Cyber security analyst jobs in Huntsville, AL - 84 jobs
All
Cyber Security Analyst
Information Systems Security Officer
Cyber Security Specialist
Information Assurance Analyst
Cyber Security Engineer
Cyber Security Engineer/Information Systems Security Officer (ISSO)
Aerovironment 4.6
Cyber security analyst job in Huntsville, AL
AV is looking for a highly talented CyberSecurity Engineer/Information Systems Security Officer (ISSO) to join our team! In this role you will be part of our team providing Systems Engineering Technical Assistance to the Ground-based Midcourse Dense (GMD) Product Office under the Teams-Next Missile Defense Systems Engineering (TN-MDSE) contract managed by the Missile Defense Agency (MDA).
Job Description:
+ Serve as a member of the cybersecurity team, developing System Security Plans (SSPs), Interim Authority to Test (IATT), Authority to Connect (ATC) and, Authority to Operate (ATO) packages.
+ Perform technical work utilizing the Risk Management Framework (RMF) process including analyzing and solving Information Assurance (IA)-related technical problems.
+ Ensure that system security artifacts are developed, reviewed, and updated as needed.
+ Confirm all RMF requirements are properly addressed and required artifacts are loaded and managed within Enterprise Mission Assurance Support Service (eMASS).
+ Ability to analyze complex problems, identify root causes, and develop actionable recommendations with effective solutions.
+ Interface with other cyber teams to review RMF Contract Data Requirements List (CDRL) submissions and ensure timely delivery of CDRL artifacts, while providing feedback to ensure the sufficiency and quality of cyber artifacts.
+ Periodically conduct a review of each system's audits and monitors corrective actions until all actions are closed.
+ Perform vulnerability/risk analysis of systems using expertise in relevant information systems security.
+ Track and monitor Plan of Action and Milestones (POA&M).
+ Conduct reviews of cybersecurity artifacts and technical briefings and work with customer to resolve any findings.
+ Ensure that identified security controls are implemented and operating as intended through all phases of the lifecycle.
+ Track deliverables (i.e., artifacts, schedules, metrics).
Required:
+ Bachelor's degree and 7+ years of related professional experience.
+ Active Secret clearance.
+ DoD 8570 compliant IAM Level II certification is required (Security +)
+ Experience with DoD's RMF and SSP processes
Desired:
+ Experience with MDA specific RMF and SSP processes
+ Self-Motivated
+ Customer-oriented
**Clearance Level**
Secret
**ITAR Requirement:**
_T_ _his position requires access to information that is subject to compliance with the International Traffic Arms Regulations ("ITAR") and/or the Export Administration Regulations ("EAR"). In order to comply with the requirements of the ITAR and/or the EAR, applicants must qualify as a U.S. person under the ITAR and the EAR, or a person to be approved for an export license by the governing agency whose technology comes under its jurisdiction. Please understand that any job offer that requires approval of an export license will be conditional on AeroVironment's determination that it will be able to obtain an export license in a time frame consistent with AeroVironment's business requirements. A "U.S. person" according to the ITAR definition is a U.S. citizen, U.S. lawful permanent resident (green card holder), or protected individual such as a refugee or asylee. See 22 CFR § 120.15. Some positions will require current U.S. Citizenship due to contract requirements._
**Benefits** : AV offers an excellent benefits package including medical, dental vision, 401K with company matching, a 9/80 work schedule and a paid holiday shutdown. For more information about our company benefit offerings please visit: ********************************* .
We also encourage you to review our company website at ******************** to learn more about us.
Principals only need apply. NO agencies please.
**Who We Are**
Based in California, AeroVironment (AVAV) is a global leader in unmanned aircraft systems (UAS) and tactical missile systems. Founded in 1971 by celebrated physicist and engineer, Dr. Paul MacCready, we've been at the leading edge of technical innovation for more than 45 years. Be a part of the team that developed the world's most widely used military drones and created the first submarine-launched reconnaissance drone, and has seven innovative vehicles that are part of the Smithsonian Institution's permanent collection in Washington, DC.
Join us today in developing the next generation of small UAS and tactical missile systems that will deliver more actionable intelligence to our customers so they can proceed with certainty - and succeed.
**What We Do**
Building on a history of technological innovation, AeroVironment designs, develops, produces, and supports an advanced portfolio of unmanned aircraft systems (UAS) and tactical missile systems. Agencies of the U.S. Department of Defense and allied military services use the company's hand-launched UAS to provide situational awareness to tactical operating units through real-time, airborne reconnaissance, surveillance, and target acquisition.
_We are proud to be an EEO/AA Equal Opportunity Employer, including disability/veterans. AeroVironment, Inc. is an Equal Employment Opportunity (EEO) employer and welcomes all qualified applicants. Qualified applicants will receive fair and impartial consideration without regard to race, sex, color, religion, national origin, age, disability, protected veteran status, genetic data, sexual orientation, gender identity or other legally protected status._
**ITAR**
**About AV:**
**AV isn't for everyone. We hire the curious, the relentless, the mission-obsessed. The best of the best.**
We don't just build defense technology-we redefine what's possible. As the premier autonomous systems company in the U.S., AV delivers breakthrough capabilities across air, land, sea, space, and cyber. From AI-powered drones and loitering munitions to integrated autonomy and space resilience, our technologies shape the future of warfare and protect those who serve.
Founded by legendary innovator Dr. Paul MacCready, AV has spent over 50 years pushing the boundaries of what unmanned systems can do. Our heritage includes seven platforms in the Smithsonian-but we're not building history, we're building what's next.
**If you're ready to build technology that matters-with speed, scale, and purpose-there's no better place to do it than AV.**
**Careers at AeroVironment (*****************************************
$61k-79k yearly est. 16d ago
Looking for a job?
Let Zippia find it for you.
Cyber Security Analyst
Bellatrix HRM
Cyber security analyst job in Huntsville, AL
Bellatrix-Latin for "Female Warrior" Owned and operated in a HUBZone, with over 25 years in the HR, Talent Acquisition and Government Contracting. Like the Bellatrix Star in the Orion Constellation, our Team Members are the Brilliance of the company, and are all shareholders, leading the company to success. Bellatrix prides itself on being a Small Woman Owned HUBZone company. We believe big does not equal best. By staying small, we can focus on agility, efficiency, and our people. At Bellatrix we believe in advancement from within through training, mentorship, innovation and truly being a family. Bellatrix believes in excellence in customer service, and catering to the customer's needs. We realize not everyone fits into a box, and we think outside of the box to ensure, affordable and outstanding services. Human Resources, Retention and Recruiting, and Medical Coding/Billing are the HRM of Bellatrix. Come and join our team, where you are a team member and shareholder, working together for growth.
Bellatrix has the current position open as a direct W2, Fulltime position for one of our top clients in the Huntsville, AL Market. This position requires a Secret Clearance and is on location with the Missile Defense Agency
Title: CyberSecurityAnalyst
Location: Onsite-Huntsville, AL
Program: MDA, C3BM and C2BMC
Number of Openings: 2
Immediate Direct Hire
Clearance: Secret
Travel: 25%
Salary Range: $150,000-165,000, DOE
General Overview:
Command, Control, Communications, and Battle Management (C3BM) cyber engineering efforts include engaging in Command, Control, Battle Management, and Communications (C2BMC) technical engineering and integration, future concepts, new functionality, and multi-national exchange designs. Cyber engineering tasking includes participation in reviews and assessments of C2BMC cybersecurity and documentation. Collaboration with MDS stakeholders is required to prepare C2BMC cyber products as part of the engineering objectives documentation and analysis processes as related to Defense Of Guam (DoG).Other activities include participation in engineering meetings, presenting engineering product development updates, providing analysis and failure review summaries.
Responsibilities:
Understand cybersecurity aspects of systems engineering development, as well as DoD cybersecurity requirements, and be capable of recommending changes to the Government about the contractor's system engineering development process.
Perform cybersecurity risk assessment reviews to include changes, modifications, and/or updates of software and/or hardware to individual information systems and/or enterprise environment.
Familiarity with Configuration Management to include oversight and engineering assessments of Cybersecurity fixes, patch development, and pre-release testing in support of DoG.
Performing cybersecurity risk assessment describing the posture of an individual information systems through an enterprise architecture in support of DoG.
Will directly support the Software Assurance program for C2BMC. Includes ability for assessments of code reviews and approvals/disapprovals of software products for use on Mission, Training and Test/Development C2BMC systems is support of DoG
Requirements:
Bachelor's degree in STEM program: Computer Science, Information Technology, Network Engineering or other similar program
5+ years of Related Experience
Secret Clearance
Familiarity with MDS cyber capabilities and policy
Familiarity with Missile Defense Agency, Ballistic Missile Defense System, and/or C3BM Program Office work efforts
Security +, CE with a preferred certification level of CISSP
Ability to work independently within a dynamic environment
Apply cyber engineering and solutions to support real-world test, integration, and operations
Work within a collaborative environment composed of Government, prime contractor, sub-contractor and supporting contractor personnel in a badge-less contractor environment
Bellatrix is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.
$150k-165k yearly 60d+ ago
Journeyman Cyber Analyst
Ironmountain Solutions 4.2
Cyber security analyst job in Huntsville, AL
501588 Journeyman CyberAnalyst
Schedule: Full Time; 40 hours per week remote work not authorized
IronMountain Solutions is seeing a Journeyman CyberAnalyst to provide support for a Redstone Arsenal customer. Candidates should be highly motivated, a self-starter, and able to handle multiple tasks simultaneously. Candidates must have the ability to obtain and maintain a Secret-level security clearance.
Job Duties:
• Process / maintain records in Enterprise Misson Assurance Support Service (eMASS) in both NIPR & SIPR environments.
• Process / maintain records in Army Portfolio Management System (APMS)
• Run Assured Compliance Assessment Solution (ACAS) scans and maintains standalone ACAS server.
• Assist in the development, review, and maintenance of documentation for assigned information systems. System Security Plan, Software Fielding Plan, Continuous monitoring strategy,
• Security Control Implementation: Support the implementation and validation of security controls (technical, administrative, and physical) as outlined in the SSP.
• Vulnerability Management: Assist in vulnerability scanning and risk assessments, tracking remediation efforts, and reporting findings.
• Security Incident Response: Participate in incident response activities, including initial triage, documentation, and reporting.
• Configuration Management: Assist in maintaining accurate system configurations and documenting changes.
• Authorization Support: Assist in preparing systems for Authorization to Operate (ATO) and maintaining system authorizations.
• Compliance Monitoring: Assist in monitoring systems for compliance with security policies and procedures.
• Participate in Cyber and System Engineering working group meetings with other organizations and OEMs under contract with ATE PM.
• While performing the duties of this job, the employee is occasionally required to stand; walk; sit; use tools or controls; normal physical activity (reach with hands and arms; climb stairs); and communicate effectively with all levels of employees and leadership. The employee must occasionally lift or move office products and supplies, up to 25 pounds.
Basic Qualifications:
• 3 - 10 years of relevant experience
• BS or MS Degree required
• CompTIA Security+ certification is preferred.
• Other relevant certifications (e.g., Certified Ethical Hacker (CEH), A+, entry level) are a plus
• Familiarity with embedded RTOS
• Familiarity with protocols such as ARINC-429 & MIL-STD-1553 are a plus
• Develop strong working relationships with ATE personnel and management
• Ability to manage complex projects and work effectively with others
• Ability to research, report and troubleshoot cybersecurity related issues
• Have a Secret clearance. Per federal Per federal requirements, only U.S. citizens are eligible for this level of clearance.
IronMountain Solutions is an Equal Opportunity Employer
Cyber security analyst job in Redstone Arsenal, AL
Support the Missile Defense Agency (MDA) with development and analysis of programmatic data for program management support, to include monitoring and reporting against the acquisition program baselines, and assistance with program oversight and execution briefings. Alternative responsibilities may encompass development and execution of acquisition strategies/plans, contract requirements packages (e.g., writing SOWs, CDRLs, special provisions, source selection evaluation plans) and supporting prime contract monitoring/management activities. CompTIA Certification Preferred.
Certified Authorization Professional (CAP) certification (or ability to attain within 90 days after employment)
Provide interpretation and execution of MDA Acquisition policy, directives, guidance, and instructions
Provide program management support in developing, maintaining, and reporting against program baselines, gathering and analyzing programmatic data for internal Agency oversight reviews of programs (e.g., MDAR, DPR, PER, PMRs, internal reviews)
Prepare briefings and correspondence in response to internal taskings and external RFIs (e.g., GAO/Congressional/DoDIG/DoD oversight organizations)
Analyze acquisition requirements and provide recommendations during pre-solicitation phase through contract execution
Support program and contract management processes through the preparation and/or review of acquisition and program management documentation, briefings, white papers, reports, metrics
Provide support through all phases of the acquisition cycle with an emphasis on cybersecurity throughout the process
Requirements
Prior MDA experience preferred.
Advanced level - Master's degree required and/or 15 years' experience
Intermediate level - Bachelor's degree required and/or 10 years' relevant experience
Knowledge and experience in acquisition, procurement, and contracting highly desirable
Solid background in MS Office tools suite (e.g., Word, Excel, PowerPoint, Access) essential
Must possess exceptionally strong communications and analytical skills, be a self-starter, detail oriented, work well with a team, interacts with multiple levels and functional areas and able to manage customer and contractor relationship
SECRET or above Security Clearance required.
$64k-87k yearly est. 60d+ ago
Cyber Threat Emulation Analyst
Launchtech
Cyber security analyst job in Huntsville, AL
or
Huntsville, AL - Redstone Arsenal (On-site) Clearance Required: Active Secret Clearance (or higher) Travel Required: Up to 10%
LaunchTech is seeking a Mid-Level Cyber Threat Emulation Analyst to support the Missile Defense Agency (MDA). In this role, you will strengthen enterprise cyber defenses by conducting threat emulation, vulnerability analysis, incident response, and cyber operations assessments. You will contribute directly to improving the agency's defensive posture while mentoring analysts and executing cyber threat emulation engagements aligned with real-world adversary tactics.
What You'll Do
As a Mid-Level Cyber Threat Emulation Analyst, you will:
Perform Defensive Cyber Operations (DCO) and CyberSecurity Service Provider (CSSP) duties outlined in Evaluator Scoring Metrics (ESM)
Perform cybersecurity duties on customer networks to improve enterprise-wide security posture
Analyze correlated asset, threat, and vulnerability data against known adversary exploits and techniques to determine operational impacts and strengthen defensive posture
Support the development, review, and updates of DCO procedures, processes, manuals, and other documentation
Measure defense-in-depth effectiveness against known vulnerabilities
Generate vulnerability assessment reports and escalate findings for review
Support enterprise Incident Response in accordance with DoD regulations and instructions
Lead cyber events and incident investigations from start to conclusion, including data gathering, analysis, and reporting
Instruct, evaluate, and mentor analysts at junior, mid, and senior levels; support development of exploitation analyst training plans
Receive, review, and implement Higher Headquarters Tasking Orders (HHQ) and Fragmentary Orders weekly
Perform Cyber Threat Emulation (CTE) actions using Automated Security Validation toolsets per HHQ direction
Execute CTE actions within approved network zones using specific adversary tactics, techniques, and procedures (TTPs)
Create dashboards and reports communicating post-engagement analysis, vulnerabilities, recommended remediations, system security posture assessments, and incident response results
Draft and submit Cyber Tasking Orders (CTOs) to address findings discovered during CTE engagements
Collaborate with the Cyberspace Domain Awareness (CDA) team to develop evaluation criteria and methodologies aligned with HHQ inspection requirements and industry best practices
What You Bring
Basic Requirements:
Must have 6, or more, years of general (full-time) work experience
Must have 4 years of combined experience with:
Performing manual or automated penetration tests in an enterprise environment
Practical experience with vulnerability assessment, cybersecurity frameworks, or conducting risk assessments
Experience performing the full life cycle of incident response and enterprise-level monitoring
Must have 1 year of experience in management or leadership in a team environment
Must have a current DoD 8570.01-M IAT Level II certification with Continuing Education (CE) (CySA+, GICSP, GSEC, Security+ CE, SSCP)
Must have, or obtain within 6 months of start date, a PenTest+ certification
Must have an active DoD Secret Security Clearance
Desired Requirements:
Have a Bachelor's degree, or higher, in Cybersecurity, Computer Science, or related field
Have experience with Cyber Threat Emulation tools, policies, and procedures
Have experience operating custom software on a Linux platform
Have experience with security analysis and solutions in WAN/LAN environments (Routers, Switches, Network Devices, Windows, Linux)
Have experience with SOC/DCO tools including Firewalls, Intrusion Detection/Prevention Systems, Network Security Manager, Bluecoat, Barracuda, etc.
Have experience performing security compliance scans across a WAN (ACAS/Nessus preferred)
Have a background in configuration, troubleshooting, and deployment of host-based security (ESS preferred)
Be able to mentor and train personnel in a high-paced environment
Be familiar with DoD Security Operations Centers (SOC/CSSP)
Be familiar with DCO/CSSP-guiding security policies and procedures
Have an active DoD Top Secret clearance
Why LaunchTech?
At LaunchTech, we don't just fill seats, we bring in people who want to make an impact. We deliver Excellence, Period. You will join a mission-driven team where your expertise directly strengthens national defense and advances cybersecurity excellence.
We offer competitive benefits, including:
Medical, Dental, and Vision coverage
401(k) with company match
Paid Time Off (PTO)
Opportunities to make a meaningful impact while advancing your career
And more
Ready to Join the LaunchTech Crew?
If you're ready to apply your cyber expertise to mission-critical defense operations, we want to hear from you.
LaunchTech is an Equal Opportunity Employer. We prohibit discrimination and harassment of any kind. All qualified applicants will receive consideration for employment without regard to race, protected veteran status, color, sex, religion, sexual orientation, national origin, disability, genetic information, age, pregnancy, or any other status protected under federal, state, or local law.
$64k-87k yearly est. Auto-Apply 60d+ ago
Mid-Level Cyber/Watch Floor Analyst
Noetic Strategies Inc.
Cyber security analyst job in Huntsville, AL
Job DescriptionJob Title: Mid-Level Cybersecurity/Watch floor Analyst Clearance: MUST CURRENTLY POSSESS AND ACTIVE TOP SECRET CLEARANCE Noetic is currently seeking a motivated and detail-oriented Mid-Level Cybersecurity/Watch Floor Analyst to join our growing security team. In this junior-level role, you will play a key part in protecting our organization's digital assets by assisting in the detection, analysis, and response to cybersecurity threats and incidents. The ideal candidate will have foundational knowledge of security principles and a strong interest in security operations, with hands-on experience or coursework involving Splunk.
BASIC QUALIFICATIONS:
Minimum of 5 year of Splunk/SOC experience.
Bachelor's in a computer science related field
Active Top Secret Clearance
Ability and willingness to do shift work
MAIN RESPONSIBILITIES:
Responsible for monitoring computer networks for security issues.
Investigating security breaches and other cybersecurity incidents.
Document security breaches and assess the damage they cause.
Work with the security team to perform tests and uncover network vulnerabilities, such as penetration testing.
Fix detected vulnerabilities to maintain a high-security standard.
Recommend best practices for IT security.
Installing security measures and operating software to protect systems and information infrastructure, including firewalls and data encryption programs.
Must be capable of conducting analysis, confirming intrusion information and creating a forensically sound duplicate of the files.
Decrypts data and provides technical summaries and input.
Examines recovered data for relevant information and performs dynamic analysis to include timeline, statistical, and file signature analysis.
Performs real-time cyber defense handling tasks to support deployable Incident Response Teams (IRTs).
PREFERRED QUALIFICATIONS
Microsoft Sentinel
GIAC Continuous Monitoring Certification (GMON)
GIAC Certified Incident Handler (GCIH)
GIAC Certified Forensic Analyst (GCFA)
GIAC Certified Intrusion Analyst (GCIA)
GIAC Network Forensic Analyst (GNFA)
Noetic Strategies Inc. offers a competitive salary, an extensive benefits package and a work environment that encourages excellence. For positions requiring a security clearance, selected applicants will be subject to a government security investigation and must meet eligibility requirements for access to classified information.
Noetic Strategies Inc. is an equal opportunity and affirmative action employer that does not discriminate in employment.
All qualified applicants will receive consideration for employment without regard to their race, color, religion, sex, age, sexual orientation, gender identity, or national origin, disability or protected veteran status.
Noetic Strategies Inc. endeavors to make ************************ accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact noeticstrategies.com for assistance. This contact information is for accommodation requests only and cannot be used to inquire about the status of applications.
Powered by JazzHR
6IxgcPuXI3
Ready to launch your career? RGNext operates, maintains, and sustains mission-critical systems to provide safe and effective launch, testing, and tracking of Department of Defense, civil, commercial and international space lift vehicles. We support ballistic missile, guided weapon and aeronautical tests and evaluations as well as support space situational awareness operations and experiments to defend the United States to ensure our nation's safety. Our employees serve on the forefront of global defense and space operations. We offer our team of experienced, professional employees an environment of challenging, stimulating and personally and professionally rewarding career opportunities.
This position is located on Kwajalein Atoll in the Marshall Islands. It is an unaccompanied position (no family accommodations or pets). Benefits of this unique location include free housing, three meals a day and potential for U.S. overseas tax incentives.
Essential Functions
Perform comprehensive DISA STIG compliance evaluations and technical security control validations to ensure rigorous system hardening.
Execute daily monitoring and provide critical security posture briefings to the Cyber Operations Team Lead and RETS Cybersecurity Manager.
Draft and update Cyber Operations Standard Operating Procedures (SOPs), creating standardized, repeatable processes that significantly enhance team productivity and mission readiness.
Partner with cross-functional technical teams to provide expert guidance on remediation strategies and cybersecurity best practices.
Support investigations into potential security violations and policy breaches, executing the Incident Response Plan to ensure rapid mitigation and containment.
Collaborate with the Cyber Operations team to ensure technical compliance with security mandates from SMDC, NETCOM, C5ISR, and RETS leadership.
Maintain technical proficiency in emerging Cyber Operations tools and methodologies to adapt to evolving mission requirements and threat landscapes.
Execute additional technical functions and mission-critical tasks as assigned to support organizational security objectives.
Other duties as assigned.
Required Skills
Proven ability to communicate complex technical concepts clearly to diverse stakeholders and collaborate effectively with cross-functional teams to streamline workflows.
Proficient in producing high-quality Standard Operating Procedures (SOPs) and comprehensive technical reports.
Expert at conducting DISA Security Technical Implementation Guide (STIG) evaluations using STIG Viewer, Xylok Security Suite, and SCAP Compliance Checker (SCC), supplemented by meticulous manual checklist reviews.
Skilled at identifying, documenting, and tracking non-compliant items while providing actionable technical recommendations for remediation or risk mitigation.
Hands-on experience utilizing Tenable Security Center (ACAS) to perform vulnerability scans and cross-reference findings against current STIG requirements.
Proficient in analyzing Windows and Linux system event logs via Splunk (or similar SIEM tools) to validate security controls, detect unauthorized configuration changes, and identify indicators of compromise (IOCs).
Evaluates high-impact Change Requests as a key member of the Technical Review Board (TRB).
Required Experience
Bachelor's degree in computer science, cybersecurity, or related field; or equivalent combination of education and experience.
Two (2) or more years of experience in Information Assurance, Cybersecurity, or related field with a focus on similar responsibilities to those listed in the Essential Functions and Required Skills sections above.
Experience communicating security concerns and issues to non-technical audiences.
DoD 8140 Security+ certification required.
Additional Eligibility Qualifications
Must be able to obtain and maintain a DoD Secret Security Clearance which requires U.S. Citizenship.
Must be able to obtain/maintain a valid U.S. passport.
Must be able to relocate to the United States Army Kwajalein Atoll, Marshall Islands.
The flexibility to work occasional non-duty hours or on weekends to support specific mission or project requirements.
Benefits of Working at RGNext
RGNext offers our team of experienced, professional employees an environment of challenging, stimulating and personally and professionally rewarding career opportunities and growth. Employees enjoy a robust benefit package on day one, which includes medical, dental, vision, disability and life insurances, generous Paid Time Off and holiday pay, a retirement savings plan with a company match and vesting on day one! We are committed to providing employees a quality work/life balance in a productive, evolving environment.
Note: This job description describes the general nature of the duties and requirements of the job. It is not intended to be an exhaustive list or to limit the supervisor's ability to modify work assignments as appropriate.
RGNext is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, or any other applicable state or federal protected class.
$55k-82k yearly est. Auto-Apply 14d ago
CYBER SECURITY ENGINEER
Reliant Technology 3.7
Cyber security analyst job in Huntsville, AL
Ignite is an ISO 9001:2015 and CMMI Services Level 3 certified, Service-Disabled Veteran-Owned Small Business (SDVOSB), headquartered in Huntsville, AL. By design, Ignite is a provider of professional services to customers in educational, federal, and commercial industries and in every action seeks to be the preeminent provider within this business space. Ignite upholds our values of competency, collaboration, innovation, reliability, and results through everything we do.
Ignite is currently seeking a driven, detail-oriented CyberSecurity Engineer/Information Systems Security Officer (ISSO) to join our team! In this role you will be part of Parsons' Federal Solutions team providing Systems Engineering Technical Assistance to the Ground-based Midcourse Dense (GMD) Product Office under the Teams-Next Missile Defense Systems Engineering (TN-MDSE) contract managed by the Missile Defense Agency.
Job Requirements
Responsibilities include, but are not limited to:
* Serve as a member of the cybersecurity team, developing System Security Plans (SSPs), Interim Authority to Test (IATT), Authority to Connect (ATC) and, Authority to Operate (ATO) packages.
* Perform technical work utilizing the Risk Management Framework (RMF) process including analyzing and solving Information Assurance (IA)-related technical problems.
* Ensure that system security artifacts are developed, reviewed, and updated as needed.
* Confirm all RMF requirements are properly addressed and required artifacts are loaded and managed within Enterprise Mission Assurance Support Service (eMASS).
* Ability to analyze complex problems, identify root causes, and develop actionable recommendations with effective solutions.
* Interface with other cyber teams to review RMF Contract Data Requirements Lists (CDRLs) and ensure timely delivery of CDRL artifacts, while providing feedback to ensure the sufficiency and quality of cyber artifacts.
* Periodically conduct a review of each system's audits and monitors corrective actions until all actions are closed.
* Perform vulnerability/risk analysis of systems using expertise in relevant information systems security.
* Track and monitor Plan of Action and Milestones (POA&Ms).
* Conduct reviews of cybersecurity artifacts and technical briefings and work with customer to resolve any findings.
* Ensure that identified security controls are implemented and operating as intended through all phases of the lifecycle.
* Track deliverables (i.e., artifacts, schedules, metrics).
Required Qualifications
* Bachelor's degree and 7+ years of related professional experience.
* Active Secret clearance
* DoD 8570 compliant IAM Level II certification is required (Sec +)
* Experience with DoD's RMF and SSP processes
Desired Qualifications
* Experience with MDA specific RMF and SSP processes
* Self-Motivated
* Customer-oriented
Security Clearance Requirements:
Must have an active Secret Security Clearance
Education Requirements:
* Bachelor's Degree
Other Requirements:
Must be a US citizen and be able to hold an active Security Clearance at the Secret Level.
We are equal opportunity/affirmative action employers, committed to diversity in the workplace. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender identity, sexual orientation, national origin, disability, or protected veteran status, or any other protected characteristic under state or local law.
Accommodation Request: If you are a qualified individual with a disability or are a disabled veteran and are unable or limited in your ability to use or access our Careers sites as a result of your disability, you have the right to receive assistance in completing the application process. Please send your request to **********************
$75k-101k yearly est. 20d ago
Cyber Security Compliance Specialist
JS Solutions 4.2
Cyber security analyst job in Huntsville, AL
Company: JS Solutions
About Us: JS Solutions, LLC is a Huntsville-based, veteran-owned business dedicated to delivering innovative, mission-focused solutions to our government and commercial partners. Our team specializes in government acquisition support, cybersecurity compliance, and strategic business development. We are committed to helping our clients meet complex requirements with confidence and efficiency.
Position Overview:
JS Solutions is seeking a motivated and detail-oriented Junior Cyber Compliance Specialist to join our growing team in Huntsville, AL. This role is ideal for early-career professionals who are eager to build expertise in cybersecurity frameworks, with a focus on CMMC, NIST, and DoD compliance requirements. The successful candidate will support compliance initiatives, assist with documentation, and contribute to ensuring our clients achieve and maintain the highest standards of cybersecurity readiness.
Responsibilities:
Assist with the development, review, and maintenance of cybersecurity compliance documentation (policies, procedures, plans, and artifacts).
Support compliance assessments against frameworks such as CMMC, NIST 800-171, DFARS, and FedRAMP.
Collect and organize evidence to demonstrate compliance for audits and assessments.
Track and update compliance tasks, ensuring deliverables are met on time.
Conduct research on evolving federal cybersecurity requirements and provide recommendations to senior staff.
Work closely with clients to understand compliance gaps and support remediation efforts.
Provide administrative and technical support to senior compliance specialists.
Qualifications:
Bachelor's degree in Cybersecurity, Information Systems, Computer Science, or related field; or equivalent work experience.
0-2 years of professional experience in cybersecurity, compliance, or IT (internships and academic projects accepted).
Familiarity with cybersecurity frameworks such as NIST 800-171, CMMC, or ISO 27001 preferred.
Strong organizational skills and attention to detail.
Excellent written and verbal communication skills.
Ability to work independently as well as part of a team.
CompTIA Security+, Certified CMMC Professional (CCP), or similar entry-level certification.
Prior experience supporting DoD or government cybersecurity programs.
BENEFITS
Health, Supplemental Health, Vision, and Dental Insurance
401K Matching
Short-term and Long-term Disability Insurance
Paid Time Off (PTO)
Why Join JS Solutions?
Be part of a fast-growing, veteran-owned company with a mission-driven culture.
Gain hands-on experience with cutting-edge cybersecurity compliance projects.
Competitive compensation and benefits package.
Opportunities for professional development and career advancement.
JS Solutions is an Equal Opportunity Employer that does not discriminate based on actual or perceived race, color, creed, religion, national origin, ancestry, citizenship status, age, sex or gender (including pregnancy, childbirth, and pregnancy-related conditions), gender identity or expression (including transgender status), sexual orientation, marital status, military service and veteran status, physical or mental disability, genetic information, or any other characteristic protected by applicable federal, state, or local laws and ordinances. The management team is dedicated to this policy regarding recruitment, hiring, placement, promotion, transfer, training, compensation, benefits, employee activities, access to facilities, and general treatment during employment.
$70k-89k yearly est. 60d+ ago
CYBER SECURITY SPECIALIST/ ISSO
Quantum Research International 4.5
Cyber security analyst job in Huntsville, AL
Quantum Research International, Inc. (Quantum) provides our national defense and federal civilian and industry customers with services and products in the following main areas: 1) Cybersecurity and Information Operations; 2) Space Operations and Control; 3) Aviation Systems; 4) Ground, Air and Missile Defense, and Fires Support Systems; 5) Intelligence Programs Support; 6) Experimentation and Test; 7) Program Management; and (8) Audio/Visual Technology Applications. Quantum's Corporate Office is located in Huntsville, AL, but Quantum actively hires for positions nationwide and internationally. We pride ourselves on providing high quality support to the U.S. Government and our Nation's Warfighters. In addition to our corporate office, we have physical locations in Aberdeen, MD; Colorado Springs, CO; Crestview FL; and Tupelo, MS
Mission:
Quantum Research is seeking an experienced Cybersecurity Specialist / Information System Security Officer (ISSO) to support the Compute Architecture Operations Center (CAOC) platform. The mid-level ISSO will be responsible for maintaining the system's overall security posture IAW DoD RMF requirements. The ideal ISSO will maintain oversight of configuration management, security scanning and remediation activities, manage the Plan of Action and Milestones (POA&M), and provide cybersecurity guidance to infrastructure team members and on-site personnel to ensure compliance and risk reduction.
Additionally, this role includes facilitating and participating in Configuration Control Board (CCB) meetings, evaluate proposed system and architecture changes to confirm security baselines are maintained through approved change management processes, and executing continuous monitoring activities such as reviewing system audits logs, general/privileged user account reviews, RMF documentation creation/maintenance, vulnerability response (CTOs/IAVAs), Information System Contingency Plan (ISCP) Table-Top exercises, and security control artifact development.
Responsibilities:
* Develop and maintain ATO related documentation to include Configuration Management Plan (CMP), Account Management Plan (AMP), Information System Contingency Plan (ISCP), Incident Response Plan (IRP), Business Impact Analysis (BIA), Privacy Impact Analysis (PIA), System Security Plan (SSP), and Concept of Operations (CONOPS).
* Identify the correct applicable Security Technical Implementation Guides (STIGs) and Security Requirements Guides (SRGs) for technologies used within the Information System (IS).
* Communicate and coordinate with the government System Owner (SO) and/or government ISSM to ensure the system operates within the conditions of the established ATO.
* Advise the program on IS security requirements, ensuring alignment with RMF, applicable NIST Guidelines/Standards, and DISA STIG/SRG compliance.
* Provide security design guidance and analysis to project stakeholders across all RMF phases to ensure alignment with security control requirements.
* Oversee daily system security operations by monitoring control effectiveness, validating access controls, reviewing security audit logs, tracking vulnerabilities, responding to CTOs/IAVAs within government customer's SharePoint site, and coordinating remediation efforts to maintain an acceptable security posture.
* Act as the Configuration Management (CM) facilitator and voting CCB member, overseeing change control processes and participating in formal decision-making for system modifications affecting security posture and compliance.
* Prepare Security Impact Assessments (SIAs) for all System Change Requests (SCRs) to support Configuration Control Board (CCB) review and decision-making.
* Perform annual account reviews and approve all general and privileged user account requests prior to creation, ensuring proper authorization, access justification, and compliance IAW approved policies and procedures.
* Review technical security assessments, analyze vulnerabilities, and risk data using ACAS, Nessus, and SCAP scan results to identify system vulnerabilities, non-compliance, and appropriate mitigation strategies.
* Coordinate and manage security incident response activities in accordance with established policies and procedures.
* Serve as the IS primary POC when communicating with the Security Control Assessor (SCA).
* Create and maintain Plan of Action and Milestone (POA&M) items.
Requirements:
* Minimum of a Bachelor of Science (BS) degree in Computer Science, Information Systems or five (5) years of comparable work experience
* ISSO with 2 years of verifiable experience
* Knowledge and practical experience of DoD 8510 and NIST 800-53 Risk Management Framework implementation
* Candidate must be compliant with DoD 8140; DoD Cyber Workforce Framework (DCWF) Code 722, Information System Security Manager, at the intermediate level. Requires CompTIA Security+ CE or other training and education requirements as identified in DoDM 8140.03
* Fundamental knowledge of DISA Enterprise Mission Assurance Support Service (eMASS)
* Security Clearance: Active Secret with the ability to obtain and maintain a Top Secret
Desired/Preferred Skills
* Self-starter with the ability to independently identify, prioritize, and execute required tasks
* Understanding of Multiple Independent Layers of Security (MILS) architecture
* ISC2 CISSP Certification
Equal Opportunity Employer/Affirmative Action Employer M/F/D/V: All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, disability, veteran status, genetic information, sexual orientation, gender identity, or any other characteristic protected by law. *Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
#LI-JL1 #LI-Onsite
$63k-84k yearly est. 2d ago
Cyber Security Engineer/ISSO
Waypoint Human Capital 4.1
Cyber security analyst job in Huntsville, AL
CyberSecurity Engineer / Information Systems Security Officer (ISSO) Position Type: Full-Time Onsite Huntsville, AL Clearance Required: Active Secret Waypoint's client is seeking an experienced CyberSecurity Engineer / ISSO to support the Ground-based Midcourse Defense (GMD) Product Office under the Teams-Next Missile Defense Systems Engineering (TN-MDSE) contract. This role provides Systems Engineering Technical Assistance (SETA) to the Missile Defense Agency. The successful candidate will play a key role in cybersecurity engineering, Risk Management Framework (RMF) execution, and system authorization activities across the system lifecycle.
Responsibilities:
Serve as a member of the cybersecurity team supporting RMF implementation for assigned systems.
Develop, review, and maintain System Security Plans (SSPs), Interim Authority to Test (IATT), Authority to Connect (ATC), and Authority to Operate (ATO) packages.
Perform technical cybersecurity work utilizing the RMF process, including analysis and resolution of Information Assurance (IA)-related technical issues.
Ensure all RMF requirements are fully addressed and that required artifacts are properly loaded, tracked, and managed within Enterprise Mission Assurance Support Service (eMASS).
Conduct vulnerability and risk assessments using subject matter expertise in information systems security.
Track, manage, and monitor Plans of Action and Milestones (POA&Ms) to closure.
Interface with internal and external cyber teams to review RMF Contract Data Requirements Lists (CDRLs), ensuring timely delivery, accuracy, and quality of cybersecurity artifacts.
Review system audits, monitor corrective actions, and ensure findings are resolved and closed.
Conduct reviews of cybersecurity artifacts and technical briefings, working directly with the customer to resolve identified findings.
Verify that required security controls are implemented correctly and operating as intended throughout all phases of the system lifecycle.
Track cybersecurity deliverables, schedules, metrics, and reporting requirements.
Requirements:
Bachelor's degree in a relevant discipline.
7+ years of related professional experience in cybersecurity, information assurance, or systems security engineering.
3 years specifically with Missile Defense Agency (MDA)-specific RMF and SSP processes.
Active DoD Secret security clearance.
DoD 8570 compliant IAM Level II certification (Security+ required).
Demonstrated experience with DoD RMF and SSP development and execution.
Strong analytical skills with the ability to identify root causes and develop effective, actionable solutions.
Strong written, verbal, and briefing skills.
Desired:
Prior experience supporting missile defense or large DoD acquisition programs.
Self-motivated, detail-oriented, and able to work independently in a fast-paced environment.
Customer-focused mindset with experience working directly with government stakeholders.
*Waypoint Human Capital is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation
$72k-97k yearly est. 17d ago
Cyber Security Engineer/Information Systems Security Officer (ISSO) (Job ID: 4062)
Valkyrie Enterprises 4.9
Cyber security analyst job in Huntsville, AL
CyberSecurity Engineer/Information Systems Security Officer (ISSO)
Contingent upon prime contractor approval
Purpose:
Valkyrie Enterprises has need for a CyberSecurity Engineer/Information Systems Security Officer (ISSO) in Huntsville, AL.
In this role you will be providing Systems Engineering Technical Assistance to the Ground-based Midcourse Dense (GMD) Product Office under the Teams-Next Missile Defense Systems Engineering (TN-MDSE) contract managed by the Missile Defense Agency.
Job Description:
Serve as a member of the cybersecurity team, developing System Security Plans (SSPs), Interim Authority to Test (IATT), Authority to Connect (ATC) and, Authority to Operate (ATO) packages.
Perform technical work utilizing the Risk Management Framework (RMF) process including analyzing and solving Information Assurance (IA)-related technical problems.
Ensure that system security artifacts are developed, reviewed, and updated as needed.
Confirm all RMF requirements are properly addressed and required artifacts are loaded and managed within Enterprise Mission Assurance Support Service (eMASS).
Ability to analyze complex problems, identify root causes, and develop actionable recommendations with effective solutions.
Interface with other cyber teams to review RMF Contract Data Requirements Lists (CDRLs) and ensure timely delivery of CDRL artifacts, while providing feedback to ensure the sufficiency and quality of cyber artifacts.
Periodically conduct a review of each system's audits and monitors corrective actions until all actions are closed.
Perform vulnerability/risk analysis of systems using expertise in relevant information systems security.
Track and monitor Plan of Action and Milestones (POA&Ms).
Conduct reviews of cybersecurity artifacts and technical briefings and work with customer to resolve any findings.
Ensure that identified security controls are implemented and operating as intended through all phases of the lifecycle.
Track deliverables (i.e., artifacts, schedules, metrics).
Qualifications:
Must have a Bachelor's degree and 7+ years of related professional experience.
Must have DoD 8570 compliant IAM Level II certification (Sec +).
Must have experience with DoD's RMF and SSP processes.
Desired Qualifications:
Experience with MDA specific RMF and SSP processes, preferred.
Self-Motivated
Customer-oriented
Security Requirements:
Must have an Active DOD Secret Security clearance, and the ability to maintain clearance.
Travel Requirements:
Minimal Travel; 10% or less
If position requires travel by domestic flight or access to secure federal facilities/military bases, candidate must be able to obtain (by start of position) and maintain appropriate identification credentials, such as REAL ID. (More information regarding REAL ID can be found: ****************************
Physical Requirements:
Remaining in a stationary position, often standing, or sitting for prolonged periods
Able to sit and work on a computer for long periods of time
Moving about to accomplish tasks or moving from one worksite to another
Communicating with others to exchange information
Light work that includes moving objects up to 20 pounds
Valkyrie strictly adheres to a policy of equal employment opportunity. This policy is based on Valkyrie's commitment to hire and retain qualified employees consistent with position requirements; and to seek, employ, promote and treat all employees and applicants for employment without regard to race, color, religious creed, national origin, ancestry, citizenship status, pregnancy, childbirth, physical disability, mental disability, age, military status or protected veteran status, marital status, registered domestic partner or civil union status, gender (including sex stereotyping and gender identity or expression), medical condition, genetic information or sexual orientation or other protected characteristics Additionally, Valkyrie Enterprises provides a variety of benefits to eligible employees to support your best health, wellness, and future, to include medical/dental/vision options, company paid life and disability insurances, 401k with match, education reimbursement, as well as company paid holidays and paid time off (PTO)
$64k-84k yearly est. 20d ago
1001 - Information Systems Security Officer (ISSO)
Victory Solutions 3.9
Cyber security analyst job in Huntsville, AL
Victory Solutions LLC specializes in providing exceptional technology development and engineering services to government organizations such as NASA and the Department of Defense; as well as commercial customers such as Boeing, Northrop Grumman, and SAIC.
We are looking for an Information Systems Security Officer (ISSO) in support of the Sea-Based X-Band Radar (SBX) Program. The Information System Security Officer (ISSO) shall be responsible for IAW DoDI 8500 and DoD 5200.8-R to include tasks such as, but not limited to, providing security training, handling classified documents, information assurance and network security.
Duties and Responsibilities:
Comply with security requirements in accordance with DODD 8500.01 and DoDI 8500.2, and support accreditation activities with the Designated Approving Authority.
Develops and maintains Risk Management Framework Security Plans and artifacts (Cyber Incident Response, Information Assurance Vulnerability and Patch Management, Disaster Recovery, Account Management).
Support Government assessment and authorization activities for each system to be developed, manufactured, delivered and maintained in accordance with DoDI 8500.01 (Cybersecurity), DoDI 8510.01 "Risk Management Framework for DoD Information Technology, DoDI 8581.01 "Information Assurance (IA) Policy for Space Systems used by the DoD," DoDD 8530.1 "Cybersecurity Activities Support to DoD Information Network Operations," NIST SP 800-53 Revision 4 "Security and Privacy Controls for Federal Information Systems and Organizations," CNSSI No. 1253 "Security Categorization and Control Selection for National Security Systems," and MDA 8500.02-P "Information Assurance Program Plan" requirements.
Configure system components in accordance with applicable DISA Security Technical Implementation Guides (STIG) and NSA Security Configuration Guides (SCG).
Remain cognizant of current/changing cybersecurity requirements to ensure the final system meets current requirements and thus capable of receiving an Authorization to Operate (ATO).
Establish and maintain cybersecurity measures to secure CUI, CTI, and CDI.
Maintain IAT Level II baseline certification requirements IAW 8570.01 M Information Assurance Workforce Improvement Program (Security+, CCNA Security).
Education:
Bachelor's or Associate's degree or equivalent experience is required.
Require Skills:
Candidate should have at least 5 years in Cybersecurity/Information Assurance.
The ISSO is required to support and maintain Information Security over: Windows, workstations, Cisco switches, Cisco Routers, Windows 2008 Servers, and SQL Server 2008 databases.
Windows Operating System(s) certification is desired.
To comply with DoD 8570.01-M, the ISSO is required to maintain continuing education to meet Information Assurance Technical (IAT) Level II certification for cyber and network.
CISSP is desired.
CCNA is desired.
Additional Requirements:
Ability to obtain a SECRET security clearance is required.
Must be a U.S. Citizen.
Victory Solutions LLC is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or veteran status.
$65k-85k yearly est. 2d ago
Cyber Security Engineer/Information Systems Security Officer (ISSO)
Mission Driven Research
Cyber security analyst job in Huntsville, AL
MDR is looking for an amazingly talented CyberSecurity Engineer/Information Systems Security Officer (ISSO) to join our team! In this role you will be part of Parsons' Federal Solutions team providing Systems Engineering Technical Assistance to the Ground-based Midcourse Dense (GMD) Product Office under the Teams-Next Missile Defense Systems Engineering (TN-MDSE) contract managed by the Missile Defense Agency.
What You'll Be Doing:
Serve as a member of the cybersecurity team, developing System Security Plans (SSPs), Interim Authority to Test (IATT), Authority to Connect (ATC) and, Authority to Operate (ATO) packages.
Perform technical work utilizing the Risk Management Framework (RMF) process including analyzing and solving Information Assurance (IA)-related technical problems.
Ensure that system security artifacts are developed, reviewed, and updated as needed.
Confirm all RMF requirements are properly addressed and required artifacts are loaded and managed within Enterprise Mission Assurance Support Service (eMASS).
Ability to analyze complex problems, identify root causes, and develop actionable recommendations with effective solutions.
Interface with other cyber teams to review RMF Contract Data Requirements Lists (CDRLs) and ensure timely delivery of CDRL artifacts, while providing feedback to ensure the sufficiency and quality of cyber artifacts.
Periodically conduct a review of each system's audits and monitors corrective actions until all actions are closed.
Perform vulnerability/risk analysis of systems using expertise in relevant information systems security.
Track and monitor Plan of Action and Milestones (POA&Ms).
Conduct reviews of cybersecurity artifacts and technical briefings and work with customer to resolve any findings.
Ensure that identified security controls are implemented and operating as intended through all phases of the lifecycle.
Track deliverables (i.e., artifacts, schedules, metrics).
What Required Skills You'll Bring:
Bachelor's degree and 7+ years of related professional experience.
Active Secret clearance
DoD 8570 compliant IAM Level II certification is required (Sec +)
Experience with DoD's RMF and SSP processes
What Desired Skills You'll Bring:
Experience with MDA specific RMF and SSP processes
Self-Motivated
Customer-oriented
Position Requirements
Clearance Required
Secret
Position Level
Mid
FT/PT
Full Time
Years Related Work Experience
7
Education Level Required
4-yr
Mission Driven Research is an Equal Opportunity Employer, including disability/veterans. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. If you are interested in applying for employment with Mission Driven Research and need special assistance or an accommodation to use our website, please contact us by email (****************************) or by phone by calling **************. When contacting us, please provide your contact information and state the nature of your accessibility issue.
$61k-83k yearly est. 20d ago
Cyber Security Engineer/ Information Systems Security Officer (ISSO)
Banner Defense, Inc.
Cyber security analyst job in Huntsville, AL
Job Description
CyberSecurity Engineer/Information Systems Security Officer (ISSO)
Join our team!
Be a part of our passionate and determined team on a mission to use our skills and experiences to make a difference in the defense and aerospace industry.
Position Description:
Banner Defense is looking for a CyberSecurity Engineer/Information Systems Security Officer (ISSO) to join our team! In this role you will be part of a federal solutions team providing Systems Project Office for the Missile Defense Agency.
Responsibilities:
Serve as a member of the cybersecurity team, developing System Security Plans (SSPs), Interim Authority to Test (IATT), Authority to Connect (ATC) and, Authority to Operate (ATO) packages.
Perform technical work utilizing the Risk Management Framework (RMF) process including analyzing and solving Information Assurance (IA)-related technical problems.
Ensure that system security artifacts are developed, reviewed, and updated as needed.
Confirm all RMF requirements are properly addressed and required artifacts are loaded and managed within Enterprise Mission Assurance Support Service (eMASS).
Ability to analyze complex problems, identify root causes, and develop actionable recommendations with effective solutions.
Interface with other cyber teams to review RMF Contract Data Requirements Lists (CDRLs) and ensure timely delivery of CDRL artifacts, while providing feedback to ensure the sufficiency and quality of cyber artifacts.
Periodically conduct a review of each system's audits and monitors corrective actions until all actions are closed.
Perform vulnerability/risk analysis of systems using expertise in relevant information systems security.
Track and monitor Plan of Action and Milestones (POA&Ms).
Conduct reviews of cybersecurity artifacts and technical briefings and work with customer to resolve any findings.
Ensure that identified security controls are implemented and operating as intended through all phases of the lifecycle.
Track deliverables (i.e., artifacts, schedules, metrics).
Required Skills/Experience:
Bachelor's degree and 7+ years of related professional experience.
Active Secret clearance
DoD 8570 compliant IAM Level II certification is required (Sec +)
Experience with DoD's Risk Management Framework (RMF) and Source Selection Plan (SSP) processes
Desired Skills/Experience:
Experience with MDA-specific RMF and SSP processes
Self-Motivated
Customer-oriented
APPLY TODAY!!
Service-Disabled Veteran Owned Small Business
Equal Employment Opportunity (EEO) employer
Reasonable accommodation may be made to enable qualified individuals with disabilities to perform essential job functions.
Job Posted by ApplicantPro
$61k-83k yearly est. 20d ago
Cyber Security Engineer/Information Systems Security Officer (ISSO)
Koda Technologies Inc.
Cyber security analyst job in Huntsville, AL
Job Description
CyberSecurity Engineer/Information Systems Security Officer (ISSO)
KODA is a people-first company and a three-time
Fortune Best Workplace
,
Great Place to Work
certified, a
Best Place for Working Parents
, and a six-time
Huntsville
Best Places to Work
winner.
We're a small business making a big impact on national-priority missions in missile defense, hypersonics, DoD space, and civil space. At KODA, you'll find:
Competitive pay & great benefits
Career growth & professional development
A culture of trust, integrity, and teamwork
The name KODA, meaning
"allies,"
reflects our commitment to our people, our customers, and our community. Join us and build a career that matters!
Position Overview:
KODA Technologies is seeking a CyberSecurity Engineer/Information Systems Security Officer (ISSO) to support Systems Engineering Technical Assistance to the Ground-based Midcourse Dense (GMD) Product Office under the Teams-Next Missile Defense Systems Engineering (TN-MDSE) contract managed by the Missile Defense Agency.
What You'll Be Doing:
Serve as a member of the cybersecurity team, developing System Security Plans (SSPs), Interim Authority to Test (IATT), Authority to Connect (ATC), and Authority to Operate (ATO) packages.
Perform technical work utilizing the Risk Management Framework (RMF) process, including analyzing and solving Information Assurance (IA)-related technical problems.
Ensure that system security artifacts are developed, reviewed, and updated as needed.
Confirm all RMF requirements are properly addressed and required artifacts are loaded and managed within the Enterprise Mission Assurance Support Service (eMASS).
Ability to analyze complex problems, identify root causes, and develop actionable recommendations with effective solutions.
Interface with other cyber teams to review RMF Contract Data Requirements Lists (CDRLs) and ensure timely delivery of CDRL artifacts, while providing feedback to ensure the sufficiency and quality of cyber artifacts.
Periodically conduct a review of each system's audits and monitor corrective actions until allocations are closed.
Perform vulnerability/risk analyses of systems, drawing on expertise in relevant information systems security.
Track and monitor Plan of Action and Milestones (POA&Ms).
Conduct reviews of cybersecurity artifacts and technical briefings and work with the customer to resolve any findings.
Ensure that identified security controls are implemented and operating as intended through all phases of the lifecycle.
Track deliverables (i.e., artifacts, schedules, metrics).
What Required Skills You'll Bring:
Bachelor's degree and 7+ years of related professional experience.
DoD 8570 compliant IAM Level II certification is required (Sec +)
Experience with DoD's RMF and SSP processes
What Desired Skills You'll Bring:
Experience with MDA-specific RMF and SSP processes
Self-Motivated
Customer-oriented
Clearance: Active Secret Clearance is required
KODA Technologies Inc. provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, gender identity, sexual orientation, pregnancy, status as a parent, national origin, disability (physical or mental), family medical history or genetic information, political affiliation, military service, or other non-merit based factors. If you are unable to complete this application due to a disability, contact ***************** to ask for an accommodation or an alternative application process.
Job Posted by ApplicantPro
$61k-83k yearly est. 6d ago
Information System Security Officer (ISSO)
Spry Methods 4.3
Cyber security analyst job in Huntsville, AL
Who We're Looking For (Position Overview):This role is critical in ensuring the security posture of mission-critical applications and infrastructure across multiple network enclaves (Unclassified, Secret, Top Secret). The ISSO will be responsible for developing, maintaining, and enforcing security policies, implementing cybersecurity controls, managing Authority to Operate (ATO) documentation, and conducting continuous monitoring and risk assessments in compliance with FISMA, NIST, DOJ, and other federal mandates.What Your Day-To-Day Looks Like (Position Responsibilities):
Serve as the principal cybersecurity advisor to system owners and stakeholders.
Design, analyze, and test of information security systems, products, cloud architectures and cloud solutions.
Provide recommendations and/or alternatives to mitigate impact of system security boundary changes as part of any potential re-architecting and/or re-design activities.
Develop, implement, and evaluate security controls, measures, and frameworks in cloud-based systems to ensure data integrity, confidentiality, and availability.
Perform risk analysis, vulnerability assessments, and security audits to identify and address potential weaknesses in cloud environments.
Follow all appropriate security authorization process for requesting and maintaining an Authority to Operate (ATO).
Responsible for ensuring operational security is maintained for assigned information systems.
Ensure systems are operated, maintained, disposed of in accordance with security policies and practices.
Perform Security Incident Reporting and Response.
Coordinate with the Office of the Chief Information Officer (OCIO), Security Division, and others to provide documentation to the system Certification and Accreditation process.
Ensure audits and reviews are responded to with accurate information.
Perform system access control responsibilities.
Participate in the change management process for assigned applications.
Work with Product Owner, Product Manager, OCIO, Security Division, and other stakeholders to ensure security concerns are addressed during all phases of system lifecycle.
Perform continuous system security monitoring.
Implement and manage cloud-native and third-party security tools for monitoring, threat detection and vulnerability management.
Act as a SME on Cloud Security while applying methods, standards, and approaches for ensuring the baseline security safeguards are appropriately implemented and documented.
Provides reports to superiors regarding effectiveness of data security and makes recommendations for the adoption of new procedures.
Draft and keep updated information security documentation to include System Security Plan, Information System Contingency Plan, Plan of Actions and Milestones (POA&M), Privacy Threat Assessment, Privacy Impact Assessment, and Configuration Management Plan.
Responsible for ensuring the implementation and maintenance of annual security controls assessments.
Assist with FISMA System audits as necessary. Leverage necessary vulnerability assessment and scanning tools including Nessus and ACSA to identify vulnerabilities, Splunk tools to monitor, detect and rectify misconfigurations.
Working directly with development, platform, and infrastructure teams on security problems.
What You Need to Succeed (Minimum Requirements):
Top Secret (TS) Clearance with SCI eligibility.
3 - 5 years of experience required.
Extensive experience with federal cybersecurity frameworks, including RMF, NIST 800-53, CNSS, and FISMA.
Experience supporting cloud security in environments such as AWS GovCloud, C2S, SC2S, and Microsoft Azure.
Analyze logs using Splunk and AWS tools.
Hands-on experience with vulnerability assessment and configuration tools such as Nessus, ACSA, and Splunk.
Work with GRC tools such as Xacta/JCAM
Hold at least one of the following security certifications. Example: Security +, CGRC, CASP, CISSP
Experience using Atlassian suite tools such as JIRA/CONFLUENCE
Experience with Agile Methodologies/SAFe
Expertise on Information Security Principles, processes and guidelines
Able to obtain and maintain an Authority to Operate (ATO) for Information Systems.
Experience with scanning tools such as Tenable Nessus
Ability to work on multiple projects with various timelines, at times very short deadlines.
Ideally, You Also Have (Preferred Qualifications):
Certifications: CISSP, CISM, CAP, Security+, AWS Certified Security - Specialty, or other relevant certifications.
Experience in a high-side or multi-enclave (U/S/TS) environment.
Experience working with Agile development teams and CI/CD pipelines.
Familiarity with Infrastructure as Code (IaC) and cloud configuration management tools (e.g., Terraform, Ansible).
Familiarity with NIST 800-53 Rev. 5
$63k-82k yearly est. Auto-Apply 45d ago
Mid-Level Cyber/Watch Floor Analyst
Noetic Strategies
Cyber security analyst job in Huntsville, AL
Job Title: Mid-Level Cybersecurity/Watch floor Analyst Clearance: MUST CURRENTLY POSSESS AND ACTIVE TOP SECRET CLEARANCE Noetic is currently seeking a motivated and detail-oriented Mid-Level Cybersecurity/Watch Floor Analyst to join our growing security team. In this junior-level role, you will play a key part in protecting our organization's digital assets by assisting in the detection, analysis, and response to cybersecurity threats and incidents. The ideal candidate will have foundational knowledge of security principles and a strong interest in security operations, with hands-on experience or coursework involving Splunk.
BASIC QUALIFICATIONS:
Minimum of 5 year of Splunk/SOC experience.
Bachelor's in a computer science related field
Active Top Secret Clearance
Ability and willingness to do shift work
MAIN RESPONSIBILITIES:
Responsible for monitoring computer networks for security issues.
Investigating security breaches and other cybersecurity incidents.
Document security breaches and assess the damage they cause.
Work with the security team to perform tests and uncover network vulnerabilities, such as penetration testing.
Fix detected vulnerabilities to maintain a high-security standard.
Recommend best practices for IT security.
Installing security measures and operating software to protect systems and information infrastructure, including firewalls and data encryption programs.
Must be capable of conducting analysis, confirming intrusion information and creating a forensically sound duplicate of the files.
Decrypts data and provides technical summaries and input.
Examines recovered data for relevant information and performs dynamic analysis to include timeline, statistical, and file signature analysis.
Performs real-time cyber defense handling tasks to support deployable Incident Response Teams (IRTs).
PREFERRED QUALIFICATIONS
Microsoft Sentinel
GIAC Continuous Monitoring Certification (GMON)
GIAC Certified Incident Handler (GCIH)
GIAC Certified Forensic Analyst (GCFA)
GIAC Certified Intrusion Analyst (GCIA)
GIAC Network Forensic Analyst (GNFA)
Noetic Strategies Inc. offers a competitive salary, an extensive benefits package and a work environment that encourages excellence. For positions requiring a security clearance, selected applicants will be subject to a government security investigation and must meet eligibility requirements for access to classified information.
Noetic Strategies Inc. is an equal opportunity and affirmative action employer that does not discriminate in employment.
All qualified applicants will receive consideration for employment without regard to their race, color, religion, sex, age, sexual orientation, gender identity, or national origin, disability or protected veteran status.
Noetic Strategies Inc. endeavors to make ************************ accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact noeticstrategies.com for assistance. This contact information is for accommodation requests only and cannot be used to inquire about the status of applications.
$64k-87k yearly est. Auto-Apply 60d+ ago
Cyber Threat Emulation Analyst
Launchtech
Cyber security analyst job in Huntsville, AL
Job Description
or
Huntsville, AL - Redstone Arsenal (On-site) Clearance Required: Active Secret Clearance (or higher) Travel Required: Up to 10%
LaunchTech is seeking a Mid-Level Cyber Threat Emulation Analyst to support the Missile Defense Agency (MDA). In this role, you will strengthen enterprise cyber defenses by conducting threat emulation, vulnerability analysis, incident response, and cyber operations assessments. You will contribute directly to improving the agency's defensive posture while mentoring analysts and executing cyber threat emulation engagements aligned with real-world adversary tactics.
What You'll Do
As a Mid-Level Cyber Threat Emulation Analyst, you will:
Perform Defensive Cyber Operations (DCO) and CyberSecurity Service Provider (CSSP) duties outlined in Evaluator Scoring Metrics (ESM)
Perform cybersecurity duties on customer networks to improve enterprise-wide security posture
Analyze correlated asset, threat, and vulnerability data against known adversary exploits and techniques to determine operational impacts and strengthen defensive posture
Support the development, review, and updates of DCO procedures, processes, manuals, and other documentation
Measure defense-in-depth effectiveness against known vulnerabilities
Generate vulnerability assessment reports and escalate findings for review
Support enterprise Incident Response in accordance with DoD regulations and instructions
Lead cyber events and incident investigations from start to conclusion, including data gathering, analysis, and reporting
Instruct, evaluate, and mentor analysts at junior, mid, and senior levels; support development of exploitation analyst training plans
Receive, review, and implement Higher Headquarters Tasking Orders (HHQ) and Fragmentary Orders weekly
Perform Cyber Threat Emulation (CTE) actions using Automated Security Validation toolsets per HHQ direction
Execute CTE actions within approved network zones using specific adversary tactics, techniques, and procedures (TTPs)
Create dashboards and reports communicating post-engagement analysis, vulnerabilities, recommended remediations, system security posture assessments, and incident response results
Draft and submit Cyber Tasking Orders (CTOs) to address findings discovered during CTE engagements
Collaborate with the Cyberspace Domain Awareness (CDA) team to develop evaluation criteria and methodologies aligned with HHQ inspection requirements and industry best practices
What You Bring
Basic Requirements:
Must have 6, or more, years of general (full-time) work experience
Must have 4 years of combined experience with:
Performing manual or automated penetration tests in an enterprise environment
Practical experience with vulnerability assessment, cybersecurity frameworks, or conducting risk assessments
Experience performing the full life cycle of incident response and enterprise-level monitoring
Must have 1 year of experience in management or leadership in a team environment
Must have a current DoD 8570.01-M IAT Level II certification with Continuing Education (CE) (CySA+, GICSP, GSEC, Security+ CE, SSCP)
Must have, or obtain within 6 months of start date, a PenTest+ certification
Must have an active DoD Secret Security Clearance
Desired Requirements:
Have a Bachelor's degree, or higher, in Cybersecurity, Computer Science, or related field
Have experience with Cyber Threat Emulation tools, policies, and procedures
Have experience operating custom software on a Linux platform
Have experience with security analysis and solutions in WAN/LAN environments (Routers, Switches, Network Devices, Windows, Linux)
Have experience with SOC/DCO tools including Firewalls, Intrusion Detection/Prevention Systems, Network Security Manager, Bluecoat, Barracuda, etc.
Have experience performing security compliance scans across a WAN (ACAS/Nessus preferred)
Have a background in configuration, troubleshooting, and deployment of host-based security (ESS preferred)
Be able to mentor and train personnel in a high-paced environment
Be familiar with DoD Security Operations Centers (SOC/CSSP)
Be familiar with DCO/CSSP-guiding security policies and procedures
Have an active DoD Top Secret clearance
Why LaunchTech?
At LaunchTech, we don't just fill seats, we bring in people who want to make an impact. We deliver Excellence, Period. You will join a mission-driven team where your expertise directly strengthens national defense and advances cybersecurity excellence.
We offer competitive benefits, including:
Medical, Dental, and Vision coverage
401(k) with company match
Paid Time Off (PTO)
Opportunities to make a meaningful impact while advancing your career
And more
Ready to Join the LaunchTech Crew?
If you're ready to apply your cyber expertise to mission-critical defense operations, we want to hear from you.
LaunchTech is an Equal Opportunity Employer. We prohibit discrimination and harassment of any kind. All qualified applicants will receive consideration for employment without regard to race, protected veteran status, color, sex, religion, sexual orientation, national origin, disability, genetic information, age, pregnancy, or any other status protected under federal, state, or local law.
Powered by JazzHR
CkYm1Mbb4K
$64k-87k yearly est. 13d ago
1001 - Information Systems Security Officer (ISSO)
Victory Solutions Inc. 3.9
Cyber security analyst job in Huntsville, AL
Victory Solutions LLC specializes in providing exceptional technology development and engineering services to government organizations such as NASA and the Department of Defense; as well as commercial customers such as Boeing, Northrop Grumman, and SAIC.
We are looking for an Information Systems Security Officer (ISSO) in support of the Sea-Based X-Band Radar (SBX) Program. The Information System Security Officer (ISSO) shall be responsible for IAW DoDI 8500 and DoD 5200.8-R to include tasks such as, but not limited to, providing security training, handling classified documents, information assurance and network security.
Duties and Responsibilities:
* Comply with security requirements in accordance with DODD 8500.01 and DoDI 8500.2, and support accreditation activities with the Designated Approving Authority.
* Develops and maintains Risk Management Framework Security Plans and artifacts (Cyber Incident Response, Information Assurance Vulnerability and Patch Management, Disaster Recovery, Account Management).
* Support Government assessment and authorization activities for each system to be developed, manufactured, delivered and maintained in accordance with DoDI 8500.01 (Cybersecurity), DoDI 8510.01 "Risk Management Framework for DoD Information Technology, DoDI 8581.01 "Information Assurance (IA) Policy for Space Systems used by the DoD," DoDD 8530.1 "Cybersecurity Activities Support to DoD Information Network Operations," NIST SP 800-53 Revision 4 "Security and Privacy Controls for Federal Information Systems and Organizations," CNSSI No. 1253 "Security Categorization and Control Selection for National Security Systems," and MDA 8500.02-P "Information Assurance Program Plan" requirements.
* Configure system components in accordance with applicable DISA Security Technical Implementation Guides (STIG) and NSA Security Configuration Guides (SCG).
* Remain cognizant of current/changing cybersecurity requirements to ensure the final system meets current requirements and thus capable of receiving an Authorization to Operate (ATO).
* Establish and maintain cybersecurity measures to secure CUI, CTI, and CDI.
* Maintain IAT Level II baseline certification requirements IAW 8570.01 M Information Assurance Workforce Improvement Program (Security+, CCNA Security).
Education:
* Bachelor's or Associate's degree or equivalent experience is required.
Require Skills:
* Candidate should have at least 5 years in Cybersecurity/Information Assurance.
* The ISSO is required to support and maintain Information Security over: Windows, workstations, Cisco switches, Cisco Routers, Windows 2008 Servers, and SQL Server 2008 databases.
* Windows Operating System(s) certification is desired.
* To comply with DoD 8570.01-M, the ISSO is required to maintain continuing education to meet Information Assurance Technical (IAT) Level II certification for cyber and network.
* CISSP is desired.
* CCNA is desired.
Additional Requirements:
* Ability to obtain a SECRET security clearance is required.
* Must be a U.S. Citizen.
Victory Solutions LLC is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or veteran status.
How much does a cyber security analyst earn in Huntsville, AL?
The average cyber security analyst in Huntsville, AL earns between $56,000 and $100,000 annually. This compares to the national average cyber security analyst range of $66,000 to $117,000.
Average cyber security analyst salary in Huntsville, AL
$75,000
What are the biggest employers of Cyber Security Analysts in Huntsville, AL?
The biggest employers of Cyber Security Analysts in Huntsville, AL are: