Cybersecurity Analyst DCS CorporationCybersecurity AnalystFort Belvoir, VAImplements the Defense (DOD) Risk Management Framework (RMF) and assists the Information System Security Manager (ISSM) to ensure successful implementation of associated security controls and reviews all RMF documentation packages, and system fielding, operations, or upgrade requirements. Assists with implementing audit measures to ensure compliance with regulatory requirements, participate in organizational inspections and surveys of computer systems, provide inspection results, and assess the adequacy of corrective actions taken.
NewMid-Level Cybersecurity Incident Response Analyst System OneMid-Level Cybersecurity Incident Response AnalystBethesda, MD$120,000 / yearExperience: 3–5 years supporting cybersecurity operations, SOCs, incident response, or information security programs with experience in incident investigations, security monitoring, log analysis, and threat detection. Desired Certifications: CompTIA CySA+, CompTIA Security+, GIAC GCIH, GIAC GSEC, ISC2 Certified in Cybersecurity (CC), Microsoft SC-200, or equivalent.
NewSenior Cybersecurity Analyst Chickasaw Nation Industries, Inc.Senior Cybersecurity AnalystMaryland, MD$105,000–$115,000 / yearProvides Quality Assurance activity which includes: management of organizational mailboxes; assigning NIPR/SIPR/VPN/Non-DISN connections/Cloud Mission Owner Information Technology Process (CITP) connection packages correspondence; and collecting mission partner metrics using Government furnished information systems (e.g., SNAP and SIPRNET GIAP System (SGS)), websites repository and updates. Resolves customer issues, workflow quality assurance and cybersecurity analysis efforts; resolves production-related problems as it relates to Connection Approval Process (CAP) processing and applicable SOP updates, not to exceed five documents monthly.
Sr. Cybersecurity Incident Response Specialist BERING STRAITS PROFESSIONAL SERVICES LLCSr. Cybersecurity Incident Response SpecialistWashington DC, DCParagon offers a wide range of environmental investigation, consulting, compliance, and remediation services as well as IT solutions, Facility O&M, Materiel Support, Supply and Security to both private- and public-sector clients throughout Alaska and the Continental U.S. Paragon’s experienced professional staff is dedicated to producing high-quality documentation and providing safe field execution to support its clients’ projects in line with local, state and federal guidelines and regulations. Member of the SOC team which provides 24 hours per day, 7 days per week, 365 days per year monitoring and incident response services for the organization’s Network, Systems, Applications, and Web services.
NewCybersecurity Risk - Managing Consultant GuidehouseCybersecurity Risk - Managing ConsultantWashington, DC$130,000–$216,000 / yearCertified in one of the following OR another relevant certification: Certified Information Systems Security Professional (CISSP), Certified in Risk and Information Systems Controls (CRISC), Certified Authorization Professional (CAP) / Certified in Governance, Risk and Compliance (CGRC), Certified Information Systems Auditor (CISA) What Would Be Nice To Have: Experience consulting at large federal agencies such as the Department of State, Department of Justice or Department of Homeland Security on cybersecurity audits and / or IT controls Demonstrated experience in the areas of external client-facing management and/or consulting for large firms The annual salary range for this position is $130,000.00-$216,000.00. What You Will Do: Oversee, manage and lead the development and execution of cybersecurity risk management, risk governance, risk assessments and HVA oversight and assessments, including maintaining and improving enterprise-level risk register, coordinating and planning enterprise and organizational unit risk assessments, overseeing specified technology risk assessments, and overseeing HVA oversight program functions.
NewRMF IT Security Analyst System OneRMF IT Security AnalystBethesda, MD$120,000–$130,000 / yearWorking under Lead and Senior RMF personnel, the analyst independently supports RMF lifecycle activities, security assessments, continuous monitoring, and compliance initiatives while mentoring junior staff. Support Cybersecurity Supply Chain Risk Management (C-SCRM) activities, including vendor documentation and SBOM reviews.
NewSenior ISSO Security Analyst (SE SR) American Management Group, LLC (AMG)Senior ISSO Security Analyst (SE SR)Manassass, VirginiaFull timeAs a Security Analyst on our team, you’ll use your experience to work with Veterans Affairs (VA) Information System Owners (ISO), Information System Security Officers (ISSO), site managers, and other system stakeholders to coordinate and drive the completion of Risk Management Framework (RMF) steps 0-6 ATO activities and requirements, identify and mitigate risks, escalate project risks to leadership, understand and apply VA authorization policies and processes, and provide information system security expertise. Nice If You Have: Experience with Continuous Authorization and Monitoring (CAM) Experience working with the VA Experience supporting ATOs for specialized devices Ability to engage with varying levels of staff and leadership Possession of excellent verbal and written communication skills The hourly rate of pay for this position is $73.89/hr.
IT Risk & Compliance Analyst NORC at the University of ChicagoIT Risk & Compliance AnalystWashington, D.C.$77,000–$95,000 / yearWorking closely with engineering, cloud operations, infrastructure, development, and business teams, the analyst will help assess security control effectiveness, coordinate compliance activities, collect and validate evidence, track remediation efforts, and support ongoing audit readiness. Coordinate monthly, quarterly, annual, and ongoing FedRAMP Continuous Monitoring activities, including evidence collection, security control assessments, vulnerability management, POA&M management, metrics reporting, and security documentation updates.
Information Assurance Policy Analyst MANTECHInformation Assurance Policy AnalystArlington, VAProven track record of evaluating complex policy authorities, resolving cross-domain security and logistical disputes, and driving interagency consensus to modernize classified infrastructure (such as CIaaS) across government agencies and the Defense Industrial Base (DIB). Leverage dual-hatted experience as an Information Systems Security Manager (ISSM) and Special Security Officer/Program Security Officer (SSO/PSO) to interpret and navigate complex physical, personnel, information, and industrial security regulations.
NewSenior ISSO Security Analyst (AA SR) American Management Group, LLC (AMG)Senior ISSO Security Analyst (AA SR)Manassass, VirginiaFull timeAs a Security Analyst on our team, you’ll use your experience to work with Veterans Affairs (VA) Information System Owners (ISO), Information System Security Officers (ISSO), site managers, and other system stakeholders to coordinate and drive the completion of Risk Management Framework (RMF) steps 0-6 ATO activities and requirements, identify and mitigate risks, escalate project risks to leadership, understand and apply VA authorization policies and processes, and provide information system security expertise. Nice If You Have: Experience with Continuous Authorization and Monitoring (CAM) Experience working with the VA Experience supporting ATOs for specialized devices Ability to engage with varying levels of staff and leadership Possession of excellent verbal and written communication skills .
Cyber Threat Analyst- Active Top Secret Clearance Required VETS, IncCyber Threat Analyst- Active Top Secret Clearance RequiredArlington, VAHowever, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor’s legal duty to furnish information. Possess and maintain, or be able to obtain before start date, one of the following professional certifications: CASP+ CE; CCNP Security; CEH; CFR; CHFI; CISA; CISSP (or Associate); Cloud+; CND; CySA+; GCED; GCIH; GICSP; SSCP.
Enterprise Risk Analyst American Management Group, LLC (AMG)Enterprise Risk AnalystManassass, VirginiaFull timeThe experienced Risk Analyst role executes the VA Enterprise Risk Analysis process using a custom ERA tool to identify key cyber security risk factors in network connected medical devices and Special Purpose Systems (e.g., building automation systems, physical security systems, operational technology). The Risk Analyst must acquire, review and leverage system documentation and data gathered through questionnaires and interviews with customers in the field and vendor/manufacturer representatives to accurately document critical security posture elements in a common reporting format.
Sr Cyber Security Engineer System OneSr Cyber Security EngineerWashington, DC$79.55 / hourRequirements Bachelor’s Degree in Computer Science, Information Technology, or a related field or equivalent work experience (additional 4 years for non-degree holders). Customize SailPoint IIQ product features as needed, including developing custom workflows and workflows management.
NewInformation Security Systems Engineer L3Harris TechnologiesInformation Security Systems EngineerChantilly, VA$106,500–$197,500 / yearAssist in systems/software engineering functions, to include creation of data flow diagrams, interface control documents, perform trade studies, and Static Application Security Testing (SAST) for Application Security and Development Secure Technical Implementation Guide (STIG) compliance using tools such as Fortify/Coverity and Gitlab as part of a DevSecOps Continuous Integration/Continuous Deployment (CI/CD) Pipeline, and generation of summary reports. Perform skills in implementing/assessing security controls, to include writing system security categorization memorandum, recommending appropriate security control overlays, define security control baseline based on defined system security categorization and approved security overlays, and apply security controls to computing/network nodes and verify implementation of security controls.
NewLead, Information Security Systems Engineering L3Harris TechnologiesLead, Information Security Systems EngineeringChantilly, VA$127,500–$236,500 / yearAssist in systems/software engineering functions, to include creation of data flow diagrams, interface control documents, perform trade studies, and Static Application Security Testing (SAST) for Application Security and Development Secure Technical Implementation Guide (STIG) compliance using tools such as Fortify/Coverity and Gitlab as part of a DevSecOps Continuous Integration/Continuous Deployment (CI/CD) Pipeline, and generation of summary reports. Perform skills in implementing/assessing security controls, to include writing system security categorization memorandum, recommending appropriate security control overlays, define security control baseline based on defined system security categorization and approved security overlays, and apply security controls to computing/network nodes and verify implementation of security controls.
NewInformation System Security Manager (ISSM) LeidosInformation System Security Manager (ISSM)Lorton, VA$107,900–$195,050Facilitate approval process for Authorization to Operate (ATO), Authority to Extend (ATE), Authorization to Connect (ATC), and Interconnection Security Agreements (ISA), working with the customer and stakeholders to submit body of evidence artifacts and receive SCA/AO endorsement. If you received an email purporting to be from Leidos that asks for payment-related information or any other personal information (e.g., about you or your previous employer), and you are concerned about its legitimacy, please make us aware immediately by emailing us at LeidosCareersFraud@leidos.com .
Cybersecurity Analyst/Information Systems Security Manager CACI International Inc.Cybersecurity Analyst/Information Systems Security ManagerAlexandria, VA$72,700–$149,200 / yearThe Opportunity:Join CACI as a Cybersecurity Analyst/Information Systems Security Manager supporting a Joint Interagency Task Force that reports to the Deputy Secretary of Defense, to better align authorities and resources to rapidly deliver Joint C-sUAS capabilities to America's warfighters, defeat adversary threats, and promote sovereignty over national airspace. Implement the Defense (DOD) Risk Management Framework (RMF) and assist the System Security Manager (ISSM) ensure successful implementation of associated security controls and reviews all RMF documentation packages, and system fielding, operations, or upgrade requirements.
Information Systems Security Officer / Cybersecurity Analyst Vervic Inc.Information Systems Security Officer / Cybersecurity AnalystStafford, VAFull timeThe program delivers systems engineering, cybersecurity, enterprise architecture, communications, and IT modernization support for Navy and Marine Corps command, control, communications, computers, cyber, intelligence, surveillance, and reconnaissance (C5ISR) capabilities. The customer is looking for candidates with strong RMF experience who understand DoD cybersecurity processes, security compliance, and authorization activities.
Cybersecurity Analyst CymertekCybersecurity AnalystAnnapolis Junction, MarylandCybersecurity, Information Security, Computer Science, Network Security, Information Technology, Digital Forensics, Cyber Intelligence, Computer Engineering, Network Engineering, Risk Management, Systems Engineering, Data Science, Software Engineering, Applied Mathematics, Criminal Justice (with a focus on cybersecurity), ect. Information Security Analyst, Cybersecurity Engineer, Security Operations Center (SOC) Analyst, Threat Intelligence Analyst, Incident Response Analyst, Vulnerability Analyst, Penetration Tester, Risk Analyst, Cyber Defense Analyst, Network Security Analyst, IT Security Specialist, Security Consultant, Cybersecurity Specialist, Malware Analyst, Security Architect, ect.
Principle Cybersecurity Analyst - Remote UnitedHealth Group IncPrinciple Cybersecurity Analyst - RemoteWashington D.C., DCRemote$112,700–$193,200 / yearThe fraudulent LinkedIn messages and emails, which do not originate from any Executives LinkedIn account or of UnitedHealth Group's email domains, or those of any of its operating divisions, supposedly conducts an interview via a Zoom meeting, offers a work from home job at Optum, emails an application, sends a fake check by next day delivery through USPS and asks recipients to pay a vendor a large dollar amount. The role focuses on ingesting, normalizing, and enriching threat intelligence information, integrating Threat Intelligence Platforms (TIPs) and intelligence sources with security tooling (e.g., SIEM, SOAR, EDR), and deploying automated intelligence-enabled detection and response workflows.