Post job

Information security analyst jobs in Johnstown, PA - 1,093 jobs

All
Information Security Analyst
Intrusion Detection Analyst
Information Technology Analyst
Information Assurance Analyst
Information Systems Security Officer
Senior Security Engineer
Network Security Analyst
Information Security Manager
  • Senior Cloud Security Engineer: Incident Response & IAM

    Aledade 4.1company rating

    Information security analyst job in Bethesda, MD

    A healthcare technology firm located in Maryland is seeking a Senior Security Engineer I to enhance security capabilities within cloud-native environments. The candidate will design and implement security solutions, lead incident response efforts, and collaborate with various teams to strengthen security posture. Applicants should have a degree in Computer Science or related field, extensive experience in security engineering, and proficiency in scripting languages like Python and Bash. This role offers a supportive workplace that values diversity and innovation. #J-18808-Ljbffr
    $102k-141k yearly est. 2d ago
  • Job icon imageJob icon image 2

    Looking for a job?

    Let Zippia find it for you.

  • Information System Security Officer

    Conviso Inc.

    Information security analyst job in Germantown, MD

    Conviso Inc is looking for ISSO Officer for onsite Job. This role comes with benefits, 401K & some accrued PTO. The Ideal must have hands-on technical and analytical experience supporting the RMF lifecycle, cybersecurity monitoring, continuous authorization, and security control assessments. Are you open to new opportunities & could this be of interest? On Site Job at 3 locations - Albuquerque NM, Las Vegas NV, Germantown MD Active Top-Secret Clearance Required Title: Information System Security Officer (ISSO) Minimum 3 years as an ISSO Required Skills: ISSO personnel must understand and interpret data from security tools and apply NIST frameworks with precision. Capabilities include: Proficiency in NIST SP 800-37, 800-53, 800-60, FIPS 199, CNSSI 1253. Ability to perform risk assessments, system categorization, and control selection. Experience with eGRC tools (e.g., Archer) for documentation, continuous monitoring, and POA&M management. Responsibilities: Prepare: Support enterprise, mission, and system-level RMF readiness, establish tailored baselines, identify assets, assess risks, and determine system placement in the enterprise architecture. Categorize Information Systems: Perform FIPS 199 categorization, develop SSP subsections, register systems, and ensure early engagement with developers to integrate cybersecurity impact analysis. Select Security Controls: Document, implement, and validate selected controls, incorporating security architecture, privacy requirements, and common control inheritance. Assessment: Develop assessment plans, test controls, produce SARs, document findings, and support POA&M development. Data Calls: Provide timely and accurate evidence and responses using approved tools. Internal & External Assessments: Support audits, collaborate with internal and external partners, and perform self-assessments. Program-Level Documentation Support: Maintain program policies, adjudicate comments, and assess the impact of federal directives and legislation.
    $65k-88k yearly est. 3d ago
  • Information Technology Financial Analyst

    Motion Recruitment 4.5company rating

    Information security analyst job in Philadelphia, PA

    Our client is looking for an IT Financial Analyst to join their team on a contract, remotely. Pay: $45-52/hour Primary Duties and Responsibilities: Manage the financial relationship between the organization and key strategic IT vendors, including SOW review and tracking, monitoring vendor adherence to financial contract terms, and reconciliation of vendor accounts. Monitor and report on key Program Accounting initiatives, including project financial reviews. Maintain and monitor IT Financial processes that are part of the project life cycle, including assisting with training for project managers. Serve as an educational resource to internal and external partners, as well as business leaders, to aid in the understanding of financial results and measurement systems/metrics. Provide financial consulting and analytical support, including budgeting and forecasting, to leadership of assigned shared service organizations. Serve as a mentor for junior IT Financial Analysts. Work closely with shared service leaders to understand business needs and requirements and ensure alignment of forecasts and budgets. Prepare monthly accrual and expense re-class entries. Audit task charge codes in Clarity to ensure proper Accounting standards are followed. Maintain forecast of operating expense and capital expenditure. Support the development, maintenance, and continuous improvement of the annual budgeting and ongoing forecast processes. Assist the capital planning process for assigned organizations, including conducting research and analysis, validating business cases, creating financial models, and making recommendations. Analyze and interpret financial data and formulate conclusions and recommendations to supported organizations to address concerns or areas of opportunity. Report monthly actual results against budget and forecast; investigate and explain causes of variance. Analyze trends and cost drivers and highlight risks and opportunities. Provide financial analysis to help IT leadership understand financial results and support business decisions. Provide analysis for monthly management reviews. Ensure knowledge, understanding, and compliance with company policies and procedures. Provide feedback to management concerning possible problems or areas of improvement. Make recommendations to implement improved processes. Perform other duties as assigned by management. Experience and Educational Requirements: Bachelor's Degree or equivalent in relevant work experience. Degree in Finance or Accounting preferred. 8+ years of FP&A experience in a large corporate environment. Experience working in an IT environment a plus. Experience creating budgets and forecasts, reporting, financial modeling, and financial analysis. Experience developing and leading FP&A processes. Advanced knowledge of accounting principles required. High level of proficiency in Microsoft Excel and PowerPoint required. Experience with financial systems required; SAP a plus. Ability to work with senior management in a cross-functional environment. Ability to work independently with minimal direction and oversight. Must be creative and forward-thinking with high ethical standards. Must possess sound technical skills, analytical ability, good judgment, and a strong operational focus. Strong presentation skills. Ability to maintain the highest level of confidentiality. Ability to work within and meet established deadlines. Excellent interpersonal, written, and oral communication skills. Ability to work in a team fostered environment. Ability to adapt to a flexible schedule. Minimum Skills, Knowledge, and Abilities: Demonstrated knowledge of database applications in the business environment. Strong analytical and problem-solving skills to interpret and evaluate business problems and apply applications knowledge to identify appropriate solutions. Demonstrated knowledge of project management concepts. Strong leadership skills. Good interpersonal skills. Strong decision making skills. Strong customer service skills. Ability to communicate effectively both orally and in writing, including the ability to relate effectively with both technically and non-technically oriented individuals. Ability to prioritize workload and consistently meet deadlines. Strong organizational, administrative, and follow-up skills.
    $45-52 hourly 3d ago
  • Information Security Specialist

    C2 Essentials, Inc.

    Information security analyst job in Frederick, MD

    Under general supervision of the Government lead: This individual will provide senior-level Information Technology / Cyber Security support to ensure TAO's internal networks are in compliance with Federal, DoD, Department of the Army (DA), and Joint Security Implementation Guide (JSIG) Cybersecurity / Information Assurance policies. This individual will perform identify operational, management, and technical security controls and to assess the overall effectiveness of the controls after their deployment in TAO's enterprise. Perform as the Information Systems Security Officer for classified and unclassified networks. Responsible for creating and maintaining RMF documentation in support of authorization of TAO networks. The pay range for this position is $130-136K annually, based on experience. Required tasks: * This ISS will perform technical, analytical, and advisory functions pertinent to Information Technology (IT) programs and ensuring IT programs are compliant with higher authority policies and guidelines. * Conduct threat and vulnerability assessments to access risks and determine effective corrective measures, review and evaluate the security impact of system changes. * Responsible for the development of authorization documentation and the Risk Management Program for unclassified information and varied classified information systems. * Responsible for effectively coordinating Assessment and Authorization (A&A) activities of industry and Government information systems to meet authorization milestone timeline requirements. * Responsible for assisting customers in testing, configuring, utilizing, upgrading, and sanitizing information technology systems. * Responsible for ensuring all information technology systems processes are compliant with security related directives and guidance for Information Assurance; Information Technology; and Information Management. Required Skills and Experience * Bachelor's degree in Information Technology or Cyber Security. * Minimum of (8) years Information Technology and (5) Cyber Security experience. * Qualified at the IAM Level II for the DoD Information Assurance Workforce, must possess one of the following certifications: CAP, CASP CE, CISM, CISSP. * Experience generating and maintaining RMF documentation. * Experience with Assessment and Authorization (A&A) activities. Required Clearance * Active DoD Top Secret clearance required. C2 Essentials is an Equal Opportunity Employer.
    $130k-136k yearly 4d ago
  • Information Assurance Support Level Analyst IV

    Kalman and Company 4.2company rating

    Information security analyst job in Edgewood, MD

    Kalman & Company is seeking to hire an experienced Information Assurance Support Level Analyst IV for an onsite position in Edgewood, MD. A Secret level clearance is required and travel both CONUS and OCONUS will be required for this role. Salary Range is $110,000-$120,000/year. Primary Responsibilities: Examine JPEO-CBRND programs and system characteristics to determine whether compliance with DoDI 8500.01 is recommended or required and will develop an acquisition Cybersecurity Strategy when required. Ensure that each JPEO-CBRND program, when required, has a Cybersecurity Strategy that is consistent with DoD policies, standards, and architectures, to include relevant standards. Assist in the identification of Critical Program Information (CPI) in terms of their importance to the program being developed. Assist in the identification of foreign collection threats to the program, identify elements that require classification, and determine the phases at which such classification should occur and the duration of such controls. Provide support for Development Test (DT), User Demonstration (UD), User Feedback Event (UFE), Operational Assessment (OA), and Operational Test (OT) events and address each CPI as well as other relevant information requiring protection, including export-controlled information and sensitive buy unclassified information. Manage the Host-Based Security System (HBSS) and install, configure, and maintain computer and network security software, including instances of the Assured Compliance Assessment Solution (ACAS), the Defense Information Systems Agency (DISA) Security Technical Implementation Guide (STIG) Viewer, and other cybersecurity software test and scanning software applications. Document programs overall cybersecurity approach and requirements, including determining the appropriate Certification and Accreditation (C&A) process, contributing content for Life Cycle Management Plans (LCMPs), assisting programs in the creation of a Security Classification Guide (SCG), and assisting in the development of Program Protection Plans (PPPs) Appendix E, the Cybersecurity Strategy. Manage information-related risks in enterprise architectures, acquisition strategies, and testing and evaluation, and work to achieve cybersecurity C&A. Ensure fielded information systems and networks are defended to maintain confidentiality, integrity, availability, authentication, and non-repudiation by identifying, developing, and applying risk management framework technical-, operational-, and management-related security controls and protection mechanisms. Guide JPEO-CBRND programs in the development of Acquisition Cybersecurity Strategy. Assist in the identification of Critical Technology and address CPI as well as other relevant information requiring protection, including export- controlled information and sensitive but unclassified information. Directly interface with JPM customers, representing JPMs/JPLs in discussions concerning cybersecurity, including (but not limited to) topics which address use of the DISA STIG in the software application and system development process, use of the DISA Enterprise Mission Assurance Support Service (eMASS) tool to document program progress during the C&A process, and the Risk Management Framework and its critical alignment with a program's System Development Life Cycle (or Software Development Life Cycle, as appropriate.) Leverage SSA services while working in conjunction with JPMs across the JPEO-CBRND to facilitate risk management framework activities. This position may require travel up to 20% Continental United States (CONUS) and less than 10% Outside Continental United States (OCONUS). The selected applicant will take the International Information Systems Security Certification Consortium (ISC) 2 TM Certified Authorization Professional (CAP) Certification Prep Self Study (11 hours) during on-boarding. Minimum Requirements: US Citizenship is required. An Active Secret security clearance. Risk Management Framework (RMF) Training Hold an active Security + Certification. Active CompTIA Advanced Security Practitioner (CASP+) certification Eight (8) years of experience providing information technology support services, including information assurance. At least five (5) years of comprehensive knowledge of the Microsoft Office suite of software, with specific experience in effective use of Outlook, PowerPoint, Excel, Project and Word.
    $110k-120k yearly 22d ago
  • Information Security Analyst

    Mantech International Corporation 4.5company rating

    Information security analyst job in Riverside, MD

    General information Requisition # R63175 Posting Date 09/10/2025 Security Clearance Required Secret Remote Type Onsite Time Type Full time Description & Requirements Shape the future of defense with MANTECH! Join a team dedicated to safeguarding our nation through advanced tech and innovative solutions. Since 1968, we've been a trusted partner to the Department of Defense, delivering cutting-edge projects that make a real impact. Dive into exciting opportunities in Cybersecurity, IT, Data Analytics and more. Propel your career forward and be part of something extraordinary. Your journey starts now-protect and innovate with MANTECH! MANTECH seeks a motivated, career and customer-oriented Information Security Analyst to join our team in Belcamp, MD. This is an onsite position. The Information Security Analyst will work in support of the Army for the Network Modernization & Mission Network Technical Service Support program (NetMod). NetMod sets forth the work efforts required to provide product technical support services for systems and equipment being produced, fielded, modified or supported by PdM Network Modernization (NetMod) and PdM Mission Network of the Project Manager (PM) Tactical Network (TN) of the Program Executive Office for Command Control and Communications-Tactical (PEO C3T). This support may also include future systems and equipment that is acquired for the Army to maintain its technological advantage. Job responsibilities include but are not limited to: * Providing network environment and advanced level computing environment support * Paying special attention to intrusion detection, finding and fixing unprotected vulnerabilities, and ensuring that remote access points are well secured * Collecting data from a variety of Computer Network Defense (CND) tools (including data from approved information assurance (IA) tools to include intrusion detection system alerts, firewall and network traffic logs, and host system logs) to analyze events that occur within their environment * Applying analytical skills to this data and all compliance with relevant non-technical controls, such as physical security and configuration management, to perform an audit function for the Agent of the Certification Authority (ACA) or other government Information Assurance (IA) Manager for mitigation of risks and reporting to include report generation for certification and accreditation packages or Certification of Networthiness efforts. * Conduct vulnerability assessments, risk analysis, and incident responses. * Actively monitoring network traffic for suspicious activity and potential security breaches. * Identify weaknesses in systems and applications to proactively address security risks. Minimum Qualifications: * Bachelor's degree in Science and 5+ years of relevant experience. * 3+ years in the Department of Defense performing information management related duties. * Must be Information Assurance (IA) Trained and Certified per the Defense Federal Acquisition Regulation Supplement. * Possess an understanding of network protocols and security principles * Demonstrated experience in security tools and technologies (firewalls, intrusion detection/prevention systems, SIEM). * Experience with vulnerability scanning and penetration testing. * Possess analytical and problem-solving skills to identify and address security threats. Preferred Qualifications: * Basic understanding of programming. * Experience with participating in simulated cyberattacks to identify vulnerabilities in systems and applications. * Experience updating and implementing complex security systems for an organization. Clearance Requirements: * Must be a US citizen and have a current/active Secret clearance. Physical Requirements: * Must be able to remain in a stationary position 50% of the time. * Needs to occasionally move about inside the office to access file cabinets, office machinery, etc. * Frequently communicates with co-workers, management, and customers, which may involve delivering presentations. Must be able to exchange accurate information in these situations. The projected compensation range for this position is $69,900.00-$116,400.00. There are differentiating factors that can impact a final salary/hourly rate, including, but not limited to, Contract Wage Determination, relevant work experience, skills and competencies that align to the specified role, geographic location (For Remote Opportunities), education and certifications as well as Federal Government Contract Labor categories. In addition, MANTECH invests in its employees beyond just compensation. MANTECH's benefits offerings include, dependent upon position, Health Insurance, Life Insurance, Paid Time Off, Holiday Pay, short-term and long-term Disability, Retirement and Savings, Learning and Development opportunities, wellness programs as well as other optional benefit elections. MANTECH International Corporation considers all qualified applicants for employment without regard to disability or veteran status or any other status protected under any federal, state, or local law or regulation. If you need a reasonable accommodation to apply for a position with MANTECH, please email us at ******************* and provide your name and contact information.
    $69.9k-116.4k yearly Auto-Apply 60d+ ago
  • Information Security Analyst

    Vurke

    Information security analyst job in Philadelphia, PA

    About the Role: The Network Security Engineer will design, implement, and manage secure network infrastructure to ensure uninterrupted business operations. Responsibilities: Configure and maintain firewalls, VPNs, and IDS/IPS systems. Perform network security monitoring and incident response. Conduct penetration testing and simulate attacks to identify weaknesses. Harden routers, switches, and network devices. Optimize performance without compromising security. Requirements: 3+ years experience in network engineering/security. Strong knowledge of Cisco, Palo Alto, or Fortinet firewalls. Experience with network protocols (TCP/IP, DNS, SSL, VPN). CCNA Security, CCNP Security, or equivalent certifications. Required Skills: Information Security Security
    $80k-114k yearly est. 60d+ ago
  • 3014 - Specialist, Information System Security III (SISS3)

    AlakaʻI Services and Poe'Hana Group, Inc.

    Information security analyst job in Philadelphia, PA

    Provide senior-level cybersecurity and information system security support for Navy systems by leading RMF activities, security authorization packages, continuous monitoring, and cybersecurity compliance in support of mission operations. Key Responsibilities Lead and support RMF Steps 1-6 for assigned Navy information systems Develop and maintain SSPs, SAPs, SARs, POA&Ms, and security artifacts Coordinate system authorization activities with Authorizing Officials (AOs) Conduct risk assessments and vulnerability analysis Support continuous monitoring, audits, and inspections Advise leadership on cybersecurity risk and mitigation strategies Qualifications (Citizenship, Education, Experience, Skills) Citizenship: U.S. Citizenship required Education: Bachelor's degree in Cybersecurity, IT, or related field (or equivalent experience) Certification: Must possess and maintain a DoD 8140 / IAWF-approved Information Assurance Technical (IAT) Level II certification (e.g., CompTIA Security+ CE, CySA+, SSCP, GSEC, or equivalent) Experience: Minimum 8 years cybersecurity / ISS experience; 5+ years RMF support Skills: RMF; NIST 800-53; risk analysis; technical writing; coordination with government stakeholders Required Systems, Tools, and Framework Experience Frameworks: DoD RMF, NIST SP 800-53, 800-37, 800-30 Systems: eMASS, ACAS, HBSS, STIG Viewer Tools: Nessus, SCAP, vulnerability scanning tools Security Handling: CUI, controlled system documentation We are an Equal Opportunity Employer and strive to provide equal employment opportunity to all applicants and staff in accordance with sound employee relations practices and federal and state laws. All qualified applicants will receive consideration without regard to race, color, religion, sex, national origin, age, disability, veteran status, sexual orientation, gender identity or expression, marital status, ancestry, genetic information, pregnancy status, or any other characteristic protected by law.
    $80k-114k yearly est. 13d ago
  • Information Security Analyst - Advanced

    Integral Federal

    Information security analyst job in Maryland

    Provide IT systems administration and analytical support to TARCES projects-across all project phases (fielded, in production, modernization, modification, R&D)-serving both Department of Defense (DoD) and non DoD/FMS customers at NAS Patuxent River, Webster Field (WOLF), and affiliated mission areas. Responsibilities Ā· Plan, implement, upgrade, or monitor security measures for the protection of computer networks and information. Ā· Assess system vulnerabilities for security risks and propose and implement risk mitigation strategies. Ā· Ensure that appropriate security controls are in place that will safeguard digital files and vital electronic infrastructure. Ā· Respond to computer security breaches and viruses. Qualifications Required: MS degree in Information Technology, Cybersecurity, Data Science, Information Systems, or Computer Science, from an ABET accredited or CAE designated institution with 10 years' experience OR DoD Military Training: 4C-FA26A or M09CHN1 or A-531-0009 or A-531-0045 or (ACQ 160 + ISA 220) OR CISM or CISSO or FITSP-M or GCIA or GCSA or GCIH or GSLC or GICSP or CISSP-ISSMP or CISSP Top Secret/SCI Eligible Company Overview Integral partners with federal defense, intelligence, and civilian leaders to tackle their most important challenges and deliver positive outcomes. Since our founding in 1998, we have helped clients leverage existing and emerging technologies to transform their enterprises, empower growth, drive innovation, and build sustainable success. The forward-leaning solutions we deliver are tailored to each mission with a focus on keeping our nation safe and secure. Integral is headquartered in McLean, VA and serves clients throughout the country. We offer a comprehensive total rewards package including paid parental leave and immediate vesting in our 401(k). Give us a try and become part of a curated group of professionals at Integral Federal! Our package also includes: Ā· Medical, Dental & Vision Insurance Ā· Flexible Spending Accounts Ā· Short-Term and Long-Term Disability Insurance Ā· Life Insurance Ā· Paid Time Off & Holidays Ā· Earned Bonuses & Awards Ā· Professional Training Reimbursement Ā· Paid Parking Ā· Employee Assistance Program Equal Opportunity Employer/Protected Veteran/Disability
    $77k-109k yearly est. Auto-Apply 60d+ ago
  • Information Security Analyst - SME

    Zantech

    Information security analyst job in Camp Springs, MD

    Are you looking for your next challenge? Are you ready to work with a performance-based small company? At Zantech, we are a dynamic Woman Owned Small Business focused on providing complex, mission-focused solutions with a proven track record of outstanding customer performance and high employee satisfaction. We would love to talk with you regarding the next step in your career. Come join our team! Zantech is looking for a talented Information Security Analyst - SME to provide specialized cybersecurity expertise supporting risk management operations, conduct security assessments, implement continuous monitoring solutions, and develop training programs for an upcoming Hybrid role supporting USCIS based out of Camp Springs, MD. The SME will provide Continuous Process Improvement (CPI), Risk Management Operations Support, Continuous Monitoring and Internal Control Testing Support, Information Systems Security Officer (ISSO) Development, and Agile Security Services Surge Support. Responsibilities include, but will not be limited to: Conduct comprehensive security risk assessments and gap analyses Implement and maintain continuous monitoring solutions Perform security control testing and validation Develop and deliver specialized cybersecurity training programs Support incident response and vulnerability management activities Create security documentation and standard operating procedures Analyze security events and provide recommendations Support compliance audits and assessments Must be able to work in agile environment with competing priorities Expected to support multiple functional areas and cross-train May be required for surge support activities Required Experience or Knowledge of the following technologies/functions: 5+ years in information security, risk management, or cybersecurity operations Security risk assessment and analysis NIST frameworks (RMF, CSF, 800-53) implementation Vulnerability assessment and penetration testing Security Information and Event Management (SIEM) tools Incident response and forensics Security control implementation and testing Training development and delivery Required Certifications/Education: Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field Preferred Certifications/Education: Master's degree in Cybersecurity or related field Industry-recognized security training program Required Security Clearance: US Citizenship and the ability to obtain and maintain an active Public Trust or higher clearance, per contract requirements. ā€œOutstanding Performance…Always!ā€ Our corporate motto represents our commitment to build long-term relationships with both our clients and our employees by providing the highest quality service in everything we do. We strive for excellence for our clients and for each other. We embrace the opportunity to hire individuals with new talents and fresh perspectives. Zantech offers competitive compensation, strong benefits, and a vacation package, as well as a fast-paced and exciting work environment. Come join our team!
    $77k-109k yearly est. Auto-Apply 60d+ ago
  • Information Security Compliance Specialist

    Tactibit Technologies

    Information security analyst job in Suitland, MD

    Tactibit Technologies provides innovative information technology, cybersecurity, and cloud support services to the Federal Government. We support some of the nation's most critical and demanding projects including satellite operations, critical infrastructure, and search and rescue. We are a diverse team of hands-on professionals dedicated to solving problems and developing innovative solutions in support of our customers' critical missions. Our success is dependent on our inclusive, collaborative environment with a shared commitment to excellence in everything we do. About the Information Security Compliance Specialist position We are looking for a talented cybersecurity professional to join our team in Suitland, MD. You will provide information security support for NOAA's satellite operations missions. You will help develop and maintain effective security and risk management programs on complex government information systems. As an Information Security Compliance Specialist, you will be expected to document security control implementations, maintain a variety of security documents, and monitor the effectiveness of the overall security program. We expect you to have a passion for cybersecurity and attention to detail. You should have a desire to work with satellite data and products for the public and government. Besides, you should be able to perform well working in a team, along with system administrators, engineers and scientists. This position is located at a government facility in Suitland, MD. The position is eligible for a flexible work arrangement. Information Security Compliance Specialist responsibilities are: Provide overall cybersecurity program support to the Information System Security Officer (ISSO) and System Owner (SO) Provide security documentation support including documenting the implementation details of security controls in System Security Plans Identify and recommend technical or policy changes to improve security Plan, coordinate, and review technical artifacts to demonstrate the effectiveness of security controls Support security control assessments, penetration tests, and similar testing efforts by coordinating with stakeholders, communicating project plans, and providing guidance to technical and non-technical staff Write and maintain core security documentation including System Security Plans and Contingency Plans Plan, manage, and oversee Plans of Actions and Milestone (POA&Ms) Coordinate security efforts and improvements with stakeholders including system administrators and operations teams Monitor and report on vulnerability management program effectiveness including vulnerability scanning and patch management Coordinate responses to data calls, audits, and other external requests Coordinate security assessment efforts including Security Controls Assessments (SCAs), penetration testing, and risk assessments Plan, manage, and coordinate annual system assessment and authorization activities, to include continuous monitoring Information Security Compliance Specialist requirements are: 3+ years of cybersecurity experience Experience with Federal government environments and concepts including NIST Risk Management Framework, NIST SP 800-53 security controls, and DISA Security Technical Implementation Guides (STIGs) Strong problem solving skills and ability to work under pressure Strong written and verbal communication skills Ability to understand and explain complex security concepts and requirements to a variety of technical and non-technical personnel BS degree in Computer Science, Cybersecurity, or other related area Must be a US Citizen and eligible to obtain a security clearance Desired Qualifications are: Experience with government security assessment and management tools such as CSAM Experience with the NIST Risk Management Framework Experience with issue tracking and configuration management systems and processes Industry certifications such as CISSP, GIAC certifications, Security+, and others Experience with vulnerability management tools including Tenable Nessus Experience with continuous monitoring and log management tools including ArcSight, BigFix, ePolicy Orchestrator, and similar tools Active Secret security clearance
    $77k-109k yearly est. Auto-Apply 60d+ ago
  • Intrusion Analyst - Multiple Levels (TS/SCI with Polygraph required)

    Red Alpha

    Information security analyst job in Annapolis, MD

    A day in the life: As an Intrusion Analyst, you'll support critical missions through analysis of data derived from various network and telecom communication systems. Your responsibilities will include (but not be limited to): Analyze target digital network data to discover, analyze, and document malicious or unauthorized activity using information collected from a variety of SIGINT and computer network defense resources Analyze metadata collected from tasked communications systems in order to identify, locate, and track targets, and to accurately report the intelligence gained from metadata analysis Categorize traffic as benign, suspicious, or malicious activity Document malicious tactics, techniques, and procedures (TTPs) Develop and implement mitigation strategies What you bring to the table: Level 1: A Bachelor's degree in a technical discipline and 2+ years of relevant experience Experience in malware analysis Programming experience in C, C#, Java, Perl or Python is preferred An active TS/SCI with Polygraph Level 2: A Bachelor's degree in a technical discipline and 5+ years of relevant experience OR a Master's Degree and 3+ years of relevant experience CISSP, CEH, Sec+, Net+, GIAC GREM and/or CREA Certification Experience in malware analysis An active TS/SCI with Polygraph Level 3: A Bachelor's degree in a technical discipline and 8+ years of relevant experience OR a Master's Degree and 6+ years of relevant experience CISSP, CEH, Sec+, Net+, GIAC GREM and/or CREA Certification Experience in malware analysis An active US Government TS/SCI security clearance with Polygraph Bonus Skills: Level 1: CISSP, GIAC GREM or CREA Certification is preferred The total package: Our total compensation package was strategically designed with our members in mind with the intention to: reward our members for their hard work and commitment to our customers' missions; allow members to share in Red Alpha's success as we continue to grow and expand our footprint; provide long-term career opportunities through stability and internal mobility; and provide the resources our members need to support themselves and their dependents in the form of a robust benefits package. Our total compensation package includes a competitive base salary and benefits such as health, life/disability, 401k, paid time off, professional development, and generous bonus programs. Please visit our benefits tab for additional information. Salary Range: Disclosed pay ranges are a general guideline, and are not a guarantee of a final salary or compensation. Our approach in determining final salaries takes into consideration a number of factors such as education, certifications, total years of relevant professional experience, actual level of expertise, and the responsibilities of the role itself. Based on the outlined roles, responsibilities, and requirements, the projected pay range for these positions are: Level 1: $80,000 - $125,000 Level 2: $120,000 - $160,000 Level 3: $140,000 - $180,000 Level 4: $165,000 - $215,000 Some of our additional perks and benefits include: Retire sooner than planned: Get closer to retirement with up to 10% in 401k contributions, immediately vested. Have a career AND a life: Enjoy up to 5 weeks of leave (25 days of personal time off) and 11 paid floating holidays. Stay at your best: As a member, we'll pay 100% of your premiums for comprehensive health, dental, and vision insurance. We'll also pay the majority of the premiums for your family. Let's not forge free access to a fully equipped state of the art gym! Keep current on new technologies and technological advancements : $5250 per year towards ongoing education, trainings, certifications, and maintaining professional memberships. Dress in style: Spend up to $300 per year on company branded merchandise featuring top quality brands such as Under Armour, Nike, Carhartt, YETI, etc. Enjoy the culture: Attend fun company events throughout the year such as our Oktoberfest, summer picnic, and annual holiday party! These are all in additon to your team events which may include happy hours, baseball games, snowboarding, RenFest, and more! Every day, our elite customers are pushing through "the grind" to defeat the enemy, even putting their lives on the line for our freedom. Rise to the occasion with us to deliver engineering excellence, to match their dedication to this nation. Join us as we bring digital transformation to the fight!
    $165k-215k yearly Auto-Apply 60d+ ago
  • Specialist, Information System Security III (SISS3)

    Armada Ltd. 3.9company rating

    Information security analyst job in Philadelphia, PA

    Job Description Type: Full Time Overtime Exempt: Exempt Reports To: ARMADA HQ Travel Required: Yes Security Clearance Required: Active Secret Security Clearance ************CONTINGENT UPON AWARD*************** Duties & Responsibilities: Specialist, Information System Security III (SISS3) will conduct risk and vulnerability assessments of planned and installed systems to identify vulnerabilities, risks and protection needs; conduct systems security evaluation, audits, and reviews; determine the residual risk of a package based on package content and assessment results and documenting for the Security Controls Assessor's (SCA) and higher level review. Execute Security Assessment Plans (SAPs) by conducting on-site testing for afloat and PIT ashore systems. Examples include executing STIGs, SRGs, ACAS scanning, and applying patches assets to obtain cybersecurity compliance and remediate vulnerabilities. Specialist, Information System Security III (SISS3) will conduct systems security reviews, audits, or evaluations, as appropriate, to ensure accreditation documents are accurate and represent the current risk posture of the system. Perform analysis of logs, events, and reporting of various data collections tools including: vulnerability monitoring via Assured Compliance Assessment System (ACAS) and related tools, Host Based Security Systems (HBSS), web content filters, Security Information and event management (SIEM), firewall systems, network devices, server devices, workstations, and intrusion detection and prevention systems (ID/PS). Specialist, Information System Security III (SISS3) will assess impacts from observed risks and report via the Cybersecurity Program chain of command. Executing Security Assessment Plans (SAPs) by conducting on-site testing for afloat and PIT ashore systems. Examples include executing STIGs, SRGs, ACAS scanning, and applying patches assets to obtain cybersecurity compliance and remediate vulnerabilities. Perform the evaluation of system administrator, security engineer, and/or system owner proposed corrections to ensure compliance and best-fit solution. Specialist, Information System Security III (SISS3) will present and submit data to management, develop reports, and produce procedural documentation in a comprehensive and cohesive manner. Perform risk management and security engineering for Research, Development, Testing, and Evaluation (RDT&E) RMF Afloat systems include Information Assurance Vulnerability Management (IAVM) support, remediation, patching, scanning and associated boundary maintenance. Specialist, Information System Security III (SISS3) will document residual risks in a plan of actions and milestones formatted in compliance with the current package system, currently eMASS. Specialist, Information System Security III (SISS3) will maintain current vulnerability scan data and residual risk plan of actions and milestones in Vulnerability Remediation Asset Manager (VRAM). Manage, attend, and support configuration control board practices. Create and verify the accuracy of POA&Ms/RARs as identified by vulnerability actual test results. Specialist, Information System Security III (SISS3) shall write technical documentation such as user manuals, reports, documentation, policies, presentations, Plan of Action and Milestones (POA&Ms), risk assessments, proposals, outlines, and summaries in support of both ashore and afloat systems across multiple platforms. Support developing of technical documents across multiple platforms including configuration management, milestone, issue tracking, web site content management and RMF documentation. Specialist, Information System Security III (SISS3) may be required to travel CONUS (any state in USA) and OCONUS (primarily Japan, and any country in Europe). The estimated number of trips is 14 per year (estimated 25%-30% travel). Other duties as assigned. Knowledge, Skills, and Abilities (KSAs): Ability to travel CONUS (any state in USA) and OCONUS (primarily Japan, and any country in Europe). Proficient in Microsoft Windows Operating System Administration, including Windows 11, Windows 10, Windows 7, and Windows XP (at a minimum). Ability to work as a team member, communicate, perform office functions and use office tools, customer focused and deliver exceptional performance. Possess excellent organizational and file management skills and the ability to plan and execute administrative work with little supervision. Possess excellent oral and written communication skills. Required Certifications: Minimum of one (1) IAT Level II listed certificate required: CompTIA Security+ (CE) CompTIA CySA+ GIAC Security Essentials (GSEC) ISC² SSCP (Systems Security Certified Practitioner) Minimum/General Experience: Five (5) years of experience in the following: Cybersecurity, Engineering, Test and Evaluation (T&E) or Authorization and Assessment (A&A) (formerly C&A) related field. Information Assurance tools such as Defense Information Systems Agency (DISA) Enterprise Mission Assurance Support Service (eMASS), Assured Compliance Assessment Solution (ACAS). Command line interface, PowerShell, and performing automated tasking through use of code. Minimum Education: College degree in any technical discipline from an accredited college or university. Disclaimer: The above information has been designed to indicate the general nature and level of work to be performed. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities, and qualifications required of the contractor assigned to this position. Applying: If you feel you have the knowledge, skills and abilities for this position visit our careers page at ****************** Special Notes: Relocation is not available for these jobs ARMADA provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, gender identity or expression, national origin, age, disability, genetic information, marital status, amnesty, or status as a covered veteran in accordance with applicable federal, state and local laws. ARMADA complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment, including, but not limited to, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training. Must be able to successfully pass a background check, and pre-employment drug testing. Job offers are contingent upon results of background check and drug testing.
    $84k-127k yearly est. 2d ago
  • Intrusion Analyst

    Synergy ECP

    Information security analyst job in Columbia, MD

    Founded in 2007 and headquartered in Columbia, Maryland, Synergy ECP is a leading provider of cybersecurity, software and systems engineering and IT services to the U.S. intelligence and defense communities. The company leverages its expertise in data transport solutions, software and systems engineering, and other solutions to deliver critical and innovative capabilities to high-level decision makers that enhance our nation's security. In an ultra-competitive environment, Synergy ECP has thrived by adhering to our name, making sure excellence is displayed by our Employees, to our Customers and by Improving Performance (ECP). It's what sets us apart, enabling us to be an autonomous yet agile business that delivers huge results - showing we're ready to meet our customers' evolving demands. Synergy ECP has earned a client list that includes numerous Fortune 100 companies, in addition to multiple branches of the US government and military services. Synergy ECP is an equal opportunity employer and considers qualified applicants for employment without regard to race, color, creed, religion, national origin, sex, sexual orientation, gender identity and expression, age, disability, veteran status, or any other protected class. Requirements A Bachelor's degree and 5 years of relevant experience or a Master's degree plus 3 years of relevant experience or a Doctoral degree and 2 years of relevant experience. An Associate's degree plus 7 years of relevant experience may be considered for individuals with in-depth experience that is clearly related to the position. Degree must be in Computer Science, Computer Engineering, Information Systems, or related discipline from an accredited college or university. CISSP, CEH, Sec+, Net+, GIAC, GREM, or CREA Certification is required. Relevant experience must be in malware analysis. Programming experience in C, C#, C++, Java, Perl, or Python is preferred. Analyze target digital network data to discover, analyze, and document malicious or unauthorized activity using information collected from a variety of SIGINT and computer network defense resources. Analyze metadata collected from tasked communications systems in order to identify, locate, and track targets, and to accurately report the intelligence gained from metadata analysis. Categorize traffic as benign, suspicious, or malicious activity; and document malicious tactics, techniques, and procedures (TTPs). Develop and implement mitigation strategies. Have a network and/or host-based focus.
    $80k-112k yearly est. 60d+ ago
  • Visual Imagery Intrusion Detection System (VIIDS)

    Siertek

    Information security analyst job in Maryland

    SierTeK proudly serves our clients by providing expertise in the Program Management, Information Technology, and Administrative Support domains. Founded in 2007 as a minority and service-disabled veteran-owned company, we serve as prime- and subcontractor for a multitude of Federal Department of Defense contracts. By focusing on continual improvement, our services remain at the forefront of our industry, and we pride ourselves on delivering our services with the highest degree of integrity. SierTeK Ltd. is seeking a Visual Imagery Intrusion Detection System (VIIDS) to support an opportunity at Joint Base Andrews, MD. POSITION OVERVIEW SECTION The employee shall provide Tiers 2 and 3 support to install, configure, administer, manage, maintain/update and provide VIIDS support and repairs required to keep listed critical VIIDS systems and components fully operational. The employee shall ensure the VIIDS as a whole and all hardware and software components meet or exceed all applicable Government standards and regulations. The employee shall ensure all listed VIIDS, and components are kept updated to meet or exceed all industry standards and are fully functional. The employee shall maintain and keep current any relevant Government documentation on a SharePoint site or similar web/application-based tracking tool (on premise) for all VIIDS. Essential Job Functions Provide onsite emergency support to resolve any issues within 1 hour of notification by the Government to include outside normal duty hours. The Government will determine what constitutes an emergency on a case-by-case basis. Prepare and maintain project planning documentation, create, and maintain network maps/diagrams (static and active/dynamic which are maintained/updated continuously), and presentation material. Acceptable Formats are Adobe Acrobat and Visio. The employee shall provide these materials to the Government within three (3) business days of the request and follow all required document classification requirements. The employee shall provide a written monthly status report on the VIIDS repair and maintenance activities in a mutually agreed upon format. Qualifications Minimum Position Requirements 3+ years of experience in network design and administration and possess Cisco or equivalent certification, e.g., CCNA, CCNP. Individual(s) shall have advanced understanding of server maintenance and operation. Honeywell Vindicator Intrusion Detection System, Access Control, and Vindicator Command and Control certification and maintain active certification with Honeywell. Certification shall be maintained for the duration of the task order. Top Secret with capability of being upgraded to Yankee White SierTeK is an equal opportunity employer. Employment is decided based on qualifications, merit, and business need. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, protected Veteran status, gender identity and sexual orientation. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, transfer, leaves of absence, compensation, and training. If you need assistance or accommodation due to a disability, you may contact us at 1+************.
    $80k-112k yearly est. 9d ago
  • Visual Imagery Intrusion Detection System (VIIDS)

    Siertek Ltd.

    Information security analyst job in Maryland

    SierTeK proudly serves our clients by providing expertise in the Program Management, Information Technology, and Administrative Support domains. Founded in 2007 as a minority and service-disabled veteran-owned company, we serve as prime- and subcontractor for a multitude of Federal Department of Defense contracts. By focusing on continual improvement, our services remain at the forefront of our industry, and we pride ourselves on delivering our services with the highest degree of integrity. SierTeK Ltd. is seeking a Visual Imagery Intrusion Detection System (VIIDS) to support an opportunity at Joint Base Andrews, MD. POSITION OVERVIEW SECTION The employee shall provide Tiers 2 and 3 support to install, configure, administer, manage, maintain/update and provide VIIDS support and repairs required to keep listed critical VIIDS systems and components fully operational. The employee shall ensure the VIIDS as a whole and all hardware and software components meet or exceed all applicable Government standards and regulations. The employee shall ensure all listed VIIDS, and components are kept updated to meet or exceed all industry standards and are fully functional. The employee shall maintain and keep current any relevant Government documentation on a SharePoint site or similar web/application-based tracking tool (on premise) for all VIIDS. Essential Job Functions Provide onsite emergency support to resolve any issues within 1 hour of notification by the Government to include outside normal duty hours. The Government will determine what constitutes an emergency on a case-by-case basis. Prepare and maintain project planning documentation, create, and maintain network maps/diagrams (static and active/dynamic which are maintained/updated continuously), and presentation material. Acceptable Formats are Adobe Acrobat and Visio. The employee shall provide these materials to the Government within three (3) business days of the request and follow all required document classification requirements. The employee shall provide a written monthly status report on the VIIDS repair and maintenance activities in a mutually agreed upon format. Minimum Position Requirements * 3+ years of experience in network design and administration and possess Cisco or equivalent certification, e.g., CCNA, CCNP. Individual(s) shall have advanced understanding of server maintenance and operation. * Honeywell Vindicator Intrusion Detection System, Access Control, and Vindicator Command and Control certification and maintain active certification with Honeywell. Certification shall be maintained for the duration of the task order. * Top Secret with capability of being upgraded to Yankee White SierTeK is an equal opportunity employer. Employment is decided based on qualifications, merit, and business need. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, protected Veteran status, gender identity and sexual orientation. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, transfer, leaves of absence, compensation, and training. If you need assistance or accommodation due to a disability, you may contact us at 1+************.
    $80k-112k yearly est. 51d ago
  • Information Security Manager

    Howard Community College 4.1company rating

    Information security analyst job in Columbia, MD

    Bookmark this Posting Print Preview | Apply for this Job Details Information About Us Howard Community College (HCC) is an exciting place to work, learn, and grow! We are proud to have received the Great Colleges to Work For honor for 12 consecutive years, 2009-2020. Howard Community College values diversity among its faculty, staff and student population. We are an innovative institution that is committed to responding to the ever-changing needs and interests of a diverse and dynamic community. No matter where you want to go in your career, you can get there from here! Health Insurance * Multiple medical options with no annual deductible and low co‑pays; prescription drugs covered through mail‑order or retail pharmacies. * Vision coverage includes an annual eye exam and a generous frame allowance. * Dental plans offer low deductibles and reasonable annual maximums. Paid Time Off & Leave * 20 days of vacation per year for full‑time staff (capped at 30 days), with additional accrual tiers for other employee groups. * Spring break and winter break each add one extra week of paid vacation. * 4 days of personal leave per year (rolls into sick leave if unused). * 12 days of sick leave per year, unlimited carry‑forward. * Additional leave options include bereavement, organ‑donor, sabbatical (faculty & staff), and an emergency‑leave bank. Tuition Waiver * Full‑time budgeted employees receive a tuition waiver for Howard Community College courses taken during non‑working hours (subject to space availability and prior approval). On‑Site Amenities * Fitness center accessible to all staff. * Library with research resources and bestseller collection. CafĆ© offering a variety of food options and a quick‑service kiosk and parking is free for faculty and staff. Position Title Information Security Manager FLSA Exempt FT/PT Full Time Hours Per Week 37.5 Work Schedule Monday-Friday Grade 18 Compensation Range $84,559 Summary We are seeking a highly skilled and experienced Information Security Manager to lead our IT security team. The successful candidate will be responsible for developing and implementing comprehensive security strategies to protect our organization's information assets from cyber threats. Essential Role Responsibilities Security Strategy Development: * Develop and implement a robust information security strategy aligned with organizational goals. * Conduct regular risk assessments and security audits to identify and mitigate potential threats. Policy and Procedure Management: * Establish, enforce, and update security policies, procedures, and guidelines. * Ensure compliance with industry standards, regulations, and best practices. Team Leadership: * Manage and mentor a team of IT security professionals, providing guidance and support in their daily activities. * Foster a culture of security awareness and continuous improvement within the organization. Security Technology Management: * Oversee the implementation and maintenance of security technologies, including firewalls, intrusion detection/prevention systems (IDS/IPS), and antivirus software. * Stay current with emerging security technologies and trends to ensure the organization remains protected against new threats. Collaboration and Communication: * Collaborate with other departments to ensure security measures are integrated into all aspects of the organization's operations. * Communicate security risks and strategies to senior management and other stakeholders. Minimum Education Required Bachelor's degree Experience Required 5 Preferred Experience Education: * Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or a related field. A master's degree is preferred. Certifications: * Relevant certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or Certified Information Systems Auditor (CISA). Experience: * Minimum of five (5) years of experience in information security, with at least three (3) years in a managerial role. * Proven track record of developing and implementing successful security programs. Technical Skills: * In-depth knowledge of security frameworks (e.g., CIS) and best practices. * Proficiency with security technologies and tools, including firewalls, IDS/IPS, SIEM systems, and encryption methods. * Strong understanding of network protocols, operating systems, and application security. OTHER SKILLS * Excellent leadership and team management abilities. * Strong analytical and problem-solving skills. * Effective communication and interpersonal skills. Physical Demand Summary * This position may require occasional on-call duties and availability for emergency response. * Ability to work in a fast-paced, dynamic environment. Supervisory Position? Yes Division Information Technology Department Information Security Posting Detail Information Posting Number B556P Number of Vacancies 1 Best Consideration Date 11/14/2025 Job Open Date 10/29/2025 Job Close Date Continuous Recruitment? No Job Category Staff Benefits Summary Howard Community College offers competitive salaries, excellent medical and dental selections, tuition reimbursement and paid leave programs. As a participating member of the Maryland Retirement and Pension System, HCC offers two retirement options: The Pension, which requires a 7% employee contribution and The ORP, a 403(b) with a 7.25% employer contribution only. Employees in positions that do not require a bachelor's degree must participate in The Pension. Employees that possess a bachelor's degree and hold professional positions that require a bachelor's degree may choose to participate in either The Pension or The ORP. Applicant Instructions * Pre-employment criminal background investigation is a condition of employment. HCC is interested in all qualified applicants who are eligible to work in the United States. However, HCC will generally not sponsor applicants for work visas. Due to HCC policy, only employees living in states contiguous to Maryland are eligible for work at HCC and include Virginia, West Virginia, Washington DC, Pennsylvania. Candidates must live in the commutable area or willing to relocate at their own expense if offered the position because HCC does not offer relocation benefits. Please complete the entire HCC Employment Application (Candidates will be evaluated on completing the college's application in full). Quick Link for Internal Postings ********************************************** EEO Statement Howard Community College (HCC) is an Equal Employment Opportunity & Affirmative Action employer & values diversity within its faculty, staff & student population. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, gender, sexual orientation, gender identity, genetic information, disability or protected veteran status. HCC understands that persons with specific disabilities may need assistance with the job application process and/or with the interview process. For confidential assistance with the job application process, please contact the Office of Human Resources at ************. Reference Collection References Minimum Requests 3 Maximum Requests 3 Cut-off Date Special Instructions to Reference Provider Supplemental Questions Required fields are indicated with an asterisk (*). * * Do you have a bachelor's degree or higher? * Yes * No * * Do you have at least 5 years of related work experience, as defined in the position posting? * Yes * No Documents Needed to Apply Required Documents * Resume * Cover Letter Optional Documents
    $84.6k yearly 60d+ ago
  • Network Security Analyst

    Cymertek

    Information security analyst job in Annapolis, MD

    Network Security AnalystLOCATIONAnnapolis Junction, MD 20701CLEARANCETS/SCI Full Poly (Please note this position requires full U.S. Citizenship) KEY SUMMARYWe are looking for a detail-oriented and proactive Network Security Analyst to join our cybersecurity team. In this role, you will monitor, analyze, and protect the organization's network infrastructure against potential threats and vulnerabilities. You will be responsible for identifying security risks, responding to incidents, and implementing measures to safeguard sensitive information. Collaborating with cross-functional teams, you will play a key role in enhancing the organization's overall network security posture. The ideal candidate is passionate about cybersecurity, thrives in a dynamic environment, and is committed to staying ahead of emerging threats and technologies. *** Please note that our job openings are dynamic and can open or close quickly (much faster than we can publish). If you do not see an opening you are looking for, know that we see almost all types of positons. We strive to keep our listings up to date, but please consider submitting your current resume. Our team will work with you to identify the most recent opportunities that align with your skillset and career goals. We look forward to you joining our family. *** SIMILAR CAREER TITLESCybersecurity Analyst, Information Security Analyst, Security Operations Center (SOC) Analyst, Network Defense Analyst, Threat Intelligence Analyst, IT Security Specialist, Vulnerability Analyst, Incident Response Analyst, Security Monitoring Analyst, Cyber Defense Analyst, Infrastructure Security Analyst, etc.DEGREE (Level Desired) Bachelor's DegreeALTERNATE EXPERIENCEGeneral comment on degrees: Most contracts allow additional experience (4-5 years) in lieu of a Bachelor's Degree. Some contracts give 4-5 years experience credit for a Bachelor's Degree. Some contracts give 2 years experience credit for a Master's Degree. We will work with you to find the right fit.POSITION RESPONSIBILITIES Monitor network traffic for anomalies Investigate and resolve security incidents Maintain and update security systems Generate and analyze security reports Assist in developing incident response plans Ensure adherence to security policies REQUIRED SKILLS Proficiency in monitoring tools like IDS/IPS Strong analytical and problem-solving skills Understanding of network protocols (TCP/IP, DNS) Knowledge of malware analysis tools Ability to interpret security logs Familiarity with vulnerability scanning tools DESIRED SKILLS Experience with advanced threat detection Knowledge of forensics methodologies Understanding of regulatory frameworks (e.g., GDPR, HIPAA) Experience with SOC workflows Familiarity with automation and scripting Knowledge of threat intelligence platforms PLUG IN to CYMERTEK - And design your future... YOUR FOREVER CAREER STARTS HERE Are you looking for more than just a job? Join a company where employees are treated like family, and your career is built to last. We are a growing small business and a trusted federal contractor offering full scope consulting services in information technology, cybersecurity, and analyst workforce development. At our company, you come first. We're committed to creating an environment where you'll thrive professionally and personally. We provide meaningful, challenging work using cutting-edge technologies while investing in your growth and success. With direct access to company leadership, a laid-back and inclusive atmosphere, and exceptional work-life balance, you'll feel valued every day. We also believe in taking care of our family - both yours and ours. Our benefits are phenomenal, family-friendly, and designed with your well-being in mind. From employee and family events to career-long support, we create a community you'll never want to leave. Ready to make your next move the best one? Join us and experience the difference. BENEFITS Excellent Salaries Flexible Work Schedule Cafeteria Style Benefits 10% - 401k Matching (Vested Immediately) Additional 401k Profit Sharing 30 days Paid Leave/Holiday (No Use or Lose!) The day off for your birthday Medical/Dental/Vision - 100% employee coverage. ($1200 allowance - or a bonus) HSA/FSA AFLAC Long Term/Short Term Disability - 100% employee coverage. No cost to you. Life Insurance - 100% employee coverage. No cost to you. Additional Discretionary Life Insurance Paid Training No long, wordy reviews with tons of paperwork!!! Referral bonus program with recurring annual payments HOW TO APPLY Email us at ***************** or apply today: **************** Want to see what our employees think? Click here . EQUAL OPPORTUNITY EMPLOYER STATEMENT Cymertek is proud to be an Equal Opportunity Employer committed to fostering an inclusive and diverse workplace. We embrace and celebrate differences in our employees, recognizing that a diverse workforce enhances our creativity, innovation, and overall success. At Cymertek, employment decisions are made based on merit, qualifications, and business needs without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, veteran status, or any other characteristic protected by applicable laws. We believe in creating an environment where all individuals are treated with respect and dignity, and where opportunities for professional growth and advancement are accessible to everyone, regardless of background or identity.
    $66k-90k yearly est. Easy Apply 60d+ ago
  • IT Operations Analyst

    Reliance Savings Bank 3.7company rating

    Information security analyst job in Altoona, PA

    Reliance Bank is currently seeking an IT Operations Analyst to join our strong, friendly, community-focused team. This is an on-site position based at our headquarters office location in downtown Altoona, PA. Remote work arrangements are not currently available for this role. The IT Operations Analyst provides daily support and project leadership for a variety of key functions within the bank's IT operation. Key responsibilities include the following: IT Support: The IT Operations Analyst serves in a supportive capacity by assisting internal customers in troubleshooting and resolving a variety of issues and inquiries related to the bank's technology-based systems. This can range from providing basic computer instruction to more complex issues such as resolving system outages. Report Writing/Database Administration: Serve as the primary point of contact for all report writing and delivery functions at the bank. This includes leading the process of design, development, and distribution of reports for all levels of bank personnel Project Leadership: Plan, implement and successfully execute various bank-wide IT initiatives on an ongoing basis. Process Improvement: Continuously seek ways to improve business processes and create greater efficiencies bank-wide. Education/Skill Requirements: Our ideal candidate should hold a BA/BS or advanced certifications in Computer Science/Management Information Systems or related area of study (an equivalent combination of education and experience will also be considered). He/she should possess a strong customer-service orientation and approach to daily job duties; excellent written/verbal communication skills and problem-solving abilities; strong organizational skills; an ability to work effectively both independently and as part of a team; have proficient manual dexterity and eye-hand coordination; ability to bend, stand, sit, stoop, reach, walk up and down steps, lift and/or carry items weighing 50 lbs. or less; visual and auditory skills; valid driver's license. Experience Requirements: Prior work experience with computer systems and troubleshooting principles, methodologies, and issue resolution techniques is required. Familiarity with reporting software such as Microsoft SQL; working knowledge of relational databases such as Oracle, MSSQL, and Sybase. A basic understanding of banking and finance concepts is recommended for this role (more in-depth knowledge will be gained through training and hands-on work); prior experience working within the financial services industry a plus. Reliance Bank believes in investing in human capital and providing a welcoming atmosphere for employees. We offer an environment where employees have an opportunity to expand their skill sets, strive for career advancement, and participate in community involvement. Career perks include: Competitive salaries: Reliance Bank offers competitive compensation based on your qualifications and prevailing practices in the banking and finance sector. Benefits Package: Full-time employees are eligible to participate in our Medical, Dental, and Vision programs; receive company-paid group life insurance coverage as well as voluntary life insurance benefits; Short-Term and Long-Term Disability coverage; Retirement Savings: 401(k) with generous employer match plus discretionary contribution Professional Development: Opportunities to attend workshops, classes, or courses to further your professional competency and career. Paid Leave: Annual PTO days, 10+ paid holidays per year Other Benefits: Annual Bonus Program, Employee Wellness Program/Wellness Incentives, Employee Assistance Program, Fitness/Gym Reimbursements Reliance Bank is an Equal Opportunity/Affirmative Action employer.
    $75k-101k yearly est. Auto-Apply 60d+ ago
  • Lead Information Security Analyst

    Cnhs 3.9company rating

    Information security analyst job in Silver Spring, MD

    Lead Information Security Analyst - (250002LU) Description We are seeking a Lead Information Security Analyst to serve as our Incident Response/SOC SME, ideally with prior experience as a Security Incident Response Leader (SIRL). This role will lead incident response strategy and execution, with hands-on expertise in operational Splunk Enterprise Security (SIEM), Microsoft Defender security suite (including Endpoint, Identity, and Servers), and SOAR playbook automation. The successful candidate will be responsible for leading complex incident investigations, coordinating responses across IT and clinical teams, and driving ongoing improvements in security operations. You will also mentor SOC analysts, enhance detection capabilities, and ensure that lessons learned are integrated into practices. Incident Response Leadership (SIRL) Act as the Security Incident Response Leader during high-severity events, directing containment, remediation, and recovery efforts. Serve as the escalation point for SOC analysts and ensure timely, coordinated response actions. Develop and maintain incident response frameworks, including runbooks, playbooks, and post-incident reviews. Partner with executive leadership, clinical staff, and external stakeholders (law enforcement, MSSPs) to manage incident communications. Splunk Enterprise Security SMEMaintain and optimize Splunk ES detections, correlation rules, dashboards, and reporting. Guide SOC analysts on triage, alert enrichment, and threat-hunting practices. SOAR & AutomationBuild and manage security orchestration and automated response playbooks. Orchestrate integrations across SIEM, EDR, vulnerability management, and identity systems. . . etc. Documentation & ReportingProduce accurate documentation for incidents, including executive-level summaries and technical after-action reports. Ensure incident response processes and playbooks are continuously updated. Preparedness & TrainingLead tabletop exercises, red/blue team simulations, and cyber range events. Mentor and coach SOC analysts to elevate detection and response maturity. Qualifications Minimum EducationBachelor's degree in a computer science, math, engineering, or another relevant discipline or equivalent training and work experience (Required) Minimum Work Experience10+ years of experience in cybersecurity with a focus on vulnerability management, cybersecurity operations, analysis, forensics and/or investigations (Required) Required Skills/KnowledgeExperience leading in the application of key cybersecurity practices, controls, and frameworks Excellent written and verbal communication and presentation skills; interpersonal and collaborative skills; and the ability to communicate information risk-related concepts to technical as well as nontechnical audiences Experience leading cybersecurity auditing, compliance, and policy Experience leading cybersecurity risk assessments, vulnerability management, penetration testing, and threat identification. Experience leading the management of access controls including identity, active directory, privileged account management, and authentication Experience leading cybersecurity incident response, risk remediation, business continuity, disaster recovery, and cyber operations. Functional AccountabilitiesCybersecurity AnalysisOversees the Identification, documentation, and reporting of cybersecurity risks Leads the development of Information Security policies, standards, and procedures. Leads engagement with senior leaders of CNH business units to ensure security of assets, applications, and data Leads the application of procedures and systems associated with managing access to CNH systems, data, and other assets Leads the execution of responses associated with cybersecurity incidents, as required Primary Location: Maryland-Silver SpringWork Locations: Inventa Towers 1 Inventa Place Silver Spring 20910Job: Information TechnologyOrganization: OperationsPosition Status: R (Regular) - FT - Full-TimeShift: DayWork Schedule: 8-5Job Posting: Sep 15, 2025, 6:57:58 PMFull-Time Salary Range: 128452 - 214087
    $62k-75k yearly est. Auto-Apply 1d ago

Learn more about information security analyst jobs

How much does an information security analyst earn in Johnstown, PA?

The average information security analyst in Johnstown, PA earns between $68,000 and $131,000 annually. This compares to the national average information security analyst range of $71,000 to $135,000.

Average information security analyst salary in Johnstown, PA

$94,000
Job type you want
Full Time
Part Time
Internship
Temporary