreams, coordinate TDRM subject matter experts to vet and advise first line proposals for managing risks internationally, and assist in audit and regulatory preparations and responses. Professional Security Certification or Professional Risk Management Certification (Certified Information Systems Security Professional (CISSP), or Certified Information Systems Auditor (CISA), or Certified Information Security Manager (CISM), or Certified in Risk and Information Systems Control (CRISC), or Open FAIR Certified).
Staff Engineer, Operations Analysis (R4757) Shield AIStaff Engineer, Operations Analysis (R4757)Washington, DCLI-AD6 #LD Full-time regular employee offer package: Pay within range listed + Bonus + Benefits + Equity Temporary employee offer package: Pay within range listed above + temporary benefits package (applicable after 60 days of employment) Salary compensation is influenced by a wide array of factors including but not limited to skill set, level of experience, licenses and certifications, and specific work location. Familiarity with DoD acquisition processes, tools (Brawler, ESAMS, etc.), Joint Capabilities Integration and Development System (JCIDS), and military operational testing DoD Program experience as analysis task lead.
Principal Auditor - Cyber, Risk and Analysis Technology Audit (Hybrid) Capital OnePrincipal Auditor - Cyber, Risk and Analysis Technology Audit (Hybrid)McLean, VirginiaCertifications related to or pursuing certification related to Cloud, Cyber or Technology Operations, such as Cloud provider certifications, Certified Information Systems Security Professional (CISSP), or Certified Information Security Manager (CISM), Certifications related to or pursuing certification related to Auditing, such as Certified Internal Auditor (CIA), or Certified Information Systems Auditor (CISA). Execute major components of audits, including critical technology functions, cloud-based infrastructure, cybersecurity, risk management, application, and third-party management, as well as the ability to assist in leading components of small to medium size audits.
Information Technology - Analyst, Cyber Security Ampcus IncorporatedInformation Technology - Analyst, Cyber SecurityBaltimore, MD$45–$51.34 / hourIn Lieu of Education: In lieu of a Bachelor's degree, an additional 4 years of relevant work experience is required in addition to the required work experience. Preferred Qualifications: Knowledge, Skills, and Abilities (KSAs): Ability to manage multiple tasks and deliverables with minimal supervision.
Physical Security Analyst NERC CareersPhysical Security AnalystWashington DC, District of ColumbiaWe exemplify NERC cultural behaviors: Reward, high-quality, creative, and innovative work; Attract, engage, and retain top talent; Value and respect diverse perspectives; Provide a safe, inclusive, and collaborative work environment; Form strong relationships within the company, and with the ERO Enterprise; We demonstrate curiosity in a wide variety of areas and are open to exploring new situations, knowledge and opportunities for growth and development; We demonstrate an anticipatory mindset; preventing problems, and building contingencies where appropriate; and. The E-ISAC works directly with asset owners and operators to sustain the reliability of the North American electric grid by monitoring and analyzing cyber and physical risks, providing timely and actionable information, and other product and services.
Security Operations Center Analyst EverwatchSecurity Operations Center AnalystAnnapolis Junction, Maryland$57.69–$67.30 / hourCompensation at EverWatch is determined by various factors, including but not limited to location, the individual’s particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. Job Title: Security Operations Center Analyst Overview: EverWatch is a government solutions company providing advanced defense, intelligence, and deployed support to our country’s most critical missions.
SOC Analyst (Tier 2) / Security Incident Investigator CyberLinx SolutionsSOC Analyst (Tier 2) / Security Incident InvestigatorAnnapolis Junction, MarylandThis role is responsible for conducting in-depth investigations of security alerts escalated by Tier 1 analysts, identifying potential threats, validating security incidents, and coordinating containment activities. The ideal candidate has strong analytical skills, experience with SIEM tools, and the ability to perform forensic and log analysis to identify malicious activity.
Information System Security Officer Senior (ISSO) AmentumInformation System Security Officer Senior (ISSO)WashingtonThe entire section leverages agile and works to provide enhanced reporting and global searching capabilities to facilitate task management, cross-utilization, and address national intelligence priorities while protecting confidential data and sources. As appropriate, each employee is responsible for completing all training requirements and fulfilling all self-aid/buddy aid responsibilities, participating in emergency response tasks and serving on safety committees and teams.
Cyber Security Analyst By Light Professional IT Services LLCCyber Security AnalystFort Meade, Maryland$130,000–$155,000 / yearProvide enterprise-wide cybersecurity, threat analysis, countermeasures and defensive strategies across a multi-tiered, porous domain inclusive of Cloud, federated regional gateways, cross domain peering points, internet access points, and endpoints. When extending an offer, By Light also considers other variables such as (but not limited to) work experience, education, training, skill set, internal peer equity, clearance level, and market conditions.
Cyber Security Analyst Vets HiredCyber Security AnalystAnnapolis, MarylandWorking knowledge of cyber security program elements such as Policy Development, Application Security, Information Security, Network Security, Disaster Recovery Planning, Operational Security, Incident Response, and End User Education. For daily operations: enhance, maintain or support existing IT products and processes to the defined service level agreement For projects and sub-projects: analyze requirements, design, build, and test IT software solutions.
Junior Security Control Assessor The Newberry GroupJunior Security Control AssessorFt. Meade, MD$50,000–$60,000 / yearThis includes medical coverage with three plan options, dental and vision coverage, personal time off, paid holidays, paid parental leave, telecommuting if available, retirement savings accounts (Pre-Tax and Roth), flexible and dependent care savings accounts, life insurance, long and short-term disability coverage, tuition and training reimbursement, employee assistance program, and more. For each RMF Review, the assessors shall perform the following: The candidate will be required to review applicable controls to determine compliance status and enter all test results into the designated repository (Enterprise Mission Assurance Support Service (eMASS).
Senior Security Governance and Policy Analyst One Federal SolutionSenior Security Governance and Policy AnalystWashington, DCOne Federal Solution provides cybersecurity policy expertise by advising Government leadership, analyzing Federal and DHS cybersecurity guidance, and translating requirements into actionable security plans. We are pioneers, builders, thought leaders, and pride ourselves on thinking outside the box to co-create with our customers, helping them achieve exceptional enterprise-wide outcomes.
Information Systems Security Engineer (ISSE)-TS/SCI w/Poly PeratonInformation Systems Security Engineer (ISSE)-TS/SCI w/PolyAnnapolis Junction, Maryland$146,000–$234,000 / yearFull timeAs an Information Systems Security Engineer (ISSE), you will play a key role in securing complex systems, ensuring compliance with federal cybersecurity frameworks, and protecting sensitive information. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies.