Post job

Network security analyst jobs near me - 2,316 jobs

jobs
Let us run your job search
Sit back and relax while we apply to 100s of jobs for you - $25
  • Lead Cyber Threat Analyst

    Directviz Solutions, LLC 3.6company rating

    Network security analyst job in Washington, DC

    DirectViz Solutions, (DVS) is a rapidly growing government contractor that provides strategic services that meet mission IT needs for government customers. DVS offers competitive compensation, comprehensive medical plans, 401k match, PTO accrual, professional development reimbursement, corporate-funded technology certifications, and employee recognition programs. At DVS, we recognize that our employees are our number one resource. If you are a problem-solving people-person, apply today! Location Washington, DC Position Lead Cyber Threat Analyst Location: Washington, DC Position Summary The Lead Cyber Threat Analyst serves as the technical and operational lead for enterprise cybersecurity operations, overseeing approximately 63 systems and ensuring compliance with all federal security standards. This role drives the organization\'s threat detection, analysis, and response strategy, leads the Computer Security Incident Response Center (CSIRC), and manages enterprise security monitoring tools within the Enterprise Security Operations Center (ESOC). The position requires deep expertise in cybersecurity frameworks, threat intelligence, and vulnerability management, combined with strong leadership, analytical, and communication skills to guide analysts, coordinate incident response, and safeguard sensitive financial and operational systems. Key Responsibilities Lead enterprise-wide cybersecurity operations across ~63 systems, ensuring continuous protection and compliance with federal security standards. Oversee daily security monitoring, analysis, and response activities within the ESOC. Direct 24/7 CSIRC operations, including incident triage, containment, and recovery. Develop and maintain comprehensive security documentation, including System Security Plans (SSPs), Privacy Impact Assessments (PIAs), and RMF artifacts. Conduct annual Security Control Assessments (SCAs) and evaluate new systems and applications. Identify, track, and remediate vulnerabilities and risks across enterprise environments. Develop and maintain a real-time Cyber Threat Dashboard for senior leadership reporting and situational awareness. Lead the Vulnerability Management Program, including prioritization, patching, and remediation oversight. Monitor and analyze network traffic for potential intrusions, unauthorized activity, and anomalous behavior. Manage security tools, threat intelligence feeds, and automation solutions supporting the ESOC mission. Provide training, mentoring, and technical guidance to cybersecurity analysts and SOC staff. Oversee incident handling involving Personally Identifiable Information (PII) and ensure proper documentation and escalation. Collaborate with cross-functional and government stakeholders to align operations with NIST, FISMA, and organizational security policies. Support the protection and compliance of financial systems under the OCFO through proactive risk management. Maintain system and application security posture, ensuring ongoing compliance and operational integrity. Qualifications Bachelor\'s degree in Computer Science, Information Technology, Engineering, or a related field. Minimum of 10 years of progressive IT or technology experience, including at least 5 years within the past decade supporting large-scale federal technical contracts. At least 7 years of cybersecurity experience, with 5 years focused on threat analysis in SOC or CSIRC environments supporting government systems. Required Certification: Certified Information Systems Security Professional (CISSP). Preferred Certifications: GIAC Certified Intrusion Analyst (GCIA), Certified Ethical Hacker (CEH), CompTIA Cybersecurity Analyst (CySA+). Required: Information Technology Infrastructure Library (ITIL) 4 Foundation certification. Strong understanding of cybersecurity frameworks and principles (NIST 800-53, FISMA, RMF, ISO 27001). Proven experience with enterprise risk management, incident response, and vulnerability remediation. Excellent analytical and problem-solving skills, with strong attention to detail. Effective communication and interpersonal skills to collaborate across technical, executive, and federal teams. Ability to lead multiple projects simultaneously and deliver results under tight deadlines. Physical and Mental Qualifications Be able to maintain awareness during scheduled working hours. Prolonged periods sitting or standing at desk and working on a computer (mouse and keyboard). Able to lift up to 15 pounds. Excellent verbal and written communication; good command of the English language. Execute tasks independently and work as a team. Learns and memories routine tasks. Strong organizational, grammar, business correspondence, and self-management skills. Candidates must be able to perform the essential functions of the position satisfactorily. If requested, reasonable accommodation will be provided for employees with disabilities. DVS retains the right to change or assign other duties to this position. Equal Opportunity DirectViz Solutions, LLC (DVS) is an equal opportunity employer and prohibits discrimination and harassment against any employee or applicant for employment because of race, color, sex (including pregnancy), age, gender identity, creed, religion, national origin, sexual orientation, marital status, genetic information, disability, political affiliation, protected veteran status, or any other status protected by federal, state or local law. DVS has a zero-tolerance policy for harassment, threats, coercion, discrimination, and intimidation. Employees may file a complaint or exercise any right protected by Executive Order 11246, Section 503 of the Rehabilitation Act of 1973, as amended, Section 4212 of the Vietnam Era Veterans Readjustment Assistance Act of 1974, or the Veterans Employment Opportunities Act of 1998. #J-18808-Ljbffr
    $87k-115k yearly est. 1d ago
  • Job icon imageJob icon image 2

    Looking for a job?

    Let Zippia find it for you.

  • Hybrid Security Engineer - Federal IT & Azure CI/CD

    Edgewater Federal Solutions

    Remote network security analyst job

    A government contracting firm in Washington DC is seeking a Security Engineer to support federal customers. This is a hybrid position requiring onsite work four to six days a month. The ideal candidate will have a strong background in security processes, active directory management, and Azure ecosystem. Applicants should possess a bachelor's degree and relevant certifications, with 7+ years of IT experience, including 3 years in cybersecurity. A competitive salary between $100,000 and $110,000 is offered. #J-18808-Ljbffr
    $100k-110k yearly 3d ago
  • Lead Cyber Threat Analyst

    Emergencymd

    Network security analyst job in Washington, DC

    Evolver Federal is seeking a Lead Cyber Threat Analyst to fulfil a requirement for a potential government client. The Lead Cyber Threat Analyst is responsible for identifying, analyzing, and mitigating advanced cyber threats targeting federal systems and critical infrastructure. This role focuses on proactive threat hunting, intelligence analysis, and developing strategies to detect and disrupt adversary tactics, techniques, and procedures (TTPs). The Lead Cyber Threat Analyst will lead a team of analysts, collaborate with SOC and incident response teams, and provide actionable intelligence to strengthen the organization's cybersecurity posture. This position requires deep expertise in threat analysis, malware research, and adversary emulation within highly regulated environments. Responsibilities Lead cyber threat analysis and intelligence operations to identify emerging threats and vulnerabilities. Conduct proactive threat hunting across enterprise and cloud environments using advanced analytics. Analyze adversary TTPs and develop detection strategies aligned with MITRE ATT&CK framework. Oversee malware analysis, reverse engineering, and forensic investigations for complex incidents. Integrate threat intelligence feeds into SOC workflows and detection platforms. Leverage AI-driven threat detection techniques to enhance predictive and adaptive security capabilities. Apply Zero Trust principles across detection, response, and access control strategies to strengthen enterprise resilience. Implement cloud-native security solutions to safeguard workloads and data in multi-cloud environments. Prepare and deliver executive-level threat reports, risk assessments, and strategic recommendations. Collaborate with SOC, incident response, and engineering teams to enhance detection and response capabilities. Maintain and update threat intelligence platforms and knowledge bases. Support development of playbooks for threat hunting and incident response automation. Ensure compliance with federal cybersecurity frameworks (NIST 800-series, RMF, TIC 3.0). Mentor and coach junior analysts to develop technical expertise and career growth. Manage cross-functional SOC projects, ensuring alignment between threat analysis, incident response, and engineering teams. Drive process improvements and best practices across SOC operations to enhance efficiency and resilience. Basic Qualifications Bachelor's Degree in Computer Science, Information Management (IM), Information Technology, Engineering, or equivalent with 6 years of technical experience and 4 years' experience in IT Solutions at senior management Certified Information Systems Security Professional (CISSP) Certified Security Analyst, Certified Ethical Hacker, or similar certifications Project Management Institute (PMI) Project Management Professional (PMP) (Highly Recommended) Information Technology Infrastructure Library (ITIL) 4 Foundation 10 years of successful enterprise experience in an IT or technology-related field, with the last 5 years, on large government technical BPAs/contracts US Citizen with the ability to pass a comprehensive government background check Preferred Qualifications Experience managing or supporting cybersecurity operations, including SOC functions, in a federal or highly regulated environment Experience leading cybersecurity programs within federal civilian agencies Master's degree in a technical or management-related field GIAC (GCTI, GCFA) or AWS/Azure security certifications Knowledge of RMF, NIST 800-series, OMB A-130, and TIC 3.0 policies Experience with performance-based contracts and cross-functional team leadership Strong communication skills, including experience delivering executive briefings and incident communications Expertise in threat intelligence platforms (TIPs) and SIEM tools (Splunk, Elastic). Familiarity with SOAR platforms and automation for threat detection and response. Experience with malware reverse engineering and memory forensics. Strong knowledge of MITRE ATT&CK, Cyber Kill Chain, and threat modeling methodologies. Hands-on experience with cloud threat analysis (AWS, Azure, GCP) and container security. Ability to lead advanced threat hunting campaigns and mentor junior analysts. Understanding of nation-state threat actors and advanced persistent threats (APTs). Experience integrating threat intelligence into vulnerability management and risk scoring. Knowledge of scripting languages (Python, PowerShell) for automation and custom detection. Evolver Federal is an equal opportunity employer and welcomes all job seekers. It is the policy of Evolver Federal not to discriminate based on race, color, ancestry, religion, gender, age, national origin, gender identity or expression, sexual orientation, genetic factors, pregnancy, physical or mental disability, military/veteran status, or any other factor protected by law. Actual salary will depend on factors such as skills, qualifications, experience, market and work location. Evolver Federal offers competitive benefits, including health, dental and vision insurance, 401(k), flexible spending account, and paid leave (including PTO and parental leave) in accordance with our applicable plans and policies. #J-18808-Ljbffr
    $82k-111k yearly est. 1d ago
  • Senior Backend Engineer - Remote API & Security (Java/Spring)

    Knowledge Management, Inc. 3.9company rating

    Remote network security analyst job

    A technology solutions provider seeks a Senior Backend/Middleware Engineer to develop secure, high-performance API and middleware solutions. This remote role requires expertise in Java and Spring Boot, with responsibilities including designing RESTful APIs and implementing security protocols. Ideal candidates will have experience with OAuth 2.0, OpenID Connect, and authorization principles. Benefits include health insurance, 401(k), and paid time off. #J-18808-Ljbffr
    $109k-150k yearly est. 5d ago
  • Cyber Security Engineer - Impact in Cloud & On-Prem

    Leidos 4.7company rating

    Network security analyst job in Bethesda, MD

    A leading technology solutions provider in Bethesda, MD is seeking a Cyber Security Engineer to deliver expertise and support in cloud and on-premises security infrastructures. The ideal candidate will have a minimum of a BS degree and 8+ years of relevant experience, coupled with strong analytical and problem-solving skills. This position requires an active TS/SCI clearance and at least one IAT Level II certification. Opportunities for additional responsibilities and certifications available. Join a team that values innovation and collaboration. #J-18808-Ljbffr
    $76k-98k yearly est. 1d ago
  • Malware Defense Analyst: Threat Hunter & Researcher

    Bank of America 4.7company rating

    Network security analyst job in Washington, DC

    A leading financial institution in Washington, DC is seeking a cybersecurity expert to enhance its malware defense team. Responsibilities include analyzing malware, tracking campaigns, and authoring reports. The ideal candidate must possess strong malware analysis skills, experience in creating analytical tools, and a solid understanding of network traffic analysis. This position offers an annual salary between $95,700.00 and $144,900.00 based on experience, alongside robust benefits aimed at ensuring employee wellness. #J-18808-Ljbffr
    $95.7k-144.9k yearly 2d ago
  • Firewall Security Engineer

    Novacoast 3.9company rating

    Network security analyst job in Washington, DC

    Novacoast Staffing is currently assisting a financial government institution in its search for an experienced Firewall Security Engineer that is experienced in Palo Alto Firewalls for a contract role that is expected to go a minimum of 2 years with option to extend. This is a hybrid role with a few days onsite in Alexandria VA and a pay range of 60-68/ hour. To qualify for this role, you must be able to pass an extensive federal background check. Qualifications To qualify for this position, you must have at least 5 years of experience with Palo Alto Next Generation firewalls, Zero Trust, and strong knowledge of advanced firewall features such as Wildfire, App-ID, User-ID, Global Protect, Security, and NAT policies, within Cloud environments. Responsibilities In this role, you will be responsible for the design, administrations, and management of Palo Alto Firewalls using Centralized Panorama Management. You will also be responsible for configuration and troubleshooting IPSEC site-to-site VPNs and SSL decryption on Palo Alto Firewalls. Requirements 5+ years experience with Palo Alto next-generation Firewalls and working in cloud and Zero Trust environments Strong knowledge of advanced firewall features such as Wildfire, App-ID, User-ID, Global Protect, Security and NAT policies Expert level knowledge in the design, administration of Palo Alto Firewalls using Centralized Panorama Management Expert level knowledge in configuration and troubleshooting IPSEC Site-to-Site VPNs US Citizenship is required due to the position being with a Federal Client If this role is aligned with your next career move, submit your resume today for immediate consideration! Job Type: Contract Pay: $60.00 - $68.00 per hour #J-18808-Ljbffr
    $60-68 hourly 5d ago
  • Cybersecurity Systems Engineer: Distributed Security

    Booz Allen Hamilton 4.9company rating

    Network security analyst job in Washington, DC

    A consulting firm in Washington, DC is seeking a skilled cybersecurity systems engineer who will design and maintain security architectures to support critical missions. Responsibilities include implementing security solutions, analyzing cybersecurity threats, and leveraging cutting-edge technologies to ensure optimal security measures. The ideal candidate will have experience with EDR tools and a thorough understanding of cybersecurity trends. This position offers opportunities for growth in a people-first culture. #J-18808-Ljbffr
    $84k-110k yearly est. 3d ago
  • Lead Security Engineer - Federal Cyber Operations

    Teksynap

    Network security analyst job in Washington, DC

    A high-tech company is seeking a Lead Security Engineer to oversee cybersecurity operations within the DC area. The ideal candidate will lead efforts to ensure compliance with federal security standards while managing vulnerabilities and incidents. Qualifications include a Bachelor's in Cybersecurity, 8-10 years of relevant experience, and necessary security clearances. The position offers a competitive benefits package, including health and retirement plans, within an office setting with occasional travel expectations. #J-18808-Ljbffr
    $73k-99k yearly est. 4d ago
  • Junior Information System Security Officer

    Mantech 4.5company rating

    Network security analyst job in Washington, DC

    MANTECH seeks a motivated, career and customer-oriented Junior Information System Security Officer (ISSO) to join our team in Washington, D.C. Responsibilities include, but are not limited to: Ensure the day-to-day implementation, oversight, continuous monitoring, and maintenance of the security configuration, practices, and procedures for each IS. Ensure that selected security controls are implemented and operating as intended during all phases of the IS lifecycle. Ensure that system security documentation is developed, maintained, reviewed, and updated on a continuous basis Provide liaison support between the system owner and other IS security personnel. Conduct required IS vulnerability scans according to risk assessment parameters. Develop Plan of Action and Milestones (POAMs) in response to reported security vulnerabilities Manage the risks to ISs and other FBI assets by coordinating appropriate correction or mitigation actions and oversee and track the timely completion of (POAMs). Coordinate system owner concurrence for correction or mitigation actions. Monitor security controls for FBI ISs to maintain security Authorized to Operate (ATO) Upload all security control evidence to the Governance, Risk, and Compliance (GRC) application to support security control implementation during the monitoring phase Ensure that changes to an FBI IS, its environment, and/or operational needs that may affect the authorization status are reported to the system owner and IS Security Manager (ISSM). Ensure the removal and retirement of ISs being decommissioned in coordination with the system owner, ISSM, and ISSR Minimum Qualifications: At least 3 years' experience performing duties of an Information Systems Security Officer (ISSO) at a cleared facility At least 5 years of work experience in a computer science or cybersecurity related field Hold at least one of the following certifications: Certified Information Systems Security Professional (CISSP), Global Information Security Professional (GISP), or the CompTIA Advanced Security Practitioner (CASP) or Information Assurance Management (IAM) Level II proficiency Familiarity with the use and operation of security tools including Tenable Nessus and/or Security Center, IBM Guardium, HP Weblnspect, Network Mapper (NMAP), and/or similar applications Preferred Qualifications: A bachelor's or advanced degree in Computer Science, Cybersecurity, or other cyber discipline Clearance Requirements: Must have a current/active Top Secret security clearance with eligibility to obtain SCI. Selected candidate must be willing to undergo a Polygraph. Physical Requirements: Must be able to remain in a stationary position 50% Needs to occasionally move about inside the office to access file cabinets, office machinery, etc. Constantly operates a computer and other office productivity machinery, such as a calculator, copy machine and computer printer Often positions self to maintain computers in the lab, including under the desks and in the server closet Frequently communicates with co-workers, management and customers, which may involve delivering presentations. Must be able to exchange accurate information in these situations
    $60k-81k yearly est. 1d ago
  • Information Security Engineer

    Arnold & Porter LLP 4.9company rating

    Network security analyst job in Washington, DC

    The Information Technology Department of Arnold & Porter has an opening for an Information Security Engineer in the Washington, DC office or may work 100% virtual/remote in a firm-approved U.S. state as part of the “Gideon” office. The Information Security Engineer is a technical security expert responsible for supporting security operations, engineering, and architecture functions and efforts for Arnold & Porter. Under the direction of the Manager of Information Security, the Information Security Engineer helps to ensure the overall security posture of the firm, and is expected to be involved in day-to-day security operations and contribute to ensuring the integrity and availability of the firm's IT and application infrastructure and the confidentiality, integrity, and availability of the firm's data in support of enterprise IT objectives and client service delivery needs. Responsibilities Security Operations Performing security log and event analysis using EDR, SIEM and log aggregation systems. Monitoring and proactively executing the vulnerability management program to prevent or reduce IT hygiene risk issues from impacting production systems. Maintaining and managing security toolsets such as Application control systems, EDR/AV, Email Security platform, Attack simulation platform, Threat intelligence/hunting, and Security related artificial intelligence tools. Supporting security incident response and investigation efforts as directed. Helping validate and track IT operational activities to ensure compliance with policy, standards, and other applicable requirements. Researching and identifying security vulnerabilities and relevant industry/cybersecurity trends for follow-up and action. Regularly reporting and tracking IT security events and metrics along with remediation activities. Helping support third‑party risk management efforts as assigned. Helping support the firm security awareness training program as assigned. Helping support the firm's IT Compliance efforts as assigned. Participating in IT Security on‑call rotation. Security Engineering & Architecture Advising and assisting with planning of security systems and standards by evaluating network and security technologies, developing security requirements for the enterprise infrastructure, and maintaining overall user access and data protection control. Reviewing newly requested applications and SaaS and application changes for security impacts and possible remediation to address security risk. Actively participating in the enterprise Change Advisory Board (CAB). Conducting research and providing recommendations on methods, software, and technologies to mitigate risk exposures. Helping to develop and contribute to security policies, standards and procedures. Qualifications Education/Experience Four‑year college degree preferred; equivalent experience will be considered. Minimum of three (3) years of experience in Information Security, or equivalent experience in IT-related fields with secondary security responsibilities. Technical Skills Experience and understanding of Windows, Unix/Linux, and Active Directory. Solid understanding of core networking protocols, including TCP/IP, UDP, DNS, DHCP, HTTP/HTTPS, and routing protocols. Experience and technical knowledge in security engineering, system and network security, authentication and security protocols, cryptography, application security, and cloud security. Proficient in Windows operating systems, Microsoft Office Suite, and related software. Skilled in leveraging artificial intelligence tools for daily work. Strong remote collaboration capabilities. Communication & Writing Communicate complex technical information clearly to non-technical audiences. Excellent oral and written communication, including reports, business correspondence, and procedure manuals. Effective presenter to diverse groups, including managers, clients, and the public. Ability to identify and apply the appropriate method of communication. Professionalism & Judgment Strong personal initiative, judgment, and professionalism. High level of confidentiality and discretion. Exceptional client service for both internal and external stakeholders. Problem‑Solving & Strategic Focus Strong problem‑solving skills and strategic thinking. Ability to define goals, prioritize tasks, and follow through to achieve results. Detail‑oriented with excellent organizational and time‑management skills. Capable of handling multiple tasks in fast‑paced environments. Flexibility & Commitment Reliable, dependable, and motivated. Flexible to work additional hours as needed. Willingness to travel (1-4 weeks per year, or more if required). The anticipated base salary for this position is $122,000 to $160,000. The actual base salary offered will depend on a variety of factors, including, without limitation, the qualifications of the individual applicant for the position, years of relevant experience, level of education attained, certifications or other professional licenses held, and if applicable, the location in which the applicant lives and/or from which they will be performing the job. The firm may provide a discretionary bonus annually. Arnold & Porter is an equal opportunity employer that does not discriminate on the basis of race, color, creed, religion, national origin, sex, pregnancy and childbirth (including breastfeeding and related medical conditions), age, marital or partnership status, familial status, sexual orientation, gender, gender identity, gender expression, transgender, physical or mental disability, medical condition, family leave status, citizenship status, immigration status, ancestry, genetic information, military or veteran status, or any other characteristic protected by local, state or federal laws, rules or regulations. Our Firm's equal opportunity policy applies to all employment practices and terms and conditions, including, without limitation, recruitment, employment, assignment, training, compensation, benefits, promotions, disciplinary action and terminations. For purposes of the firm's Anti-discrimination and Anti-harassment Policies, the term "race" includes, without limitation, traits historically associated with race, including, but not limited to, hair texture and protective hairstyles, such as braids, locks, and twists. #J-18808-Ljbffr
    $122k-160k yearly 5d ago
  • Senior AWS Network & Cloud Security Architect

    Phase2 Technology 3.9company rating

    Network security analyst job in Washington, DC

    A leading cloud security firm in Washington, DC is hiring a Senior AWS Network Architect. You will architect and manage complex AWS networks, ensuring cloud safety for critical operations. Candidates should have extensive experience in AWS, Palo Alto firewalls, and Zero Trust principles. The role includes mentoring junior experts and providing guidance on security architecture. Company offers competitive benefits and a flexible work model. #J-18808-Ljbffr
    $97k-130k yearly est. 1d ago
  • Senior Network & Security Consultant - Remote

    Thales Group 4.5company rating

    Remote network security analyst job

    A leading global security company in California is seeking a Consultant for Network & Security. Key responsibilities include acting as a technical advisor, defining architecture for solutions, and supporting operational teams. Ideal candidates should have expertise in firewalls, encryption, and IT security practices. The role offers hybrid working conditions and emphasizes continuous learning and coaching. #J-18808-Ljbffr
    $104k-138k yearly est. 3d ago
  • Senior Information Security Engineer / Vulnerability Manager

    C2 Labs, Inc.

    Network security analyst job in Washington, DC

    C2 Labs, Inc. - ************** C2 Labs partners with clients on their IT transformation journey via our industry-leading capabilities in full stack development, hyper-automation/DevOps, and cybersecurity compliance. We provide specialized products and services that enable clients to innovate with speed and scale while maintaining a robust and effective security posture. As digital transformation partners, we address the most urgent needs holding back our clients, including proactively addressing cultural change, quantifying risk, automating compliance, and closing critical skill gaps. Job Duties As a Senior Information Security Engineer / Vulnerability Manager, you will lead efforts to identify, assess, and mitigate security vulnerabilities across complex enterprise IT environments. Responsibilities include: Vulnerability & Threat Management Manage enterprise vulnerability management platforms (e.g., Tenable, Qualys, Rapid7) and ensure timely scanning, reporting, and remediation tracking. Perform risk-based analysis of vulnerabilities, develop mitigation plans, and escalate issues requiring urgent remediation. Integrate threat intelligence to prioritize vulnerabilities based on exploitability, industry trends, and business impact. Establish and maintain vulnerability KPIs, metrics, and executive reporting dashboards. Security Engineering Design, implement, and maintain security controls and safeguards across networks, endpoints, and cloud environments (AWS, Azure, or hybrid). Automate security operations tasks using scripts or tools (Python, PowerShell, Bash, or AWS Lambda). Collaborate with IT and DevOps teams to integrate vulnerability management into CI/CD pipelines and cloud workloads. Conduct regular security assessments, penetration test remediation support, and continuous monitoring activities. Governance, Risk, & Compliance Support compliance with federal frameworks (FedRAMP, NIST SP 800-53, NIST SP 800-171/CMMC, FISMA, etc.). Document processes, remediation plans, and compliance evidence in alignment with client requirements. Provide recommendations for continuous improvement of security posture and policy enforcement. Collaboration & Leadership Partner with cross-functional teams (IT, Development, Operations, and Compliance) to ensure vulnerabilities are remediated in a timely, risk-based manner. Provide technical leadership and mentorship to junior security engineers and analysts. Participate in client-facing meetings and presentations as a subject matter expert in vulnerability and threat management. Education, Training, Qualifications, and Certifications Required: U.S. Citizenship and ability to obtain/maintain Public Trust clearance Bachelor's degree in Computer Science, Cybersecurity, or related field OR 5+ years of equivalent hands-on experience Proven experience in vulnerability management, security engineering, or penetration testing Strong knowledge of IT infrastructure, networking, and cloud environments (AWS preferred) Familiarity with security automation, scripting (Python, PowerShell, Bash), and infrastructure-as-code principles Excellent analytical, problem-solving, and communication skills Background check and unannounced drug testing required. This position is onsite in Washington, DC, with occasional travel (up to 25%) for client meetings and work assignments. Preferred: Professional certifications such as CISSP, CISM, OSCP, CEH, Security+, or AWS Security Specialty Experience with compliance frameworks (FedRAMP, NIST 800-53, CMMC) Background in DevSecOps practices, continuous monitoring, and automation EOE STATEMENT: We are an equal opportunity employer. All qualified applicants will be considered without discrimination based on race, color, religion, sex, national origin, age, disability, or protected veteran status. Employment offers will be contingent on passing a pre-employment drug screen. #J-18808-Ljbffr
    $103k-139k yearly est. 3d ago
  • Cybersecurity and Network Security Engineer

    Dynanet

    Network security analyst job in Bethesda, MD

    Job Title: Cybersecurity and Network Security Engineer Job Type: Full-time Dynanet started with a focus on IT infrastructure and operations, helping organizations enhance their networks and overcome the limitations of 1990s technology. From strengthening communication channels to introducing innovative ways to collaborate and share information, Dynanet played a crucial role in shaping the early stages of digital transformation. The company's efforts helped organizations build the very fabric of connectivity that now powers our modern world. Over the last three decades, Dynanet has grown into a trusted partner for organizations looking to innovate boldly and transform seamlessly. While technology continues to evolve and unlock new opportunities, for nearly 30 years, Dynanet remains committed to delivering cutting-edge solutions that drive lasting change for its customers. Through agility, foresight, and an unwavering dedication to excellence, Dynanet continues to empower organizations to thrive in a rapidly changing digital landscape. Our story is more than just a story of technology - it's a story of vision, growth, and transformation that has shaped the past and continues to pave the way for the future. Taking inventory of client's hardware & software assets and assessing those assets for security vulnerabilities, obsolescence, and other risks. Reviewing network architectures and determining if good practices are being followed (e.g., the “zones & conduits” concept, proper network segmentation, use of Industrial DMZ, etc.); and providing recommendations to comply with applicable cybersecurity framework. Reviewing security products utilized (e.g., firewalls, IDS, IPS) and determining if they are configured properly. Deploying network infrastructure devices (e.g., switches, routers, etc.), security appliances (e.g., firewalls, IDS, etc.), and virtualization solutions. Reviewing US government cyber security policies, plans, and procedures; assessing network monitoring capabilities; analyzing system logs, security events, and packet captures to identify security threats; and providing recommendations to comply with applicable cybersecurity framework. Reviewing administrative, technical, and cybersecurity controls and providing recommendations to mitigate the identified cyber security risks. Performing cyber security vulnerability and risk assessments within manufacturing and critical infrastructure environments to identify security risks and threats (e.g., unsecure remote access points, suspicious remote connections, unauthorized devices on the network, etc.) and providing recommendations to remediate the identified issues. Creating detailed diagrams (e.g., network, cabling, server, rack, logical architecture, etc.), procedures, and plans (e.g., implementation, SAT, mitigation, etc.) as needed to support projects. Travel to the NIH sites as required. Preferred Professional Skills: Certified SCADA Security Architect (CSSA) GIAC certifications (e.g., GICSP, GRID, Critical Infrastructure Protection) ISA/IEC 62443 Cybersecurity Certificates Cybersecurity certification (e.g., CEH, CISA, CISM, CCSP, etc.) Understanding of MITRE ATT&CKS for ICS or NERC CIP frameworks Understanding of general cybersecurity frameworks (ISO IEC 27001/27002, ISO 15408, NIST Cybersecurity Framework (CSF), NIST SP800-53) A working knowledge of industrial control systems (e.g., DCS, PLCs, SCADA, etc.) Ability to perform vulnerability / penetration testing in ICS/OT environment, and/or threat hunting Prior experience Control System Engineer or SCADA Engineer working in manufacturing environments or power generation facilities Certified professional engineer The ICS/OT Cybersecurity and Network Security Engineer shall demonstrate: High integrity A willingness to go beyond the ordinary to meet and exceed client expectations A desire for continual challenges and development Excellent written and verbal communication skills Dynanet Team Requirements and Expectations: Possess Strong written and verbal communication skills. Highly organized with an ability to prioritize, balance, and effectively advance multiple competing priorities in a high-volume, fast-paced environment. Ability to interact in a professional and collaborative manner with fellow Dynanet Teammates and the clients, and business partners that we work with. Ability and desire to challenge and educate yourself to support and advance IT services delivery in the Federal agencies we serve. Excellent judgment and creative problem-solving skills. Respond to team member and client requests via email, MS teams, or other communication means during core business hours. Active listening skills to understand clients' needs, and collaboration skills to work with other developers and designers. Education/Experience Requirements: Certified Information Systems Security Professional (CISSP). Bachelors Degree in Engineering (Electrical, Mechanical, Chemical, or similar), Computer Science, or similar scientific / technical field. Strong understanding of cybersecurity frameworks for ICS/OT environments (ISA-99/IEC 62443, NIST SP 800-82, CIS, Perdue Reference Model etc.). Strong understanding of OT network communication protocols (e.g., Ethernet/IP, CIP, Modbus, OPC, etc.) and industrial networking topologies (e.g., ring, star, etc.). A minimum of Five (5) years “hands on” experience assessing, designing, and implementing ICS/OT network architectures. Demonstrated technical skills to analyze, design, and deploy complex Ethernet/IP architecture and communication technologies. Experience with Nazomi Cyber-Physical System (CPS). #J-18808-Ljbffr
    $78k-107k yearly est. 5d ago
  • Network Security Engineer

    Computational Physics Inc. 4.0company rating

    Network security analyst job in Washington, DC

    Computational Physics, Inc. (CPI) is seeking a Network Security Engineer to supportour customers at the United States Naval Observatory (USNO) in the deployment andmaintenance of its new Precise Time and Astrometry Network. Background The USNO is responsible for the production and dissemination of precise parametersconcerning time, star positions, and the earth's rotation to the Department of Defense(DoD) and intelligence community, other U.S. Government (USG) users such as NASAand the National Oceanic and Atmospheric Administration (NOAA), as well as non-USG civilian and international users. Distribution of these parameters supports GPSnavigation, among other applications, an important national and international function. Areliable, secure, maintainable and manageable USNO network is crucial to theproduction and dissemination of these data products. The successful candidate will: Provide direct technical support to the Precise Time, Celestial Reference Frame,Earth Orientation, and DevSecOps Departments at USNO. Work with USNO Information Assurance staff to ensure compliance with DoDcybersecurity requirements. Prepare and maintain associated documentation. The position will be located at the U.S. Naval Observatory in Washington D.C. Partial telework may be permitted in accordance with applicable Navy and Observatory guidance in effect at the time. Salary will be commensurate with experience and qualifications. CPI offers an excellent package of benefits. Qualifications 7+ years of experience managing and configuring Cisco Routers, Switches,Juniper SRX, Cisco NGFW and Cisco ASA Firewalls. Experience Configuring, STIG/Patching, Troubleshooting and Replacing Ciscoand Juniper equipment Proficient in Cisco ISE management Knowledge of PKI, CAC/ALT-token authentication, and certificate lifecyclemanagement Experience with Cisco Anyconnect VPN and RAVPN access. Familiarity with virtual machine management for Cisco ISE Experience with DISA STIGs, SCAP benchmarks, and ACAS/Nessusvulnerability remediation Experience with console cables and physical connections to Network Equipment Understanding of Kerberos, LDAP, and Multi-Factor Authentication concepts Experience integrating systems with monitoring tools (e.g., SolarWinds) Networking fundamentals: TCP/IP, DNS, DHCP, VLANs, and firewall concepts CompTIA Security+ CE or equivalent DoD 8570 certification (required) Cisco CCNP or CCNP Security desired A Top Secret security clearance is required for this DoD contract About CPI We love science! We study the physical properties of the Earth and our atmosphere, neighboring planets, and the sun. We make the study of science practical by translating our findings into products, both hardware and software, that make our customer's lives easier and better. CPI has served various U.S. Government agencies, universities, international science organizations, prime contractors, as well as commercial customers for 40 years. CPI is an employee-owned company - our team members receive company stock. Employee ownership motivates and empowers increased productivity, contribution to the longevity of the business, improved retention, and enhanced employee engagement. Why Work for Us? Competitive salary and comprehensive benefits Positive, upbeat, and transparent company culture with opportunities for self-development and career advancement Employee-owned small business that allows team members to learn from each other and take ownership Professional development support including conference attendance and certification training Benefits 401(k), Profit Sharing and an Employee Stock Ownership Plan (ESOP) Disability insurance (short-term and long-term) Flexible schedule Flexible spending account Health, Dental and Vision insurance Life insurance Paid time off Parental Leave Tuition reimbursement CPI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law. If you need a reasonable accommodation for any part of the employment process, please contact us and let us know the nature of your request and your contact information. Requests for accommodation will be considered on a case-by-case basis. #J-18808-Ljbffr
    $84k-125k yearly est. 2d ago
  • Network Security Engineer (Cisco, Palo Alto)

    Elios

    Network security analyst job in Washington, DC

    About Us: We are a dynamic technology services company based in Washington, DC, specializing in cutting-edge network solutions. We are seeking a skilled Network Engineer to join our team to ensure the seamless operation and optimization of our network infrastructure. Job Summary: The Network Engineer will be responsible for troubleshooting and managing Cisco routing and switching (R/S) environments, handling Layer 2 networking with some routing, and working extensively with Palo Alto firewalls. This role requires hands-on experience with Panorama-managed firewalls, familiarity with legacy network migrations, and policy optimization on Palo Alto systems. Key Responsibilities Troubleshoot and maintain Cisco routing and switching (R/S) infrastructure, focusing on Layer 2 and routing protocols. Manage and optimize Palo Alto firewalls using Panorama. Perform Cisco-to-Palo Alto migrations, ensuring minimal downtime and optimal configurations. Work with OSPF and MPLS protocols to maintain a robust and efficient network. Collaborate on legacy infrastructure transitions and provide expertise for policy optimization on Palo systems. Operate in a hybrid work environment, primarily onsite (4-5 days a week). Coordinate with remote team members to ensure network consistency and performance. Qualifications Proven experience with Cisco routing and switching (R/S) technologies. Strong understanding of Layer 2 networking and routing protocols. Proficiency in Palo Alto firewalls and Panorama management. Hands-on experience with Cisco-to-Palo Alto migrations and legacy network systems. Familiarity with OSPF, MPLS, and other networking protocols. Ability to work in a hybrid setting with flexibility to be onsite 4-5 days a week. Strong troubleshooting and problem-solving skills with a detail-oriented mindset. Preferred Skills Experience with policy optimization and fine-tuning firewall configurations. Strong interpersonal skills and the ability to work both independently and in a team setting. Familiarity with large campus environments and hybrid work structures. What We Offer Competitive salary and benefits package. Opportunity to work on innovative projects in a collaborative environment. Professional growth and development within a technology-forward company. If you are passionate about network engineering and thrive in a hands-on, dynamic environment, we would love to hear from you! #J-18808-Ljbffr
    $77k-106k yearly est. 5d ago
  • Principal Cloud Security Engineer

    Zealotech People

    Network security analyst job in Washington, DC

    Clearance: Active Secret Employment Type: Full-Time We are seeking a Principal Cloud Security Engineer to lead the design, automation, and enforcement of security across large-scale federal cloud environments. This role focuses on cloud security architecture, DevSecOps automation, and secure platform enablement in a multi-cloud ecosystem. The ideal candidate is highly technical, self-directed, and comfortable operating as the senior security authority for cloud platforms. You will define secure patterns, implement guardrails at scale, and embed security directly into infrastructure and CI/CD pipelines. Key Responsibilities: Cloud Security Architecture: Design and guide secure architectures across AWS, Azure, and GCP, including GovCloud and restricted environments Define and enforce security baselines aligned with NIST 800-53, FedRAMP, and CIS Benchmarks Lead threat modeling, architecture reviews, and secure design guidance for cloud workloads DevSecOps & Automation: Build and maintain Infrastructure as Code using Terraform (preferred) and cloud-native tooling Integrate automated security controls into CI/CD pipelines (SAST, DAST, IaC scanning, container scanning) Implement policy-as-code guardrails using tools such as AWS SCPs, Azure Policy, and cloud-native governance services Develop automated remediation and enforcement workflows to reduce manual security effort Governance, Compliance & Visibility: Embed compliance controls directly into cloud infrastructure and pipelines to support ATO efforts Partner with compliance teams and auditors on evidence collection and continuous monitoring Implement centralized logging, monitoring, and incident response across cloud environments Technical Leadership: Serve as the senior cloud security SME for engineers, architects, and stakeholders Mentor engineers on secure cloud development and DevSecOps practices Translate complex security concepts to both technical and non-technical audiences Required Qualifications: Active Secret clearance 8+ years in cybersecurity or cloud engineering, including 5+ years focused on cloud security Deep hands-on experience securing AWS, Azure, or GCP (experience in at least two preferred) Strong Infrastructure as Code experience (Terraform strongly preferred) Experience integrating security into CI/CD pipelines (GitHub Actions, GitLab, or similar) Proficiency in Python, Go, PowerShell, or Bash Strong understanding of IAM, networking, encryption, key management, and cloud-native security services Ability to operate independently and define security priorities without daily direction Preferred Qualifications: Experience securing GovCloud, DoD IL5/IL6, or other regulated cloud environments Kubernetes and container security experience Zero Trust architecture implementation experience ServiceNow integrations for security workflows Cloud security certifications (AWS Security Specialty, Azure Security Engineer, etc.) What Makes This a True Principal Role: Highly hands-on and deeply technical Owns security outcomes rather than executing predefined tasks Heavy DevSecOps and IaC focus Large-scale, multi-cloud environment Architecture and influence matter as much as implementation
    $84k-117k yearly est. 1d ago
  • Information System Security Engineer (ISSE)

    Tla LLC

    Network security analyst job in Washington, DC

    TLA is seeking an Information System Security Engineer (ISSE). This is a critical role responsible for designing, developing, implementing, and maintaining secure information systems and networks. The ISSE ensures that security requirements are effectively integrated into systems throughout their entire lifecycle, from design to disposal. This position involves close collaboration with system owners, developers, and other stakeholders to identify vulnerabilities, assess risks, and implement robust security controls in accordance with industry standards and regulatory frameworks such as the NIST Risk Management Framework (RMF) and DoD 8570/8140 guidelines. Responsibilities Security Architecture and Design: Design, develop, and implement network and system security measures that provide confidentiality, integrity, availability, authentication, and non-repudiation. Risk Management: Assess and mitigate system security threats and risks throughout the program life cycle, including performing technical security assessments and vulnerability analyses. Compliance and Documentation: Ensure systems comply with applicable security policies, standards, and methodologies (e.g., NIST, DoD, FISMA). Prepare and maintain security documentation, including System Security Plans (SSPs), Plan of Action and Milestones (POA&Ms), and security assessment reports. Testing and Validation: Plan and conduct security verification testing, using tools like vulnerability scanners (e.g., Nessus, ACAS) to identify weaknesses and ensure controls are in place and effective. Operational Support and Incident Response: Monitor systems for irregular behavior, support security incident response activities, and manage changes to systems while assessing their security impact. Collaboration and Guidance: Serve as a subject matter expert, providing guidance to development, engineering, and program teams on secure design, development, and secure coding techniques. System Hardening: Oversee the implementation of security configuration settings and hardening of systems (e.g., using DISA STIGs) to minimize vulnerabilities. Required Skills and Experience Education: Bachelor's degree in Computer Science, Information Technology, Information Assurance, Information Systems Security Engineering, or a related field (or equivalent experience). Experience: A minimum of 5-8 years of experience in information security engineering, system administration, and/or cybersecurity, with hands‑on experience in implementing security controls and supporting authorization processes. Technical Skills Expert knowledge of security engineering principles, secure architecture, and design concepts. Hands‑on experience with security tools such as vulnerability scanners (Nessus/ACAS), SIEM platforms (Splunk, LogRhythm), and security configuration tools (DISA STIGs, SCAP). Strong understanding of network protocols, firewalls, intrusion detection/prevention systems, encryption techniques, and access controls. Familiarity with various operating systems (Windows, Linux, Unix) and secure configuration management. Experience with risk management frameworks, specifically the NIST RMF and/or DoD 8500 series guidance. Soft Skills Strong analytical thinking, attention to detail, problem‑solving capabilities, and excellent communication skills to collaborate effectively with technical and non‑technical stakeholders. Clearance (if applicable): May require a U.S. Citizenship and an active security clearance (e.g., Secret, Top Secret, or SCI). Preferred Certifications Certified Information Systems Security Professional (CISSP) CISSP-Information Systems Security Engineering Professional (ISSEP) Certified Cloud Security Professional (CCSP) Certified Ethical Hacker (CEH) or GIAC certifications (GSEC, GCIH) AWS Certified Security Specialty, Cisco Certified Network Associate (CCNA) Security, or similar cloud/network vendor certifications. At TLA, we build solutions that matter-supporting national security missions through technology innovation, collaboration, and excellence. Our team is passionate about leveraging modern technologies to deliver impactful, mission‑focused outcomes for our customers. Benefits Competitive salary and performance bonuses Medical, dental, and vision coverage Paid time off and federal holidays 401(k) with company match Education and certification reimbursement Training and professional development opportunities Employee referral bonuses and team events TLA is proud to be an Equal Opportunity Employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. #J-18808-Ljbffr
    $84k-115k yearly est. 1d ago
  • Information System Security Engineer

    Method, Inc. 4.6company rating

    Network security analyst job in Washington, DC

    Spry Methods is seeking an Information Systems Security Engineer (ISSE) to support secure, mission-focused information systems in a high-impact government environment. The ISSE will contribute to the design, implementation, and maintenance of cybersecurity controls across enterprise and mission systems, working closely with engineering, operations, and security teams to ensure systems meet federal cybersecurity and authorization requirements. What Your Day-To-Day Looks Like (Position Responsibilities): Support the identification of information protection needs and security requirements for information systems and network environments Contribute to the design and implementation of security architectures and security controls across system components Assist with security engineering activities throughout the system lifecycle, including requirements, design, implementation, testing, and operations Support the implementation of security measures that ensure confidentiality, integrity, availability, authentication, and non-repudiation Participate in Risk Management Framework (RMF) activities, including security control implementation, assessment support, and continuous monitoring Develop and maintain security documentation such as System Security Plans (SSPs), security control artifacts, POA&Ms, and ATO packages Assist in assessing the security impact of system changes, enhancements, and architectural modifications Support vulnerability management efforts, including reviewing scan results and coordinating remediation actions Collaborate with system engineers, network engineers, developers, and security stakeholders to support authorization activities What You Need to Succeed (Minimum Requirements): TS Clearance with SCI eligibility. 3 - 5 years of demonstrated experience supporting cybersecurity or information assurance activities within enterprise or mission systems Working knowledge of the NIST Risk Management Framework (RMF), FISMA and ATO processes Familiarity with common security assessment, vulnerability scanning, and monitoring tools (e.g., Nessus, NMAP, Guardium, WebInspect, or similar) Understanding of system and network security principles, including access control, boundary protection, and secure system design Experience supporting cloud security in environments such as AWS GovCloud, C2S, SC2S, and Microsoft Azure. Analyze logs using Splunk and AWS tools. Ability to document security controls and communicate technical information clearance Hands-on experience with vulnerability assessment and configuration tools such as Nessus, ACSA, and Splunk. Ideally, You Also Have (Preferred Qualifications): Certifications: CISSP, CISM, CASP+, CECAP, Security+, AWS Certified Security - Specialty, or other relevant certifications. Experience in a high-side or multi-enclave (U/S/TS) environment. Experience working with Agile development teams and CI/CD pipelines. Familiarity with NIST 800-53 Rev. 5 #CJ #J-18808-Ljbffr
    $82k-109k yearly est. 5d ago

Learn more about network security analyst jobs

Browse computer and mathematical jobs