Information security analyst jobs in Germantown, MD - 1,591 jobs
All
Information Security Analyst
Senior Security Engineer
Intrusion Detection Analyst
Network Security Analyst
Information Assurance Engineer
Senior Systems Security Engineer
Security Engineer
Data Security Analyst
Senior Security Architect
Information Assurance Engineer - Majestic - 26731
Huntington Ingalls Industries 4.3
Information security analyst job in Washington, DC
Search by Keyword (use Keyword for Remote Positions)
Select how often (in days) to receive an alert:
Information Assurance Engineer - Majestic - 26731
Required Travel: 0 - 10%
Employment Type:Full Time/Salaried/Exempt
Anticipated Salary Range:$75,791.00-$140,000.00
Security Clearance:TS/SCI
Level of Experience:Mid
This opportunity resides with Warfare Systems (WS), a business group within HII's Mission Technologies division. Warfare Systems comprises cyber and mission IT; electronic warfare; and C5ISR systems.
HII works within our nation's intelligence and cyber operations communities to defend our interests in cyberspace and anticipate emerging threats. Our capabilities in cybersecurity, network architecture, reverse engineering, software and hardware development uniquely enable us to support sensitive missions for the U.S. military and federal agency partners.
Meet HII's Mission Technologies Division
Our team of more than 7,000 professionals worldwide delivers all-domain expertise and advanced technologies in service of mission partners across the globe. Mission Technologies is leading the next evolution of national defense - the data evolution - by accelerating a breadth of national security solutions for government and commercial customers. Our capabilities range from C5ISR, AI and Big Data, cyber operations and synthetic training environments to fleet sustainment, environmental remediation and the largest family of unmanned underwater vehicles in every class. Find the role that's right for you. Apply today. We look forward to meeting you.
HII's Mission Technologies division is dedicated to delivering cutting‑edge solutions that advance national security and defense objectives. This position is part of our Cyber and Intelligence division, which plays a critical role in supporting Enterprise‑Level Security and Modernization efforts across IT infrastructure, cybersecurity, physical facilities, and personnel operations.
The selected candidate will contribute to a high‑impact government program focused on enhancing and securing mission‑critical systems and environments. The program is scheduled to launch in early 2026 and due to the classified nature of the mission and the sensitivity of the operational environment, an active TS/SCI security clearance will be required.
Information Assurance Engineer 1: $71,735 - $101,106
Information Assurance Engineer 2: $85,371 - $118,529
Information Assurance Engineer 3: $104,519 - $140,599
Information Assurance Engineer 4: $120,472 - $172,103
Designs and implements information assurance and security engineering systems with requirements of business continuity, operations security, cryptography, forensics, regulatory compliance, internal counter‑espionage (insider threat detection and mitigation), physical security analysis (including facilities analysis, and security management).
Assesses and mitigates system security threats and risks throughout the program life cycle.
Validates system security requirements definition and analysis.
Implements security designs in hardware, software, data, and procedures.
Verifies security requirements; performs system certification and accreditation planning and testing and liaison activities.
Supports secure systems operations and maintenance.
Minimum Qualifications
Information Assurance Engineer 1: 0 years experience with Bachelors in related field; or High School Diploma or equivalent and 4 years relevant experience.
Information Assurance Engineer 2: 2 years relevant experience with Bachelors in related field; 0 years experience with Masters in related field; or High School Diploma or equivalent and 6 years relevant experience.
Information Assurance Engineer 3: 5 years relevant experience with Bachelors in related field; 3 years relevant experience with Masters in related field; or High School Diploma or equivalent and 9 years relevant experience.
Information Assurance Engineer 4: 9 years relevant experience with Bachelors in related field; 7 years relevant experience with Masters in related field; or High School Diploma or equivalent and 13 years relevant experience.
Relevant industry certifications (as applicable)
Prior experience in defense, aerospace, or government contracting
Proficiency with specialized tools or software aligned to the role
Demonstrated ability to work collaboratively in multidisciplinary teams
Active TS/SCI government security clearance required to start, candidate must willing to obtain and maintain a CI poly
Physical Requirements
Job performance will normally require only minor lifting and carrying of boxes of records or equipment.
The listed salary range for this role is intended as a good faith estimate based on the role's location, expectations, and responsibilities. When extending an offer, HII's Mission Technologies division takes a variety of factors into consideration which include, but are not limited to, the role's function and a candidate's education or training, work experience, and key skills.
Together we are working to ensure a future where everyone can be free and thrive.
All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, physical or mental disability, age, or veteran status or any other basis protected by federal, state, or local law.
Do You Need Assistance?
If you need a reasonable accommodation for any part of the employment process, please send an e‑mail to ************************** and let us know the nature of your request and your contact information. Reasonable accommodations are considered on a case-by-case basis. Please note that only those inquiries concerning a request for reasonable accommodation will be responded to from this email address. Additionally, you may also call ************** for assistance. Press #3 for HII Mission Technologies.
#J-18808-Ljbffr
$120.5k-172.1k yearly 4d ago
Looking for a job?
Let Zippia find it for you.
Information Assurance Engineer / Security Manager
C2 Labs, Inc.
Information security analyst job in Washington, DC
Information Assurance Engineer / Security ManagerC2 Labs, Inc. - **************
C2 Labs partners with clients on their IT transformation journey via our industry-leading capabilities in full stack development, hyper-automation/DevOps, and cybersecurity compliance. We provide specialized products and services that enable clients to innovate with speed and scale while maintaining a robust and effective security posture. As digital transformation partners, we address the most urgent needs holding back our clients, including proactively addressing cultural change, quantifying risk, automating compliance, and closing critical skill gaps
We are seeking a highly skilled and experienced InformationSecurity Engineering Manager to spearhead the development, implementation, and management of our organization's security infrastructure. This pivotal role will be responsible for safeguarding our critical assets and ensuring compliance with industry-leading security standards. You will lead a team of security professionals, providing technical guidance and fostering a culture of security awareness.
Responsibilities
Design, develop, and implement robust security networking architectures, incorporating Intrusion Detection/Prevention Systems (IDS/IPS) and other advanced security technologies.
Develop and enforce comprehensive security policies and procedures aligned with industry best practices and regulatory requirements.
Lead the monitoring and analysis of security systems, proactively identifying and responding to potential threats and vulnerabilities.
Manage and optimize existing security solutions, ensuring their effectiveness and efficiency.
Drive compliance initiatives, with a focus on the Risk Management Framework (RMF) and NIST 800-53 Rev 5 controls.
Effectively manage security projects, ensuring timely completion and adherence to budget.
Lead incident response efforts, coordinating investigations and implementing remediation strategies.
Mentor and develop a high-performing team of security professionals.
Qualifications
Bachelor's degree in an IT-related field required.
Minimum 15 years of experience in informationsecurity, or Certified Information Systems Security Professional (CISSP) certification with a minimum of 10 years of experience.
Demonstrated deep understanding of informationsecurity principles, including access control, network security, cryptography, and vulnerability management.
Proven experience in managing security projects and leading incident response activities.
Extensive experience with the Risk Management Framework (RMF) and NIST 800-53 Rev 5 controls.
Excellent communication, leadership, and problem-solving skills.
EOE STATEMENT
We are an equal opportunity employer. All qualified applicants will be considered without discrimination based on race, color, religion, sex, national origin, age, disability, or protected veteran status. Employment offers will be contingent on passing a pre-employment drug screen.
#J-18808-Ljbffr
$72k-96k yearly est. 5d ago
Senior Security Architect - Zero Trust & GovCloud
Edgewater Federal Solutions
Information security analyst job in Washington, DC
A government contracting firm in Washington, DC is seeking a Senior Security Engineer to enhance its IT security architecture and support compliance with the Cybersecurity Executive Order. The ideal candidate will possess a master's degree in informationsecurity, an active government clearance, and over 10 years of relevant experience. Key responsibilities include designing security infrastructure and advising leadership on security policies. This position requires strong analytical and communication skills.
#J-18808-Ljbffr
$109k-151k yearly est. 4d ago
Tanium Security Engineer - Federal Focus
Medium 4.0
Information security analyst job in Washington, DC
A cybersecurity solutions provider is seeking a Security Engineer specializing in Tanium to enhance endpoint management and security within federal government environments. Responsibilities include designing and maintaining Tanium infrastructure and collaborating with cybersecurity teams. Candidates must possess 12+ years of IT/Security experience and a relevant Bachelor's degree. This position offers a hybrid work model, a competitive salary between $135,000 and $155,000, and extensive benefits including medical and retirement plans.
#J-18808-Ljbffr
$135k-155k yearly 4d ago
Senior Cloud Security Engineer: Incident Response & IAM
Aledade 4.1
Information security analyst job in Bethesda, MD
A healthcare technology firm located in Maryland is seeking a Senior Security Engineer I to enhance security capabilities within cloud-native environments. The candidate will design and implement security solutions, lead incident response efforts, and collaborate with various teams to strengthen security posture. Applicants should have a degree in Computer Science or related field, extensive experience in security engineering, and proficiency in scripting languages like Python and Bash. This role offers a supportive workplace that values diversity and innovation.
#J-18808-Ljbffr
$102k-141k yearly est. 1d ago
Senior Security Engineer - Federal Cybersecurity Lead
Emergencymd
Information security analyst job in Washington, DC
A leading IT solutions firm seeks a Senior Security Engineer to ensure the security of federal systems and data. The role involves designing advanced security solutions, conducting risk analysis, and integrating security into federal environments. Candidates should have a Bachelor's degree in a relevant field, CISSP certification, and extensive experience with government contracts. Strong leadership and communication skills are critical for success in this position.
#J-18808-Ljbffr
$98k-136k yearly est. 4d ago
Senior Security Engineer - GRC
Northwood 3.9
Information security analyst job in Washington, DC
Northwood is deploying a global network of phased array ground stations that will fundamentally change how satellites communicate with Earth. These systems support real-time, high-throughput communications that commercial and government customers rely on for mission-critical operations. As a Senior Security Engineer, you will design and implement security architectures for infrastructure that simply does not exist anywhere else.
This is an opportunity to define the security posture of a rapidly scaling space-communications network-where the stakes include national security, global communications integrity, and uninterrupted mission operations.
Role:
We're building the internet for space. Help us stay compliant while we do it.
Northwood is deploying a global network of phased array ground stations for mission-critical government and commercial space communications. We're scaling fast with major government and commercial customer who demand the highest compliance standards. We need a Senior Security Engineer for Compliance who can own our compliance programs while building the technical controls and automation that enable us to move at startup speed without compromising our security posture.
Responsibilities:
Own compliance programs end-to-end - Lead FedRAMP authorization efforts (Moderate/High), CMMC certification, and NIST 800-171 and/or NIST 800-53 implementation. You're the expert who translates framework requirements into actionable technical controls and documentation that pass audits the first time.
Build compliance automation, not spreadsheets - Implement continuous monitoring pipelines using infrastructure as code. Create automated evidence collection systems that pull directly from AWS CloudTrail Wiz Gov, and our SIEM rather than manual documentation. Build POA&M tracking workflows that integrate with our existing GitOps processes.
Be the bridge between engineering and auditors - Work directly with our Infrastructure and Network Engineering teams to implement security controls that satisfy FedRAMP/CMMC requirements without blocking deployments. Review Terraform configurations, ArgoCD deployments, and Vault policies to ensure they meet compliance mandates. Own the follow through for security control implementation to ensure controls are implemented on or ahead of schedule.
Support the Mission Management team and our customers - Partner with our Mission management team on customer compliance artifacts. Serve as technical POC during government customer security reviews and assessments. Create compliance documentation packages demonstrate the security of our offerings and build trust with our customers.
Drive risk management processes - Conduct risk assessments for new ground station deployments, cloud infrastructure changes, and third-party integrations. Maintain our risk register and work with stakeholders to implement risk treatment plans that balance security requirements with operational needs.
Build and maintain the System Security Plan (SSP) - Own our FedRAMP SSP as a living technical document. Implement control mappings across multiple frameworks (FedRAMP, CMMC, NIST 800-171, ITAR). Create and maintain POA&Ms, security assessment reports, and continuous monitoring documentation.
Implement security tooling for compliance visibility - Deploy and configure SIEM correlation rules, vulnerability scanning automation, and asset inventory systems. Build dashboards that provide real-time compliance posture visibility. Create automated reporting for monthly continuous monitoring requirements.
Basic Qualifications:
5+ years of hands-on experience implementing compliance frameworks in production environments - You've successfully led organizations through FedRAMP, CMMC, or similar authorizations
Strong technical foundation with infrastructure as code - You can read and review Terraform configurations, understand AWS security architectures, and write scripts (Python, PowerShell, Bash) to automate compliance processes
Experience with SIEM platforms, vulnerability management tools, and continuous monitoring - You know how to configure Splunk/Sentinel correlation rules, automate vulnerability scanning with Tenable/Qualys, and build compliance dashboards
Deep knowledge of NIST 800-53, NIST 800-171, FedRAMP, and CMMC frameworks - You understand control requirements and more importantly, how to implement them in AWS Commercial, GovCloud, and hybrid environments
Ability to obtain and maintain TS/SCI clearance
Experience working directly with government customers and audit teams - You can translate technical implementations into compliance artifacts that satisfy 3PAOs and government authorizing officials
Strong technical writing skills - You create clear, accurate SSPs, SOPs, incident response playbooks, and security policies that pass government review
Preferred Qualifications:
Active TS clearance or higher
Experience with government assessment tools and authorization processes
Hands-on experience with AWS GovCloud, Azure Government, or other FedRAMP-authorized cloud environments
Knowledge of ITAR compliance requirements for defense contractors
Experience with Auth0, Okta, or similar IAM platforms for implementing authentication and authorization controls
Familiarity with FortiGate firewalls, AWS Transit Gateway, and multi-cloud networking architectures
Background in aerospace, defense, or critical infrastructure industries where compliance directly enables mission success
Certifications such as CISA, CISSP, CCSP, or similar compliance-focused credentials
Experience conducting tabletop exercises, security control assessments, and gap analyses
#J-18808-Ljbffr
$100k-134k yearly est. 2d ago
Senior Systems Security Engineer - Cloud, IR & Compliance Lead
Nava 4.0
Information security analyst job in Washington, DC
A leading technology solutions provider in Washington, DC is seeking a Senior Systems Security Engineer. This role involves hands-on engineering and securing multiple operating systems, managing vulnerabilities, and ensuring compliance with security frameworks. Ideal candidates will have 5-10 years of experience in system engineering and strong communication skills. The position offers competitive pay and extensive benefits including paid medical and dental insurance.
#J-18808-Ljbffr
$74k-97k yearly est. 4d ago
Application Security Engineer
Big Impact Tech (Bit
Information security analyst job in Washington, DC
Clearance: Public Trust (Clearable)
Employment Type: Full-time
Salary: 130k-140k
:
Big Impact Tech (BIT) is a Small Business providing IT and business management consulting to federal and commercial clients. We deliver mission-focused solutions in data, cloud, cybersecurity, and program management.
Role Overview:
The Application Security Engineer will support the secure development and testing of applications by leveraging specialized tools, implementing security controls, and ensuring compliance with federal standards. This role involves hands-on work with application security testing (SAST, DAST, IAST), vulnerability management, secure coding practices, and collaboration with development teams to protect enterprise web applications in a federal environment.
Responsibilities:
Support Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and IDE Plug-in environments using Veracode and Burp Suite.
Design and implement enterprise-wide security controls to secure applications, systems, networks, or infrastructure services.
Secure enterprise web applications, with a focus on mitigating OWASP Top 10 risks, CVSS scoring, CWE, WASC, and SANS Top 25 vulnerabilities.
Integrate security practices into development workflows using IDEs such as Eclipse, JDeveloper (including pipeline development), or Visual Studio.
Perform application security testing and automation using tools such as OWASP ZAP, Burp Proxy, Selenium, and Interactive Application Security Testing (IAST) capabilities.
Write and maintain bash scripts to support security automation, testing, and troubleshooting tasks.
Participate in vulnerability discovery, triage, and remediation processes, including crowdsourced security programs via platforms like HackerOne.
Work in Linux or UNIX environments, including navigating file systems and troubleshooting basic website connectivity and security issues.
Ensure applications and security practices align with federal compliance standards, including NIST 800-53, FIPS, or FedRAMP.
Qualifications:
6+ years of Information Technology experience
3+ years of experience with supporting Static Application Security Testing (SAST)
Experience with Interactive Application Security Testing (IAST) capabilities and tools
Experience with HackerOne
Experience with Selenium
Experience with writing bash scripts
Experience with OWASP ZAP or Burp Proxy
Ability to obtain security clearance
HS diploma or GED
Additional Required Experience:
3+ years of experience with supporting Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and IDE Plug-in environments using Veracode and Burp Suite
2+ years of experience with Java, Python, .NET, or C#
3+ years of experience using the design and implementation of enterprise-wide security controls to secure applications, systems, network, or infrastructure services
Experience with Eclipse, JDeveloper, including pipeline development, or Visual Studio
Experience with securing enterprise web applications and OWASP Top 10, CVSS, CWE, WASC, and SANS-25
Knowledge of federal compliance standards, including NIST 800-53, FIPS, or FedRAMP
Knowledge of Linux or UNIX environments, including navigating and troubleshooting basic website connectivity issues
$84k-117k yearly est. 3d ago
Intrusion Detection Analyst - 2nd Shift
Govcio
Information security analyst job in Washington, DC
GovCIO is currently hiring for a **2nd shift (3pm - 11:30pm)** Intrusion Detection Analyst onsite in Washington, DC. **Responsibilities** + Collaborates with intrusion analysts to identify, report on, and coordinate remediation of cyber threats to the client
+ Provides timely and actionable sanitized intelligence to cyber incident response professionals
+ Leverages technical knowledge of computer systems and networks with cyber threat information to assess the client's security posture
+ Conducts intelligence analysis to assess intrusion signatures, tactics, techniques and procedures associated with preparation for and execution of cyber attacks
+ Researches hackers, hacker techniques, vulnerabilities, exploits, and provides detailed briefings and intelligence reports to leadership
**Qualifications**
+ Bachelor's with 8+ years of cyber security experience (or commensurate experience)
+ 7 years of security intrusion detection examination experience involving a range of security technologies that product logging data; to include wide area networks host and network IPS/IDS/HIPs traffic event review, server web log analysis, raw data logs
+ Working experience of Splunk SIEM. Contractor will have at least two years as a cyber security or security operations shift team leader
+ At least five years' experience working at a senior level, performing analytics examination of logs and console events in the following working experience areas of; creating advance queries methods in Splunk or advance Grep skills, firewall ACL review, examining Snort based IDS events, Pcaps, web server log review, and working in a SIEM environment
**Company Overview**
GovCIO is a team of transformers--people who are passionate about transforming government IT. Every day, we make a positive impact by delivering innovative IT services and solutions that improve how government agencies operate and serve our citizens.
But we can't do it alone. We need great people to help us do great things - for our customers, our culture, and our ability to attract other great people. We are changing the face of government IT and building a workforce that fuels this mission. Are you ready to be a transformer?
**What You Can Expect**
**Interview & Hiring Process**
If you are selected to move forward through the process, here's what you can expect:
+ During the Interview Process
+ Virtual video interview conducted via video with the hiring manager and/or team
+ Camera must be on
+ A valid photo ID must be presented during each interview
+ During the Hiring Process
+ Enhanced Biometrics ID verification screening
+ Background check, to include:
+ Criminal history (past 7 years)
+ Verification of your highest level of education
+ Verification of your employment history (past 7 years), based on information provided in your application
**Employee Perks**
At GovCIO, we consistently hear that meaningful work and a collaborative team environment are two of the top reasons our employees enjoy working here. In addition, our employees have access to a range of perks and benefits to support their personal and professional well-being, beyond the standard company offered health benefits, including:
+ Employee Assistance Program (EAP)
+ Corporate Discounts
+ Learning & Development platform, to include certification preparation content
+ Training, Education and Certification Assistance*
+ Referral Bonus Program
+ Internal Mobility Program
+ Pet Insurance
+ Flexible Work Environment
*Available to full-time employees
Our employees' unique talents and contributions are the driving force behind our success in supporting our customers, which ultimately fuels the success of our company. Join us and be a part of a culture that invests in its people and prioritizes continuous enhancement of the employee experience.
**We are an Equal Opportunity Employer.** All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, disability, or status as a protected veteran. EOE, including disability/vets.
**Posted Pay Range**
The posted pay range, if referenced, reflects the range expected for this position at the commencement of employment, however, base pay offered may vary depending on multiple individualized factors, including market location, job-related knowledge, skills, education, experience, and internal equity. The total compensation package for this position may also include other compensation elements, to be discussed during the hiring process. If hired, employee will be in an "at-will position" and the GovCIO reserves the right to modify base salary (as well as any other discretionary payment or compensation program) at any time, including for reasons related to individual performance, GovCIO or individual department/team performance, and market factors.
**Posted Salary Range**
USD $108,310.00 - USD $150,000.00 /Yr.
Submit a referral to this job (********************************************************************************************************************************************
**Location** _US-DC-Washington, D.C._
**ID** _2026-7338_
**Category** _Information Technology_
**Position Type** _Full-Time_
$108.3k-150k yearly 21d ago
Manager, Detection & Response Analyst
Rapid7 4.5
Information security analyst job in Arlington, VA
Manager, Detection and Response Services
Are you passionate about growing and supporting teams of threat analysts? How about leading the charge against adversaries across a dynamic and ever-evolving threat landscape? As a Manager on Rapid7's Managed Detection and Response (MDR) team, you will lead a group of highly skilled front-line analysts performing real-time threat detection and incident response for our customers.
This role is ideal for a people-first security leader who thrives in fast-paced environments, values operational excellence, and is motivated by protecting organizations from real-world threats.
About the Team
Rapid7's Managed Detection and Response service helps customers detect breaches, investigate attacker activity, and improve their ability to respond to threats. Our analysts pride themselves on critical thinking, adaptability, and delivering high-quality threat detection and incident response services in a constantly changing threat landscape.
The MDR team operates as a true extension of our customers' security operations, working collaboratively to provide timely, actionable security outcomes.
About the Role
As a Detection and Response Services Manager, you will serve as a front-line Security Operations Center (SOC) Manager, leading a team of analysts based in the Arlington, VA SOC. You'll be responsible for day-to-day people leadership, operational coverage, and serving as an escalation point for both internal teams and customers.
This role combines people management, operational leadership, customer engagement, and incident leadership in a 24x7x365 environment.
In This Role, You Will:
Lead and support a team of world-class MDR analysts in a 24x7 SOC environment.
Provide clear guidance, goals, coaching, and performance support to analysts.
Manage scheduling and shift planning to ensure continuous 24x7x365 coverage.
Collaborate with internal Rapid7 teams to deliver positive outcomes for customers.
Partner with MDR customers and Customer Advisors to balance customer needs with operational realities.
Serve as an escalation point for analysts and internal stakeholders.
Represent the MDR SOC in customer-facing engagements.
Act as an Incident Manager when needed, leading response efforts for high-impact security incidents.
Promote healthy, sustainable work practices to reduce analyst fatigue and encourage collaboration across teams and locations.
Develop, track, and analyze metrics to drive efficiency, accountability, and continuous improvement.
Contribute to analyst development and enablement programs that support career growth and skill development.
The Skills You'll Bring Include:
2+ years of professional people management experience or demonstrated team lead experience, ideally in SOC, MDR, or CIRT environments.
Hands-on experience with common cybersecurity tools and detection techniques.
Strong, current understanding of attacker tactics, techniques, and procedures (TTPs).
Bachelor's degree (or foreign equivalent) in Engineering, Computer Science, MIS, CIS, or a related field-or equivalent practical experience.
Excellent written and verbal communication skills, including customer-facing communication.
Nice to Have
Prior SOC management experience.
Background in incident response or threat analysis.
Familiarity with Rapid7 products or services.
Formal leadership or security training (e.g., MGT551, CASP+).
We know that the best ideas and solutions come from multi-dimensional teams that reflect a variety of backgrounds and professional experiences. If you're excited about this role and feel your experience can make an impact, please don't be shy-apply today.
#LI-WP!
About Rapid7
At Rapid7, our vision is to create a secure digital world for our customers, our industry, and our communities. We do this by harnessing our collective expertise and passion to challenge what's possible and drive extraordinary impact. We're building a dynamic and collaborative workplace where new ideas are welcome.
Protecting 11,000+ customers against bad actors and threats means we're continuing to push the envelope just like we' ve been doing for the past 20 years. If you 're ready to solve some of the toughest challenges in cybersecurity, we're ready to help you take command of your career. Join us.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, age, national origin, disability, protected veteran status or any other status protected by applicable national, federal, state or local law.
$81k-116k yearly est. Auto-Apply 7d ago
Intrusion Analyst
Synergy ECP
Information security analyst job in Columbia, MD
Founded in 2007 and headquartered in Columbia, Maryland, Synergy ECP is a leading provider of cybersecurity, software and systems engineering and IT services to the U.S. intelligence and defense communities. The company leverages its expertise in data transport solutions, software and systems engineering, and other solutions to deliver critical and innovative capabilities to high-level decision makers that enhance our nation's security.
In an ultra-competitive environment, Synergy ECP has thrived by adhering to our name, making sure excellence is displayed by our Employees, to our Customers and by Improving Performance (ECP).
It's what sets us apart, enabling us to be an autonomous yet agile business that delivers huge results - showing we're ready to meet our customers' evolving demands.
Synergy ECP has earned a client list that includes numerous Fortune 100 companies, in addition to multiple branches of the US government and military services.
Synergy ECP is an equal opportunity employer and considers qualified applicants for employment without regard to race, color, creed, religion, national origin, sex, sexual orientation, gender identity and expression, age, disability, veteran status, or any other protected class.
Requirements
A Bachelor's degree and 5 years of relevant experience or a Master's degree plus 3 years of relevant experience or a Doctoral degree and 2 years of relevant experience. An Associate's degree plus 7 years of relevant experience may be considered for individuals with in-depth experience that is clearly related to the position.
Degree must be in Computer Science, Computer Engineering, Information Systems, or related discipline from an accredited college or university.
CISSP, CEH, Sec+, Net+, GIAC, GREM, or CREA Certification is required.
Relevant experience must be in malware analysis. Programming experience in C, C#, C++, Java, Perl, or Python is preferred.
Analyze target digital network data to discover, analyze, and document malicious or unauthorized activity using information collected from a variety of SIGINT and computer network defense resources.
Analyze metadata collected from tasked communications systems in order to identify, locate, and track targets, and to accurately report the intelligence gained from metadata analysis.
Categorize traffic as benign, suspicious, or malicious activity; and document malicious tactics, techniques, and procedures (TTPs).
Develop and implement mitigation strategies.
Have a network and/or host-based focus.
$80k-112k yearly est. 60d+ ago
Network Sniffer Analysis
E*Pro 3.8
Information security analyst job in McLean, VA
E*Pro Consulting service offerings include contingent Staff Augmentation of IT professionals, Permanent Recruiting and Temp-to-Hire. In addition, our industry expertise and knowledge within financial services, Insurance, Telecom, Manufacturing, Technology, Media and Entertainment, Pharmaceutical, Health Care and service industries ensures our services are customized to meet specific needs. For more details please visit our website ******************
We have been retained for providing recruiting assistance, for direct hires, by one of the world-leading information technology consulting, services, and business process outsourcing organization that envisioned and pioneered the adoption of the flexible global business practices that today enable companies to operate more efficiently and produce more value.
Job Description
Position Title : Network Sniffer Analysis
Location : Mclean, VA
Length : Full time / Permanent Position
Work Status : US Citizen/ Green Card Holder/ EAD (GC)
Required Skills
• Strong data analysis ability with sniffer, packet, net flow data.
• Perform sniffer data analysis to identify traffic profile among servers supporting specific business applications.
• Familiar Opnet AppMapper or similar tool that helps identifies application dependency to map between the application and infrastructure components.
Technologies
Sniffer, Net flow, Gigamon, InfiniStream, Opnet AppMapper, Infoblox .., Software Application
If you are qualified, available, planning to make a change, and have an interest in this or other projects with E*Pro, I would like to coordinate a time to talk with you at your earliest convenience. Please forward a recent version of your resume to my email address at
[email protected]
and the best time/day to follow up with you for discussion.
Sincerely Yours,
Ranjit
Technical Recruiter | E*Pro Inc.,
Work: ************ x (234)
Email:
[email protected]
E*Pro Inc. | 1000 Route 9 North, Suite 303 | Woodbridge Township, NJ 07095
Additional Information
All your information will be kept confidential according to EEO guidelines.
$83k-115k yearly est. 1d ago
Network Analyst - Active Security Clearance
Cadre 4.4
Information security analyst job in Reston, VA
CADRE is relied upon for delivering superior insight and leadership to solve the nation's most critical national security challenges in the most demanding environments.
is located in Northern Virginia with flexible core hours.
The Network Analyst (NA) will be responsible for daily substantive work to the Senior Management Team. The NA will also be a member of multidisciplinary teams.
The Network Analysis team is composed of Network Analysts covering three distinct areas of industry and a candidate is likely to be a subject matter expert in only one or two areas:
Telecom and data transport and switching engineering in support of traditional telcos
Data center network engineering in support of intra- and inter-data center transport.
Network architect or cellular network engineering for 3G, 4G, and/or 5G to include core network (EPC and 5G) and radio network engineering
Duties: This Network Analyst performs the following core functions:
Coordinate with the customer's other multidisciplinary teams to provide timely and accurate network analysis regarding the logical and physical routes of key telecommunications networks within a designated area
Work with appropriate members and organizations to evaluate the role and value of potential network operations
Display a mastery of relevant network operations, principles and best practices across various projects
Employ their mastery creatively to support the multidisciplinary teams in providing direct mapping and graphics inputs into the customer's modeling tool as well as in modeling briefings
Display subject matter expertise on complex projects
Perform other duties as assigned at the direction of Project Management
Required Qualifications:
Ability to obtain and maintain a TS/SCI with poly
Bachelor's degree preferred, in a STEM discipline (e.g. Computer Science, Cyber Security, Engineering, Mathematics, or Statistics). Other degrees are acceptable with a strong analytic and technical acumen.
No degree + fourteen (14) years relevant experience
Associate's degree and twelve (12) years relevant experience.
Bachelor's degree and ten (10) years relevant experience.
Minimum of 10 years (current) of commercial/industry experience in one of the following roles:
Facility engineer or network planner (TDM and/or Data)
Large scale networking engineering across multiple packet fabrics, such as google B4
Core network engineer, or radio network engineer with experience in 3G, 4G and/or 5G engineering
OR equivalent NSA experience.
Strong understanding of network technologies, protocols, systems and equipment to include one or more of the following: SONET/SDH, OTN, MSAN, MSPP, MPLS/IP-MPLS, VoIP, IP Multimedia Services (IMS), DWDM, ROADM, Software Defined Networks (SDN) WAN and LAN, multi fabric networks, mesh networks, Session Border Controllers, fabric management, radio access network, front haul, back haul, BGP, OSPF, ISIS, SIP, 5G/LT/LAN interworking, VoLTE, SRVCC, DRVCC, ETSI MANO, OSS/BSS
Experience in commercial/industrial telecommunications networks, providing physical and logical network routes to answer strategic requirements.
Working knowledge of Network Management Systems (NMS) in the network and or Network Function Virtualization and SDN
Working knowledge of one or more of the following:
Public Switched Telephone Network (PSTN)
Data networks (IP, MPLS, traffic engineering, OpenFlow)
Dedicated/Private communications networks both traditional voice and VOIP
VOIP networks, softswitches, SBCs
Fiber optic cable, characteristics, engineering, installation and maintenance
RF related technologies such as cellular technologies, microwave, millimeter wave and VSAT
Gigabit-capable Passive Optical Network (GPON) technology
Strong analytical skills
Ability to work with large volumes of data
Computer and database skills
Desired Qualifications:
Active TS/SCI with poly with most recent BI/Polygraph dates within the last five years
Foreign language capability is not required but is considered a plus
$80k-114k yearly est. 31d ago
Visual Imagery Intrusion Detection System (VIIDS)
Siertek Ltd.
Information security analyst job in Andrews Air Force Base, MD
Job Description
SierTeK proudly serves our clients by providing expertise in the Program Management, Information Technology, and Administrative Support domains. Founded in 2007 as a minority and service-disabled veteran-owned company, we serve as prime- and subcontractor for a multitude of Federal Department of Defense contracts. By focusing on continual improvement, our services remain at the forefront of our industry, and we pride ourselves on delivering our services with the highest degree of integrity.
SierTeK Ltd. is seeking a Visual Imagery Intrusion Detection System (VIIDS) to support an opportunity at Joint Base Andrews, MD.
PLEASE APPLY DIRECTLY ON OUR WEBSITE: ***********************
POSITION OVERVIEW SECTION
The employee shall provide Tiers 2 and 3 support to install, configure, administer, manage, maintain/update and provide VIIDS support and repairs required to keep listed critical VIIDS systems and components fully operational. The employee shall ensure the VIIDS as a whole and all hardware and software components meet or exceed all applicable Government standards and regulations. The employee shall ensure all listed VIIDS, and components are kept updated to meet or exceed all industry standards and are fully functional. The employee shall maintain and keep current any relevant Government documentation on a SharePoint site or similar web/application-based tracking tool (on premise) for all VIIDS.
Essential Job Functions
Provide onsite emergency support to resolve any issues within 1 hour of notification by the Government to include outside normal duty hours. The Government will determine what constitutes an emergency on a case-by-case basis.
Prepare and maintain project planning documentation, create, and maintain network maps/diagrams (static and active/dynamic which are maintained/updated continuously), and presentation material. Acceptable Formats are Adobe Acrobat and Visio. The employee shall provide these materials to the Government within three (3) business days of the request and follow all required document classification requirements. The employee shall provide a written monthly status report on the VIIDS repair and maintenance activities in a mutually agreed upon format.
Qualifications
Minimum Position Requirements
3+ years of experience in network design and administration and possess Cisco or equivalent certification, e.g., CCNA, CCNP. Individual(s) shall have advanced understanding of server maintenance and operation.
Honeywell Vindicator Intrusion Detection System, Access Control, and Vindicator Command and Control certification and maintain active certification with Honeywell. Certification shall be maintained for the duration of the task order.
Top Secret with capability of being upgraded to Yankee White
SierTeK is an equal opportunity employer and values diversity. Employment is decided based on qualifications, merit, and business need. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, protected Veteran status, gender identity and sexual orientation.
This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, transfer, leaves of absence, compensation, and training.
If you need assistance or accommodation due to a disability, you may contact us at 1+************.
$80k-112k yearly est. 8d ago
Visual Imagery Intrusion Detection System (VIIDS)
Siertek
Information security analyst job in Andrews Air Force Base, MD
SierTeK proudly serves our clients by providing expertise in the Program Management, Information Technology, and Administrative Support domains. Founded in 2007 as a minority and service-disabled veteran-owned company, we serve as prime- and subcontractor for a multitude of Federal Department of Defense contracts. By focusing on continual improvement, our services remain at the forefront of our industry, and we pride ourselves on delivering our services with the highest degree of integrity.
SierTeK Ltd. is seeking a Visual Imagery Intrusion Detection System (VIIDS) to support an opportunity at Joint Base Andrews, MD.
POSITION OVERVIEW SECTION
The employee shall provide Tiers 2 and 3 support to install, configure, administer, manage, maintain/update and provide VIIDS support and repairs required to keep listed critical VIIDS systems and components fully operational. The employee shall ensure the VIIDS as a whole and all hardware and software components meet or exceed all applicable Government standards and regulations. The employee shall ensure all listed VIIDS, and components are kept updated to meet or exceed all industry standards and are fully functional. The employee shall maintain and keep current any relevant Government documentation on a SharePoint site or similar web/application-based tracking tool (on premise) for all VIIDS.
Essential Job Functions
Provide onsite emergency support to resolve any issues within 1 hour of notification by the Government to include outside normal duty hours. The Government will determine what constitutes an emergency on a case-by-case basis.
Prepare and maintain project planning documentation, create, and maintain network maps/diagrams (static and active/dynamic which are maintained/updated continuously), and presentation material. Acceptable Formats are Adobe Acrobat and Visio. The employee shall provide these materials to the Government within three (3) business days of the request and follow all required document classification requirements. The employee shall provide a written monthly status report on the VIIDS repair and maintenance activities in a mutually agreed upon format.
Qualifications
Minimum Position Requirements
3+ years of experience in network design and administration and possess Cisco or equivalent certification, e.g., CCNA, CCNP. Individual(s) shall have advanced understanding of server maintenance and operation.
Honeywell Vindicator Intrusion Detection System, Access Control, and Vindicator Command and Control certification and maintain active certification with Honeywell. Certification shall be maintained for the duration of the task order.
Top Secret with capability of being upgraded to Yankee White
SierTeK is an equal opportunity employer. Employment is decided based on qualifications, merit, and business need. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, protected Veteran status, gender identity and sexual orientation.
This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, transfer, leaves of absence, compensation, and training.
If you need assistance or accommodation due to a disability, you may contact us at 1+************.
$80k-112k yearly est. 19d ago
Network Security Analyst
Cymertek
Information security analyst job in Chantilly, VA
Network SecurityAnalystLOCATIONChantilly, VA 20151CLEARANCETS/SCI Full Poly (Please note this position requires full U.S. Citizenship) KEY SUMMARYWe are looking for a detail-oriented and proactive Network SecurityAnalyst to join our cybersecurity team. In this role, you will monitor, analyze, and protect the organization's network infrastructure against potential threats and vulnerabilities. You will be responsible for identifying security risks, responding to incidents, and implementing measures to safeguard sensitive information. Collaborating with cross-functional teams, you will play a key role in enhancing the organization's overall network security posture. The ideal candidate is passionate about cybersecurity, thrives in a dynamic environment, and is committed to staying ahead of emerging threats and technologies.
*** Please note that our job openings are dynamic and can open or close quickly (much faster than we can publish). If you do not see an opening you are looking for, know that we see almost all types of positons. We strive to keep our listings up to date, but please consider submitting your current resume. Our team will work with you to identify the most recent opportunities that align with your skillset and career goals. We look forward to you joining our family. ***
SIMILAR CAREER TITLESCybersecurity Analyst, InformationSecurityAnalyst, Security Operations Center (SOC) Analyst, Network Defense Analyst, Threat Intelligence Analyst, IT Security Specialist, Vulnerability Analyst, Incident Response Analyst, Security Monitoring Analyst, Cyber Defense Analyst, Infrastructure SecurityAnalyst, etc.DEGREE (Level Desired) Bachelor's DegreeALTERNATE EXPERIENCEGeneral comment on degrees: Most contracts allow additional experience (4-5 years) in lieu of a Bachelor's Degree. Some contracts give 4-5 years experience credit for a Bachelor's Degree. Some contracts give 2 years experience credit for a Master's Degree. We will work with you to find the right fit.POSITION RESPONSIBILITIES
Monitor network traffic for anomalies
Investigate and resolve security incidents
Maintain and update security systems
Generate and analyze security reports
Assist in developing incident response plans
Ensure adherence to security policies
REQUIRED SKILLS
Proficiency in monitoring tools like IDS/IPS
Strong analytical and problem-solving skills
Understanding of network protocols (TCP/IP, DNS)
Knowledge of malware analysis tools
Ability to interpret security logs
Familiarity with vulnerability scanning tools
DESIRED SKILLS
Experience with advanced threat detection
Knowledge of forensics methodologies
Understanding of regulatory frameworks (e.g., GDPR, HIPAA)
Experience with SOC workflows
Familiarity with automation and scripting
Knowledge of threat intelligence platforms
PLUG IN to CYMERTEK - And design your future... YOUR FOREVER CAREER STARTS HERE
Are you looking for more than just a job? Join a company where employees are treated like family, and your career is built to last. We are a growing small business and a trusted federal contractor offering full scope consulting services in information technology, cybersecurity, and analyst workforce development.
At our company, you come first. We're committed to creating an environment where you'll thrive professionally and personally. We provide meaningful, challenging work using cutting-edge technologies while investing in your growth and success. With direct access to company leadership, a laid-back and inclusive atmosphere, and exceptional work-life balance, you'll feel valued every day.
We also believe in taking care of our family - both yours and ours. Our benefits are phenomenal, family-friendly, and designed with your well-being in mind. From employee and family events to career-long support, we create a community you'll never want to leave.
Ready to make your next move the best one? Join us and experience the difference.
BENEFITS
Excellent Salaries
Flexible Work Schedule
Cafeteria Style Benefits
10% - 401k Matching (Vested Immediately)
Additional 401k Profit Sharing
30 days Paid Leave/Holiday (No Use or Lose!)
The day off for your birthday
Medical/Dental/Vision - 100% employee coverage. ($1200 allowance - or a bonus)
HSA/FSA
AFLAC
Long Term/Short Term Disability - 100% employee coverage. No cost to you.
Life Insurance - 100% employee coverage. No cost to you.
Additional Discretionary Life Insurance
Paid Training
No long, wordy reviews with tons of paperwork!!!
Referral bonus program with recurring annual payments
HOW TO APPLY
Email us at ***************** or apply today: ****************
Want to see what our employees think? Click here .
EQUAL OPPORTUNITY EMPLOYER STATEMENT
Cymertek is proud to be an Equal Opportunity Employer committed to fostering an inclusive and diverse workplace. We embrace and celebrate differences in our employees, recognizing that a diverse workforce enhances our creativity, innovation, and overall success. At Cymertek, employment decisions are made based on merit, qualifications, and business needs without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, veteran status, or any other characteristic protected by applicable laws. We believe in creating an environment where all individuals are treated with respect and dignity, and where opportunities for professional growth and advancement are accessible to everyone, regardless of background or identity.
$77k-104k yearly est. Easy Apply 60d+ ago
Safety and Security Data Analyst
AHU Technologies
Information security analyst job in Washington, DC
Job Description The client, operating under a major service contract for a national transportation corporation, is seeking a meticulous Entry-Level Safety & Security Data Analyst to support the client's internal Office of Intelligence and Analysis (OIA) in Washington, D.C. This critical role is responsible for gathering, organizing, and maintaining accurate safety and security data from multiple sources. The Analyst will perform fundamental data analysis, create basic reports (using tools like Microsoft Excel), and produce clear charts and summaries that directly inform operational decision-making and support essential safety and security initiatives across the organization. This is a hybrid position, primarily requiring in-office work (80-90%) in Washington, D.C., with an initial duration of six months, subject to extension. Key Responsibilities
Gather and accurately organize safety and security data collected from various internal and external sources.
Maintain precise data records, ensuring comprehensive data integrity and quality control across all datasets.
Perform basic data analysis, including the use of Microsoft Excel for pivot tables, charts, and complex formulas.
Develop and produce simple, clear reports, charts, and summaries to effectively communicate findings and support decision-making processes.
Collaborate closely with internal OIA and other relevant teams to validate and accurately collect data.
Uphold strict confidentiality and security protocols when handling sensitive and proprietary safety and security data.
Qualifications Minimum Requirements
Strong proficiency in Microsoft Excel, including advanced functionality (e.g., pivot tables, VLOOKUP, charting).
Demonstrable experience with data collection, maintenance, and basic reporting.
Exceptional attention to detail and a proven ability to maintain accurate, high-integrity records.
Excellent communication skills, both written and verbal, and the ability to work effectively in a collaborative team environment.
Unwavering ability to maintain confidentiality and protect sensitive data.
Preferred Skills
Familiarity or exposure to basic data visualization techniques.
Working knowledge of or familiarity with programming languages such as Python and SQL.
Familiarity with data visualization platforms like Microsoft PowerBI and an understanding of DAX queries.
Prior exposure to or experience with safety, security, or transportation-related data.
Compensation: $31.00 per hour
About Us AHU Technologies INC. is an IT consulting and permanent staffing firm that meets and exceeds the evolving IT service needs of leading corporations within the United States. We have been providing IT solutions to customers from different industry sectors, helping them control costs and release internal resources to focus on strategic issues.
AHU Technologies INC. was co-founded by visionary young techno-commercial entrepreneurs who remain as our principal consultants. Maintaining working relationships with a cadre of other highly skilled independent consultants, we have a growing number of resources available for development projects. We are currently working on Various projects such as media entertainment, ERP Solutions, data warehousing, Web Applications, Telecommunications and medical to our clients all over the world.
$31 hourly Auto-Apply 47d ago
Detection Analyst
Cfp Bd of Standard Ctr for Financial Planning
Information security analyst job in Washington, DC
Essential Functions
Works with Detection team to execute all detection functions of the organization, including background checks for candidates for CFP Certification, CFP professionals, and Professionals Eligible for Reinstatement; assists with conducting background checks for CFP Board volunteers and Board members.
Maintain database of regulatory enforcement actions.
Assist in the development and implementation of new detection processes.
Commences the investigative process with the initial processing of new matters, including setting up electronic and hard-copy case files and entering information into databases.
Manage early-stage case-related correspondence, including Notices of Investigation, requests for extensions, and initial responses.
Conduct triage analysis for all investigation cases, closing cases that meet certain criteria and referring the remaining cases to the Investigations Team.
Identify cases appropriate for summary proceedings (Interim Suspension, Administrative Order, Single Bankruptcy complaint) and shepherd through such proceedings.
Monitor persons subject to sanctions for compliance with post-sanction obligations, coordinating with other departments to do so.
Serve as a point of contact for detection and disclosure-related issues for other departments in the organization.
Performs other duties as assigned.
Background/Skills/Abilities Preferred
A minimum of 3 years administrative or program support, or commensurate educational experience.
Outstanding organizational skills and attention to detail.
Ability to prioritize between competing assignments and quickly meet critical deadlines.
Solid written and verbal communication skills.
Positive, flexible, “can-do” attitude.
Proficient knowledge of MS Office; database experience is a plus.
Ability to safeguard confidentiality of sensitive data.
Ability to work within approved guidelines and protocols.
Capacity to thrive in a demanding, fast-paced, legal environment.
About CFP Board
CFP Board is the professional body for personal financial planners in the U.S. CFP Board consists of two affiliated organizations focused on advancing the financial planning profession for the public's benefit. CFP Board of Standards (501(c)(6)) sets and upholds standards for financial planning and administers the prestigious CERTIFIED FINANCIAL PLANNERTM certification - widely recognized by the public, advisors and firms as the standard for financial planners - so that the public has access to the benefits of competent and ethical financial planning.
CFP certification is held by more than 106,000 people in the U.S. CFP Board Center for Financial Planning (501(c)(3)) addresses diversity and workforce development challenges and conducts and publishes research that adds to the financial planning profession's body of knowledge.
This position works on programs which are part of the 501 (c)(6).
This position is based in the Washington D.C. office and works a hybrid schedule which could be changed at any time.
CFP Board believes that diversity of experience and perspective are strengths and seeks to continue to grow a highly committed, skilled, and collaborative staff.
CFP Board is an Equal Opportunity Employer. The applicable starting annual base salary is anticipated to be in the range of $43,000 to $51,500. In addition to base salary, total compensation includes incentive compensation for which employees are eligible based on completion of individual goals.
$43k-51.5k yearly Auto-Apply 22d ago
Senior Systems Security Engineer
Nava 4.0
Information security analyst job in Washington, DC
Be Challenged and Make a Difference
In a world of technology, people make the difference. We believe if we invest in great people, then great things will happen. At AnaVation, we provide unmatched value to our customers and employees through innovative solutions and an engaging culture.
Description of Task to be Performed:
AnaVation is looking for a Sr. Systems Security Engineer to assist the customer with engineering and administration tasks. The ideal candidate will be comfortable engaging with client leadership on a regular basis and interacting with senior level team members.
Responsibilities
Perform hands-on engineering, administration, and securing of multiple operating systems (e.g., Windows, RHEL, Unix variants), and applying DISA STIGs across diverse vendor technologies, including virtualization platforms (VMWare, Hyper-V), cloud environments (AWS, Azure, Google Cloud), and enterprise applications.
Perform system administration tasks to include audit and log management, availability monitoring and remediation, account management and access reviews, and configuration update scheduling and performance.
Contribute to the design and development of secure system architectures, ensuring security is integrated through system and network lifecycles.
Evaluate, implement, and document security architecture solutions, aligning with compliance requirements and organizational mission needs.
Ensure technical compliance with applicable security frameworks, standards, and regulations (e.g., DISA SITGs, NIST 800-53, RMF).
Conducting, configuring, and managing vulnerability scans.
Conducting vulnerability remediations, patching, and system hardening.
Collaborate with ISSOs, Assessors, System Owners, and other stakeholders to implement security controls.
Support security assessments, audits, and accreditation/authorization (ATO) activities.
Document security configurations, engineering solutions, and compliance evidence.
Troubleshoot and resolve security-related technical issues in a timely manner.
Understanding and advising the client regarding critical application data and vulnerability points, coordinating with industry partners to advise the government regarding those security vulnerabilities, and providing recommendations and advice on incident response and recovery plans.
Providing Incident Response (IR) activities including triage, investigation, interviewing, resolving, and reporting on events.
Promoting informationsecurity awareness across the program, ensuring security controls and processes are implemented.
Presenting vulnerability analysis to system owners and leadership.
Required Qualifications
5-10 years of experience in information system engineering and configuration management.
5 years of experience in control implementation and secure system engineering or design.
Excellent communication skills.
Hands on experience with:
Security monitoring and evaluation, including audits, assessments, and risk management
SIEM tools (e.g., Splunk)
Vulnerability Scanning tools (e.g., Tenable, Nessus)
EDR tools (e.g., Crowdstrike)
Web App Scanning tools (e.g., Burpsuite, Acunetix)
Active Directory
SANs
VMWare
Networking Devices
Expertise in batch, bash, and/or PowerShell scripting
Able to deliver and present security compliance to a wide range of audiences (i.e., system owners, division leadership).
Experience configuring and operating enterprise storage across networks (SAN)
Server visualization - design solutions and configuration (VMWare, VSphere, Hyper-V, etc)
Experience with:
Linux (RHEL 7/8), Windows Operating Systems, and Oracle/SQL Databases
Agile Methodologies
GRC Tools (e.g., CSAM)
Strong desire to learn, grow and be highly motivated.
Certifications: OS specific certifications, Security +
Personnel assigned to this task shall possess a blend of strong technical skills (networking, operating systems, security tools, programming, encryption) and essential soft skills (problem-solving, critical thinking, communication, collaboration) to design, implement, and maintain an information system's security control implementation.
Desired Qualifications
Knowledgeable on different cloud providers: AWS, Azure, Oracle, GCP
Understanding of servers and security tools
Education: Bachelor's degree in Engineering, Computer Science, or Information Systems
Certifications: CompTIA Server+, Cloud certifications (AWS, Azure, Google), Network+, CCNA, RHCSA, Azure (AZ-104, AZ-204, AZ-500, AZ-305), AWS Solutions Architect
Benefits
Generous cost sharing for medical insurance for the employee and dependents
100% company paid dental insurance for employees and dependents
100% company paid long-term and short-term disability insurance
100% company paid vision insurance for employees and dependents
401k plan with generous match and 100% immediate vesting
Competitive Pay
Generous paid leave and holiday package
Tuition and training reimbursement
Life and AD&D Insurance
About AnaVation
AnaVation is the leader in solving the most complex technical challenges for collection and processing in the U.S. Federal Intelligence Community. We are a US owned company headquartered in Chantilly, Virginia. We deliver groundbreaking research with advanced software and systems engineering that provides an information advantage to contribute to the mission and operational success of our customers. We offer complex challenges, a top-notch work environment, and a world-class, collaborative team.
If you want to grow your career and make a difference while doing it, AnaVation is the perfect fit for you!
AnaVation is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to sex, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law.
#J-18808-Ljbffr
$74k-97k yearly est. 4d ago
Learn more about information security analyst jobs
How much does an information security analyst earn in Germantown, MD?
The average information security analyst in Germantown, MD earns between $66,000 and $127,000 annually. This compares to the national average information security analyst range of $71,000 to $135,000.
Average information security analyst salary in Germantown, MD